Basic Netscreen Configuration

Source: Internet
Author: User

Unset all clears all configurations. Restoring factory configuration reset restart will ask if you want to retain the configuration, select no, and finally ask if you are sure to restart, select yes
Default username and password for factory value: netscreen
Get interface

HZ-FW-> get performance cpu view CPU usage
Components of Juniper firewall: 1. IP address get int2. interface get int3.zone section get zone4.VR virtual router get vrouter all the configurable zones, default belong to the trust-vr5.Vsys virtual system get vsys
The ip address belongs to the interface, the interface belongs to the zone, the zone belongs to the virtual router, and the virtual router belongs to the vsys
Set interface e1 ip 192.168.1.1/24 configure an ip address for the e1 interface
Set interface trust port 1 phy full trust this interface has four interfaces, for interface 1 is set to full duplex
Get system: view system information, such as version
Set interface trust mange ping allow trust interface pingset interface trust mange telnet allow trust interface telnetset interface trust mange web allow trust interface webset admin telnet port 1025 set telnet port to 1025 set admin root access console only root users are allowed to have issues with the console port, telnet is not allowed to access get session to view sessions
Set hostname hz-fw set Host Name
Set admin password 1234 set the Administrator's password to 123get license-key to view the authorization file DI deep filtering IPS function of the current firewall lock, and hot backup of the two machines to NSP)
Upgrade ScreenOSsw1-> exec save software tftp 10.0.1.2 ssg500.6.3.0r3.0
Set config
Exec save sofware from flash to tftp 10.10.1.2 ssg500.6.3.0r3.0 system to host 10.10.1.2
Get route
Save configuration save
Save config from flash to tftp 10.0.8.2 config save the firewall configuration to the local TFTP Server
The default username is netscreen password. netscreennetscreen is equivalent to root user.) set admin password cjclub to change the administrator password to cjclub.
Set zone name DMZ set zone name DMZset interface eth2 zone DMZ eth2 interface put into DMZzone



Ns5gt-> get config saved to view the saved configuration
Ns5gt-> get config rollback view rollback Configuration
Jiaxing-zongbu-> set console timeout 0 set console timeout to 0
Ns5gt-> set admin auth banner telnet login netscreen ----- juniper modify the banner information displayed during firewall logon. the root user can set this information)
Ns5gt-> set admin auth web timeout 0 to set webui timeout to 0 root users)


This article is from the "Cisco, zhanbo, Huawei" blog, please be sure to keep this source http://rujinfeng.blog.51cto.com/2712746/1302407

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.