Monday, October 30, 2017

Juniper SRX zonetoglobal address tool

Within  Junos & the SRX, you can defined firewall.adr,objects aka addressbook zone or globally. Previous OS version usedd the zone concept but the default now is the global method.

advantages with global method;

  •  you can reduce any  duplicates
  •  use address in ANY zone
  •  and in  any direction
  •  less maintenance when you need to change or update a address

The following link  has a tool for conversion of  address to global

https://github.com/scottdware/zone2global/blob/master/zone2global.go

YMMV

Ken Felix
NSE ( network security expert) and Route/Switching Engineer
kfelix  -----a----t---- socpuppets ---dot---com
     ^      ^
=(  @  @ )=
         o 


        /  \

No comments:

Post a Comment