Re: EX3300 can't disable xe-2/3 for VC.
spulukano, I usedrequest virtual-chassis vc-port delete pic-slot 1 port 2request virtual-chassis vc-port delete pic-slot 1 port 3 should I use procedure from your link? There was no any VC configured,...
View ArticleRe: SSH Access External
The term you need is discard. You also need to specify your ge-0/1/0 and vlan.71 external addresses as destinations in your filter's terminal_access_denied term or you will block all transited ssh and...
View ArticleRe: vQFX10k 15.1X53-D60 3 BUGS on MC-LAG (one fatal) :(
Hi alexander, May i know whether this vQFX support VC or VCF? I'm try to make it vc / vcf but fail. Thanks and appreciate your feedback
View ArticleRe: vQFX10k 15.1X53-D60 3 BUGS on MC-LAG (one fatal) :(
I assume this is physica 10K, vQFX, yes? I do not believe configuration-check or configuration-sync is yet supported on 10K. Looking into other parts.
View ArticleRe: EX3300 can't disable xe-2/3 for VC.
I've always used the delete option--I think disable simply turns it off but leaves the port as a VC uplink. What does 'show virtual-chassis vc-port' show?
View ArticleRe: SSH Access External
That worked applying it to the ge-0/1/0 - thanks. I didnt quite understand why the example applied it to the loopback but was trying since it didnt work previously when I applied it to the other...
View ArticleRe: vQFX10k 15.1X53-D60 3 BUGS on MC-LAG (one fatal) :(
no, vQFX is a virtual QFX not a physical oneat least configuration-check does a local checking but not a remote one there are no release informations regarding the vQFX availableand all the QFX have...
View ArticleRe: SSH Access External
Heh disregard... that took all of the internet down at that site. This is what I committed... ----- set firewall family inet filter local_acl term terminal_access from source-address 10.0.0.0/8set...
View ArticleRe: SSH Access External
show config - i useually use display set and missed this... is this the cause? firewall { family inet { filter local_acl { term terminal_access { from { source-address { 10.0.0.0/8; } protocol tcp; ##...
View ArticleRe: EX3300 can't disable xe-2/3 for VC.
smickershow virtual-chasis show nothing - look at my first post.and yes - I've used "delete" option, but no luck.
View ArticleRe: SSH Access External
Offhand I'm not sure what the unsupported error is about but this blocks all transit tcp traffic:set firewall family inet filter local_acl term terminal_access_denied from protocol tcpAs I mentioned,...
View ArticleRe: SSH Access External
Correcting myself here--the ex2200 doesn't support named ports, you have to specify numerically. The 'port [ ssh telnet ]' specification was ignored as indicated, leaving the filter with only the tcp...
View ArticleRe: EX3300 can't disable xe-2/3 for VC.
smicker wrote:That isn't what I asked for.sorry, my mistake.but still nothing =)root@ex3300# run show virtual-chassis vc-port fpc0:...
View ArticleUnderstanding edge ports in spanning tree protocol
Hello all,I was tring to understand how I could configure my EX switches to protect agains loops.I have an EX device which works as an access device connected to a distribution switch.via xe port.Then...
View ArticleRe: Understanding edge ports in spanning tree protocol
This situation is protected generally by storm control. Basic settings are enabled by default on a number of the common access layer switch models....
View ArticleRe: Understanding edge ports in spanning tree protocol
Spanning tree will tke care of loops. However the example you reference does not sound like a mistake any admin is likely to commit. If there is a suspicion that could happen, then disable all ports...
View ArticleEX4200 - error: the ethernet-switching subsystem is not running
Hi All, I recently upgraded standalone EX4200-48T from 12.3R6.6 to 15.1R5.5. After reboot, I could see the previous configuration is still there and switch is now running new software. But switching is...
View ArticleRe: Understanding edge ports in spanning tree protocol
You can configure an access-port group for all the edge ports on the access switch. Then the group as a whole can be configured for bpdu-block-on-edge. This will make sure to disable any edge ports...
View Article