Documenti di Didattica
Documenti di Professioni
Documenti di Cultura
Hit [Enter] to boot immediately, or space bar for command prompt. Termina proceso autoboot. Se
puede abortar aqu para entrar a proceso de restauracin password del usuario root. Quedara el
equipo en prompt loader>. Ejecutar commando boot s en dado caso.
loader> boot -s
Enter full pathname of shell or 'recovery' for root password recovery or RETURN for
/bin/sh: recovery
root@srxB % cli
root@srxB> configure
[edit]
gestion# delete
This will delete the entire configuration
Delete everything under this level? [yes,no] (no) yes
[edit]
gestion # set system root-authentication plain-text-password
New password: TmX85col
Retype new password: TmX85col
2. CONFIGURACION DEFAULT
set system login user gestion class super-user
set system login user gestion uid 2000
set system services ssh
set system services telnet
set system services xnm-clear-text
set system services web-management http interface vlan.0
set system services web-management https system-generated-certificate
set system services web-management https interface vlan.0
1.
set security policies from-zone WAN to-zone LAN policy ENTRADA match destination-address any
set security policies from-zone WAN to-zone LAN policy ENTRADA match application any
set security policies from-zone WAN to-zone LAN policy ENTRADA then permit
set security zones security-zone LAN host-inbound-traffic system-services all
set security zones security-zone LAN host-inbound-traffic protocols all
set security zones security-zone LAN interfaces vlan.0
set security zones security-zone LAN interfaces vlan.100
set security zones security-zone WAN host-inbound-traffic system-services all
set security zones security-zone WAN interfaces fe-0/0/7.1197
set vlans PRIVADA vlan-id 3
set vlans PRIVADA l3-interface vlan.0
set vlans PUBLICA vlan-id 100
set vlans PUBLICA l3-interface vlan.100
2.
3.
INTERNET IP PUBLICA + DHCP CON IP PRIVADA + TRONCAL SIP ETHERNET CON AUDIOCODEC.
set security policies from-zone WAN to-zone LAN policy ENTRADA match application any
set security policies from-zone WAN to-zone LAN policy ENTRADA then permit
set security policies from-zone AUDIOCODEC to-zone PLANTA policy ENTRADA match source-address any
set security policies from-zone AUDIOCODEC to-zone PLANTA policy ENTRADA match destination-address any
set security policies from-zone AUDIOCODEC to-zone PLANTA policy ENTRADA match application any
set security policies from-zone AUDIOCODEC to-zone PLANTA policy ENTRADA then permit
set security policies from-zone PLANTA to-zone AUDIOCODEC policy SALIDA match source-address any
set security policies from-zone PLANTA to-zone AUDIOCODEC policy SALIDA match destination-address any
set security policies from-zone PLANTA to-zone AUDIOCODEC policy SALIDA match application any
set security policies from-zone PLANTA to-zone AUDIOCODEC policy SALIDA then permit
set security policies from-zone WAN to-zone AUDIOCODEC policy ENTRADA match source-address any
set security policies from-zone WAN to-zone AUDIOCODEC policy ENTRADA match destination-address any
set security policies from-zone WAN to-zone AUDIOCODEC policy ENTRADA match application any
set security policies from-zone WAN to-zone AUDIOCODEC policy ENTRADA then permit
set security policies from-zone AUDIOCODEC to-zone WAN policy SALIDA match source-address any
set security policies from-zone AUDIOCODEC to-zone WAN policy SALIDA match destination-address any
set security policies from-zone AUDIOCODEC to-zone WAN policy SALIDA match application any
set security policies from-zone AUDIOCODEC to-zone WAN policy SALIDA then permit
set security zones security-zone LAN host-inbound-traffic system-services all
set security zones security-zone LAN host-inbound-traffic protocols all
set security zones security-zone LAN interfaces vlan.0
set security zones security-zone LAN interfaces vlan.100
set security zones security-zone LAN interfaces fe-0/0/0.0
set security zones security-zone WAN host-inbound-traffic system-services all
set security zones security-zone WAN host-inbound-traffic protocols all
set security zones security-zone WAN interfaces fe-0/0/7.1197
set security zones security-zone WAN interfaces fe-0/0/7.1198
set security zones security-zone AUDIOCODEC host-inbound-traffic system-services all
set security zones security-zone AUDIOCODEC host-inbound-traffic protocols all
set security zones security-zone AUDIOCODEC interfaces vlan.200
set security zones security-zone AUDIOCODEC interfaces fe-0/0/5.0
set security zones security-zone PLANTA host-inbound-traffic system-services all
set security zones security-zone PLANTA host-inbound-traffic protocols all
set security zones security-zone PLANTA interfaces vlan.300
set security zones security-zone PLANTA interfaces fe-0/0/4.0
set vlans AUDIOCODEC vlan-id 200
set vlans AUDIOCODEC l3-interface vlan.200
set vlans PLANTA vlan-id 300
set vlans PLANTA l3-interface vlan.300
set vlans PRIVADA vlan-id 3
set vlans PRIVADA l3-interface vlan.0
set vlans PUBLICA vlan-id 100
set vlans PUBLICA l3-interface vlan.100
4.
set security policies from-zone SIP-CENTRALIZADO to-zone WAN policy SALIDA match application any
set security policies from-zone SIP-CENTRALIZADO to-zone WAN policy SALIDA then permit
set security policies from-zone WAN to-zone SIP-CENTRALIZADO policy ENTRADA match source-address any
set security policies from-zone WAN to-zone SIP-CENTRALIZADO policy ENTRADA match destination-address any
set security policies from-zone WAN to-zone SIP-CENTRALIZADO policy ENTRADA match application any
set security policies from-zone WAN to-zone SIP-CENTRALIZADO policy ENTRADA then permit
set security zones security-zone LAN host-inbound-traffic system-services all
set security zones security-zone LAN host-inbound-traffic protocols all
set security zones security-zone LAN interfaces vlan.0
set security zones security-zone LAN interfaces vlan.100
set security zones security-zone LAN interfaces fe-0/0/0.0
set security zones security-zone WAN host-inbound-traffic system-services all
set security zones security-zone WAN host-inbound-traffic protocols all
set security zones security-zone WAN interfaces fe-0/0/7.79
set security zones security-zone WAN interfaces fe-0/0/7.78
set security zones security-zone SIP-CENTRALIZADO host-inbound-traffic system-services all
set security zones security-zone SIP-CENTRALIZADO host-inbound-traffic protocols all
set security zones security-zone SIP-CENTRALIZADO interfaces vlan.200
set security zones security-zone SIP-CENTRALIZADO interfaces fe-0/0/4.0
set vlans PRIVADA vlan-id 3
set vlans PRIVADA l3-interface vlan.0
set vlans PUBLICA vlan-id 100
set vlans PUBLICA l3-interface vlan.100
set vlans SIP-CENTRALIZADO vlan-id 200
set vlans SIP-CENTRALIZADO l3-interface vlan.200