Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win

x
?
Solved

eX4500 port forward

Posted on 2014-12-10
8
Medium Priority
?
197 Views
Last Modified: 2015-04-07
is there any possible way to forward all 587 port traffic to an email gateway and get the traffic back to default vlan on Ex4500
0
Comment
Question by:FireBall
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 4
8 Comments
 
LVL 32

Expert Comment

by:dpk_wal
ID: 40498666
We would need to use routing instances and yes then we can redirect all traffic on port 587 to email gateway IP address.

Please have a look at link below:
http://www.juniper.net/techpubs/en_US/junos14.2/topics/topic-map/filter-based-forwarding-policy-based-routing.html

Please implement and update.

Thank you.
0
 

Author Comment

by:FireBall
ID: 40498809
the port mentioned in the test is not an ip port it is ethernet port ,
0
 
LVL 32

Expert Comment

by:dpk_wal
ID: 40498868
If you look at the link posted; there are configuration example for both, to a specific outgoing interface also specific destination IP.

Please implement and update.

Thank you.
0
Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

 

Author Comment

by:FireBall
ID: 40499179
i am not looking for interface forwarding i am looking for smtp port amreked packets forwarding
0
 
LVL 32

Expert Comment

by:dpk_wal
ID: 40499662
Hi Cahit,

Did you look at the link at all.

We create a firewall filter and do then based on the match criteria forward traffic on port 587; protocol as you specify to a specific IP or specific port.

If this is not what you want please clearly state your requirements so we can help.

Thank you.
0
 

Author Comment

by:FireBall
ID: 40517037
should you please send a sample config for this
0
 
LVL 32

Accepted Solution

by:
dpk_wal earned 2000 total points
ID: 40521430
Let's say you want the UDP 587 traffic to egress out of port ge-0/0/23 and rest of traffic out through port ge-0/0/22.
You wish to configure this filtering on port ge-0/0/0 till ge-0/0/9

Configure firewall filter:
set firewall family ethernet-switching filter filterUDP587 term t1 from protocol udp destination-port 587
set firewall family ethernet-switching filter filterUDP587 term t1 then interface ge-0/0/23.0
set firewall family ethernet-switching filter filterUDP587 term t2 then interface ge-0/0/22.0

Set filter1 on ingress:
set ge-0/0/0.0 family ethernet-switching filter input filterUDP587
set ge-0/0/1.0 family ethernet-switching filter input filterUDP587
set ge-0/0/2.0 family ethernet-switching filter input filterUDP587
set ge-0/0/3.0 family ethernet-switching filter input filterUDP587
set ge-0/0/4.0 family ethernet-switching filter input filterUDP587
set ge-0/0/5.0 family ethernet-switching filter input filterUDP587
set ge-0/0/6.0 family ethernet-switching filter input filterUDP587
set ge-0/0/7.0 family ethernet-switching filter input filterUDP587
set ge-0/0/8.0 family ethernet-switching filter input filterUDP587
set ge-0/0/9.0 family ethernet-switching filter input filterUDP587

Please implement and update.

Thank you.
0
 

Author Closing Comment

by:FireBall
ID: 40710814
Thank you
0

Featured Post

Q2 2017 - Latest Malware & Internet Attacks

WatchGuard’s Threat Lab is a group of dedicated threat researchers committed to helping you stay ahead of the bad guys by providing in-depth analysis of the top security threats to your network.  Check out our latest Quarterly Internet Security Report!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
Arrow Electronics was searching for a KVM  (Keyboard/Video/Mouse) switch that could display on one single monitor the current status of all units being tested on the rack.
If you're a developer or IT admin, you’re probably tasked with managing multiple websites, servers, applications, and levels of security on a daily basis. While this can be extremely time consuming, it can also be frustrating when systems aren't wor…
Monitoring a network: how to monitor network services and why? Michael Kulchisky, MCSE, MCSA, MCP, VTSP, VSP, CCSP outlines the philosophy behind service monitoring and why a handshake validation is critical in network monitoring. Software utilized …
Suggested Courses

610 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question