Solved

eX4500 port forward

Posted on 2014-12-10
8
187 Views
Last Modified: 2015-04-07
is there any possible way to forward all 587 port traffic to an email gateway and get the traffic back to default vlan on Ex4500
0
Comment
Question by:Cahit Eyigunlu
  • 4
  • 4
8 Comments
 
LVL 32

Expert Comment

by:dpk_wal
ID: 40498666
We would need to use routing instances and yes then we can redirect all traffic on port 587 to email gateway IP address.

Please have a look at link below:
http://www.juniper.net/techpubs/en_US/junos14.2/topics/topic-map/filter-based-forwarding-policy-based-routing.html

Please implement and update.

Thank you.
0
 

Author Comment

by:Cahit Eyigunlu
ID: 40498809
the port mentioned in the test is not an ip port it is ethernet port ,
0
 
LVL 32

Expert Comment

by:dpk_wal
ID: 40498868
If you look at the link posted; there are configuration example for both, to a specific outgoing interface also specific destination IP.

Please implement and update.

Thank you.
0
 

Author Comment

by:Cahit Eyigunlu
ID: 40499179
i am not looking for interface forwarding i am looking for smtp port amreked packets forwarding
0
Threat Intelligence Starter Resources

Integrating threat intelligence can be challenging, and not all companies are ready. These resources can help you build awareness and prepare for defense.

 
LVL 32

Expert Comment

by:dpk_wal
ID: 40499662
Hi Cahit,

Did you look at the link at all.

We create a firewall filter and do then based on the match criteria forward traffic on port 587; protocol as you specify to a specific IP or specific port.

If this is not what you want please clearly state your requirements so we can help.

Thank you.
0
 

Author Comment

by:Cahit Eyigunlu
ID: 40517037
should you please send a sample config for this
0
 
LVL 32

Accepted Solution

by:
dpk_wal earned 500 total points
ID: 40521430
Let's say you want the UDP 587 traffic to egress out of port ge-0/0/23 and rest of traffic out through port ge-0/0/22.
You wish to configure this filtering on port ge-0/0/0 till ge-0/0/9

Configure firewall filter:
set firewall family ethernet-switching filter filterUDP587 term t1 from protocol udp destination-port 587
set firewall family ethernet-switching filter filterUDP587 term t1 then interface ge-0/0/23.0
set firewall family ethernet-switching filter filterUDP587 term t2 then interface ge-0/0/22.0

Set filter1 on ingress:
set ge-0/0/0.0 family ethernet-switching filter input filterUDP587
set ge-0/0/1.0 family ethernet-switching filter input filterUDP587
set ge-0/0/2.0 family ethernet-switching filter input filterUDP587
set ge-0/0/3.0 family ethernet-switching filter input filterUDP587
set ge-0/0/4.0 family ethernet-switching filter input filterUDP587
set ge-0/0/5.0 family ethernet-switching filter input filterUDP587
set ge-0/0/6.0 family ethernet-switching filter input filterUDP587
set ge-0/0/7.0 family ethernet-switching filter input filterUDP587
set ge-0/0/8.0 family ethernet-switching filter input filterUDP587
set ge-0/0/9.0 family ethernet-switching filter input filterUDP587

Please implement and update.

Thank you.
0
 

Author Closing Comment

by:Cahit Eyigunlu
ID: 40710814
Thank you
0

Featured Post

New My Cloud Pro Series - organize everything!

With space to keep virtually everything, the My Cloud Pro Series offers your team the network storage to edit, save and share production files from anywhere with an internet connection. Compatible with both Mac and PC, you're able to protect your content regardless of OS.

Join & Write a Comment

In the world of WAN, QoS is a pretty important topic for most, if not all, networks. Some WAN technologies have QoS mechanisms built in, but others, such as some L2 WAN's, don't have QoS control in the provider cloud.
Don’t let your business fall victim to the coming apocalypse – use our Survival Guide for the Fax Apocalypse to identify the risks and signs of zombie fax activities at your business.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

759 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

22 Experts available now in Live!

Get 1:1 Help Now