Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 
296 posts

Ultimate Geek
+1 received by user: 43


  Reply # 721250 22-Nov-2012 12:26 Send private message

Not sure of the best way to do it on SRX, but I'd be looking for the equivalent of the Cisco "tcp adjust-mss" command rather than changing the MTU of the interface.

Just A Geek
1940 posts

Uber Geek
+1 received by user: 310

Trusted
Subscriber

  Reply # 721256 22-Nov-2012 12:34 Send private message

hashbrown: Not sure of the best way to do it on SRX, but I'd be looking for the equivalent of the Cisco "tcp adjust-mss" command rather than changing the MTU of the interface.


set security flow tcp-mss all-tcp mss XXXX

296 posts

Ultimate Geek
+1 received by user: 43


  Reply # 721262 22-Nov-2012 12:48 Send private message

LennonNZ: set security flow tcp-mss all-tcp mss XXXX


@mindshift Try this with an MSS of 1452

set security flow tcp-mss all-tcp mss 1452

1 post

Wannabe Geek


  Reply # 797807 11-Apr-2013 14:58 Send private message

All, as you know the SRX has been quite difficult in the past to get working here in New Zealand.

Juniper first amended code to allow the PPPoE authentication to be transmitted on VLAN 10 but then caused issues as LCP for PPPoE neg control packets were sent from the SRX marked as '6' (802.1p).

11.4R4.7 and 11.4R4.8 'resolved' the issue with outbound packets being sent as BE '0'. Later releases broke this again. A new command (as yet undocumented in the release notes) was added to 12.1R5.5 which allows you to set the 802.1p markings for RE generated traffic:
set class-of-service host-outbound-traffic ieee-802.1 default <802.1p setting> (either 'be' or '000' is valid)

Full VDSL working configuration is below (in copy & paste format):
set interfaces pt-1/0/0 vlan-tagging
set interfaces pt-1/0/0 vdsl-options vdsl-profile auto
set interfaces pt-1/0/0 unit 0 encapsulation ppp-over-ether
set interfaces pt-1/0/0 unit 0 vlan-id 10
set interfaces pp0 traceoptions flag all
set interfaces pp0 no-per-unit-scheduler
set interfaces pp0 unit 0 ppp-options pap local-name "[email protected]"
set interfaces pp0 unit 0 ppp-options pap local-password "REMOVED"
set interfaces pp0 unit 0 ppp-options pap passive
set interfaces pp0 unit 0 pppoe-options underlying-interface pt-1/0/0.0
set interfaces pp0 unit 0 pppoe-options auto-reconnect 10
set interfaces pp0 unit 0 pppoe-options client
set interfaces pp0 unit 0 family inet negotiate-address
set class-of-service host-outbound-traffic ieee-802.1 default 000

For completeness I've included ADSL and UFB below:
set interfaces at-1/0/0 mtu 1514
set interfaces at-1/0/0 encapsulation atm-pvc
set interfaces at-1/0/0 atm-options vpi 0
set interfaces at-1/0/0 dsl-options operating-mode auto
set interfaces at-1/0/0 unit 0 encapsulation atm-ppp-vc-mux
set interfaces at-1/0/0 unit 0 vci 100
set interfaces at-1/0/0 unit 0 ppp-options pap local-name "[email protected]"
set interfaces at-1/0/0 unit 0 ppp-options pap local-password "$9$d2saUk.PF69P5rvMLN-k.mfFntuOESrtu"
set interfaces at-1/0/0 unit 0 ppp-options pap passive
set interfaces at-1/0/0 unit 0 family inet mtu 1500
set interfaces at-1/0/0 unit 0 family inet primary
set interfaces at-1/0/0 unit 0 family inet negotiate-address
set interfaces pp0 no-per-unit-scheduler
set interfaces pp0 unit 0 ppp-options pap local-name "[email protected]"
set interfaces pp0 unit 0 ppp-options pap local-password "REMOVED"
set interfaces pp0 unit 0 ppp-options pap passive
set interfaces pp0 unit 0 pppoe-options underlying-interface at-1/0/0.0
set interfaces pp0 unit 0 pppoe-options auto-reconnect 10
set interfaces pp0 unit 0 pppoe-options client
set interfaces pp0 unit 0 family inet negotiate-address
set class-of-service host-outbound-traffic ieee-802.1 default 000

set interfaces fe-0/0/0 vlan-tagging
set interfaces fe-0/0/0 unit 0 encapsulation ppp-over-ether
set interfaces fe-0/0/0 unit 0 vlan-id 10
set interfaces pp0 no-per-unit-scheduler
set interfaces pp0 unit 0 ppp-options pap local-name "[email protected]"
set interfaces pp0 unit 0 ppp-options pap local-password "REMOVED"
set interfaces pp0 unit 0 ppp-options pap passive
set interfaces pp0 unit 0 pppoe-options underlying-interface fe-0/0/0.0
set interfaces pp0 unit 0 pppoe-options auto-reconnect 10
set interfaces pp0 unit 0 pppoe-options client
set interfaces pp0 unit 0 family inet negotiate-address
set class-of-service host-outbound-traffic ieee-802.1 default 000

--- JUNOS 12.1R5.5 built 2013-01-17 06:12:00 UTC
admin@*> show version
Hostname: *
Model: srx110h-va
JUNOS Software Release [12.1R5.5]

admin@*> show interfaces pp0 terse
Interface Admin Link Proto Local Remote
pp0 up up
pp0.0 up up inet 1.2.3.5 --> 1.2.3.4

Cheers,
Graham

1 | 2 
View this topic in a long page with up to 500 replies per page Create new topic




Twitter »
Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:




News »

Trending now »
Hot discussions in our forums right now:

Warning: Rage Ahead - Campbell Live and childhood poverty
Created by kawaii, last reply by Geektastic on 3-Sep-2014 11:47 (144 replies)
Pages... 8 9 10


Does NZ need better gun laws?
Created by mattwnz, last reply by heylinb4nz on 3-Sep-2014 11:49 (120 replies)
Pages... 6 7 8


What tyre brand/model to look at ?
Created by Mark, last reply by Oblivian on 2-Sep-2014 21:36 (35 replies)
Pages... 2 3


Judith Collins: I am resigning
Created by Presso, last reply by gzt on 2-Sep-2014 11:42 (109 replies)
Pages... 6 7 8


VideoEZY OnDemand
Created by Andib, last reply by sen8or on 3-Sep-2014 07:45 (64 replies)
Pages... 3 4 5


Cirque du Soleil Cellphone Hijack
Created by myopinion, last reply by PhantomNVD on 1-Sep-2014 18:01 (21 replies)
Pages... 2


Orcon Global Mode launched
Created by freitasm, last reply by shk292 on 1-Sep-2014 11:32 (132 replies)
Pages... 7 8 9


Lightbox press event release
Created by freitasm, last reply by IcI on 30-Aug-2014 17:54 (562 replies)
Pages... 36 37 38



Geekzone Live »
Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.

Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.