Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.
Buying anything on Amazon? Please use the Geekzone Amazon aff link.


View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 
320 posts

Ultimate Geek
+1 received by user: 47


  Reply # 721250 22-Nov-2012 12:26 Send private message

Not sure of the best way to do it on SRX, but I'd be looking for the equivalent of the Cisco "tcp adjust-mss" command rather than changing the MTU of the interface.

Just A Geek
1954 posts

Uber Geek
+1 received by user: 313

Trusted
Subscriber

  Reply # 721256 22-Nov-2012 12:34 Send private message

hashbrown: Not sure of the best way to do it on SRX, but I'd be looking for the equivalent of the Cisco "tcp adjust-mss" command rather than changing the MTU of the interface.


set security flow tcp-mss all-tcp mss XXXX

320 posts

Ultimate Geek
+1 received by user: 47


  Reply # 721262 22-Nov-2012 12:48 Send private message

LennonNZ: set security flow tcp-mss all-tcp mss XXXX


@mindshift Try this with an MSS of 1452

set security flow tcp-mss all-tcp mss 1452

1 post

Wannabe Geek


  Reply # 797807 11-Apr-2013 14:58 Send private message

All, as you know the SRX has been quite difficult in the past to get working here in New Zealand.

Juniper first amended code to allow the PPPoE authentication to be transmitted on VLAN 10 but then caused issues as LCP for PPPoE neg control packets were sent from the SRX marked as '6' (802.1p).

11.4R4.7 and 11.4R4.8 'resolved' the issue with outbound packets being sent as BE '0'. Later releases broke this again. A new command (as yet undocumented in the release notes) was added to 12.1R5.5 which allows you to set the 802.1p markings for RE generated traffic:
set class-of-service host-outbound-traffic ieee-802.1 default <802.1p setting> (either 'be' or '000' is valid)

Full VDSL working configuration is below (in copy & paste format):
set interfaces pt-1/0/0 vlan-tagging
set interfaces pt-1/0/0 vdsl-options vdsl-profile auto
set interfaces pt-1/0/0 unit 0 encapsulation ppp-over-ether
set interfaces pt-1/0/0 unit 0 vlan-id 10
set interfaces pp0 traceoptions flag all
set interfaces pp0 no-per-unit-scheduler
set interfaces pp0 unit 0 ppp-options pap local-name "[email protected]"
set interfaces pp0 unit 0 ppp-options pap local-password "REMOVED"
set interfaces pp0 unit 0 ppp-options pap passive
set interfaces pp0 unit 0 pppoe-options underlying-interface pt-1/0/0.0
set interfaces pp0 unit 0 pppoe-options auto-reconnect 10
set interfaces pp0 unit 0 pppoe-options client
set interfaces pp0 unit 0 family inet negotiate-address
set class-of-service host-outbound-traffic ieee-802.1 default 000

For completeness I've included ADSL and UFB below:
set interfaces at-1/0/0 mtu 1514
set interfaces at-1/0/0 encapsulation atm-pvc
set interfaces at-1/0/0 atm-options vpi 0
set interfaces at-1/0/0 dsl-options operating-mode auto
set interfaces at-1/0/0 unit 0 encapsulation atm-ppp-vc-mux
set interfaces at-1/0/0 unit 0 vci 100
set interfaces at-1/0/0 unit 0 ppp-options pap local-name "[email protected]"
set interfaces at-1/0/0 unit 0 ppp-options pap local-password "$9$d2saUk.PF69P5rvMLN-k.mfFntuOESrtu"
set interfaces at-1/0/0 unit 0 ppp-options pap passive
set interfaces at-1/0/0 unit 0 family inet mtu 1500
set interfaces at-1/0/0 unit 0 family inet primary
set interfaces at-1/0/0 unit 0 family inet negotiate-address
set interfaces pp0 no-per-unit-scheduler
set interfaces pp0 unit 0 ppp-options pap local-name "[email protected]"
set interfaces pp0 unit 0 ppp-options pap local-password "REMOVED"
set interfaces pp0 unit 0 ppp-options pap passive
set interfaces pp0 unit 0 pppoe-options underlying-interface at-1/0/0.0
set interfaces pp0 unit 0 pppoe-options auto-reconnect 10
set interfaces pp0 unit 0 pppoe-options client
set interfaces pp0 unit 0 family inet negotiate-address
set class-of-service host-outbound-traffic ieee-802.1 default 000

set interfaces fe-0/0/0 vlan-tagging
set interfaces fe-0/0/0 unit 0 encapsulation ppp-over-ether
set interfaces fe-0/0/0 unit 0 vlan-id 10
set interfaces pp0 no-per-unit-scheduler
set interfaces pp0 unit 0 ppp-options pap local-name "[email protected]"
set interfaces pp0 unit 0 ppp-options pap local-password "REMOVED"
set interfaces pp0 unit 0 ppp-options pap passive
set interfaces pp0 unit 0 pppoe-options underlying-interface fe-0/0/0.0
set interfaces pp0 unit 0 pppoe-options auto-reconnect 10
set interfaces pp0 unit 0 pppoe-options client
set interfaces pp0 unit 0 family inet negotiate-address
set class-of-service host-outbound-traffic ieee-802.1 default 000

--- JUNOS 12.1R5.5 built 2013-01-17 06:12:00 UTC
admin@*> show version
Hostname: *
Model: srx110h-va
JUNOS Software Release [12.1R5.5]

admin@*> show interfaces pp0 terse
Interface Admin Link Proto Local Remote
pp0 up up
pp0.0 up up inet 1.2.3.5 --> 1.2.3.4

Cheers,
Graham

1 | 2 
View this topic in a long page with up to 500 replies per page Create new topic




Twitter »
Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





Trending now »

Hot discussions in our forums right now:

Post your Boat
Created by TimA, last reply by TLD on 30-Jan-2015 20:40 (31 replies)
Pages... 2 3


Am I going down? App for the fearful of flying.
Created by networkn, last reply by Sideface on 29-Jan-2015 23:07 (47 replies)
Pages... 2 3 4


Police Speed Campaign - Summer 2014/2015
Created by nzkiwiman, last reply by KiwiNZ on 30-Jan-2015 21:35 (166 replies)
Pages... 10 11 12


FCC defines US broadband: 25 Mbps minimum now
Created by freitasm, last reply by coffeebaron on 30-Jan-2015 22:53 (19 replies)
Pages... 2


Which canon flash?
Created by esawers, last reply by timmmay on 30-Jan-2015 16:15 (19 replies)
Pages... 2


Bad lower back.
Created by TimA, last reply by jimbob79 on 30-Jan-2015 16:01 (77 replies)
Pages... 4 5 6


New to VDSL and wondering if I can change where the modem connects in the house
Created by Valcor, last reply by quickymart on 29-Jan-2015 20:59 (17 replies)
Pages... 2


AdBlockers on Geekzone
Created by freitasm, last reply by wally22 on 29-Jan-2015 09:55 (69 replies)
Pages... 3 4 5



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.

Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.