· 5 years ago · Mar 27, 2020, 01:24 PM
1[lab@desktop ~]$ ssh lab@172.26.131.2
2Unauthorized access will be reported.
3Password:
4Last login: Fri Mar 27 07:24:52 2020
5--- JUNOS 15.1X49-D172.1 built 2019-05-31 10:05:16 UTC
6
7This system is private property.lab@4837280A43AE.spokenew.JU_115>
8
9lab@4837280A43AE.spokenew.JU_115>
10
11lab@4837280A43AE.spokenew.JU_115> show configuration class-of-service
12interfaces {
13 ge-0/0/0 {
14 unit 0 {
15 shaping-rate 2m;
16 }
17 }
18 ge-0/0/1 {
19 unit 0 {
20 shaping-rate 25m;
21 }
22 }
23}
24
25lab@4837280A43AE.spokenew.JU_115> show cong
26 ^
27syntax error, expecting <command>.
28lab@4837280A43AE.spokenew.JU_115> show configuration | display set
29set version 15.1X49-D172.1
30set groups stage1-security security policies
31set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-local test test-icmp-172.26.133.1 target address 172.31.31.10
32set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-local test test-icmp-172.26.133.1 probe-count 3
33set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-local test test-icmp-172.26.133.1 probe-interval 5
34set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-local test test-icmp-172.26.133.1 test-interval 5
35set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-local test test-icmp-172.26.133.1 routing-instance probe-VR
36set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-local test test-icmp-172.26.133.1 thresholds successive-loss 3
37set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-local test test-icmp-172.26.133.1 thresholds total-loss 3
38set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-gw test test-icmp-172.26.133.1 target address 172.26.133.1
39set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-gw test test-icmp-172.26.133.1 probe-count 3
40set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-gw test test-icmp-172.26.133.1 probe-interval 5
41set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-gw test test-icmp-172.26.133.1 test-interval 5
42set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-gw test test-icmp-172.26.133.1 thresholds successive-loss 3
43set groups srx-gwr-site-routing-config-100.124.2.100 services rpm probe lbo-probe-172.26.133.1-gw test test-icmp-172.26.133.1 thresholds total-loss 3
44set groups srx-gwr-site-routing-config-100.124.2.100 services ip-monitoring policy breakout-policy-172.26.133.1-local match rpm-probe lbo-probe-172.26.133.1-local
45set groups srx-gwr-site-routing-config-100.124.2.100 services ip-monitoring policy breakout-policy-172.26.133.1-local then preferred-route routing-instances default-local-breakout route 172.31.31.6/32 next-hop 172.26.133.1
46set groups srx-gwr-site-routing-config-100.124.2.100 services ip-monitoring policy breakout-policy-172.26.133.1-local-INTERNET match rpm-probe lbo-probe-172.26.133.1-local
47set groups srx-gwr-site-routing-config-100.124.2.100 services ip-monitoring policy breakout-policy-172.26.133.1-local-INTERNET then preferred-route routing-instances internet-local-breakout route 172.31.31.6/32 next-hop 172.26.133.1
48set groups srx-gwr-site-routing-config-100.124.2.100 services ip-monitoring policy breakout-policy-172.26.133.1-gateway match rpm-probe lbo-probe-172.26.133.1-gw
49set groups srx-gwr-site-routing-config-100.124.2.100 services ip-monitoring policy breakout-policy-172.26.133.1-gateway then preferred-route routing-instances probe-VR route 172.31.31.10/32 next-hop 172.31.31.15
50set groups srx-gwr-site-routing-config-100.124.2.100 security zones security-zone trust enable-reverse-reroute
51set groups srx-gwr-site-routing-config-100.124.2.100 interfaces lo0 unit 0 family inet address 100.124.2.100/32 primary
52set groups srx-gwr-site-routing-config-100.124.2.100 interfaces lo0 unit 0 family inet address 172.31.31.10/32
53set groups srx-gwr-site-routing-config-100.124.2.100 interfaces lo0 unit 300 family inet address 172.31.31.14/32
54set groups srx-gwr-site-routing-config-100.124.2.100 routing-options interface-routes rib-group inet local-breakout-rib
55set groups srx-gwr-site-routing-config-100.124.2.100 routing-options rib-groups transit-inet3-to-inet3 import-rib transit.inet.3
56set groups srx-gwr-site-routing-config-100.124.2.100 routing-options rib-groups transit-inet3-to-inet3 import-rib inet.3
57set groups srx-gwr-site-routing-config-100.124.2.100 routing-options rib-groups local-breakout-rib import-rib inet.0
58set groups srx-gwr-site-routing-config-100.124.2.100 routing-options rib-groups local-breakout-rib import-rib transit.inet.0
59set groups srx-gwr-site-routing-config-100.124.2.100 routing-options rib-groups local-breakout-rib import-rib default-local-breakout.inet.0
60set groups srx-gwr-site-routing-config-100.124.2.100 routing-options rib-groups local-breakout-rib import-rib mpls-local-breakout.inet.0
61set groups srx-gwr-site-routing-config-100.124.2.100 routing-options rib-groups local-breakout-rib import-rib internet-local-breakout.inet.0
62set groups srx-gwr-site-routing-config-100.124.2.100 routing-options rib-groups local-breakout-rib import-rib default-cloud-breakout.inet.0
63set groups srx-gwr-site-routing-config-100.124.2.100 routing-options rib-groups local-breakout-rib import-policy direct-routes
64set groups srx-gwr-site-routing-config-100.124.2.100 routing-options rib-groups probe-VR-to-inet0 import-rib probe-VR.inet.0
65set groups srx-gwr-site-routing-config-100.124.2.100 routing-options rib-groups probe-VR-to-inet0 import-rib inet.0
66set groups srx-gwr-site-routing-config-100.124.2.100 routing-options rib-groups probe-VR-to-inet0 import-policy direct-policy
67set groups srx-gwr-site-routing-config-100.124.2.100 routing-options router-id 100.124.2.100
68set groups srx-gwr-site-routing-config-100.124.2.100 routing-options autonomous-system 64512
69set groups srx-gwr-site-routing-config-100.124.2.100 routing-options forwarding-table export pplb
70set groups srx-gwr-site-routing-config-100.124.2.100 protocols bgp group ibgp type internal
71set groups srx-gwr-site-routing-config-100.124.2.100 protocols bgp group ibgp local-address 100.124.2.100
72set groups srx-gwr-site-routing-config-100.124.2.100 protocols bgp group ibgp hold-time 200
73set groups srx-gwr-site-routing-config-100.124.2.100 protocols bgp group ibgp family inet-vpn unicast graceful-restart long-lived restarter stale-time 16777215
74set groups srx-gwr-site-routing-config-100.124.2.100 protocols bgp group ibgp neighbor 172.31.17.4
75set groups srx-gwr-site-routing-config-100.124.2.100 protocols bgp group ibgp neighbor 172.31.17.5
76set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement pplb then load-balance per-packet
77set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement direct-routes term 1 from protocol direct
78set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement direct-routes term 1 then accept
79set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement direct-routes term 2 then reject
80set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement default-local-breakout-import term 1 from instance default-local-breakout
81set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement default-local-breakout-import term 1 from route-filter 0.0.0.0/0 exact
82set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement default-local-breakout-import term 1 then accept
83set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement default-local-breakout-import term 2 then reject
84set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement mpls-local-breakout-import term 1 from instance mpls-local-breakout
85set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement mpls-local-breakout-import term 1 from route-filter 0.0.0.0/0 exact
86set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement mpls-local-breakout-import term 1 then accept
87set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement mpls-local-breakout-import term 2 then reject
88set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement internet-local-breakout-import term 1 from instance internet-local-breakout
89set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement internet-local-breakout-import term 1 from route-filter 0.0.0.0/0 exact
90set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement internet-local-breakout-import term 1 then accept
91set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement internet-local-breakout-import term 2 then reject
92set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement default-cloud-breakout-import term 1 from instance default-cloud-breakout
93set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement default-cloud-breakout-import term 1 from route-filter 0.0.0.0/0 exact
94set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement default-cloud-breakout-import term 1 then accept
95set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement default-cloud-breakout-import term 2 then reject
96set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement direct-policy term 1 from route-filter 172.31.31.14/32 exact
97set groups srx-gwr-site-routing-config-100.124.2.100 policy-options policy-statement direct-policy term 1 then accept
98set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances transit instance-type vrf
99set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances transit route-distinguisher 100.124.2.100:64512
100set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances transit vrf-target target:100.124.2.100:64512
101set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances transit routing-options rib transit.inet.3 static rib-group transit-inet3-to-inet3
102set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances default-local-breakout instance-type forwarding
103set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances default-local-breakout routing-options static route 0.0.0.0/0 qualified-next-hop 172.31.31.6 preference 5
104set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances default-local-breakout routing-options static route 0.0.0.0/0 resolve
105set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances mpls-local-breakout instance-type forwarding
106set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances internet-local-breakout instance-type forwarding
107set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances internet-local-breakout routing-options static route 0.0.0.0/0 qualified-next-hop 172.31.31.6 preference 5
108set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances internet-local-breakout routing-options static route 0.0.0.0/0 resolve
109set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances default-cloud-breakout instance-type forwarding
110set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances probe-VR instance-type virtual-router
111set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances probe-VR interface lo0.300
112set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances probe-VR routing-options interface-routes rib-group inet probe-VR-to-inet0
113set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances probe-VR routing-options static route 172.31.31.10/32 reject
114set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances probe-VR routing-options static route 172.31.31.10/32 resolve
115set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances probe-VR routing-options static route 172.31.31.15/32 next-table inet.0
116set groups dept-configuration security zones security-zone Default host-inbound-traffic system-services all
117set groups dept-configuration security zones security-zone Default host-inbound-traffic protocols all
118set groups dept-configuration security zones security-zone Default interfaces ge-0/0/2.0
119set groups dept-configuration interfaces ge-0/0/2 unit 0 family inet filter group 1
120set groups dept-configuration interfaces ge-0/0/2 unit 0 family inet address 172.40.1.2/24
121set groups dept-configuration routing-instances LAN-JU_115_DefaultVPN interface ge-0/0/2.0
122set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike proposal aes-256-gcm-PSK authentication-method pre-shared-keys
123set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike proposal aes-256-gcm-PSK dh-group group14
124set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike proposal aes-256-gcm-PSK encryption-algorithm aes-256-gcm
125set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike proposal aes-256-cbc-PSK authentication-method pre-shared-keys
126set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike proposal aes-256-cbc-PSK dh-group group14
127set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike proposal aes-256-cbc-PSK authentication-algorithm sha-256
128set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike proposal aes-256-cbc-PSK encryption-algorithm aes-256-cbc
129set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike policy 875981a2f4b2cbe698221f9776c690a4 mode aggressive
130set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike policy 875981a2f4b2cbe698221f9776c690a4 proposals aes-256-gcm-PSK
131set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike policy 875981a2f4b2cbe698221f9776c690a4 proposals aes-256-cbc-PSK
132set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike policy 875981a2f4b2cbe698221f9776c690a4 pre-shared-key ascii-text "$9$9BJzp1hcyK7-whSvL7V4oDikPF/SrK7dwYgm5F/u0WLX"
133set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike gateway ee7fdc83049ac6612eb49a1fda1c8b0f ike-policy 875981a2f4b2cbe698221f9776c690a4
134set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike gateway ee7fdc83049ac6612eb49a1fda1c8b0f address 192.168.11.2
135set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike gateway ee7fdc83049ac6612eb49a1fda1c8b0f dead-peer-detection interval 10
136set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike gateway ee7fdc83049ac6612eb49a1fda1c8b0f dead-peer-detection threshold 3
137set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike gateway ee7fdc83049ac6612eb49a1fda1c8b0f local-identity hostname JU_115lab_WAN_0_spokenew_WAN_0_IPSEC_0
138set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike gateway ee7fdc83049ac6612eb49a1fda1c8b0f remote-identity user-at-hostname "JU_115.lab@juniper.net"
139set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike gateway ee7fdc83049ac6612eb49a1fda1c8b0f external-interface ge-0/0/0.0
140set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ike gateway ee7fdc83049ac6612eb49a1fda1c8b0f version v2-only
141set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec proposal af7f1a6fb83b8c5ac776200a9651392a protocol esp
142set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec proposal af7f1a6fb83b8c5ac776200a9651392a encryption-algorithm aes-256-gcm
143set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec proposal 7cdd65a8a7d3eb36209c8e693d626528 protocol esp
144set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec proposal 7cdd65a8a7d3eb36209c8e693d626528 authentication-algorithm hmac-sha-256-128
145set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec proposal 7cdd65a8a7d3eb36209c8e693d626528 encryption-algorithm aes-256-cbc
146set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec policy bff0a6746cf77e100a3cbb2b39520edd perfect-forward-secrecy keys group14
147set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec policy bff0a6746cf77e100a3cbb2b39520edd proposals af7f1a6fb83b8c5ac776200a9651392a
148set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec policy bff0a6746cf77e100a3cbb2b39520edd proposals 7cdd65a8a7d3eb36209c8e693d626528
149set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec vpn 0730398c159acb6a0f27860fae6623c4 bind-interface st0.4004
150set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec vpn 0730398c159acb6a0f27860fae6623c4 ike gateway ee7fdc83049ac6612eb49a1fda1c8b0f
151set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec vpn 0730398c159acb6a0f27860fae6623c4 ike proxy-identity local 10.240.0.57/31
152set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec vpn 0730398c159acb6a0f27860fae6623c4 ike proxy-identity remote 10.240.0.56/31
153set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec vpn 0730398c159acb6a0f27860fae6623c4 ike ipsec-policy bff0a6746cf77e100a3cbb2b39520edd
154set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security ipsec vpn 0730398c159acb6a0f27860fae6623c4 establish-tunnels immediately
155set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 security zones security-zone trust interfaces st0.4004
156set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 interfaces st0 unit 4004 family inet address 10.240.0.57/31
157set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 routing-options static route 192.168.11.2/32 next-hop 172.26.131.1
158set groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0 routing-instances transit interface st0.4004
159set groups ju_115_lab_WAN_0_spokenew_WAN_0_GRE_IPSEC_0 security zones security-zone trust interfaces gr-0/0/0.4001
160set groups ju_115_lab_WAN_0_spokenew_WAN_0_GRE_IPSEC_0 interfaces gr-0/0/0 unit 4001 tunnel source 10.240.0.57
161set groups ju_115_lab_WAN_0_spokenew_WAN_0_GRE_IPSEC_0 interfaces gr-0/0/0 unit 4001 tunnel destination 10.240.0.56
162set groups ju_115_lab_WAN_0_spokenew_WAN_0_GRE_IPSEC_0 interfaces gr-0/0/0 unit 4001 tunnel routing-instance destination transit
163set groups ju_115_lab_WAN_0_spokenew_WAN_0_GRE_IPSEC_0 interfaces gr-0/0/0 unit 4001 family inet address 10.0.224.0/31
164set groups ju_115_lab_WAN_0_spokenew_WAN_0_GRE_IPSEC_0 interfaces gr-0/0/0 unit 4001 family mpls
165set groups ju_115_lab_WAN_0_spokenew_WAN_0_GRE_IPSEC_0 interfaces gr-0/0/0 unit 4001 copy-tos-to-outer-ip-header
166set groups ju_115_lab_WAN_0_spokenew_WAN_0_GRE_IPSEC_0 protocols oam gre-tunnel interface gr-0/0/0.4001 keepalive-time 4
167set groups ju_115_lab_WAN_0_spokenew_WAN_0_GRE_IPSEC_0 protocols oam gre-tunnel interface gr-0/0/0.4001 hold-time 8
168set groups ju_115_lab_WAN_0_spokenew_WAN_0_GRE_IPSEC_0 routing-instances transit interface gr-0/0/0.4001
169set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike proposal aes-256-gcm-PSK authentication-method pre-shared-keys
170set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike proposal aes-256-gcm-PSK dh-group group14
171set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike proposal aes-256-gcm-PSK encryption-algorithm aes-256-gcm
172set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike proposal aes-256-cbc-PSK authentication-method pre-shared-keys
173set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike proposal aes-256-cbc-PSK dh-group group14
174set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike proposal aes-256-cbc-PSK authentication-algorithm sha-256
175set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike proposal aes-256-cbc-PSK encryption-algorithm aes-256-cbc
176set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike policy 8686f5961fbf310a13648adf9494d2c6 mode aggressive
177set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike policy 8686f5961fbf310a13648adf9494d2c6 proposals aes-256-gcm-PSK
178set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike policy 8686f5961fbf310a13648adf9494d2c6 proposals aes-256-cbc-PSK
179set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike policy 8686f5961fbf310a13648adf9494d2c6 pre-shared-key ascii-text "$9$Skbe87NdsZUH7-YoZjPf369pIc-VsZDHqmt0IcKv4aJ"
180set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike gateway 54774bbf4e72b3e54de40cbadf2584a1 ike-policy 8686f5961fbf310a13648adf9494d2c6
181set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike gateway 54774bbf4e72b3e54de40cbadf2584a1 address 192.168.12.2
182set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike gateway 54774bbf4e72b3e54de40cbadf2584a1 dead-peer-detection interval 10
183set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike gateway 54774bbf4e72b3e54de40cbadf2584a1 dead-peer-detection threshold 3
184set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike gateway 54774bbf4e72b3e54de40cbadf2584a1 local-identity hostname JU_115lab_WAN_1_spokenew_WAN_1_IPSEC_0
185set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike gateway 54774bbf4e72b3e54de40cbadf2584a1 remote-identity user-at-hostname "JU_115.lab@juniper.net"
186set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike gateway 54774bbf4e72b3e54de40cbadf2584a1 external-interface ge-0/0/1.0
187set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ike gateway 54774bbf4e72b3e54de40cbadf2584a1 version v2-only
188set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec proposal af7f1a6fb83b8c5ac776200a9651392a protocol esp
189set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec proposal af7f1a6fb83b8c5ac776200a9651392a encryption-algorithm aes-256-gcm
190set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec proposal 7cdd65a8a7d3eb36209c8e693d626528 protocol esp
191set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec proposal 7cdd65a8a7d3eb36209c8e693d626528 authentication-algorithm hmac-sha-256-128
192set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec proposal 7cdd65a8a7d3eb36209c8e693d626528 encryption-algorithm aes-256-cbc
193set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec policy fbc142d371121681434d6041ac53084a perfect-forward-secrecy keys group14
194set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec policy fbc142d371121681434d6041ac53084a proposals af7f1a6fb83b8c5ac776200a9651392a
195set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec policy fbc142d371121681434d6041ac53084a proposals 7cdd65a8a7d3eb36209c8e693d626528
196set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec vpn dcf0ec9b79af30209cc8d5bd439bf15f bind-interface st0.4005
197set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec vpn dcf0ec9b79af30209cc8d5bd439bf15f ike gateway 54774bbf4e72b3e54de40cbadf2584a1
198set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec vpn dcf0ec9b79af30209cc8d5bd439bf15f ike proxy-identity local 10.240.0.59/31
199set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec vpn dcf0ec9b79af30209cc8d5bd439bf15f ike proxy-identity remote 10.240.0.58/31
200set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec vpn dcf0ec9b79af30209cc8d5bd439bf15f ike ipsec-policy fbc142d371121681434d6041ac53084a
201set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security ipsec vpn dcf0ec9b79af30209cc8d5bd439bf15f establish-tunnels immediately
202set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 security zones security-zone trust interfaces st0.4005
203set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 interfaces st0 unit 4005 family inet address 10.240.0.59/31
204set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 routing-options static route 192.168.12.2/32 next-hop 172.26.133.1
205set groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0 routing-instances transit interface st0.4005
206set groups ju_115_lab_WAN_1_spokenew_WAN_1_GRE_IPSEC_0 security zones security-zone trust interfaces gr-0/0/0.4002
207set groups ju_115_lab_WAN_1_spokenew_WAN_1_GRE_IPSEC_0 interfaces gr-0/0/0 unit 4002 tunnel source 10.240.0.59
208set groups ju_115_lab_WAN_1_spokenew_WAN_1_GRE_IPSEC_0 interfaces gr-0/0/0 unit 4002 tunnel destination 10.240.0.58
209set groups ju_115_lab_WAN_1_spokenew_WAN_1_GRE_IPSEC_0 interfaces gr-0/0/0 unit 4002 tunnel routing-instance destination transit
210set groups ju_115_lab_WAN_1_spokenew_WAN_1_GRE_IPSEC_0 interfaces gr-0/0/0 unit 4002 family inet address 10.0.232.0/31
211set groups ju_115_lab_WAN_1_spokenew_WAN_1_GRE_IPSEC_0 interfaces gr-0/0/0 unit 4002 family mpls
212set groups ju_115_lab_WAN_1_spokenew_WAN_1_GRE_IPSEC_0 interfaces gr-0/0/0 unit 4002 copy-tos-to-outer-ip-header
213set groups ju_115_lab_WAN_1_spokenew_WAN_1_GRE_IPSEC_0 protocols oam gre-tunnel interface gr-0/0/0.4002 keepalive-time 4
214set groups ju_115_lab_WAN_1_spokenew_WAN_1_GRE_IPSEC_0 protocols oam gre-tunnel interface gr-0/0/0.4002 hold-time 8
215set groups ju_115_lab_WAN_1_spokenew_WAN_1_GRE_IPSEC_0 routing-instances transit interface gr-0/0/0.4002
216set groups dg-lab security advance-policy-based-routing overlay-path 0730398c159acb6a0f27860fae6623c4 tunnel-path local ip-address 10.0.224.0
217set groups dg-lab security advance-policy-based-routing overlay-path 0730398c159acb6a0f27860fae6623c4 tunnel-path remote ip-address 10.0.224.1
218set groups dg-lab security advance-policy-based-routing overlay-path 0730398c159acb6a0f27860fae6623c4 probe-path local ip-address 10.0.224.0
219set groups dg-lab security advance-policy-based-routing overlay-path 0730398c159acb6a0f27860fae6623c4 probe-path remote ip-address 10.0.224.1
220set groups dg-lab security advance-policy-based-routing overlay-path dcf0ec9b79af30209cc8d5bd439bf15f tunnel-path local ip-address 10.0.232.0
221set groups dg-lab security advance-policy-based-routing overlay-path dcf0ec9b79af30209cc8d5bd439bf15f tunnel-path remote ip-address 10.0.232.1
222set groups dg-lab security advance-policy-based-routing overlay-path dcf0ec9b79af30209cc8d5bd439bf15f probe-path local ip-address 10.0.232.0
223set groups dg-lab security advance-policy-based-routing overlay-path dcf0ec9b79af30209cc8d5bd439bf15f probe-path remote ip-address 10.0.232.1
224set groups dg-lab security advance-policy-based-routing destination-path-group lab probe-routing-instance transit
225set groups dg-lab security advance-policy-based-routing destination-path-group lab overlay-path 0730398c159acb6a0f27860fae6623c4
226set groups dg-lab security advance-policy-based-routing destination-path-group lab overlay-path dcf0ec9b79af30209cc8d5bd439bf15f
227set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-options rib-groups LAN-JU_115_DefaultVPN-to-breakout import-rib LAN-JU_115_DefaultVPN.inet.0
228set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-options rib-groups LAN-JU_115_DefaultVPN-to-breakout import-rib default-lbo-JU_115_DefaultVPN.inet.0
229set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-options rib-groups LAN-JU_115_DefaultVPN-to-breakout import-rib mpls-lbo-JU_115_DefaultVPN.inet.0
230set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-options rib-groups LAN-JU_115_DefaultVPN-to-breakout import-rib internet-lbo-JU_115_DefaultVPN.inet.0
231set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-options rib-groups LAN-JU_115_DefaultVPN-to-breakout import-rib default-cbo-JU_115_DefaultVPN.inet.0
232set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-options rib-groups LAN-JU_115_DefaultVPN-to-breakout import-policy direct-routes
233set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-options forwarding-table export LAN-JU_115_DefaultVPN
234set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-options forwarding-table export Default-JU_115_DefaultVPN-reverse
235set groups spoke-JU_115_DefaultVPN-vpn-routing-config protocols bgp group ibgp import next-hop-change
236set groups spoke-JU_115_DefaultVPN-vpn-routing-config protocols bgp group ibgp export static-export
237set groups spoke-JU_115_DefaultVPN-vpn-routing-config protocols bgp group ibgp vpn-apply-export
238set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement donotexport then reject
239set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement direct-routes term 1 from protocol direct
240set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement direct-routes term 1 then accept
241set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement direct-routes term 2 then reject
242set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-reverse term 1 from protocol bgp
243set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-reverse term 1 from rib transit.inet.0
244set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-reverse term 1 from community Spoke-Routes-LAN-JU_115_DefaultVPN
245set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-reverse term 1 then next-hop next-table Default-reverse-JU_115_DefaultVPN.inet.0
246set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement mpls-JU_115_DefaultVPN-import term 1-gw from community Gw-Primary-Routes-mpls-JU_115_DefaultVPN
247set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement mpls-JU_115_DefaultVPN-import term 1-gw then local-preference 300
248set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement mpls-JU_115_DefaultVPN-import term 1-gw then accept
249set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement mpls-JU_115_DefaultVPN-import term 1 from community Spoke-Routes-mpls-JU_115_DefaultVPN
250set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement mpls-JU_115_DefaultVPN-import term 1 then accept
251set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement internet-JU_115_DefaultVPN-import term 1-gw from community Gw-Primary-Routes-internet-JU_115_DefaultVPN
252set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement internet-JU_115_DefaultVPN-import term 1-gw then local-preference 300
253set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement internet-JU_115_DefaultVPN-import term 1-gw then accept
254set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement internet-JU_115_DefaultVPN-import term 1 from community Spoke-Routes-internet-JU_115_DefaultVPN
255set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement internet-JU_115_DefaultVPN-import term 1 then accept
256set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement mpls-JU_115_DefaultVPN-export term 1-direct from route-filter 172.40.1.0/24 exact
257set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement mpls-JU_115_DefaultVPN-export term 1-direct then community add Spoke-Routes-mpls-JU_115_DefaultVPN
258set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement mpls-JU_115_DefaultVPN-export term 1-direct then community add Gw-Primary-Select
259set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement mpls-JU_115_DefaultVPN-export term 1-direct then next-hop 10.194.84.197
260set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement mpls-JU_115_DefaultVPN-export term 1-direct then accept
261set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement internet-JU_115_DefaultVPN-export term 1-direct from route-filter 172.40.1.0/24 exact
262set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement internet-JU_115_DefaultVPN-export term 1-direct then community add Spoke-Routes-internet-JU_115_DefaultVPN
263set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement internet-JU_115_DefaultVPN-export term 1-direct then community add Gw-Primary-Select
264set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement internet-JU_115_DefaultVPN-export term 1-direct then next-hop 10.194.84.196
265set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement internet-JU_115_DefaultVPN-export term 1-direct then accept
266set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement static-export term JU_115_DefaultVPN-1 from community Spoke-Routes-mpls-JU_115_DefaultVPN
267set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement static-export term JU_115_DefaultVPN-1 then community add spoke-community
268set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement static-export term JU_115_DefaultVPN-1 then next-hop 10.194.84.197
269set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement static-export term JU_115_DefaultVPN-1 then accept
270set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement static-export term JU_115_DefaultVPN-2 from community Spoke-Routes-internet-JU_115_DefaultVPN
271set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement static-export term JU_115_DefaultVPN-2 then community add spoke-community
272set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement static-export term JU_115_DefaultVPN-2 then next-hop 10.194.84.196
273set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement static-export term JU_115_DefaultVPN-2 then accept
274set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN-import term 1-gw from community Gw-Primary-Routes-Default-JU_115_DefaultVPN
275set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN-import term 1-gw then local-preference 300
276set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN-import term 1-gw then accept
277set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN-import term 1 from community Spoke-Routes-LAN-JU_115_DefaultVPN
278set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN-import term 1 then accept
279set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN term 1 from protocol bgp
280set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN term 1 from rib LAN-JU_115_DefaultVPN.inet.0
281set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN term 1 from community spoke-community
282set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN term 1 then next-hop next-table Default-reverse-JU_115_DefaultVPN.inet.0
283set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN term 1 then accept
284set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN term 2 from protocol bgp
285set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN term 2 from rib LAN-JU_115_DefaultVPN.inet.0
286set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN term 2 then next-hop next-table Default-JU_115_DefaultVPN.inet.0
287set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN term 2 then accept
288set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement transit-import term datacenter from community datacenter
289set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement transit-import term datacenter then reject
290set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement transit-import term JU_115_DefaultVPN-default from route-filter 0.0.0.0/0 exact
291set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement transit-import term JU_115_DefaultVPN-default then reject
292set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement transit-import term JU_115_DefaultVPN-1 from community Spoke-Routes-LAN-JU_115_DefaultVPN
293set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement transit-import term JU_115_DefaultVPN-1 then accept
294set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-import term 1-gw from community Gw-Primary-Routes-Default-JU_115_DefaultVPN
295set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-import term 1-gw then local-preference 300
296set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-import term 1-gw then accept
297set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-import term 1 from community Spoke-Routes-Default-JU_115_DefaultVPN
298set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-import term 1 then accept
299set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-import term default then reject
300set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-reverse-JU_115_DefaultVPN-import term 1-gw from community Gw-Primary-Routes-Default-reverse-JU_115_DefaultVPN
301set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-reverse-JU_115_DefaultVPN-import term 1-gw then local-preference 300
302set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-reverse-JU_115_DefaultVPN-import term 1-gw then accept
303set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-reverse-JU_115_DefaultVPN-import term 1 from community Spoke-Routes-Default-reverse-JU_115_DefaultVPN
304set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-reverse-JU_115_DefaultVPN-import term 1 then accept
305set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-reverse-JU_115_DefaultVPN-import term default then reject
306set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct from route-filter 172.40.1.0/24 exact
307set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct then community add Spoke-Routes-Default-JU_115_DefaultVPN
308set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct then community add Gw-Primary-Select
309set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct then next-hop 100.124.2.100
310set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct then accept
311set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct from route-filter 172.40.1.0/24 exact
312set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct then community add Spoke-Routes-LAN-JU_115_DefaultVPN
313set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct then next-hop 100.124.2.100
314set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct then accept
315set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-reverse-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct from route-filter 172.40.1.0/24 exact
316set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-reverse-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct then community add Spoke-Routes-Default-reverse-JU_115_DefaultVPN
317set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-reverse-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct then community add Gw-Primary-Select
318set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-reverse-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct then next-hop 100.124.2.100
319set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-reverse-JU_115_DefaultVPN-export term JU_115_DefaultVPN-direct then accept
320set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement next-hop-change term spoke-import-JU_115_DefaultVPN from community Spoke-Routes-LAN-JU_115_DefaultVPN
321set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement next-hop-change term spoke-import-JU_115_DefaultVPN then next-hop 192.168.0.1
322set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement next-hop-change term spoke-import-JU_115_DefaultVPN then accept
323set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options community Spoke-Routes-mpls-JU_115_DefaultVPN members target:64512:17522
324set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options community Spoke-Routes-internet-JU_115_DefaultVPN members target:64512:17523
325set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options community Gw-Primary-Routes-mpls-JU_115_DefaultVPN members target:100.124.0.244:17522
326set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options community Gw-Primary-Routes-internet-JU_115_DefaultVPN members target:100.124.0.244:17523
327set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options community Gw-Primary-Select members target:100.124.0.244:1
328set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options community Gw-Primary-Routes-Default-JU_115_DefaultVPN members target:100.124.0.244:17510
329set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options community Gw-Primary-Routes-Default-reverse-JU_115_DefaultVPN members target:100.124.0.244:17511
330set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options community Spoke-Routes-Default-JU_115_DefaultVPN members target:64512:17510
331set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options community Spoke-Routes-Default-reverse-JU_115_DefaultVPN members target:64512:17511
332set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options community Spoke-Routes-LAN-JU_115_DefaultVPN members target:192.168.0.1:17511
333set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options community datacenter members target:192.168.0.1:63238
334set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit interface gr-0/0/0.4001
335set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit interface gr-0/0/0.4002
336set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit vrf-import transit-import
337set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 10.0.224.1/32 next-hop gr-0/0/0.4001
338set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 10.0.224.1/32 qualified-next-hop gr-0/0/0.4002 preference 8
339set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 10.194.81.245/32 next-hop gr-0/0/0.4001
340set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 10.194.81.245/32 qualified-next-hop gr-0/0/0.4002 preference 8
341set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 100.124.0.244/32 qualified-next-hop gr-0/0/0.4001 preference 12
342set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 100.124.0.244/32 qualified-next-hop gr-0/0/0.4002 preference 12
343set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 10.0.232.1/32 next-hop gr-0/0/0.4002
344set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 10.0.232.1/32 qualified-next-hop gr-0/0/0.4001 preference 8
345set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 10.194.81.244/32 next-hop gr-0/0/0.4002
346set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 10.194.81.244/32 qualified-next-hop gr-0/0/0.4001 preference 8
347set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 192.168.0.1/32 qualified-next-hop 100.124.0.244 preference 6
348set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 192.168.0.1/32 no-readvertise
349set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit routing-options rib transit.inet.3 static route 192.168.0.1/32 resolve
350set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit protocols mpls interface gr-0/0/0.4001
351set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances transit protocols mpls interface gr-0/0/0.4002
352set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-JU_115_DefaultVPN instance-type vrf
353set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-JU_115_DefaultVPN route-distinguisher 100.124.2.100:17522
354set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-JU_115_DefaultVPN vrf-import mpls-JU_115_DefaultVPN-import
355set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-JU_115_DefaultVPN vrf-export mpls-JU_115_DefaultVPN-export
356set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-JU_115_DefaultVPN vrf-table-label
357set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 next-table Default-JU_115_DefaultVPN.inet.0
358set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 preference 175
359set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-JU_115_DefaultVPN routing-options static route 172.40.1.0/24 next-table LAN-JU_115_DefaultVPN.inet.0
360set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-JU_115_DefaultVPN instance-type vrf
361set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-JU_115_DefaultVPN route-distinguisher 100.124.2.100:17523
362set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-JU_115_DefaultVPN vrf-import internet-JU_115_DefaultVPN-import
363set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-JU_115_DefaultVPN vrf-export internet-JU_115_DefaultVPN-export
364set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-JU_115_DefaultVPN vrf-table-label
365set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 next-table Default-JU_115_DefaultVPN.inet.0
366set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 preference 175
367set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-JU_115_DefaultVPN routing-options static route 172.40.1.0/24 next-table LAN-JU_115_DefaultVPN.inet.0
368set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances LAN-JU_115_DefaultVPN instance-type vrf
369set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances LAN-JU_115_DefaultVPN interface ge-0/0/2.0
370set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances LAN-JU_115_DefaultVPN route-distinguisher 100.124.2.100:17511
371set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances LAN-JU_115_DefaultVPN vrf-import LAN-JU_115_DefaultVPN-import
372set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances LAN-JU_115_DefaultVPN vrf-export LAN-JU_115_DefaultVPN-export
373set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances LAN-JU_115_DefaultVPN vrf-table-label
374set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances LAN-JU_115_DefaultVPN routing-options interface-routes rib-group inet LAN-JU_115_DefaultVPN-to-breakout
375set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances default-lbo-JU_115_DefaultVPN instance-type forwarding
376set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances default-lbo-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 next-table Default-JU_115_DefaultVPN.inet.0
377set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances default-lbo-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 preference 175
378set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances default-lbo-JU_115_DefaultVPN routing-options multipath
379set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances default-lbo-JU_115_DefaultVPN routing-options instance-import default-local-breakout-import
380set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-lbo-JU_115_DefaultVPN instance-type forwarding
381set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-lbo-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 next-table default-lbo-JU_115_DefaultVPN.inet.0
382set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-lbo-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 preference 175
383set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-lbo-JU_115_DefaultVPN routing-options multipath
384set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-lbo-JU_115_DefaultVPN routing-options instance-import mpls-local-breakout-import
385set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-lbo-JU_115_DefaultVPN instance-type forwarding
386set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-lbo-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 next-table default-lbo-JU_115_DefaultVPN.inet.0
387set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-lbo-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 preference 175
388set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-lbo-JU_115_DefaultVPN routing-options multipath
389set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-lbo-JU_115_DefaultVPN routing-options instance-import internet-local-breakout-import
390set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances default-cbo-JU_115_DefaultVPN instance-type forwarding
391set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances default-cbo-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 next-table Default-JU_115_DefaultVPN.inet.0
392set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances default-cbo-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 preference 175
393set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances default-cbo-JU_115_DefaultVPN routing-options instance-import default-cloud-breakout-import
394set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances natVR-JU_115_DefaultVPN instance-type virtual-router
395set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances natVR-JU_115_DefaultVPN routing-options static route 0.0.0.0/0 next-table LAN-JU_115_DefaultVPN.inet.0
396set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-JU_115_DefaultVPN instance-type vrf
397set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-JU_115_DefaultVPN route-distinguisher 100.124.2.100:17510
398set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-JU_115_DefaultVPN vrf-import Default-JU_115_DefaultVPN-import
399set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-JU_115_DefaultVPN vrf-export Default-JU_115_DefaultVPN-export
400set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-JU_115_DefaultVPN vrf-table-label
401set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-JU_115_DefaultVPN routing-options static route 172.40.1.0/24 next-table LAN-JU_115_DefaultVPN.inet.0
402set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-reverse-JU_115_DefaultVPN instance-type vrf
403set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-reverse-JU_115_DefaultVPN route-distinguisher 239.1.149.49:17510
404set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-reverse-JU_115_DefaultVPN vrf-import Default-reverse-JU_115_DefaultVPN-import
405set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-reverse-JU_115_DefaultVPN vrf-export Default-reverse-JU_115_DefaultVPN-export
406set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-reverse-JU_115_DefaultVPN vrf-table-label
407set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-reverse-JU_115_DefaultVPN routing-options static route 172.40.1.0/24 next-table LAN-JU_115_DefaultVPN.inet.0
408set groups spoke-policy-default policy-options policy-statement next-hop-change term default then accept
409set groups spoke-policy-default policy-options policy-statement transit-import term default then reject
410set groups spoke-policy-default policy-options policy-statement static-export term default then community add spoke-community
411set groups spoke-policy-default policy-options policy-statement static-export term default then accept
412set groups spoke-policy-default policy-options community spoke-community members 64512:64512
413set groups DEFAULT_CSO_REVOCATION_CONFIG security pki ca-profile <DEFAULT_CSO_*> revocation-check disable
414set apply-groups srx-gwr-site-routing-config-100.124.2.100
415set apply-groups dept-configuration
416set apply-groups ju_115_lab_WAN_0_spokenew_WAN_0_IPSEC_0
417set apply-groups ju_115_lab_WAN_0_spokenew_WAN_0_GRE_IPSEC_0
418set apply-groups ju_115_lab_WAN_1_spokenew_WAN_1_IPSEC_0
419set apply-groups ju_115_lab_WAN_1_spokenew_WAN_1_GRE_IPSEC_0
420set apply-groups dg-lab
421set apply-groups spoke-JU_115_DefaultVPN-vpn-routing-config
422set apply-groups spoke-policy-default
423set system host-name 4837280A43AE.spokenew.JU_115
424set system time-zone America/Chicago
425set system default-address-selection
426set system no-redirects
427set system authentication-order password
428set system root-authentication encrypted-password "$1$X.14$rVNlQMlpwiBl8UvyyX4RW1"
429set system name-server 8.8.8.8
430set system name-server 8.8.4.4
431set system login announcement "This system is private property."
432set system login message "Unauthorized access will be reported."
433set system login retry-options tries-before-disconnect 3
434set system login retry-options backoff-threshold 2
435set system login retry-options backoff-factor 5
436set system login retry-options maximum-time 20
437set system login retry-options lockout-period 5
438set system login class admin idle-timeout 10
439set system login class admin permissions all
440set system login user cspuser uid 2700
441set system login user cspuser class admin
442set system login user cspuser authentication ssh-rsa "ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAABAQC11k5wTTsHNSuotZqs4u5N6H5l9ByHoFUSxksTQm0qRWl90EhIhcqqt6W22nsov+zyAZopRZDCUxyQgbcQyt7cJidNVGIeghN5GwDbWdQZ+AQO0j0w6nKQbuNobT7t17bp5W1ich2zNZaO0TfCaw5sB+oaLj6S/gHJlUCv9XKpNr/Hfvz4DgtC+i0KkVmLLWm0FUMHChIjtLsEdSGN7nSiCBbbuXvSGGBw88zHRKFt42l1LhRRaYTqTbzBINiZL6RFfvNeTlOUKOO3BdT3c3vVEu9o5V1Sx1yoajouvWd27IiP3lLcT8ySqsmVxB7aQiolIMtw8ZGseAFjo+C8N44J"
443set system login user juniper uid 2002
444set system login user juniper class admin
445set system login user juniper authentication encrypted-password "$1$X.14$rVNlQMlpwiBl8UvyyX4RW1"
446set system login user lab uid 2000
447set system login user lab class super-user
448set system login user lab authentication encrypted-password "$5$.3msFlD8$/lnnvFR4gSXg.Xgw9ipPZt9iv5w.FnPsirsRIfjFcBC"
449set system services ssh root-login allow
450set system services ssh no-tcp-forwarding
451set system services ssh protocol-version v2
452set system services ssh client-alive-count-max 5
453set system services ssh client-alive-interval 60
454set system services ssh connection-limit 50
455set system services ssh rate-limit 50
456set system services netconf ssh connection-limit 49
457set system services netconf ssh rate-limit 49
458set system services netconf rfc-compliant
459set system services outbound-ssh client CSO-dc9bd040-701f-11ea-9357-c233606018ce device-id 1549e6be-6e73-4347-95ec-27846be25c3a.JUNOS
460set system services outbound-ssh client CSO-dc9bd040-701f-11ea-9357-c233606018ce secret "$9$Dvimf369uBItpIcreW8xNdbs4mP56CtaZApB1hc7-dVgoGDim5QHk/Ct0IRbsYgoGiHmz36Hk1RESeKaZGjmfQz6pu1F3lK8LVbmf5Qz6"
461set system services outbound-ssh client CSO-dc9bd040-701f-11ea-9357-c233606018ce keep-alive
462set system services outbound-ssh client CSO-dc9bd040-701f-11ea-9357-c233606018ce services netconf
463set system services outbound-ssh client CSO-dc9bd040-701f-11ea-9357-c233606018ce 3.209.67.149 port 7804
464set system syslog user * any emergency
465set system syslog host 3.209.67.149 authorization any
466set system syslog host 3.209.67.149 daemon warning
467set system syslog host 3.209.67.149 port 514
468set system syslog host 3.209.67.149 structured-data
469set system syslog file messages any any
470set system syslog file messages authorization info
471set system syslog file messages archive size 10m
472set system syslog file messages archive files 10
473set system syslog file interactive-commands interactive-commands any
474set system syslog file interactive-commands archive size 10m
475set system syslog file interactive-commands archive files 10
476set system license autoupdate url https://ae1.juniper.net/junos/key_retrieval
477set system ntp boot-server 216.239.35.4
478set system ntp server 216.239.35.4
479set system phone-home traceoptions file phc.log
480set system phone-home traceoptions file size 1m
481set system phone-home traceoptions flag all
482set system phone-home server https://redirect.juniper.net
483set system phone-home rfc-complaint
484set services application-identification
485set security apply-groups stage1-security
486set security log utc-timestamp
487set security log mode stream
488set security log format sd-syslog
489set security log source-address 100.124.2.100
490set security log transport protocol tcp
491set security log stream app-track-logs format sd-syslog
492set security log stream app-track-logs category all
493set security log stream app-track-logs host 3.209.67.149
494set security log stream app-track-logs host port 3514
495set security log stream all-logs format sd-syslog
496set security log stream all-logs category all
497set security log stream all-logs host 3.209.67.149
498set security log stream all-logs host port 514
499set security pki apply-groups DEFAULT_CSO_REVOCATION_CONFIG
500set security pki ca-profile DEFAULT_CSO_1 ca-identity DEFAULT_CSO_1
501set security pki ca-profile DEFAULT_CSO_2 ca-identity DEFAULT_CSO_2
502set security pki ca-profile DEFAULT_CSO_3 ca-identity DEFAULT_CSO_3
503set security pki ca-profile DEFAULT_CSO_4 ca-identity DEFAULT_CSO_4
504set security pki ca-profile DEFAULT_CSO_5 ca-identity DEFAULT_CSO_5
505set security pki ca-profile DEFAULT_CSO_6 ca-identity DEFAULT_CSO_6
506set security pki ca-profile DEFAULT_CSO_7 ca-identity DEFAULT_CSO_7
507set security pki ca-profile DEFAULT_CSO_8 ca-identity DEFAULT_CSO_8
508set security pki ca-profile DEFAULT_CSO_9 ca-identity DEFAULT_CSO_9
509set security pki ca-profile DEFAULT_CSO_10 ca-identity DEFAULT_CSO_10
510set security pki ca-profile DEFAULT_CSO_11 ca-identity DEFAULT_CSO_11
511set security pki ca-profile DEFAULT_CSO_12 ca-identity DEFAULT_CSO_12
512set security pki ca-profile DEFAULT_CSO_13 ca-identity DEFAULT_CSO_13
513set security pki ca-profile DEFAULT_CSO_14 ca-identity DEFAULT_CSO_14
514set security pki ca-profile DEFAULT_CSO_15 ca-identity DEFAULT_CSO_15
515set security pki ca-profile DEFAULT_CSO_16 ca-identity DEFAULT_CSO_16
516set security pki ca-profile DEFAULT_CSO_17 ca-identity DEFAULT_CSO_17
517set security pki ca-profile DEFAULT_CSO_18 ca-identity DEFAULT_CSO_18
518set security pki ca-profile DEFAULT_CSO_19 ca-identity DEFAULT_CSO_19
519set security pki ca-profile DEFAULT_CSO_20 ca-identity DEFAULT_CSO_20
520set security pki ca-profile DEFAULT_CSO_21 ca-identity DEFAULT_CSO_21
521set security pki ca-profile DEFAULT_CSO_22 ca-identity DEFAULT_CSO_22
522set security pki ca-profile DEFAULT_CSO_23 ca-identity DEFAULT_CSO_23
523set security pki ca-profile DEFAULT_CSO_24 ca-identity DEFAULT_CSO_24
524set security pki ca-profile DEFAULT_CSO_25 ca-identity DEFAULT_CSO_25
525set security pki ca-profile DEFAULT_CSO_26 ca-identity DEFAULT_CSO_26
526set security pki ca-profile DEFAULT_CSO_27 ca-identity DEFAULT_CSO_27
527set security pki ca-profile DEFAULT_CSO_28 ca-identity DEFAULT_CSO_28
528set security pki ca-profile DEFAULT_CSO_29 ca-identity DEFAULT_CSO_29
529set security pki ca-profile DEFAULT_CSO_30 ca-identity DEFAULT_CSO_30
530set security pki ca-profile DEFAULT_CSO_31 ca-identity DEFAULT_CSO_31
531set security pki ca-profile DEFAULT_CSO_32 ca-identity DEFAULT_CSO_32
532set security pki ca-profile DEFAULT_CSO_33 ca-identity DEFAULT_CSO_33
533set security pki ca-profile DEFAULT_CSO_34 ca-identity DEFAULT_CSO_34
534set security pki ca-profile DEFAULT_CSO_35 ca-identity DEFAULT_CSO_35
535set security pki ca-profile DEFAULT_CSO_36 ca-identity DEFAULT_CSO_36
536set security pki ca-profile DEFAULT_CSO_37 ca-identity DEFAULT_CSO_37
537set security pki ca-profile DEFAULT_CSO_38 ca-identity DEFAULT_CSO_38
538set security pki ca-profile DEFAULT_CSO_39 ca-identity DEFAULT_CSO_39
539set security pki ca-profile DEFAULT_CSO_40 ca-identity DEFAULT_CSO_40
540set security pki ca-profile DEFAULT_CSO_41 ca-identity DEFAULT_CSO_41
541set security pki ca-profile DEFAULT_CSO_42 ca-identity DEFAULT_CSO_42
542set security pki ca-profile DEFAULT_CSO_43 ca-identity DEFAULT_CSO_43
543set security pki ca-profile DEFAULT_CSO_44 ca-identity DEFAULT_CSO_44
544set security pki ca-profile DEFAULT_CSO_45 ca-identity DEFAULT_CSO_45
545set security pki ca-profile DEFAULT_CSO_46 ca-identity DEFAULT_CSO_46
546set security pki ca-profile DEFAULT_CSO_47 ca-identity DEFAULT_CSO_47
547set security pki ca-profile DEFAULT_CSO_48 ca-identity DEFAULT_CSO_48
548set security pki ca-profile DEFAULT_CSO_49 ca-identity DEFAULT_CSO_49
549set security pki ca-profile DEFAULT_CSO_50 ca-identity DEFAULT_CSO_50
550set security pki ca-profile DEFAULT_CSO_51 ca-identity DEFAULT_CSO_51
551set security pki ca-profile DEFAULT_CSO_52 ca-identity DEFAULT_CSO_52
552set security pki ca-profile DEFAULT_CSO_53 ca-identity DEFAULT_CSO_53
553set security pki ca-profile DEFAULT_CSO_54 ca-identity DEFAULT_CSO_54
554set security pki ca-profile DEFAULT_CSO_55 ca-identity DEFAULT_CSO_55
555set security pki ca-profile DEFAULT_CSO_56 ca-identity DEFAULT_CSO_56
556set security pki ca-profile DEFAULT_CSO_57 ca-identity DEFAULT_CSO_57
557set security pki ca-profile DEFAULT_CSO_58 ca-identity DEFAULT_CSO_58
558set security pki ca-profile DEFAULT_CSO_59 ca-identity DEFAULT_CSO_59
559set security pki ca-profile DEFAULT_CSO_60 ca-identity DEFAULT_CSO_60
560set security pki ca-profile DEFAULT_CSO_61 ca-identity DEFAULT_CSO_61
561set security pki ca-profile DEFAULT_CSO_62 ca-identity DEFAULT_CSO_62
562set security pki ca-profile DEFAULT_CSO_63 ca-identity DEFAULT_CSO_63
563set security pki ca-profile DEFAULT_CSO_64 ca-identity DEFAULT_CSO_64
564set security pki ca-profile DEFAULT_CSO_65 ca-identity DEFAULT_CSO_65
565set security pki ca-profile DEFAULT_CSO_66 ca-identity DEFAULT_CSO_66
566set security pki ca-profile DEFAULT_CSO_67 ca-identity DEFAULT_CSO_67
567set security pki ca-profile DEFAULT_CSO_68 ca-identity DEFAULT_CSO_68
568set security pki ca-profile DEFAULT_CSO_69 ca-identity DEFAULT_CSO_69
569set security pki ca-profile DEFAULT_CSO_70 ca-identity DEFAULT_CSO_70
570set security pki ca-profile DEFAULT_CSO_71 ca-identity DEFAULT_CSO_71
571set security pki ca-profile DEFAULT_CSO_72 ca-identity DEFAULT_CSO_72
572set security pki ca-profile DEFAULT_CSO_73 ca-identity DEFAULT_CSO_73
573set security pki ca-profile DEFAULT_CSO_74 ca-identity DEFAULT_CSO_74
574set security pki ca-profile DEFAULT_CSO_75 ca-identity DEFAULT_CSO_75
575set security pki ca-profile DEFAULT_CSO_76 ca-identity DEFAULT_CSO_76
576set security pki ca-profile DEFAULT_CSO_77 ca-identity DEFAULT_CSO_77
577set security pki ca-profile DEFAULT_CSO_78 ca-identity DEFAULT_CSO_78
578set security pki ca-profile DEFAULT_CSO_79 ca-identity DEFAULT_CSO_79
579set security pki ca-profile DEFAULT_CSO_80 ca-identity DEFAULT_CSO_80
580set security pki ca-profile DEFAULT_CSO_81 ca-identity DEFAULT_CSO_81
581set security pki ca-profile DEFAULT_CSO_82 ca-identity DEFAULT_CSO_82
582set security pki ca-profile DEFAULT_CSO_83 ca-identity DEFAULT_CSO_83
583set security pki ca-profile DEFAULT_CSO_84 ca-identity DEFAULT_CSO_84
584set security pki ca-profile DEFAULT_CSO_85 ca-identity DEFAULT_CSO_85
585set security pki ca-profile DEFAULT_CSO_86 ca-identity DEFAULT_CSO_86
586set security pki ca-profile DEFAULT_CSO_87 ca-identity DEFAULT_CSO_87
587set security pki ca-profile DEFAULT_CSO_88 ca-identity DEFAULT_CSO_88
588set security pki ca-profile DEFAULT_CSO_89 ca-identity DEFAULT_CSO_89
589set security pki ca-profile DEFAULT_CSO_90 ca-identity DEFAULT_CSO_90
590set security pki ca-profile DEFAULT_CSO_91 ca-identity DEFAULT_CSO_91
591set security pki ca-profile DEFAULT_CSO_92 ca-identity DEFAULT_CSO_92
592set security pki ca-profile DEFAULT_CSO_93 ca-identity DEFAULT_CSO_93
593set security pki ca-profile DEFAULT_CSO_94 ca-identity DEFAULT_CSO_94
594set security pki ca-profile DEFAULT_CSO_95 ca-identity DEFAULT_CSO_95
595set security pki ca-profile DEFAULT_CSO_96 ca-identity DEFAULT_CSO_96
596set security pki ca-profile DEFAULT_CSO_97 ca-identity DEFAULT_CSO_97
597set security pki ca-profile DEFAULT_CSO_98 ca-identity DEFAULT_CSO_98
598set security pki ca-profile DEFAULT_CSO_99 ca-identity DEFAULT_CSO_99
599set security pki ca-profile DEFAULT_CSO_100 ca-identity DEFAULT_CSO_100
600set security pki ca-profile DEFAULT_CSO_101 ca-identity DEFAULT_CSO_101
601set security pki ca-profile DEFAULT_CSO_102 ca-identity DEFAULT_CSO_102
602set security pki ca-profile DEFAULT_CSO_103 ca-identity DEFAULT_CSO_103
603set security pki ca-profile DEFAULT_CSO_104 ca-identity DEFAULT_CSO_104
604set security pki ca-profile DEFAULT_CSO_105 ca-identity DEFAULT_CSO_105
605set security pki ca-profile DEFAULT_CSO_106 ca-identity DEFAULT_CSO_106
606set security pki ca-profile DEFAULT_CSO_107 ca-identity DEFAULT_CSO_107
607set security pki ca-profile DEFAULT_CSO_108 ca-identity DEFAULT_CSO_108
608set security pki ca-profile DEFAULT_CSO_109 ca-identity DEFAULT_CSO_109
609set security pki ca-profile DEFAULT_CSO_110 ca-identity DEFAULT_CSO_110
610set security pki ca-profile DEFAULT_CSO_111 ca-identity DEFAULT_CSO_111
611set security pki ca-profile DEFAULT_CSO_112 ca-identity DEFAULT_CSO_112
612set security pki ca-profile DEFAULT_CSO_113 ca-identity DEFAULT_CSO_113
613set security pki ca-profile DEFAULT_CSO_114 ca-identity DEFAULT_CSO_114
614set security pki ca-profile DEFAULT_CSO_115 ca-identity DEFAULT_CSO_115
615set security pki ca-profile DEFAULT_CSO_116 ca-identity DEFAULT_CSO_116
616set security pki ca-profile DEFAULT_CSO_117 ca-identity DEFAULT_CSO_117
617set security pki ca-profile DEFAULT_CSO_118 ca-identity DEFAULT_CSO_118
618set security pki ca-profile DEFAULT_CSO_119 ca-identity DEFAULT_CSO_119
619set security pki ca-profile DEFAULT_CSO_120 ca-identity DEFAULT_CSO_120
620set security pki ca-profile DEFAULT_CSO_121 ca-identity DEFAULT_CSO_121
621set security pki ca-profile DEFAULT_CSO_122 ca-identity DEFAULT_CSO_122
622set security pki ca-profile DEFAULT_CSO_123 ca-identity DEFAULT_CSO_123
623set security pki ca-profile DEFAULT_CSO_124 ca-identity DEFAULT_CSO_124
624set security pki ca-profile DEFAULT_CSO_125 ca-identity DEFAULT_CSO_125
625set security pki ca-profile DEFAULT_CSO_126 ca-identity DEFAULT_CSO_126
626set security pki ca-profile DEFAULT_CSO_127 ca-identity DEFAULT_CSO_127
627set security pki ca-profile DEFAULT_CSO_128 ca-identity DEFAULT_CSO_128
628set security pki ca-profile DEFAULT_CSO_129 ca-identity DEFAULT_CSO_129
629set security pki ca-profile DEFAULT_CSO_130 ca-identity DEFAULT_CSO_130
630set security pki ca-profile DEFAULT_CSO_131 ca-identity DEFAULT_CSO_131
631set security pki ca-profile DEFAULT_CSO_132 ca-identity DEFAULT_CSO_132
632set security pki ca-profile DEFAULT_CSO_133 ca-identity DEFAULT_CSO_133
633set security pki ca-profile DEFAULT_CSO_134 ca-identity DEFAULT_CSO_134
634set security pki ca-profile DEFAULT_CSO_135 ca-identity DEFAULT_CSO_135
635set security pki ca-profile-group DEFAULT_CSO cert-base-count 135
636set security ike proposal aes-256-gcm-PSK authentication-method pre-shared-keys
637set security ike proposal aes-256-gcm-PSK dh-group group14
638set security ike proposal aes-256-gcm-PSK encryption-algorithm aes-256-gcm
639set security ike proposal aes-256-cbc-PSK authentication-method pre-shared-keys
640set security ike proposal aes-256-cbc-PSK dh-group group14
641set security ike proposal aes-256-cbc-PSK authentication-algorithm sha-256
642set security ike proposal aes-256-cbc-PSK encryption-algorithm aes-256-cbc
643set security ike policy da9c3054f972a9bbbd151b4bb1ced682 mode aggressive
644set security ike policy da9c3054f972a9bbbd151b4bb1ced682 proposals aes-256-gcm-PSK
645set security ike policy da9c3054f972a9bbbd151b4bb1ced682 proposals aes-256-cbc-PSK
646set security ike policy da9c3054f972a9bbbd151b4bb1ced682 pre-shared-key ascii-text "$9$d9s4JGUiP5zX7iq.mzFREclv8-dwaZD.PhyK8-df5QF3/cSlX-bleqPQnAtu0BIcrbsg4aGCt01hrW8aZGimf0BReMLxNGjqf3nSrlM-bZGjiqP1RrK8L-d6/CAO1"
647set security ike policy 7e50b10b2d66980cfe9d577ac4cbf080 mode aggressive
648set security ike policy 7e50b10b2d66980cfe9d577ac4cbf080 proposals aes-256-gcm-PSK
649set security ike policy 7e50b10b2d66980cfe9d577ac4cbf080 proposals aes-256-cbc-PSK
650set security ike policy 7e50b10b2d66980cfe9d577ac4cbf080 pre-shared-key ascii-text "$9$tASCORcyrKX7d69KW8LdViHqfQ3At0hSl8XkmT3Atx7-VbYq.f6Auf5WX-w4oJZUjqPuOIRhygoZDkPF3hSyKX7GDHTF69ArK87wsmf5Ft0yrKv8xjHfQn6tpY24aDi"
651set security ike policy a321cc4345eb984be0822fa58a41370c mode aggressive
652set security ike policy a321cc4345eb984be0822fa58a41370c proposals aes-256-gcm-PSK
653set security ike policy a321cc4345eb984be0822fa58a41370c proposals aes-256-cbc-PSK
654set security ike policy a321cc4345eb984be0822fa58a41370c pre-shared-key ascii-text "$9$G8i.fTQ3ApO4a3/9COB8Lxdw2ZGjP5z9AXNb2ZGtp0B1Ex7d4ZD-d6Cu1cSrlKMXNUjkqm5hSlvLNsYmf5FCtev8VsgoJTF/t1IxN-wJUf5zF6CvWNVY2JZIRhSKM"
655set security ike policy 7317a4911c18dc4d0ee909fbba6cbc1d mode aggressive
656set security ike policy 7317a4911c18dc4d0ee909fbba6cbc1d proposals aes-256-gcm-PSK
657set security ike policy 7317a4911c18dc4d0ee909fbba6cbc1d proposals aes-256-cbc-PSK
658set security ike policy 7317a4911c18dc4d0ee909fbba6cbc1d pre-shared-key ascii-text "$9$3vHE9pO1Ihev85Qhyrl8LaJGiqPF3/0BRreZDkPF3KvWLXNGUi5F6jiSlMXdVws24ZDn/AtuB-VsgJD.muOBEres2oiqP5QBRSeLXZUDkQ30OIRcr24Ui.mQzXxN-s2"
659set security ike gateway 795d98747d5ec338b62d211bdfa3f0ef ike-policy da9c3054f972a9bbbd151b4bb1ced682
660set security ike gateway 795d98747d5ec338b62d211bdfa3f0ef address 172.31.31.82
661set security ike gateway 795d98747d5ec338b62d211bdfa3f0ef dead-peer-detection interval 10
662set security ike gateway 795d98747d5ec338b62d211bdfa3f0ef dead-peer-detection threshold 3
663set security ike gateway 795d98747d5ec338b62d211bdfa3f0ef local-identity hostname JU_115OAM-SPOKENEW_WAN_1_OAM-HUB-03_WAN_1_IPSEC_0
664set security ike gateway 795d98747d5ec338b62d211bdfa3f0ef remote-identity user-at-hostname "JU_115.OAM-HUB-03@juniper.net"
665set security ike gateway 795d98747d5ec338b62d211bdfa3f0ef external-interface lt-0/0/0.2
666set security ike gateway 795d98747d5ec338b62d211bdfa3f0ef version v2-only
667set security ike gateway 42827121791c30fa428fa8e4e2154986 ike-policy 7e50b10b2d66980cfe9d577ac4cbf080
668set security ike gateway 42827121791c30fa428fa8e4e2154986 address 172.31.31.83
669set security ike gateway 42827121791c30fa428fa8e4e2154986 dead-peer-detection interval 10
670set security ike gateway 42827121791c30fa428fa8e4e2154986 dead-peer-detection threshold 3
671set security ike gateway 42827121791c30fa428fa8e4e2154986 local-identity hostname JU_115OAM-SPOKENEW_WAN_1_OAM-HUB-07_WAN_1_IPSEC_1
672set security ike gateway 42827121791c30fa428fa8e4e2154986 remote-identity user-at-hostname "JU_115.OAM-HUB-07@juniper.net"
673set security ike gateway 42827121791c30fa428fa8e4e2154986 external-interface lt-0/0/0.2
674set security ike gateway 42827121791c30fa428fa8e4e2154986 version v2-only
675set security ike gateway c04779cbb63969e49c9ad12a3c0e7cfc ike-policy a321cc4345eb984be0822fa58a41370c
676set security ike gateway c04779cbb63969e49c9ad12a3c0e7cfc address 172.31.31.81
677set security ike gateway c04779cbb63969e49c9ad12a3c0e7cfc dead-peer-detection interval 10
678set security ike gateway c04779cbb63969e49c9ad12a3c0e7cfc dead-peer-detection threshold 3
679set security ike gateway c04779cbb63969e49c9ad12a3c0e7cfc local-identity hostname JU_115OAM-SPOKENEW_WAN_0_OAM-HUB-07_WAN_0_IPSEC_1
680set security ike gateway c04779cbb63969e49c9ad12a3c0e7cfc remote-identity user-at-hostname "JU_115.OAM-HUB-07@juniper.net"
681set security ike gateway c04779cbb63969e49c9ad12a3c0e7cfc external-interface lt-0/0/0.0
682set security ike gateway c04779cbb63969e49c9ad12a3c0e7cfc version v2-only
683set security ike gateway 9eee6683e53cd839ac640f6eddf55dca ike-policy 7317a4911c18dc4d0ee909fbba6cbc1d
684set security ike gateway 9eee6683e53cd839ac640f6eddf55dca address 172.31.31.80
685set security ike gateway 9eee6683e53cd839ac640f6eddf55dca dead-peer-detection interval 10
686set security ike gateway 9eee6683e53cd839ac640f6eddf55dca dead-peer-detection threshold 3
687set security ike gateway 9eee6683e53cd839ac640f6eddf55dca local-identity hostname JU_115OAM-SPOKENEW_WAN_0_OAM-HUB-03_WAN_0_IPSEC_0
688set security ike gateway 9eee6683e53cd839ac640f6eddf55dca remote-identity user-at-hostname "JU_115.OAM-HUB-03@juniper.net"
689set security ike gateway 9eee6683e53cd839ac640f6eddf55dca external-interface lt-0/0/0.0
690set security ike gateway 9eee6683e53cd839ac640f6eddf55dca version v2-only
691set security ike gateway 94d8a67c0e1c8445272afb57d0eeaccb ike-policy da9c3054f972a9bbbd151b4bb1ced682
692set security ike gateway 94d8a67c0e1c8445272afb57d0eeaccb address 172.31.31.74
693set security ike gateway 94d8a67c0e1c8445272afb57d0eeaccb dead-peer-detection interval 10
694set security ike gateway 94d8a67c0e1c8445272afb57d0eeaccb dead-peer-detection threshold 3
695set security ike gateway 94d8a67c0e1c8445272afb57d0eeaccb local-identity hostname JU_115OAM-SPOKENEW_WAN_1_OAM-HUB-03_WAN_1_IPSEC_0
696set security ike gateway 94d8a67c0e1c8445272afb57d0eeaccb remote-identity user-at-hostname "JU_115.OAM-HUB-03@juniper.net"
697set security ike gateway 94d8a67c0e1c8445272afb57d0eeaccb external-interface lt-0/0/0.2
698set security ike gateway 94d8a67c0e1c8445272afb57d0eeaccb version v2-only
699set security ike gateway a277250d0809c4aa8887a4e4a19ec8f0 ike-policy 7e50b10b2d66980cfe9d577ac4cbf080
700set security ike gateway a277250d0809c4aa8887a4e4a19ec8f0 address 172.31.31.75
701set security ike gateway a277250d0809c4aa8887a4e4a19ec8f0 dead-peer-detection interval 10
702set security ike gateway a277250d0809c4aa8887a4e4a19ec8f0 dead-peer-detection threshold 3
703set security ike gateway a277250d0809c4aa8887a4e4a19ec8f0 local-identity hostname JU_115OAM-SPOKENEW_WAN_1_OAM-HUB-07_WAN_1_IPSEC_1
704set security ike gateway a277250d0809c4aa8887a4e4a19ec8f0 remote-identity user-at-hostname "JU_115.OAM-HUB-07@juniper.net"
705set security ike gateway a277250d0809c4aa8887a4e4a19ec8f0 external-interface lt-0/0/0.2
706set security ike gateway a277250d0809c4aa8887a4e4a19ec8f0 version v2-only
707set security ipsec proposal af7f1a6fb83b8c5ac776200a9651392a protocol esp
708set security ipsec proposal af7f1a6fb83b8c5ac776200a9651392a encryption-algorithm aes-256-gcm
709set security ipsec proposal 7cdd65a8a7d3eb36209c8e693d626528 protocol esp
710set security ipsec proposal 7cdd65a8a7d3eb36209c8e693d626528 authentication-algorithm hmac-sha-256-128
711set security ipsec proposal 7cdd65a8a7d3eb36209c8e693d626528 encryption-algorithm aes-256-cbc
712set security ipsec policy 21016e4b120093630763ad63bd87e996 perfect-forward-secrecy keys group14
713set security ipsec policy 21016e4b120093630763ad63bd87e996 proposals af7f1a6fb83b8c5ac776200a9651392a
714set security ipsec policy 21016e4b120093630763ad63bd87e996 proposals 7cdd65a8a7d3eb36209c8e693d626528
715set security ipsec policy 4670f0f6c2f7c945f33f8bc9accfb393 perfect-forward-secrecy keys group14
716set security ipsec policy 4670f0f6c2f7c945f33f8bc9accfb393 proposals af7f1a6fb83b8c5ac776200a9651392a
717set security ipsec policy 4670f0f6c2f7c945f33f8bc9accfb393 proposals 7cdd65a8a7d3eb36209c8e693d626528
718set security ipsec policy d1e46f47d6e5120f760542389ca27477 perfect-forward-secrecy keys group14
719set security ipsec policy d1e46f47d6e5120f760542389ca27477 proposals af7f1a6fb83b8c5ac776200a9651392a
720set security ipsec policy d1e46f47d6e5120f760542389ca27477 proposals 7cdd65a8a7d3eb36209c8e693d626528
721set security ipsec policy 5045fdb7a76a45de316a6e3405fc4b2f perfect-forward-secrecy keys group14
722set security ipsec policy 5045fdb7a76a45de316a6e3405fc4b2f proposals af7f1a6fb83b8c5ac776200a9651392a
723set security ipsec policy 5045fdb7a76a45de316a6e3405fc4b2f proposals 7cdd65a8a7d3eb36209c8e693d626528
724set security ipsec vpn 37306e01fc4fc23b0b97a851f96c2089 bind-interface st0.4000
725set security ipsec vpn 37306e01fc4fc23b0b97a851f96c2089 ike gateway 795d98747d5ec338b62d211bdfa3f0ef
726set security ipsec vpn 37306e01fc4fc23b0b97a851f96c2089 ike proxy-identity local 10.180.169.139/31
727set security ipsec vpn 37306e01fc4fc23b0b97a851f96c2089 ike proxy-identity remote 10.180.169.138/31
728set security ipsec vpn 37306e01fc4fc23b0b97a851f96c2089 ike ipsec-policy 21016e4b120093630763ad63bd87e996
729set security ipsec vpn 37306e01fc4fc23b0b97a851f96c2089 establish-tunnels immediately
730set security ipsec vpn 441d2cf04bc4d468149f3536e9202e86 bind-interface st0.4001
731set security ipsec vpn 441d2cf04bc4d468149f3536e9202e86 ike gateway 42827121791c30fa428fa8e4e2154986
732set security ipsec vpn 441d2cf04bc4d468149f3536e9202e86 ike proxy-identity local 10.164.169.139/31
733set security ipsec vpn 441d2cf04bc4d468149f3536e9202e86 ike proxy-identity remote 10.164.169.138/31
734set security ipsec vpn 441d2cf04bc4d468149f3536e9202e86 ike ipsec-policy 4670f0f6c2f7c945f33f8bc9accfb393
735set security ipsec vpn 441d2cf04bc4d468149f3536e9202e86 establish-tunnels immediately
736set security ipsec vpn 3db2c688c5cc9d72f32fa57432ddf579 bind-interface st0.4002
737set security ipsec vpn 3db2c688c5cc9d72f32fa57432ddf579 ike gateway c04779cbb63969e49c9ad12a3c0e7cfc
738set security ipsec vpn 3db2c688c5cc9d72f32fa57432ddf579 ike proxy-identity local 10.164.169.137/31
739set security ipsec vpn 3db2c688c5cc9d72f32fa57432ddf579 ike proxy-identity remote 10.164.169.136/31
740set security ipsec vpn 3db2c688c5cc9d72f32fa57432ddf579 ike ipsec-policy d1e46f47d6e5120f760542389ca27477
741set security ipsec vpn 3db2c688c5cc9d72f32fa57432ddf579 establish-tunnels immediately
742set security ipsec vpn 0de3cbb560891201c9419b547c98600d bind-interface st0.4003
743set security ipsec vpn 0de3cbb560891201c9419b547c98600d ike gateway 9eee6683e53cd839ac640f6eddf55dca
744set security ipsec vpn 0de3cbb560891201c9419b547c98600d ike proxy-identity local 10.180.169.137/31
745set security ipsec vpn 0de3cbb560891201c9419b547c98600d ike proxy-identity remote 10.180.169.136/31
746set security ipsec vpn 0de3cbb560891201c9419b547c98600d ike ipsec-policy 5045fdb7a76a45de316a6e3405fc4b2f
747set security ipsec vpn 0de3cbb560891201c9419b547c98600d establish-tunnels immediately
748set security ipsec vpn 2630685234c46d502c79c6195f711af9 bind-interface st0.151
749set security ipsec vpn 2630685234c46d502c79c6195f711af9 ike gateway 94d8a67c0e1c8445272afb57d0eeaccb
750set security ipsec vpn 2630685234c46d502c79c6195f711af9 ike proxy-identity local 10.180.169.138/31
751set security ipsec vpn 2630685234c46d502c79c6195f711af9 ike proxy-identity remote 10.180.169.139/31
752set security ipsec vpn 2630685234c46d502c79c6195f711af9 ike ipsec-policy 21016e4b120093630763ad63bd87e996
753set security ipsec vpn 2630685234c46d502c79c6195f711af9 establish-tunnels immediately
754set security ipsec vpn f13d07fbd0f056ea93696953f0c949e2 bind-interface st0.151
755set security ipsec vpn f13d07fbd0f056ea93696953f0c949e2 ike gateway a277250d0809c4aa8887a4e4a19ec8f0
756set security ipsec vpn f13d07fbd0f056ea93696953f0c949e2 ike proxy-identity local 10.164.169.138/31
757set security ipsec vpn f13d07fbd0f056ea93696953f0c949e2 ike proxy-identity remote 10.164.169.139/31
758set security ipsec vpn f13d07fbd0f056ea93696953f0c949e2 ike ipsec-policy 4670f0f6c2f7c945f33f8bc9accfb393
759set security ipsec vpn f13d07fbd0f056ea93696953f0c949e2 establish-tunnels immediately
760set security address-book global address gw-18.235.48.224 18.235.48.224/32
761set security address-book global address gw-3.226.30.34 3.226.30.34/32
762set security address-book global address gw-3.224.125.24 3.224.125.24/32
763set security address-book global address gw-54.160.212.29 54.160.212.29/32
764set security advance-policy-based-routing tunables enable-logging
765set security application-tracking
766set security forwarding-options family mpls mode flow-based
767set security flow allow-dns-reply
768set security flow allow-embedded-icmp
769set security flow tcp-mss all-tcp mss 1350
770set security flow tcp-mss ipsec-vpn mss 1200
771set security flow tcp-session no-syn-check
772set security flow tcp-session no-syn-check-in-tunnel
773set security flow tcp-session no-sequence-check
774set security screen ids-option untrust-screen icmp ip-sweep
775set security screen ids-option untrust-screen icmp fragment
776set security screen ids-option untrust-screen icmp flood threshold 1000
777set security screen ids-option untrust-screen icmp ping-death
778set security screen ids-option untrust-screen ip bad-option
779set security screen ids-option untrust-screen ip source-route-option
780set security screen ids-option untrust-screen ip unknown-protocol
781set security screen ids-option untrust-screen ip tear-drop
782set security screen ids-option untrust-screen tcp syn-fin
783set security screen ids-option untrust-screen tcp fin-no-ack
784set security screen ids-option untrust-screen tcp tcp-no-flag
785set security screen ids-option untrust-screen tcp syn-frag
786set security screen ids-option untrust-screen tcp port-scan threshold 1000
787set security screen ids-option untrust-screen tcp syn-flood alarm-threshold 1024
788set security screen ids-option untrust-screen tcp syn-flood attack-threshold 200
789set security screen ids-option untrust-screen tcp syn-flood source-threshold 1024
790set security screen ids-option untrust-screen tcp syn-flood destination-threshold 2048
791set security screen ids-option untrust-screen tcp syn-flood queue-size 2000
792set security screen ids-option untrust-screen tcp syn-flood timeout 20
793set security screen ids-option untrust-screen tcp land
794set security screen ids-option untrust-screen tcp winnuke
795set security screen ids-option untrust-screen tcp tcp-sweep threshold 1000
796set security screen ids-option untrust-screen udp udp-sweep threshold 1000
797set security nat source port-randomization disable
798set security nat source interface port-overloading off
799set security nat source rule-set underlay-mgmt-traffic-nat from routing-instance default
800set security nat source rule-set underlay-mgmt-traffic-nat to zone untrust
801set security nat source rule-set underlay-mgmt-traffic-nat rule r1 match source-address 100.124.2.100/32
802set security nat source rule-set underlay-mgmt-traffic-nat rule r1 then source-nat interface
803set security nat source rule-set cpe-behind-nat-src from routing-instance nat-lt-WAN_0
804set security nat source rule-set cpe-behind-nat-src from routing-instance nat-lt-WAN_1
805set security nat source rule-set cpe-behind-nat-src to interface ge-0/0/0.0
806set security nat source rule-set cpe-behind-nat-src to interface ge-0/0/1.0
807set security nat source rule-set cpe-behind-nat-src rule cbn-rule1 match source-address 172.31.31.66/32
808set security nat source rule-set cpe-behind-nat-src rule cbn-rule1 then source-nat interface persistent-nat permit target-host-port
809set security nat source rule-set cpe-behind-nat-src rule cbn-rule0 match source-address 172.31.31.64/32
810set security nat source rule-set cpe-behind-nat-src rule cbn-rule0 then source-nat interface persistent-nat permit target-host-port
811set security nat source rule-set Zone_Default-IF_ge-0010 from zone Default
812set security nat source rule-set Zone_Default-IF_ge-0010 to interface ge-0/0/1.0
813set security nat source rule-set Zone_Default-IF_ge-0010 rule AutoNAT-Default-ge-0010 match destination-address 0.0.0.0/0
814set security nat source rule-set Zone_Default-IF_ge-0010 rule AutoNAT-Default-ge-0010 then source-nat interface
815set security nat destination pool bee64dcda90b64becffaf8e57159a23 address 18.235.48.224/32
816set security nat destination pool be89e1ee935c5595c85db40a70c4202 address 18.235.48.224/32
817set security nat destination pool be89e1ee935c5595c85db40a70c4202 address port 50818
818set security nat destination pool d2fcd49d82110475b15f399d5a0c0b5 address 3.226.30.34/32
819set security nat destination pool 148b68489e7a2f7ee01626beaf040d2 address 3.226.30.34/32
820set security nat destination pool 148b68489e7a2f7ee01626beaf040d2 address port 50990
821set security nat destination pool e0e2e2fd988933d7aa0af402d71ecb3 address 3.224.125.24/32
822set security nat destination pool 86639f06dd043ff4d65f6b7333f91b8 address 54.160.212.29/32
823set security nat destination rule-set cpe-behind-nat-dest from routing-instance nat-lt-WAN_0
824set security nat destination rule-set cpe-behind-nat-dest from routing-instance nat-lt-WAN_1
825set security nat destination rule-set cpe-behind-nat-dest rule bee64dcda90b64becffaf8e57159a23 match source-address 0.0.0.0/0
826set security nat destination rule-set cpe-behind-nat-dest rule bee64dcda90b64becffaf8e57159a23 match destination-address 172.31.31.82/32
827set security nat destination rule-set cpe-behind-nat-dest rule bee64dcda90b64becffaf8e57159a23 then destination-nat pool bee64dcda90b64becffaf8e57159a23
828set security nat destination rule-set cpe-behind-nat-dest rule be89e1ee935c5595c85db40a70c4202 match source-address 0.0.0.0/0
829set security nat destination rule-set cpe-behind-nat-dest rule be89e1ee935c5595c85db40a70c4202 match destination-address 172.31.31.74/32
830set security nat destination rule-set cpe-behind-nat-dest rule be89e1ee935c5595c85db40a70c4202 then destination-nat pool be89e1ee935c5595c85db40a70c4202
831set security nat destination rule-set cpe-behind-nat-dest rule d2fcd49d82110475b15f399d5a0c0b5 match source-address 0.0.0.0/0
832set security nat destination rule-set cpe-behind-nat-dest rule d2fcd49d82110475b15f399d5a0c0b5 match destination-address 172.31.31.83/32
833set security nat destination rule-set cpe-behind-nat-dest rule d2fcd49d82110475b15f399d5a0c0b5 then destination-nat pool d2fcd49d82110475b15f399d5a0c0b5
834set security nat destination rule-set cpe-behind-nat-dest rule 148b68489e7a2f7ee01626beaf040d2 match source-address 0.0.0.0/0
835set security nat destination rule-set cpe-behind-nat-dest rule 148b68489e7a2f7ee01626beaf040d2 match destination-address 172.31.31.75/32
836set security nat destination rule-set cpe-behind-nat-dest rule 148b68489e7a2f7ee01626beaf040d2 then destination-nat pool 148b68489e7a2f7ee01626beaf040d2
837set security nat destination rule-set cpe-behind-nat-dest rule e0e2e2fd988933d7aa0af402d71ecb3 match source-address 0.0.0.0/0
838set security nat destination rule-set cpe-behind-nat-dest rule e0e2e2fd988933d7aa0af402d71ecb3 match destination-address 172.31.31.81/32
839set security nat destination rule-set cpe-behind-nat-dest rule e0e2e2fd988933d7aa0af402d71ecb3 then destination-nat pool e0e2e2fd988933d7aa0af402d71ecb3
840set security nat destination rule-set cpe-behind-nat-dest rule 86639f06dd043ff4d65f6b7333f91b8 match source-address 0.0.0.0/0
841set security nat destination rule-set cpe-behind-nat-dest rule 86639f06dd043ff4d65f6b7333f91b8 match destination-address 172.31.31.80/32
842set security nat destination rule-set cpe-behind-nat-dest rule 86639f06dd043ff4d65f6b7333f91b8 then destination-nat pool 86639f06dd043ff4d65f6b7333f91b8
843set security policies from-zone oam to-zone untrust policy allow_all match source-address any
844set security policies from-zone oam to-zone untrust policy allow_all match destination-address any
845set security policies from-zone oam to-zone untrust policy allow_all match application any
846set security policies from-zone oam to-zone untrust policy allow_all then permit
847set security policies from-zone oam to-zone oam policy allow_all match source-address any
848set security policies from-zone oam to-zone oam policy allow_all match destination-address any
849set security policies from-zone oam to-zone oam policy allow_all match application any
850set security policies from-zone oam to-zone oam policy allow_all then permit
851set security policies from-zone nat-lt-WAN_1 to-zone untrust policy default-permit match source-address any
852set security policies from-zone nat-lt-WAN_1 to-zone untrust policy default-permit match destination-address gw-18.235.48.224
853set security policies from-zone nat-lt-WAN_1 to-zone untrust policy default-permit match destination-address gw-3.226.30.34
854set security policies from-zone nat-lt-WAN_1 to-zone untrust policy default-permit match application any
855set security policies from-zone nat-lt-WAN_1 to-zone untrust policy default-permit then permit
856set security policies from-zone nat-lt-inet0 to-zone untrust policy default-permit match source-address any
857set security policies from-zone nat-lt-inet0 to-zone untrust policy default-permit match destination-address any
858set security policies from-zone nat-lt-inet0 to-zone untrust policy default-permit match application any
859set security policies from-zone nat-lt-inet0 to-zone untrust policy default-permit then permit
860set security policies from-zone nat-lt-WAN_0 to-zone untrust policy default-permit match source-address any
861set security policies from-zone nat-lt-WAN_0 to-zone untrust policy default-permit match destination-address gw-3.224.125.24
862set security policies from-zone nat-lt-WAN_0 to-zone untrust policy default-permit match destination-address gw-54.160.212.29
863set security policies from-zone nat-lt-WAN_0 to-zone untrust policy default-permit match application any
864set security policies from-zone nat-lt-WAN_0 to-zone untrust policy default-permit then permit
865set security policies default-policy deny-all
866set security zones security-zone trust tcp-rst
867set security zones security-zone trust host-inbound-traffic system-services all
868set security zones security-zone trust host-inbound-traffic protocols all
869set security zones security-zone oam host-inbound-traffic system-services all
870set security zones security-zone oam host-inbound-traffic protocols all
871set security zones security-zone oam interfaces lo0.0
872set security zones security-zone oam interfaces st0.4000
873set security zones security-zone oam interfaces st0.4001
874set security zones security-zone oam interfaces st0.4002
875set security zones security-zone oam interfaces st0.4003
876set security zones security-zone oam interfaces st0.151
877set security zones security-zone untrust screen untrust-screen
878set security zones security-zone untrust host-inbound-traffic system-services dhcp
879set security zones security-zone untrust host-inbound-traffic system-services ike
880set security zones security-zone untrust host-inbound-traffic system-services ssh
881set security zones security-zone untrust host-inbound-traffic system-services ping
882set security zones security-zone untrust host-inbound-traffic protocols bgp
883set security zones security-zone untrust interfaces ge-0/0/1.0
884set security zones security-zone untrust interfaces ge-0/0/0.0
885set security zones security-zone nat-lt-inet0 host-inbound-traffic system-services all
886set security zones security-zone nat-lt-inet0 host-inbound-traffic protocols all
887set security zones security-zone nat-lt-inet0 interfaces lt-0/0/0.2
888set security zones security-zone nat-lt-inet0 interfaces lt-0/0/0.0
889set security zones security-zone nat-lt-WAN_1 host-inbound-traffic system-services all
890set security zones security-zone nat-lt-WAN_1 host-inbound-traffic protocols all
891set security zones security-zone nat-lt-WAN_1 interfaces lt-0/0/0.3
892set security zones security-zone nat-lt-WAN_0 host-inbound-traffic system-services all
893set security zones security-zone nat-lt-WAN_0 host-inbound-traffic protocols all
894set security zones security-zone nat-lt-WAN_0 interfaces lt-0/0/0.1
895set security zones security-zone Default application-tracking
896set interfaces ge-0/0/0 description WAN_0
897set interfaces ge-0/0/0 per-unit-scheduler
898set interfaces ge-0/0/0 unit 0 family inet filter output app_egress_filter
899set interfaces ge-0/0/0 unit 0 family inet filter group 2
900set interfaces ge-0/0/0 unit 0 family inet address 172.26.131.2/24
901set interfaces lt-0/0/0 unit 0 encapsulation ethernet
902set interfaces lt-0/0/0 unit 0 peer-unit 1
903set interfaces lt-0/0/0 unit 0 family inet filter group 2
904set interfaces lt-0/0/0 unit 0 family inet address 172.31.31.64/31
905set interfaces lt-0/0/0 unit 1 encapsulation ethernet
906set interfaces lt-0/0/0 unit 1 peer-unit 0
907set interfaces lt-0/0/0 unit 1 family inet filter group 2
908set interfaces lt-0/0/0 unit 1 family inet address 172.31.31.65/31
909set interfaces lt-0/0/0 unit 2 encapsulation ethernet
910set interfaces lt-0/0/0 unit 2 peer-unit 3
911set interfaces lt-0/0/0 unit 2 family inet filter group 2
912set interfaces lt-0/0/0 unit 2 family inet address 172.31.31.66/31
913set interfaces lt-0/0/0 unit 3 encapsulation ethernet
914set interfaces lt-0/0/0 unit 3 peer-unit 2
915set interfaces lt-0/0/0 unit 3 family inet filter group 2
916set interfaces lt-0/0/0 unit 3 family inet address 172.31.31.67/31
917set interfaces ge-0/0/1 description WAN_1
918set interfaces ge-0/0/1 per-unit-scheduler
919set interfaces ge-0/0/1 unit 0 family inet dhcp-client lease-time infinite
920set interfaces ge-0/0/1 unit 0 family inet filter output app_egress_filter
921set interfaces ge-0/0/1 unit 0 family inet filter group 3
922set interfaces fxp0 unit 0 family inet filter group 55
923set interfaces lo0 description "Loopback Interface"
924set interfaces lo0 unit 0 family inet filter input protect_re_ipv4
925set interfaces lo0 unit 0 family inet address 100.124.2.100/32 primary
926set interfaces st0 per-unit-scheduler
927set interfaces st0 unit 151 multipoint
928set interfaces st0 unit 151 family inet filter group 2
929set interfaces st0 unit 151 family inet address 172.31.31.90/31
930set interfaces st0 unit 4000 family inet filter group 2
931set interfaces st0 unit 4000 family inet address 10.180.169.139/31
932set interfaces st0 unit 4001 family inet filter group 2
933set interfaces st0 unit 4001 family inet address 10.164.169.139/31
934set interfaces st0 unit 4002 family inet filter group 2
935set interfaces st0 unit 4002 family inet address 10.164.169.137/31
936set interfaces st0 unit 4003 family inet filter group 2
937set interfaces st0 unit 4003 family inet address 10.180.169.137/31
938set event-options policy syslogLinkUp events snmp_trap_link_up
939set event-options policy syslogLinkUp then priority-override severity warning
940set event-options policy syslogLinkDown events snmp_trap_link_down
941set event-options policy syslogLinkDown then priority-override severity warning
942set routing-options static route 0.0.0.0/0 next-hop 172.26.131.1
943set routing-options static route 192.168.255.23/32 next-hop st0.4000
944set routing-options static route 192.168.255.23/32 next-hop st0.4003
945set routing-options static route 192.168.255.27/32 next-hop st0.4001
946set routing-options static route 192.168.255.27/32 next-hop st0.4002
947set routing-options static route 3.224.125.24/32 next-hop 172.26.131.1
948set routing-options static route 54.160.212.29/32 next-hop 172.26.131.1
949set routing-options static route 172.31.31.82/32 next-hop 172.31.31.67
950set routing-options static route 172.31.31.74/32 next-hop 172.31.31.67
951set routing-options static route 172.31.31.83/32 next-hop 172.31.31.67
952set routing-options static route 172.31.31.75/32 next-hop 172.31.31.67
953set routing-options static route 172.31.31.81/32 next-hop 172.31.31.65
954set routing-options static route 172.31.31.73/32 next-hop 172.31.31.65
955set routing-options static route 172.31.31.80/32 next-hop 172.31.31.65
956set routing-options static route 172.31.31.72/32 next-hop 172.31.31.65
957set routing-options static route 18.235.48.224/32 next-hop 172.26.133.1
958set routing-options static route 3.226.30.34/32 next-hop 172.26.133.1
959set routing-options autonomous-system 64512
960set protocols bgp group oam-bgp type internal
961set protocols bgp group oam-bgp local-address 100.124.2.100
962set protocols bgp group oam-bgp import prim-lp-import
963set protocols bgp group oam-bgp family inet unicast
964set protocols bgp group oam-bgp neighbor 192.168.255.23 export oam-route-export-prim
965set protocols bgp group oam-bgp neighbor 192.168.255.27 export oam-route-export
966set policy-options prefix-list re-ntp apply-path "system ntp server <*>"
967set policy-options prefix-list ntp-boot-server apply-path "system ntp boot-server <*>"
968set policy-options prefix-list ntp-servers_src apply-path "system ntp source-address <*>"
969set policy-options prefix-list tacacs-accounting apply-path "system accounting destination tacplus server <*>"
970set policy-options prefix-list re-ssh 3.209.67.149/32
971set policy-options prefix-list re-ssh 100.124.2.100/32
972set policy-options prefix-list bgp-neighbors apply-path "protocols bgp group <*> neighbor <*>"
973set policy-options prefix-list re-bgp-vrf apply-path "routing-instances <*> protocols bgp group <*> neighbor <*>"
974set policy-options prefix-list re-dns apply-path "system name-server <*>"
975set policy-options prefix-list loopback-ipv4 apply-path "interfaces lo0 unit 0 family inet address <*>"
976set policy-options prefix-list re-ospf apply-path "interfaces <*> unit <*> family inet address <*>"
977set policy-options prefix-list re-tacacs apply-path "system tacplus-server <*>"
978set policy-options prefix-list re-snmp 3.209.67.149/32
979set policy-options policy-statement inet0-to-nat-lt-WAN_0 term direct from instance master
980set policy-options policy-statement inet0-to-nat-lt-WAN_0 term direct from protocol direct
981set policy-options policy-statement inet0-to-nat-lt-WAN_0 term direct from interface ge-0/0/0.0
982set policy-options policy-statement inet0-to-nat-lt-WAN_0 term direct then accept
983set policy-options policy-statement inet0-to-nat-lt-WAN_0 then reject
984set policy-options policy-statement inet0-to-nat-lt-WAN_1 term direct from instance master
985set policy-options policy-statement inet0-to-nat-lt-WAN_1 term direct from protocol direct
986set policy-options policy-statement inet0-to-nat-lt-WAN_1 term direct from interface ge-0/0/1.0
987set policy-options policy-statement inet0-to-nat-lt-WAN_1 term direct then accept
988set policy-options policy-statement inet0-to-nat-lt-WAN_1 term default from instance master
989set policy-options policy-statement inet0-to-nat-lt-WAN_1 term default from protocol access-internal
990set policy-options policy-statement inet0-to-nat-lt-WAN_1 term default from interface ge-0/0/1.0
991set policy-options policy-statement inet0-to-nat-lt-WAN_1 term default from route-filter 0.0.0.0/0 exact
992set policy-options policy-statement inet0-to-nat-lt-WAN_1 term default then accept
993set policy-options policy-statement inet0-to-nat-lt-WAN_1 then reject
994set policy-options policy-statement oam-route-export term 1 from protocol direct
995set policy-options policy-statement oam-route-export term 1 from route-filter 100.124.2.100/32 exact
996set policy-options policy-statement oam-route-export term 1 then accept
997set policy-options policy-statement oam-route-export term default then reject
998set policy-options policy-statement oam-route-export-prim term 1 from protocol direct
999set policy-options policy-statement oam-route-export-prim term 1 from route-filter 100.124.2.100/32 exact
1000set policy-options policy-statement oam-route-export-prim term 1 then community add OAM-Hub-Primary-Select
1001set policy-options policy-statement oam-route-export-prim term 1 then accept
1002set policy-options policy-statement oam-route-export-prim term default then reject
1003set policy-options policy-statement prim-lp-import term 1 from next-hop 192.168.255.23
1004set policy-options policy-statement prim-lp-import term 1 then local-preference 200
1005set policy-options policy-statement prim-lp-import term 1 then accept
1006set policy-options community OAM-Hub-Primary-Select members target:192.168.255.23:1
1007set class-of-service interfaces ge-0/0/0 unit 0 shaping-rate 2m
1008set class-of-service interfaces ge-0/0/1 unit 0 shaping-rate 25m
1009set firewall family inet filter app_egress_filter interface-specific
1010set firewall family inet filter app_egress_filter term outbound-ssh from protocol tcp
1011set firewall family inet filter app_egress_filter term outbound-ssh from destination-port 7804
1012set firewall family inet filter app_egress_filter term outbound-ssh then reject
1013set firewall family inet filter app_egress_filter term syslog from protocol udp
1014set firewall family inet filter app_egress_filter term syslog from destination-port 514
1015set firewall family inet filter app_egress_filter term syslog then reject
1016set firewall family inet filter app_egress_filter term app-track-logs from protocol tcp
1017set firewall family inet filter app_egress_filter term app-track-logs from destination-port 3514
1018set firewall family inet filter app_egress_filter term app-track-logs then reject
1019set firewall family inet filter app_egress_filter term crl from protocol tcp
1020set firewall family inet filter app_egress_filter term crl from destination-port 8060
1021set firewall family inet filter app_egress_filter term crl then reject
1022set firewall family inet filter app_egress_filter term default then accept
1023set firewall family inet filter protect_re_ipv4 term bfd from source-prefix-list re-ospf
1024set firewall family inet filter protect_re_ipv4 term bfd from source-prefix-list re-bgp-vrf
1025set firewall family inet filter protect_re_ipv4 term bfd from protocol udp
1026set firewall family inet filter protect_re_ipv4 term bfd from source-port 49152-65535
1027set firewall family inet filter protect_re_ipv4 term bfd from destination-port 3784
1028set firewall family inet filter protect_re_ipv4 term bfd from destination-port 4784
1029set firewall family inet filter protect_re_ipv4 term bfd then count bfd
1030set firewall family inet filter protect_re_ipv4 term bfd then accept
1031set firewall family inet filter protect_re_ipv4 term ssh from interface-group 2
1032set firewall family inet filter protect_re_ipv4 term ssh from interface-group 55
1033set firewall family inet filter protect_re_ipv4 term ssh from protocol tcp
1034set firewall family inet filter protect_re_ipv4 term ssh from port ssh
1035set firewall family inet filter protect_re_ipv4 term ssh then count ssh
1036set firewall family inet filter protect_re_ipv4 term ssh then accept
1037set firewall family inet filter protect_re_ipv4 term outbound-ssh from interface-group 2
1038set firewall family inet filter protect_re_ipv4 term outbound-ssh from interface-group 55
1039set firewall family inet filter protect_re_ipv4 term outbound-ssh from source-prefix-list re-ssh
1040set firewall family inet filter protect_re_ipv4 term outbound-ssh from protocol tcp
1041set firewall family inet filter protect_re_ipv4 term outbound-ssh from port 7804
1042set firewall family inet filter protect_re_ipv4 term outbound-ssh then count outbound-ssh
1043set firewall family inet filter protect_re_ipv4 term outbound-ssh then accept
1044set firewall family inet filter protect_re_ipv4 term cso-port-444-permit from interface-group 2
1045set firewall family inet filter protect_re_ipv4 term cso-port-444-permit from interface-group 55
1046set firewall family inet filter protect_re_ipv4 term cso-port-444-permit from source-prefix-list re-ssh
1047set firewall family inet filter protect_re_ipv4 term cso-port-444-permit from protocol tcp
1048set firewall family inet filter protect_re_ipv4 term cso-port-444-permit from port 444
1049set firewall family inet filter protect_re_ipv4 term cso-port-444-permit then count cso-port-444
1050set firewall family inet filter protect_re_ipv4 term cso-port-444-permit then accept
1051set firewall family inet filter protect_re_ipv4 term icmp from protocol icmp
1052set firewall family inet filter protect_re_ipv4 term icmp from icmp-type echo-request
1053set firewall family inet filter protect_re_ipv4 term icmp from icmp-type echo-reply
1054set firewall family inet filter protect_re_ipv4 term icmp from icmp-type unreachable
1055set firewall family inet filter protect_re_ipv4 term icmp from icmp-type time-exceeded
1056set firewall family inet filter protect_re_ipv4 term icmp then policer icmp
1057set firewall family inet filter protect_re_ipv4 term icmp then count icmp
1058set firewall family inet filter protect_re_ipv4 term icmp then accept
1059set firewall family inet filter protect_re_ipv4 term trace-route from protocol udp
1060set firewall family inet filter protect_re_ipv4 term trace-route from destination-port 33434-33523
1061set firewall family inet filter protect_re_ipv4 term trace-route then policer tracert
1062set firewall family inet filter protect_re_ipv4 term trace-route then accept
1063set firewall family inet filter protect_re_ipv4 term dhcp from protocol udp
1064set firewall family inet filter protect_re_ipv4 term dhcp from port 67
1065set firewall family inet filter protect_re_ipv4 term dhcp from port 68
1066set firewall family inet filter protect_re_ipv4 term dhcp then policer dhcp
1067set firewall family inet filter protect_re_ipv4 term dhcp then count dhcp
1068set firewall family inet filter protect_re_ipv4 term dhcp then accept
1069set firewall family inet filter protect_re_ipv4 term bgp from source-prefix-list bgp-neighbors
1070set firewall family inet filter protect_re_ipv4 term bgp from source-prefix-list re-bgp-vrf
1071set firewall family inet filter protect_re_ipv4 term bgp from protocol tcp
1072set firewall family inet filter protect_re_ipv4 term bgp from port bgp
1073set firewall family inet filter protect_re_ipv4 term bgp then count bgp
1074set firewall family inet filter protect_re_ipv4 term bgp then accept
1075set firewall family inet filter protect_re_ipv4 term ntp-local from source-prefix-list re-ntp
1076set firewall family inet filter protect_re_ipv4 term ntp-local from source-prefix-list loopback-ipv4
1077set firewall family inet filter protect_re_ipv4 term ntp-local from protocol udp
1078set firewall family inet filter protect_re_ipv4 term ntp-local from port ntp
1079set firewall family inet filter protect_re_ipv4 term ntp-local then count ntp
1080set firewall family inet filter protect_re_ipv4 term ntp-local then accept
1081set firewall family inet filter protect_re_ipv4 term ike from interface-group 2
1082set firewall family inet filter protect_re_ipv4 term ike from interface-group 3
1083set firewall family inet filter protect_re_ipv4 term ike from protocol udp
1084set firewall family inet filter protect_re_ipv4 term ike from destination-port 500
1085set firewall family inet filter protect_re_ipv4 term ike from destination-port 4500
1086set firewall family inet filter protect_re_ipv4 term ike then count ike
1087set firewall family inet filter protect_re_ipv4 term ike then accept
1088set firewall family inet filter protect_re_ipv4 term gre-oam from protocol udp
1089set firewall family inet filter protect_re_ipv4 term gre-oam from source-port 49153
1090set firewall family inet filter protect_re_ipv4 term gre-oam from destination-port 49153
1091set firewall family inet filter protect_re_ipv4 term gre-oam then count gre-oam
1092set firewall family inet filter protect_re_ipv4 term gre-oam then accept
1093set firewall family inet filter protect_re_ipv4 term ospf from interface-group 1
1094set firewall family inet filter protect_re_ipv4 term ospf from source-prefix-list re-ospf
1095set firewall family inet filter protect_re_ipv4 term ospf from protocol ospf
1096set firewall family inet filter protect_re_ipv4 term ospf then count ospf
1097set firewall family inet filter protect_re_ipv4 term ospf then accept
1098set firewall family inet filter protect_re_ipv4 term dns from prefix-list re-dns
1099set firewall family inet filter protect_re_ipv4 term dns from protocol udp
1100set firewall family inet filter protect_re_ipv4 term dns from port domain
1101set firewall family inet filter protect_re_ipv4 term dns then policer dns-policer
1102set firewall family inet filter protect_re_ipv4 term dns then count dns
1103set firewall family inet filter protect_re_ipv4 term dns then accept
1104set firewall family inet filter protect_re_ipv4 term https-discard from interface-group 1
1105set firewall family inet filter protect_re_ipv4 term https-discard from protocol tcp
1106set firewall family inet filter protect_re_ipv4 term https-discard from source-port https
1107set firewall family inet filter protect_re_ipv4 term https-discard then count https-discard
1108set firewall family inet filter protect_re_ipv4 term https-discard then discard
1109set firewall family inet filter protect_re_ipv4 term https from protocol tcp
1110set firewall family inet filter protect_re_ipv4 term https from source-port https
1111set firewall family inet filter protect_re_ipv4 term https then count https
1112set firewall family inet filter protect_re_ipv4 term https then accept
1113set firewall family inet filter protect_re_ipv4 term http from interface-group 2
1114set firewall family inet filter protect_re_ipv4 term http from interface-group 3
1115set firewall family inet filter protect_re_ipv4 term http from protocol tcp
1116set firewall family inet filter protect_re_ipv4 term http from source-port 8060
1117set firewall family inet filter protect_re_ipv4 term http from source-port 80
1118set firewall family inet filter protect_re_ipv4 term http then count http
1119set firewall family inet filter protect_re_ipv4 term http then accept
1120set firewall family inet filter protect_re_ipv4 term external-syslog from source-prefix-list re-ssh
1121set firewall family inet filter protect_re_ipv4 term external-syslog from protocol tcp
1122set firewall family inet filter protect_re_ipv4 term external-syslog from protocol udp
1123set firewall family inet filter protect_re_ipv4 term external-syslog from port 514
1124set firewall family inet filter protect_re_ipv4 term external-syslog from port 3514
1125set firewall family inet filter protect_re_ipv4 term external-syslog then count external-syslog
1126set firewall family inet filter protect_re_ipv4 term external-syslog then accept
1127set firewall family inet filter protect_re_ipv4 term default then count discard-count
1128set firewall family inet filter protect_re_ipv4 term default then log
1129set firewall family inet filter protect_re_ipv4 term default then discard
1130set firewall policer icmp if-exceeding bandwidth-limit 1m
1131set firewall policer icmp if-exceeding burst-size-limit 2k
1132set firewall policer icmp then discard
1133set firewall policer tracert if-exceeding bandwidth-limit 1m
1134set firewall policer tracert if-exceeding burst-size-limit 15k
1135set firewall policer tracert then discard
1136set firewall policer dhcp if-exceeding bandwidth-limit 1m
1137set firewall policer dhcp if-exceeding burst-size-limit 15k
1138set firewall policer dhcp then discard
1139set firewall policer dns-policer if-exceeding bandwidth-limit 1m
1140set firewall policer dns-policer if-exceeding burst-size-limit 15k
1141set firewall policer dns-policer then discard
1142set routing-instances nat-lt-WAN_0 instance-type virtual-router
1143set routing-instances nat-lt-WAN_0 interface lt-0/0/0.1
1144set routing-instances nat-lt-WAN_0 routing-options static route 0.0.0.0/0 next-hop 172.26.131.1
1145set routing-instances nat-lt-WAN_0 routing-options instance-import inet0-to-nat-lt-WAN_0
1146set routing-instances nat-lt-WAN_1 instance-type virtual-router
1147set routing-instances nat-lt-WAN_1 interface lt-0/0/0.3
1148set routing-instances nat-lt-WAN_1 routing-options static route 0.0.0.0/0 next-hop 172.26.133.1
1149set routing-instances nat-lt-WAN_1 routing-options instance-import inet0-to-nat-lt-WAN_1
1150
1151lab@4837280A43AE.spokenew.JU_115> show interfaces terse
1152Interface Admin Link Proto Local Remote
1153ge-0/0/0 up up
1154ge-0/0/0.0 up up inet 172.26.131.2/24
1155gr-0/0/0 up up
1156gr-0/0/0.4001 up up inet 10.0.224.0/31
1157 mpls
1158gr-0/0/0.4002 up up inet 10.0.232.0/31
1159 mpls
1160ip-0/0/0 up up
1161lsq-0/0/0 up up
1162lt-0/0/0 up up
1163lt-0/0/0.0 up up inet 172.31.31.64/31
1164lt-0/0/0.1 up up inet 172.31.31.65/31
1165lt-0/0/0.2 up up inet 172.31.31.66/31
1166lt-0/0/0.3 up up inet 172.31.31.67/31
1167mt-0/0/0 up up
1168sp-0/0/0 up up
1169sp-0/0/0.0 up up inet
1170 inet6
1171sp-0/0/0.16383 up up inet
1172ge-0/0/1 up up
1173ge-0/0/1.0 up up inet 172.26.133.100/24
1174ge-0/0/2 up up
1175ge-0/0/2.0 up up inet 172.40.1.2/24
1176dsc up up
1177em0 up up
1178em0.0 up up inet 128.0.0.1/2
1179em1 up up
1180em1.32768 up up inet 192.168.1.2/24
1181em2 up up
1182fxp0 up up
1183fxp0.0 up up inet
1184gre up up
1185ipip up up
1186irb up up
1187lo0 up up
1188lo0.0 up up inet 100.124.2.100 --> 0/0
1189 172.31.31.10 --> 0/0
1190lo0.300 up up inet 172.31.31.14 --> 0/0
1191lo0.16384 up up inet 127.0.0.1 --> 0/0
1192lo0.16385 up up inet 10.0.0.1 --> 0/0
1193 10.0.0.16 --> 0/0
1194 128.0.0.1 --> 0/0
1195 128.0.0.4 --> 0/0
1196 128.0.1.16 --> 0/0
1197lo0.32768 up up
1198lsi up up
1199lsi.0 up up inet
1200 iso
1201 inet6
1202lsi.1 up up inet
1203 iso
1204 inet6
1205lsi.2 up up inet
1206 iso
1207 inet6
1208lsi.3 up up inet
1209 iso
1210 inet6
1211lsi.4 up up inet
1212 iso
1213 inet6
1214mtun up up
1215pimd up up
1216pime up up
1217pp0 up up
1218ppd0 up up
1219ppe0 up up
1220st0 up up
1221st0.151 up up inet 172.31.31.90/31
1222st0.4000 up up inet 10.180.169.139/31
1223st0.4001 up up inet 10.164.169.139/31
1224st0.4002 up up inet 10.164.169.137/31
1225st0.4003 up up inet 10.180.169.137/31
1226st0.4004 up up inet 10.240.0.57/31
1227st0.4005 up up inet 10.240.0.59/31
1228tap up up
1229vlan up down
1230vtep up up
1231
1232lab@4837280A43AE.spokenew.JU_115> show route 172.40.2.0
1233
1234inet.0: 44 destinations, 51 routes (44 active, 0 holddown, 0 hidden)
1235+ = Active Route, - = Last Active, * = Both
1236
12370.0.0.0/0 *[Static/5] 00:34:41
1238 > to 172.26.131.1 via ge-0/0/0.0
1239 [Access-internal/12] 00:34:33
1240 > to 172.26.133.1 via ge-0/0/1.0
1241
1242Default-JU_115_DefaultVPN.inet.0: 3 destinations, 5 routes (3 active, 0 holddown, 0 hidden)
1243+ = Active Route, - = Last Active, * = Both
1244
1245172.40.2.0/24 *[BGP/170] 00:32:33, localpref 100, from 172.31.17.5
1246 AS path: I, validation-state: unverified
1247 > via gr-0/0/0.4001, Push 17
1248 via gr-0/0/0.4002, Push 17
1249 [BGP/170] 00:33:56, localpref 100, from 172.31.17.4
1250 AS path: I, validation-state: unverified
1251 > via gr-0/0/0.4001, Push 17
1252 via gr-0/0/0.4002, Push 17
1253
1254Default-reverse-JU_115_DefaultVPN.inet.0: 3 destinations, 5 routes (3 active, 0 holddown, 0 hidden)
1255+ = Active Route, - = Last Active, * = Both
1256
1257172.40.2.0/24 *[BGP/170] 00:32:33, localpref 100, from 172.31.17.5
1258 AS path: I, validation-state: unverified
1259 > via gr-0/0/0.4001, Push 18
1260 via gr-0/0/0.4002, Push 18
1261 [BGP/170] 00:32:52, localpref 100, from 172.31.17.4
1262 AS path: I, validation-state: unverified
1263 > via gr-0/0/0.4001, Push 18
1264 via gr-0/0/0.4002, Push 18
1265
1266LAN-JU_115_DefaultVPN.inet.0: 4 destinations, 6 routes (4 active, 0 holddown, 0 hidden)
1267+ = Active Route, - = Last Active, * = Both
1268
1269172.40.2.0/24 *[BGP/170] 00:32:33, localpref 100, from 172.31.17.5
1270 AS path: I, validation-state: unverified
1271 > via gr-0/0/0.4001, Push 19
1272 via gr-0/0/0.4002, Push 19
1273 [BGP/170] 00:33:56, localpref 100, from 172.31.17.4
1274 AS path: I, validation-state: unverified
1275 > via gr-0/0/0.4001, Push 19
1276 via gr-0/0/0.4002, Push 19
1277
1278default-cbo-JU_115_DefaultVPN.inet.0: 2 destinations, 2 routes (2 active, 0 holddown, 0 hidden)
1279+ = Active Route, - = Last Active, * = Both
1280
12810.0.0.0/0 *[Static/175] 00:34:54
1282 to table Default-JU_115_DefaultVPN.inet.0
1283
1284default-lbo-JU_115_DefaultVPN.inet.0: 2 destinations, 3 routes (2 active, 0 holddown, 0 hidden)
1285@ = Routing Use Only, # = Forwarding Use Only
1286+ = Active Route, - = Last Active, * = Both
1287
12880.0.0.0/0 *[Static/5] 00:34:24, metric2 0
1289 > to 172.26.133.1 via ge-0/0/1.0
1290 [Static/175] 00:34:54
1291 to table Default-JU_115_DefaultVPN.inet.0
1292
1293default-local-breakout.inet.0: 13 destinations, 13 routes (13 active, 0 holddown, 0 hidden)
1294+ = Active Route, - = Last Active, * = Both
1295
12960.0.0.0/0 *[Static/5] 00:34:54, metric2 0
1297 > to 172.26.133.1 via ge-0/0/1.0
1298
1299internet-JU_115_DefaultVPN.inet.0: 3 destinations, 6 routes (3 active, 0 holddown, 0 hidden)
1300+ = Active Route, - = Last Active, * = Both
1301
1302172.40.2.0/24 *[BGP/170] 00:32:33, localpref 100, from 172.31.17.5
1303 AS path: I, validation-state: unverified
1304 > via gr-0/0/0.4002, Push 21
1305 [BGP/170] 00:33:55, localpref 100, from 172.31.17.4
1306 AS path: I, validation-state: unverified
1307 > via gr-0/0/0.4002, Push 21
1308
1309internet-lbo-JU_115_DefaultVPN.inet.0: 2 destinations, 3 routes (2 active, 0 holddown, 0 hidden)
1310@ = Routing Use Only, # = Forwarding Use Only
1311+ = Active Route, - = Last Active, * = Both
1312
13130.0.0.0/0 *[Static/5] 00:34:24, metric2 0
1314 > to 172.26.133.1 via ge-0/0/1.0
1315 [Static/175] 00:34:54
1316 to table default-lbo-JU_115_DefaultVPN.inet.0
1317
1318internet-local-breakout.inet.0: 13 destinations, 13 routes (13 active, 0 holddown, 0 hidden)
1319+ = Active Route, - = Last Active, * = Both
1320
13210.0.0.0/0 *[Static/5] 00:34:54, metric2 0
1322 > to 172.26.133.1 via ge-0/0/1.0
1323
1324mpls-JU_115_DefaultVPN.inet.0: 3 destinations, 6 routes (3 active, 0 holddown, 0 hidden)
1325+ = Active Route, - = Last Active, * = Both
1326
1327172.40.2.0/24 *[BGP/170] 00:32:33, localpref 100, from 172.31.17.5
1328 AS path: I, validation-state: unverified
1329 > via gr-0/0/0.4001, Push 22
1330 [BGP/170] 00:33:55, localpref 100, from 172.31.17.4
1331 AS path: I, validation-state: unverified
1332 > via gr-0/0/0.4001, Push 22
1333
1334mpls-lbo-JU_115_DefaultVPN.inet.0: 2 destinations, 2 routes (2 active, 0 holddown, 0 hidden)
1335@ = Routing Use Only, # = Forwarding Use Only
1336+ = Active Route, - = Last Active, * = Both
1337
13380.0.0.0/0 *[Static/175] 00:34:54
1339 to table default-lbo-JU_115_DefaultVPN.inet.0
1340
1341nat-lt-WAN_0.inet.0: 4 destinations, 4 routes (4 active, 0 holddown, 0 hidden)
1342+ = Active Route, - = Last Active, * = Both
1343
13440.0.0.0/0 *[Static/5] 00:34:41
1345 > to 172.26.131.1 via ge-0/0/0.0
1346
1347nat-lt-WAN_1.inet.0: 4 destinations, 4 routes (4 active, 0 holddown, 0 hidden)
1348+ = Active Route, - = Last Active, * = Both
1349
13500.0.0.0/0 *[Static/5] 00:34:34
1351 > to 172.26.133.1 via ge-0/0/1.0
1352
1353natVR-JU_115_DefaultVPN.inet.0: 1 destinations, 1 routes (1 active, 0 holddown, 0 hidden)
1354+ = Active Route, - = Last Active, * = Both
1355
13560.0.0.0/0 *[Static/5] 00:34:54
1357 to table LAN-JU_115_DefaultVPN.inet.0
1358
1359transit.inet.0: 20 destinations, 21 routes (20 active, 0 holddown, 0 hidden)
1360+ = Active Route, - = Last Active, * = Both
1361
1362172.40.2.0/24 *[BGP/170] 00:32:33, localpref 100, from 172.31.17.5
1363 AS path: I, validation-state: unverified
1364 > via gr-0/0/0.4001, Push 19
1365 via gr-0/0/0.4002, Push 19
1366 [BGP/170] 00:33:56, localpref 100, from 172.31.17.4
1367 AS path: I, validation-state: unverified
1368 > via gr-0/0/0.4001, Push 19
1369 via gr-0/0/0.4002, Push 19
1370
1371lab@4837280A43AE.spokenew.JU_115>
1372
1373lab@4837280A43AE.spokenew.JU_115>
1374
1375lab@4837280A43AE.spokenew.JU_115> show security zones ?
1376Possible completions:
1377 <[Enter]> Execute this command
1378 <name> Show information for a specified zone
1379 detail Display detailed output (default)
1380 terse Display terse output
1381 type Show information for zones of a specified type
1382 | Pipe through a command
1383lab@4837280A43AE.spokenew.JU_115> show security zones terse
1384Zone Type
1385Default Security
1386nat-lt-WAN_0 Security
1387nat-lt-WAN_1 Security
1388nat-lt-inet0 Security
1389oam Security
1390trust Security
1391untrust Security
1392junos-host Security
1393
1394lab@4837280A43AE.spokenew.JU_115> show security zones
1395
1396Security zone: Default
1397 Send reset for non-SYN session TCP packets: Off
1398 Policy configurable: Yes
1399 Interfaces bound: 1
1400 Interfaces:
1401 ge-0/0/2.0
1402
1403Security zone: nat-lt-WAN_0
1404 Send reset for non-SYN session TCP packets: Off
1405 Policy configurable: Yes
1406 Interfaces bound: 1
1407 Interfaces:
1408 lt-0/0/0.1
1409
1410Security zone: nat-lt-WAN_1
1411 Send reset for non-SYN session TCP packets: Off
1412 Policy configurable: Yes
1413 Interfaces bound: 1
1414 Interfaces:
1415 lt-0/0/0.3
1416
1417Security zone: nat-lt-inet0
1418 Send reset for non-SYN session TCP packets: Off
1419 Policy configurable: Yes
1420 Interfaces bound: 2
1421 Interfaces:
1422 lt-0/0/0.0
1423 lt-0/0/0.2
1424
1425Security zone: oam
1426 Send reset for non-SYN session TCP packets: Off
1427 Policy configurable: Yes
1428 Interfaces bound: 6
1429 Interfaces:
1430 lo0.0
1431 st0.151
1432 st0.4000
1433 st0.4001
1434 st0.4002
1435 st0.4003
1436
1437Security zone: trust
1438 Send reset for non-SYN session TCP packets: On
1439 Policy configurable: Yes
1440 Interfaces bound: 4
1441 Interfaces:
1442 gr-0/0/0.4001
1443 gr-0/0/0.4002
1444 st0.4004
1445 st0.4005
1446
1447Security zone: untrust
1448 Send reset for non-SYN session TCP packets: Off
1449 Policy configurable: Yes
1450 Screen: untrust-screen
1451 Interfaces bound: 2
1452 Interfaces:
1453 ge-0/0/0.0
1454 ge-0/0/1.0
1455
1456Security zone: junos-host
1457 Send reset for non-SYN session TCP packets: Off
1458 Policy configurable: Yes
1459 Interfaces bound: 0
1460 Interfaces:
1461
1462lab@4837280A43AE.spokenew.JU_115>
1463
1464lab@4837280A43AE.spokenew.JU_115>
1465
1466lab@4837280A43AE.spokenew.JU_115>
1467
1468lab@4837280A43AE.spokenew.JU_115>
1469
1470lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>
1471 ^
1472unknown command.
1473lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>show
1474 ^
1475unknown command.
1476lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showroute
1477 ^
1478unknown command.
1479lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1480 ^
1481unknown command.
1482lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance?
1483No valid completions
1484lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1485 ^
1486'' is ambiguous.
1487Possible completions:
1488 clear Clear information in the system
1489 configure Manipulate software configuration information
1490 file Perform file operations
1491 help Provide help information
1492 monitor Show real-time debugging information
1493 mtrace Trace multicast path from source to receiver
1494 op Invoke an operation script
1495 ping Ping remote target
1496 quit Exit the management session
1497 request Make system-level requests
1498 restart Restart software process
1499 set Set CLI properties, date/time, craft interface message
1500 show Show system information
1501 ssh Start secure shell on another host
1502 start Start shell
1503 telnet Telnet to another host
1504 test Perform diagnostic debugging
1505 traceroute Trace route to remote host
1506lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1507 ^
1508'' is ambiguous.
1509Possible completions:
1510 clear Clear information in the system
1511 configure Manipulate software configuration information
1512 file Perform file operations
1513 help Provide help information
1514 monitor Show real-time debugging information
1515 mtrace Trace multicast path from source to receiver
1516 op Invoke an operation script
1517 ping Ping remote target
1518 quit Exit the management session
1519 request Make system-level requests
1520 restart Restart software process
1521 set Set CLI properties, date/time, craft interface message
1522 show Show system information
1523 ssh Start secure shell on another host
1524 start Start shell
1525 telnet Telnet to another host
1526 test Perform diagnostic debugging
1527 traceroute Trace route to remote host
1528lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1529 ^
1530'' is ambiguous.
1531Possible completions:
1532 clear Clear information in the system
1533 configure Manipulate software configuration information
1534 file Perform file operations
1535 help Provide help information
1536 monitor Show real-time debugging information
1537 mtrace Trace multicast path from source to receiver
1538 op Invoke an operation script
1539 ping Ping remote target
1540 quit Exit the management session
1541 request Make system-level requests
1542 restart Restart software process
1543 set Set CLI properties, date/time, craft interface message
1544 show Show system information
1545 ssh Start secure shell on another host
1546 start Start shell
1547 telnet Telnet to another host
1548 test Perform diagnostic debugging
1549 traceroute Trace route to remote host
1550lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1551 ^
1552'' is ambiguous.
1553Possible completions:
1554 clear Clear information in the system
1555 configure Manipulate software configuration information
1556 file Perform file operations
1557 help Provide help information
1558 monitor Show real-time debugging information
1559 mtrace Trace multicast path from source to receiver
1560 op Invoke an operation script
1561 ping Ping remote target
1562 quit Exit the management session
1563 request Make system-level requests
1564 restart Restart software process
1565 set Set CLI properties, date/time, craft interface message
1566 show Show system information
1567 ssh Start secure shell on another host
1568 start Start shell
1569 telnet Telnet to another host
1570 test Perform diagnostic debugging
1571 traceroute Trace route to remote host
1572lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1573 ^
1574'' is ambiguous.
1575Possible completions:
1576 clear Clear information in the system
1577 configure Manipulate software configuration information
1578 file Perform file operations
1579 help Provide help information
1580 monitor Show real-time debugging information
1581 mtrace Trace multicast path from source to receiver
1582 op Invoke an operation script
1583 ping Ping remote target
1584 quit Exit the management session
1585 request Make system-level requests
1586 restart Restart software process
1587 set Set CLI properties, date/time, craft interface message
1588 show Show system information
1589 ssh Start secure shell on another host
1590 start Start shell
1591 telnet Telnet to another host
1592 test Perform diagnostic debugging
1593 traceroute Trace route to remote host
1594lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1595 ^
1596'' is ambiguous.
1597Possible completions:
1598 clear Clear information in the system
1599 configure Manipulate software configuration information
1600 file Perform file operations
1601 help Provide help information
1602 monitor Show real-time debugging information
1603 mtrace Trace multicast path from source to receiver
1604 op Invoke an operation script
1605 ping Ping remote target
1606 quit Exit the management session
1607 request Make system-level requests
1608 restart Restart software process
1609 set Set CLI properties, date/time, craft interface message
1610 show Show system information
1611 ssh Start secure shell on another host
1612 start Start shell
1613 telnet Telnet to another host
1614 test Perform diagnostic debugging
1615 traceroute Trace route to remote host
1616lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1617 ^
1618'' is ambiguous.
1619Possible completions:
1620 clear Clear information in the system
1621 configure Manipulate software configuration information
1622 file Perform file operations
1623 help Provide help information
1624 monitor Show real-time debugging information
1625 mtrace Trace multicast path from source to receiver
1626 op Invoke an operation script
1627 ping Ping remote target
1628 quit Exit the management session
1629 request Make system-level requests
1630 restart Restart software process
1631 set Set CLI properties, date/time, craft interface message
1632 show Show system information
1633 ssh Start secure shell on another host
1634 start Start shell
1635 telnet Telnet to another host
1636 test Perform diagnostic debugging
1637 traceroute Trace route to remote host
1638lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1639 ^
1640'' is ambiguous.
1641Possible completions:
1642 clear Clear information in the system
1643 configure Manipulate software configuration information
1644 file Perform file operations
1645 help Provide help information
1646 monitor Show real-time debugging information
1647 mtrace Trace multicast path from source to receiver
1648 op Invoke an operation script
1649 ping Ping remote target
1650 quit Exit the management session
1651 request Make system-level requests
1652 restart Restart software process
1653 set Set CLI properties, date/time, craft interface message
1654 show Show system information
1655 ssh Start secure shell on another host
1656 start Start shell
1657 telnet Telnet to another host
1658 test Perform diagnostic debugging
1659 traceroute Trace route to remote host
1660lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1661 ^
1662'' is ambiguous.
1663Possible completions:
1664 clear Clear information in the system
1665 configure Manipulate software configuration information
1666 file Perform file operations
1667 help Provide help information
1668 monitor Show real-time debugging information
1669 mtrace Trace multicast path from source to receiver
1670 op Invoke an operation script
1671 ping Ping remote target
1672 quit Exit the management session
1673 request Make system-level requests
1674 restart Restart software process
1675 set Set CLI properties, date/time, craft interface message
1676 show Show system information
1677 ssh Start secure shell on another host
1678 start Start shell
1679 telnet Telnet to another host
1680 test Perform diagnostic debugging
1681 traceroute Trace route to remote host
1682lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1683 ^
1684'' is ambiguous.
1685Possible completions:
1686 clear Clear information in the system
1687 configure Manipulate software configuration information
1688 file Perform file operations
1689 help Provide help information
1690 monitor Show real-time debugging information
1691 mtrace Trace multicast path from source to receiver
1692 op Invoke an operation script
1693 ping Ping remote target
1694 quit Exit the management session
1695 request Make system-level requests
1696 restart Restart software process
1697 set Set CLI properties, date/time, craft interface message
1698 show Show system information
1699 ssh Start secure shell on another host
1700 start Start shell
1701 telnet Telnet to another host
1702 test Perform diagnostic debugging
1703 traceroute Trace route to remote host
1704lab@4837280A43AE.spokenew.JU_115> lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1705error: unknown command: lab@48599E0AF9D5.lab.JU_115>showrouteinstance
1706
1707lab@4837280A43AE.spokenew.JU_115> Possible
1708 ^
1709unknown command.
1710lab@4837280A43AE.spokenew.JU_115> Possiblecompletions:
1711 ^
1712unknown command.
1713
1714lab@4837280A43AE.spokenew.JU_115> <[Enter]>
1715 ^
1716unknown command.
1717lab@4837280A43AE.spokenew.JU_115> <[Enter]>
1718 ^
1719unknown command.
1720lab@4837280A43AE.spokenew.JU_115> <[Enter]>
1721 ^
1722unknown command.
1723lab@4837280A43AE.spokenew.JU_115> <[Enter]>
1724 ^
1725unknown command.
1726lab@4837280A43AE.spokenew.JU_115> <[Enter]>
1727 ^
1728unknown command.
1729lab@4837280A43AE.spokenew.JU_115> <[Enter]>
1730 ^
1731unknown command.
1732lab@4837280A43AE.spokenew.JU_115> <[Enter]>
1733 ^
1734unknown command.
1735lab@4837280A43AE.spokenew.JU_115> <[Enter]>
1736 ^
1737unknown command.
1738lab@4837280A43AE.spokenew.JU_115> <[Enter]>
1739 ^
1740unknown command.
1741lab@4837280A43AE.spokenew.JU_115> <[Enter]>
1742 ^
1743unknown command.
1744lab@4837280A43AE.spokenew.JU_115> <[Enter]>
1745 ^
1746unknown command.
1747lab@4837280A43AE.spokenew.JU_115> <[Enter]>
1748 ^
1749unknown command.
1750lab@4837280A43AE.spokenew.JU_115> <[Enter]>Execute
1751 ^
1752unknown command.
1753lab@4837280A43AE.spokenew.JU_115> <[Enter]>Executethis
1754 ^
1755unknown command.
1756lab@4837280A43AE.spokenew.JU_115> <[Enter]>Executethiscommand
1757 ^
1758unknown command.
1759
1760lab@4837280A43AE.spokenew.JU_115> <name>
1761 ^
1762unknown command.
1763lab@4837280A43AE.spokenew.JU_115> <name>
1764 ^
1765unknown command.
1766lab@4837280A43AE.spokenew.JU_115> <name>
1767 ^
1768unknown command.
1769lab@4837280A43AE.spokenew.JU_115> <name>
1770 ^
1771unknown command.
1772lab@4837280A43AE.spokenew.JU_115> <name>
1773 ^
1774unknown command.
1775lab@4837280A43AE.spokenew.JU_115> <name>
1776 ^
1777unknown command.
1778lab@4837280A43AE.spokenew.JU_115> <name>
1779 ^
1780unknown command.
1781lab@4837280A43AE.spokenew.JU_115> <name>
1782 ^
1783unknown command.
1784lab@4837280A43AE.spokenew.JU_115> <name>
1785 ^
1786unknown command.
1787lab@4837280A43AE.spokenew.JU_115> <name>
1788 ^
1789unknown command.
1790lab@4837280A43AE.spokenew.JU_115> <name>
1791 ^
1792unknown command.
1793lab@4837280A43AE.spokenew.JU_115> <name>
1794 ^
1795unknown command.
1796lab@4837280A43AE.spokenew.JU_115> <name>
1797 ^
1798unknown command.
1799lab@4837280A43AE.spokenew.JU_115> <name>
1800 ^
1801unknown command.
1802lab@4837280A43AE.spokenew.JU_115> <name>
1803 ^
1804unknown command.
1805lab@4837280A43AE.spokenew.JU_115> <name>Particular
1806 ^
1807unknown command.
1808lab@4837280A43AE.spokenew.JU_115> <name>Particularinstance
1809 ^
1810unknown command.
1811lab@4837280A43AE.spokenew.JU_115> <name>Particularinstancename
1812 ^
1813unknown command.
1814
1815lab@4837280A43AE.spokenew.JU_115> DC-import
1816 ^
1817unknown command.
1818lab@4837280A43AE.spokenew.JU_115> DC-import
1819 ^
1820unknown command.
1821lab@4837280A43AE.spokenew.JU_115> DC-import
1822 ^
1823unknown command.
1824lab@4837280A43AE.spokenew.JU_115> DC-import
1825 ^
1826unknown command.
1827lab@4837280A43AE.spokenew.JU_115> DC-import
1828 ^
1829unknown command.
1830lab@4837280A43AE.spokenew.JU_115> DC-import
1831 ^
1832unknown command.
1833lab@4837280A43AE.spokenew.JU_115> DC-import
1834 ^
1835unknown command.
1836lab@4837280A43AE.spokenew.JU_115> DC-import
1837 ^
1838unknown command.
1839lab@4837280A43AE.spokenew.JU_115> DC-import
1840 ^
1841unknown command.
1842lab@4837280A43AE.spokenew.JU_115> DC-import
1843 ^
1844unknown command.
1845lab@4837280A43AE.spokenew.JU_115> DC-import
1846 ^
1847unknown command.
1848lab@4837280A43AE.spokenew.JU_115> DC-import
1849 ^
1850unknown command.
1851lab@4837280A43AE.spokenew.JU_115> DC-import
1852 ^
1853unknown command.
1854
1855lab@4837280A43AE.spokenew.JU_115> Default-JU_115_DefaultVPN
1856 ^
1857unknown command.
1858lab@4837280A43AE.spokenew.JU_115> Default-JU_115_DefaultVPN
1859 ^
1860unknown command.
1861lab@4837280A43AE.spokenew.JU_115> Default-JU_115_DefaultVPN
1862 ^
1863unknown command.
1864
1865lab@4837280A43AE.spokenew.JU_115> Default-reverse-JU_115_DefaultVPN
1866 ^
1867unknown command.
1868lab@4837280A43AE.spokenew.JU_115> Default-reverse-JU_115_DefaultVPN
1869 ^
1870unknown command.
1871lab@4837280A43AE.spokenew.JU_115> Default-reverse-JU_115_DefaultVPN
1872 ^
1873unknown command.
1874
1875lab@4837280A43AE.spokenew.JU_115> LAN-JU_115_DefaultVPN
1876 ^
1877unknown command.
1878lab@4837280A43AE.spokenew.JU_115> LAN-JU_115_DefaultVPN
1879 ^
1880unknown command.
1881lab@4837280A43AE.spokenew.JU_115> LAN-JU_115_DefaultVPN
1882 ^
1883unknown command.
1884
1885lab@4837280A43AE.spokenew.JU_115> LAN-import-JU_115_DefaultVPN
1886 ^
1887unknown command.
1888lab@4837280A43AE.spokenew.JU_115> LAN-import-JU_115_DefaultVPN
1889 ^
1890unknown command.
1891lab@4837280A43AE.spokenew.JU_115> LAN-import-JU_115_DefaultVPN
1892 ^
1893unknown command.
1894
1895lab@4837280A43AE.spokenew.JU_115> WAN_1
1896 ^
1897unknown command.
1898lab@4837280A43AE.spokenew.JU_115> WAN_1
1899 ^
1900unknown command.
1901lab@4837280A43AE.spokenew.JU_115> WAN_1
1902 ^
1903unknown command.
1904lab@4837280A43AE.spokenew.JU_115> WAN_1
1905 ^
1906unknown command.
1907lab@4837280A43AE.spokenew.JU_115> WAN_1
1908 ^
1909unknown command.
1910lab@4837280A43AE.spokenew.JU_115> WAN_1
1911 ^
1912unknown command.
1913lab@4837280A43AE.spokenew.JU_115> WAN_1
1914 ^
1915unknown command.
1916lab@4837280A43AE.spokenew.JU_115> WAN_1
1917 ^
1918unknown command.
1919lab@4837280A43AE.spokenew.JU_115> WAN_1
1920 ^
1921unknown command.
1922lab@4837280A43AE.spokenew.JU_115> WAN_1
1923 ^
1924unknown command.
1925lab@4837280A43AE.spokenew.JU_115> WAN_1
1926 ^
1927unknown command.
1928lab@4837280A43AE.spokenew.JU_115> WAN_1
1929 ^
1930unknown command.
1931lab@4837280A43AE.spokenew.JU_115> WAN_1
1932 ^
1933unknown command.
1934lab@4837280A43AE.spokenew.JU_115> WAN_1
1935 ^
1936unknown command.
1937lab@4837280A43AE.spokenew.JU_115> WAN_1
1938 ^
1939unknown command.
1940lab@4837280A43AE.spokenew.JU_115> WAN_1
1941 ^
1942unknown command.
1943lab@4837280A43AE.spokenew.JU_115> WAN_1
1944 ^
1945unknown command.
1946
1947lab@4837280A43AE.spokenew.JU_115> brief
1948 ^
1949unknown command.
1950lab@4837280A43AE.spokenew.JU_115> brief
1951 ^
1952unknown command.
1953lab@4837280A43AE.spokenew.JU_115> brief
1954 ^
1955unknown command.
1956lab@4837280A43AE.spokenew.JU_115> brief
1957 ^
1958unknown command.
1959lab@4837280A43AE.spokenew.JU_115> brief
1960 ^
1961unknown command.
1962lab@4837280A43AE.spokenew.JU_115> brief
1963 ^
1964unknown command.
1965lab@4837280A43AE.spokenew.JU_115> brief
1966 ^
1967unknown command.
1968lab@4837280A43AE.spokenew.JU_115> brief
1969 ^
1970unknown command.
1971lab@4837280A43AE.spokenew.JU_115> brief
1972 ^
1973unknown command.
1974lab@4837280A43AE.spokenew.JU_115> brief
1975 ^
1976unknown command.
1977lab@4837280A43AE.spokenew.JU_115> brief
1978 ^
1979unknown command.
1980lab@4837280A43AE.spokenew.JU_115> brief
1981 ^
1982unknown command.
1983lab@4837280A43AE.spokenew.JU_115> brief
1984 ^
1985unknown command.
1986lab@4837280A43AE.spokenew.JU_115> brief
1987 ^
1988unknown command.
1989lab@4837280A43AE.spokenew.JU_115> brief
1990 ^
1991unknown command.
1992lab@4837280A43AE.spokenew.JU_115> brief
1993 ^
1994unknown command.
1995lab@4837280A43AE.spokenew.JU_115> briefDisplay
1996 ^
1997unknown command.
1998lab@4837280A43AE.spokenew.JU_115> briefDisplaybrief
1999 ^
2000unknown command.
2001lab@4837280A43AE.spokenew.JU_115> briefDisplaybriefoutput
2002 ^
2003unknown command.
2004lab@4837280A43AE.spokenew.JU_115> briefDisplaybriefoutput(default)
2005 ^
2006unknown command.
2007
2008lab@4837280A43AE.spokenew.JU_115> default-cbo-JU_115_DefaultVPN
2009 ^
2010unknown command.
2011lab@4837280A43AE.spokenew.JU_115> default-cbo-JU_115_DefaultVPN
2012 ^
2013unknown command.
2014lab@4837280A43AE.spokenew.JU_115> default-cbo-JU_115_DefaultVPN
2015 ^
2016unknown command.
2017
2018lab@4837280A43AE.spokenew.JU_115> default-cloud-breakout
2019 ^
2020unknown command.
2021lab@4837280A43AE.spokenew.JU_115> default-cloud-breakout
2022 ^
2023unknown command.
2024lab@4837280A43AE.spokenew.JU_115> default-cloud-breakout
2025 ^
2026unknown command.
2027
2028lab@4837280A43AE.spokenew.JU_115> default-lbo-JU_115_DefaultVPN
2029 ^
2030unknown command.
2031lab@4837280A43AE.spokenew.JU_115> default-lbo-JU_115_DefaultVPN
2032 ^
2033unknown command.
2034lab@4837280A43AE.spokenew.JU_115> default-lbo-JU_115_DefaultVPN
2035 ^
2036unknown command.
2037
2038lab@4837280A43AE.spokenew.JU_115> default-local-breakout
2039 ^
2040unknown command.
2041lab@4837280A43AE.spokenew.JU_115> default-local-breakout
2042 ^
2043unknown command.
2044lab@4837280A43AE.spokenew.JU_115> default-local-breakout
2045 ^
2046unknown command.
2047
2048lab@4837280A43AE.spokenew.JU_115> detail
2049 ^
2050unknown command.
2051lab@4837280A43AE.spokenew.JU_115> detail
2052 ^
2053unknown command.
2054lab@4837280A43AE.spokenew.JU_115> detail
2055 ^
2056unknown command.
2057lab@4837280A43AE.spokenew.JU_115> detail
2058 ^
2059unknown command.
2060lab@4837280A43AE.spokenew.JU_115> detail
2061 ^
2062unknown command.
2063lab@4837280A43AE.spokenew.JU_115> detail
2064 ^
2065unknown command.
2066lab@4837280A43AE.spokenew.JU_115> detail
2067 ^
2068unknown command.
2069lab@4837280A43AE.spokenew.JU_115> detail
2070 ^
2071unknown command.
2072lab@4837280A43AE.spokenew.JU_115> detail
2073 ^
2074unknown command.
2075lab@4837280A43AE.spokenew.JU_115> detail
2076 ^
2077unknown command.
2078lab@4837280A43AE.spokenew.JU_115> detail
2079 ^
2080unknown command.
2081lab@4837280A43AE.spokenew.JU_115> detail
2082 ^
2083unknown command.
2084lab@4837280A43AE.spokenew.JU_115> detail
2085 ^
2086unknown command.
2087lab@4837280A43AE.spokenew.JU_115> detail
2088 ^
2089unknown command.
2090lab@4837280A43AE.spokenew.JU_115> detail
2091 ^
2092unknown command.
2093lab@4837280A43AE.spokenew.JU_115> detailDisplay
2094 ^
2095unknown command.
2096lab@4837280A43AE.spokenew.JU_115> detailDisplaydetailed
2097 ^
2098unknown command.
2099lab@4837280A43AE.spokenew.JU_115> detailDisplaydetailedoutput
2100 ^
2101unknown command.
2102
2103lab@4837280A43AE.spokenew.JU_115> extensive
2104 ^
2105unknown command.
2106lab@4837280A43AE.spokenew.JU_115> extensive
2107 ^
2108unknown command.
2109lab@4837280A43AE.spokenew.JU_115> extensive
2110 ^
2111unknown command.
2112lab@4837280A43AE.spokenew.JU_115> extensive
2113 ^
2114unknown command.
2115lab@4837280A43AE.spokenew.JU_115> extensive
2116 ^
2117unknown command.
2118lab@4837280A43AE.spokenew.JU_115> extensive
2119 ^
2120unknown command.
2121lab@4837280A43AE.spokenew.JU_115> extensive
2122 ^
2123unknown command.
2124lab@4837280A43AE.spokenew.JU_115> extensive
2125 ^
2126unknown command.
2127lab@4837280A43AE.spokenew.JU_115> extensive
2128 ^
2129unknown command.
2130lab@4837280A43AE.spokenew.JU_115> extensive
2131 ^
2132unknown command.
2133lab@4837280A43AE.spokenew.JU_115> extensive
2134 ^
2135unknown command.
2136lab@4837280A43AE.spokenew.JU_115> extensive
2137 ^
2138unknown command.
2139lab@4837280A43AE.spokenew.JU_115> extensiveDisplay
2140 ^
2141unknown command.
2142lab@4837280A43AE.spokenew.JU_115> extensiveDisplayextensive
2143 ^
2144unknown command.
2145lab@4837280A43AE.spokenew.JU_115> extensiveDisplayextensiveoutput
2146 ^
2147unknown command.
2148
2149lab@4837280A43AE.spokenew.JU_115> internet-JU_115_DefaultVPN
2150 ^
2151unknown command.
2152lab@4837280A43AE.spokenew.JU_115> internet-JU_115_DefaultVPN
2153 ^
2154unknown command.
2155lab@4837280A43AE.spokenew.JU_115> internet-JU_115_DefaultVPN
2156 ^
2157unknown command.
2158
2159lab@4837280A43AE.spokenew.JU_115> internet-lbo-JU_115_DefaultVPN
2160 ^
2161unknown command.
2162lab@4837280A43AE.spokenew.JU_115> internet-lbo-JU_115_DefaultVPN
2163 ^
2164unknown command.
2165lab@4837280A43AE.spokenew.JU_115> internet-lbo-JU_115_DefaultVPN
2166 ^
2167unknown command.
2168
2169lab@4837280A43AE.spokenew.JU_115> internet-local-breakout
2170 ^
2171unknown command.
2172lab@4837280A43AE.spokenew.JU_115> internet-local-breakout
2173 ^
2174unknown command.
2175lab@4837280A43AE.spokenew.JU_115> internet-local-breakout
2176 ^
2177unknown command.
2178
2179lab@4837280A43AE.spokenew.JU_115> localize
2180 ^
2181unknown command.
2182lab@4837280A43AE.spokenew.JU_115> localize
2183 ^
2184unknown command.
2185lab@4837280A43AE.spokenew.JU_115> localize
2186 ^
2187unknown command.
2188lab@4837280A43AE.spokenew.JU_115> localize
2189 ^
2190unknown command.
2191lab@4837280A43AE.spokenew.JU_115> localize
2192 ^
2193unknown command.
2194lab@4837280A43AE.spokenew.JU_115> localize
2195 ^
2196unknown command.
2197lab@4837280A43AE.spokenew.JU_115> localize
2198 ^
2199unknown command.
2200lab@4837280A43AE.spokenew.JU_115> localize
2201 ^
2202unknown command.
2203lab@4837280A43AE.spokenew.JU_115> localize
2204 ^
2205unknown command.
2206lab@4837280A43AE.spokenew.JU_115> localize
2207 ^
2208unknown command.
2209lab@4837280A43AE.spokenew.JU_115> localize
2210 ^
2211unknown command.
2212lab@4837280A43AE.spokenew.JU_115> localize
2213 ^
2214unknown command.
2215lab@4837280A43AE.spokenew.JU_115> localize
2216 ^
2217unknown command.
2218lab@4837280A43AE.spokenew.JU_115> localizeShow
2219 ^
2220unknown command.
2221lab@4837280A43AE.spokenew.JU_115> localizeShowinstances
2222 ^
2223unknown command.
2224lab@4837280A43AE.spokenew.JU_115> localizeShowinstanceslocalization
2225 ^
2226unknown command.
2227lab@4837280A43AE.spokenew.JU_115> localizeShowinstanceslocalizationmapping
2228 ^
2229unknown command.
2230
2231lab@4837280A43AE.spokenew.JU_115> mpls-JU_115_DefaultVPN
2232 ^
2233unknown command.
2234lab@4837280A43AE.spokenew.JU_115> mpls-JU_115_DefaultVPN
2235 ^
2236unknown command.
2237lab@4837280A43AE.spokenew.JU_115> mpls-JU_115_DefaultVPN
2238 ^
2239unknown command.
2240
2241lab@4837280A43AE.spokenew.JU_115> mpls-lbo-JU_115_DefaultVPN
2242 ^
2243unknown command.
2244lab@4837280A43AE.spokenew.JU_115> mpls-lbo-JU_115_DefaultVPN
2245 ^
2246unknown command.
2247lab@4837280A43AE.spokenew.JU_115> mpls-lbo-JU_115_DefaultVPN
2248 ^
2249unknown command.
2250
2251lab@4837280A43AE.spokenew.JU_115> mpls-local-breakout
2252 ^
2253unknown command.
2254lab@4837280A43AE.spokenew.JU_115> mpls-local-breakout
2255 ^
2256unknown command.
2257lab@4837280A43AE.spokenew.JU_115> mpls-local-breakout
2258 ^
2259unknown command.
2260
2261lab@4837280A43AE.spokenew.JU_115> natVR-JU_115_DefaultVPN
2262 ^
2263unknown command.
2264lab@4837280A43AE.spokenew.JU_115> natVR-JU_115_DefaultVPN
2265 ^
2266unknown command.
2267lab@4837280A43AE.spokenew.JU_115> natVR-JU_115_DefaultVPN
2268 ^
2269unknown command.
2270
2271lab@4837280A43AE.spokenew.JU_115> operational
2272 ^
2273unknown command.
2274lab@4837280A43AE.spokenew.JU_115> operational
2275 ^
2276unknown command.
2277lab@4837280A43AE.spokenew.JU_115> operational
2278 ^
2279unknown command.
2280lab@4837280A43AE.spokenew.JU_115> operational
2281 ^
2282unknown command.
2283lab@4837280A43AE.spokenew.JU_115> operational
2284 ^
2285unknown command.
2286lab@4837280A43AE.spokenew.JU_115> operational
2287 ^
2288unknown command.
2289lab@4837280A43AE.spokenew.JU_115> operational
2290 ^
2291unknown command.
2292lab@4837280A43AE.spokenew.JU_115> operational
2293 ^
2294unknown command.
2295lab@4837280A43AE.spokenew.JU_115> operational
2296 ^
2297unknown command.
2298lab@4837280A43AE.spokenew.JU_115> operational
2299 ^
2300unknown command.
2301lab@4837280A43AE.spokenew.JU_115> operationalShow
2302 ^
2303unknown command.
2304lab@4837280A43AE.spokenew.JU_115> operationalShowoperational
2305 ^
2306unknown command.
2307lab@4837280A43AE.spokenew.JU_115> operationalShowoperationalrouting
2308 ^
2309unknown command.
2310lab@4837280A43AE.spokenew.JU_115> operationalShowoperationalroutinginstances
2311 ^
2312unknown command.
2313
2314lab@4837280A43AE.spokenew.JU_115> probe-VR
2315 ^
2316unknown command.
2317lab@4837280A43AE.spokenew.JU_115> probe-VR
2318 ^
2319unknown command.
2320lab@4837280A43AE.spokenew.JU_115> probe-VR
2321 ^
2322unknown command.
2323lab@4837280A43AE.spokenew.JU_115> probe-VR
2324 ^
2325unknown command.
2326lab@4837280A43AE.spokenew.JU_115> probe-VR
2327 ^
2328unknown command.
2329lab@4837280A43AE.spokenew.JU_115> probe-VR
2330 ^
2331unknown command.
2332lab@4837280A43AE.spokenew.JU_115> probe-VR
2333 ^
2334unknown command.
2335lab@4837280A43AE.spokenew.JU_115> probe-VR
2336 ^
2337unknown command.
2338lab@4837280A43AE.spokenew.JU_115> probe-VR
2339 ^
2340unknown command.
2341lab@4837280A43AE.spokenew.JU_115> probe-VR
2342 ^
2343unknown command.
2344lab@4837280A43AE.spokenew.JU_115> probe-VR
2345 ^
2346unknown command.
2347lab@4837280A43AE.spokenew.JU_115> probe-VR
2348 ^
2349unknown command.
2350lab@4837280A43AE.spokenew.JU_115> probe-VR
2351 ^
2352unknown command.
2353lab@4837280A43AE.spokenew.JU_115> probe-VR
2354 ^
2355unknown command.
2356
2357lab@4837280A43AE.spokenew.JU_115> summary
2358 ^
2359unknown command.
2360lab@4837280A43AE.spokenew.JU_115> summary
2361 ^
2362unknown command.
2363lab@4837280A43AE.spokenew.JU_115> summary
2364 ^
2365unknown command.
2366lab@4837280A43AE.spokenew.JU_115> summary
2367 ^
2368unknown command.
2369lab@4837280A43AE.spokenew.JU_115> summary
2370 ^
2371unknown command.
2372lab@4837280A43AE.spokenew.JU_115> summary
2373 ^
2374unknown command.
2375lab@4837280A43AE.spokenew.JU_115> summary
2376 ^
2377unknown command.
2378lab@4837280A43AE.spokenew.JU_115> summary
2379 ^
2380unknown command.
2381lab@4837280A43AE.spokenew.JU_115> summary
2382 ^
2383unknown command.
2384lab@4837280A43AE.spokenew.JU_115> summary
2385 ^
2386unknown command.
2387lab@4837280A43AE.spokenew.JU_115> summary
2388 ^
2389unknown command.
2390lab@4837280A43AE.spokenew.JU_115> summary
2391 ^
2392unknown command.
2393lab@4837280A43AE.spokenew.JU_115> summary
2394 ^
2395unknown command.
2396lab@4837280A43AE.spokenew.JU_115> summary
2397 ^
2398unknown command.
2399lab@4837280A43AE.spokenew.JU_115> summaryDisplay
2400 ^
2401unknown command.
2402lab@4837280A43AE.spokenew.JU_115> summaryDisplaysummary
2403 ^
2404unknown command.
2405lab@4837280A43AE.spokenew.JU_115> summaryDisplaysummaryoutput
2406 ^
2407unknown command.
2408
2409lab@4837280A43AE.spokenew.JU_115> transit
2410 ^
2411unknown command.
2412lab@4837280A43AE.spokenew.JU_115> transit
2413 ^
2414unknown command.
2415lab@4837280A43AE.spokenew.JU_115> transit
2416 ^
2417unknown command.
2418lab@4837280A43AE.spokenew.JU_115> transit
2419 ^
2420unknown command.
2421lab@4837280A43AE.spokenew.JU_115> transit
2422 ^
2423unknown command.
2424lab@4837280A43AE.spokenew.JU_115> transit
2425 ^
2426unknown command.
2427lab@4837280A43AE.spokenew.JU_115> transit
2428 ^
2429unknown command.
2430lab@4837280A43AE.spokenew.JU_115> transit
2431 ^
2432unknown command.
2433lab@4837280A43AE.spokenew.JU_115> transit
2434 ^
2435unknown command.
2436lab@4837280A43AE.spokenew.JU_115> transit
2437 ^
2438unknown command.
2439lab@4837280A43AE.spokenew.JU_115> transit
2440 ^
2441unknown command.
2442lab@4837280A43AE.spokenew.JU_115> transit
2443 ^
2444unknown command.
2445lab@4837280A43AE.spokenew.JU_115> transit
2446 ^
2447unknown command.
2448lab@4837280A43AE.spokenew.JU_115> transit
2449 ^
2450unknown command.
2451lab@4837280A43AE.spokenew.JU_115> transit
2452 ^
2453unknown command.
2454
2455lab@4837280A43AE.spokenew.JU_115> |
2456 ^
2457unknown command.
2458lab@4837280A43AE.spokenew.JU_115> |
2459 ^
2460unknown command.
2461lab@4837280A43AE.spokenew.JU_115> |
2462 ^
2463unknown command.
2464lab@4837280A43AE.spokenew.JU_115> |
2465 ^
2466unknown command.
2467lab@4837280A43AE.spokenew.JU_115> |
2468 ^
2469unknown command.
2470lab@4837280A43AE.spokenew.JU_115> |
2471 ^
2472unknown command.
2473lab@4837280A43AE.spokenew.JU_115> |
2474 ^
2475unknown command.
2476lab@4837280A43AE.spokenew.JU_115> |
2477 ^
2478unknown command.
2479lab@4837280A43AE.spokenew.JU_115> |
2480 ^
2481unknown command.
2482lab@4837280A43AE.spokenew.JU_115> |
2483 ^
2484unknown command.
2485lab@4837280A43AE.spokenew.JU_115> |
2486 ^
2487unknown command.
2488lab@4837280A43AE.spokenew.JU_115> |
2489 ^
2490unknown command.
2491lab@4837280A43AE.spokenew.JU_115> |
2492 ^
2493unknown command.
2494lab@4837280A43AE.spokenew.JU_115> |
2495 ^
2496unknown command.
2497lab@4837280A43AE.spokenew.JU_115> |
2498 ^
2499unknown command.
2500lab@4837280A43AE.spokenew.JU_115> |
2501 ^
2502unknown command.
2503lab@4837280A43AE.spokenew.JU_115> |
2504 ^
2505unknown command.
2506lab@4837280A43AE.spokenew.JU_115> |
2507 ^
2508unknown command.
2509lab@4837280A43AE.spokenew.JU_115> |
2510 ^
2511unknown command.
2512lab@4837280A43AE.spokenew.JU_115> |
2513 ^
2514unknown command.
2515lab@4837280A43AE.spokenew.JU_115> |Pipe
2516 ^
2517unknown command.
2518lab@4837280A43AE.spokenew.JU_115> |Pipethrough
2519 ^
2520unknown command.
2521lab@4837280A43AE.spokenew.JU_115> |Pipethrougha
2522 ^
2523unknown command.
2524lab@4837280A43AE.spokenew.JU_115> |Pipethroughacommand
2525 ^
2526unknown command.
2527
2528lab@4837280A43AE.spokenew.JU_115> show configuration | display set | match "routing-instances" | match groups | match e-type
2529set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances transit instance-type vrf
2530set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances default-local-breakout instance-type forwarding
2531set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances mpls-local-breakout instance-type forwarding
2532set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances internet-local-breakout instance-type forwarding
2533set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances default-cloud-breakout instance-type forwarding
2534set groups srx-gwr-site-routing-config-100.124.2.100 routing-instances probe-VR instance-type virtual-router
2535set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-JU_115_DefaultVPN instance-type vrf
2536set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-JU_115_DefaultVPN instance-type vrf
2537set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances LAN-JU_115_DefaultVPN instance-type vrf
2538set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances default-lbo-JU_115_DefaultVPN instance-type forwarding
2539set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances mpls-lbo-JU_115_DefaultVPN instance-type forwarding
2540set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances internet-lbo-JU_115_DefaultVPN instance-type forwarding
2541set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances default-cbo-JU_115_DefaultVPN instance-type forwarding
2542set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances natVR-JU_115_DefaultVPN instance-type virtual-router
2543set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-JU_115_DefaultVPN instance-type vrf
2544set groups spoke-JU_115_DefaultVPN-vpn-routing-config routing-instances Default-reverse-JU_115_DefaultVPN instance-type vrf
2545
2546lab@4837280A43AE.spokenew.JU_115> show mpls ?
2547Possible completions:
2548 admin-groups Show MPLS administrative groups
2549 admin-groups-extended Show MPLS extended administrative groups
2550 call-admission-control Show CAC information for MPLS LSPs
2551 container-lsp Show configured container-label-switched paths
2552 context-identifier Show configured egress protection context identifiers
2553 cspf Show Constrained Shortest Path First statistics
2554 diffserv-te Show MPLS Differentiated Services traffic engineering global properties
2555 egress-protection Show egress-protection information
2556 interface Show MPLS interfaces
2557 label Mpls label space
2558 lsp Show configured label-switched paths
2559 path Show configured named paths
2560 srlg Show MPLS SRLG
2561 static-lsp Show configured static label-switched paths
2562 traceroute Show mpls traceroute information
2563lab@4837280A43AE.spokenew.JU_115> show mpls label ?
2564Possible completions:
2565 usage Show MPLS label space usage statistics
2566lab@4837280A43AE.spokenew.JU_115> show mpls label usage
2567Label space Available Applications
2568LSI 69604(99.99% ) BGP/LDP VPLS with no-tunnel-services, BGP L3VPN with vrf-table-label
2569Block 199936(100.00%) BGP/LDP VPLS with tunnel-services, BGP L2VPN
2570Dynamic 487927(100.00%) RSVP, LDP, PW, L3VPN, RSVP-P2MP, LDP-P2MP, MVPN, EVPN, BGP
2571Static 48576(100.00%) Static LSP, Static PW
2572
2573lab@4837280A43AE.spokenew.JU_115> show mpls lsp
2574MPLS not configured
2575
2576lab@4837280A43AE.spokenew.JU_115> show configuration | display set | match bgp
2577set groups srx-gwr-site-routing-config-100.124.2.100 protocols bgp group ibgp type internal
2578set groups srx-gwr-site-routing-config-100.124.2.100 protocols bgp group ibgp local-address 100.124.2.100
2579set groups srx-gwr-site-routing-config-100.124.2.100 protocols bgp group ibgp hold-time 200
2580set groups srx-gwr-site-routing-config-100.124.2.100 protocols bgp group ibgp family inet-vpn unicast graceful-restart long-lived restarter stale-time 16777215
2581set groups srx-gwr-site-routing-config-100.124.2.100 protocols bgp group ibgp neighbor 172.31.17.4
2582set groups srx-gwr-site-routing-config-100.124.2.100 protocols bgp group ibgp neighbor 172.31.17.5
2583set groups spoke-JU_115_DefaultVPN-vpn-routing-config protocols bgp group ibgp import next-hop-change
2584set groups spoke-JU_115_DefaultVPN-vpn-routing-config protocols bgp group ibgp export static-export
2585set groups spoke-JU_115_DefaultVPN-vpn-routing-config protocols bgp group ibgp vpn-apply-export
2586set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement Default-JU_115_DefaultVPN-reverse term 1 from protocol bgp
2587set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN term 1 from protocol bgp
2588set groups spoke-JU_115_DefaultVPN-vpn-routing-config policy-options policy-statement LAN-JU_115_DefaultVPN term 2 from protocol bgp
2589set security zones security-zone untrust host-inbound-traffic protocols bgp
2590set protocols bgp group oam-bgp type internal
2591set protocols bgp group oam-bgp local-address 100.124.2.100
2592set protocols bgp group oam-bgp import prim-lp-import
2593set protocols bgp group oam-bgp family inet unicast
2594set protocols bgp group oam-bgp neighbor 192.168.255.23 export oam-route-export-prim
2595set protocols bgp group oam-bgp neighbor 192.168.255.27 export oam-route-export
2596set policy-options prefix-list bgp-neighbors apply-path "protocols bgp group <*> neighbor <*>"
2597set policy-options prefix-list re-bgp-vrf apply-path "routing-instances <*> protocols bgp group <*> neighbor <*>"
2598set firewall family inet filter protect_re_ipv4 term bfd from source-prefix-list re-bgp-vrf
2599set firewall family inet filter protect_re_ipv4 term bgp from source-prefix-list bgp-neighbors
2600set firewall family inet filter protect_re_ipv4 term bgp from source-prefix-list re-bgp-vrf
2601set firewall family inet filter protect_re_ipv4 term bgp from protocol tcp
2602set firewall family inet filter protect_re_ipv4 term bgp from port bgp
2603set firewall family inet filter protect_re_ipv4 term bgp then count bgp
2604set firewall family inet filter protect_re_ipv4 term bgp then accept
2605
2606lab@4837280A43AE.spokenew.JU_115> show route
2607
2608inet.0: 41 destinations, 42 routes (41 active, 0 holddown, 0 hidden)
2609+ = Active Route, - = Last Active, * = Both
2610
26110.0.0.0/0 *[Static/5] 00:53:07
2612 > to 172.26.131.1 via ge-0/0/0.0
2613 [Access-internal/12] 00:52:59
2614 > to 172.26.133.1 via ge-0/0/1.0
26153.209.67.149/32 *[BGP/170] 00:08:59, localpref 100, from 192.168.255.27
2616 AS path: 7770 I, validation-state: unverified
2617 > via st0.4001
2618 via st0.4002
26193.224.125.24/32 *[Static/5] 00:53:07
2620 > to 172.26.131.1 via ge-0/0/0.0
26213.226.30.34/32 *[Static/5] 00:53:00
2622 > to 172.26.133.1 via ge-0/0/1.0
262310.164.169.136/31 *[Direct/0] 00:09:25
2624 > via st0.4002
262510.164.169.137/32 *[Local/0] 00:53:17
2626 Local via st0.4002
262710.164.169.138/31 *[Direct/0] 00:11:26
2628 > via st0.4001
262910.164.169.139/32 *[Local/0] 00:53:17
2630 Local via st0.4001
263110.180.169.137/32 *[Local/0] 00:53:17
2632 Reject
263310.180.169.139/32 *[Local/0] 00:53:17
2634 Reject
263518.235.48.224/32 *[Static/5] 00:53:00
2636 > to 172.26.133.1 via ge-0/0/1.0
263754.160.212.29/32 *[Static/5] 00:53:07
2638 > to 172.26.131.1 via ge-0/0/0.0
2639100.124.2.100/32 *[Direct/0] 00:53:20
2640 > via lo0.0
2641172.26.131.0/24 *[Direct/0] 00:53:07
2642 > via ge-0/0/0.0
2643172.26.131.2/32 *[Local/0] 00:53:08
2644 Local via ge-0/0/0.0
2645172.26.133.0/24 *[Direct/0] 00:53:00
2646 > via ge-0/0/1.0
2647172.26.133.100/32 *[Local/0] 00:53:00
2648 Local via ge-0/0/1.0
2649172.31.10.4/32 *[BGP/170] 00:08:59, localpref 100, from 192.168.255.27
2650 AS path: 7770 I, validation-state: unverified
2651 via st0.4001
2652 > via st0.4002
2653172.31.17.4/32 *[BGP/170] 00:08:59, localpref 100, from 192.168.255.27
2654 AS path: 7770 I, validation-state: unverified
2655 > via st0.4001
2656 via st0.4002
2657172.31.17.5/32 *[BGP/170] 00:08:59, localpref 100, from 192.168.255.27
2658 AS path: 7770 I, validation-state: unverified
2659 > via st0.4001
2660 via st0.4002
2661172.31.18.4/32 *[BGP/170] 00:08:59, localpref 100, from 192.168.255.27
2662 AS path: 7770 I, validation-state: unverified
2663 > via st0.4001
2664 via st0.4002
2665172.31.18.5/32 *[BGP/170] 00:08:59, localpref 100, from 192.168.255.27
2666 AS path: 7770 I, validation-state: unverified
2667 > via st0.4001
2668 via st0.4002
2669172.31.31.10/32 *[Direct/0] 00:53:20
2670 > via lo0.0
2671172.31.31.14/32 *[Direct/0] 00:53:20
2672 > via lo0.300
2673172.31.31.64/31 *[Direct/0] 00:53:08
2674 > via lt-0/0/0.0
2675172.31.31.64/32 *[Local/0] 00:53:08
2676 Local via lt-0/0/0.0
2677172.31.31.66/31 *[Direct/0] 00:53:08
2678 > via lt-0/0/0.2
2679172.31.31.66/32 *[Local/0] 00:53:08
2680 Local via lt-0/0/0.2
2681172.31.31.72/32 *[Static/5] 00:53:08
2682 > to 172.31.31.65 via lt-0/0/0.0
2683172.31.31.73/32 *[Static/5] 00:53:08
2684 > to 172.31.31.65 via lt-0/0/0.0
2685172.31.31.74/32 *[Static/5] 00:53:08
2686 > to 172.31.31.67 via lt-0/0/0.2
2687172.31.31.75/32 *[Static/5] 00:53:08
2688 > to 172.31.31.67 via lt-0/0/0.2
2689172.31.31.80/32 *[Static/5] 00:53:08
2690 > to 172.31.31.65 via lt-0/0/0.0
2691172.31.31.81/32 *[Static/5] 00:53:08
2692 > to 172.31.31.65 via lt-0/0/0.0
2693172.31.31.82/32 *[Static/5] 00:53:08
2694 > to 172.31.31.67 via lt-0/0/0.2
2695172.31.31.83/32 *[Static/5] 00:53:08
2696 > to 172.31.31.67 via lt-0/0/0.2
2697172.31.31.90/31 *[Direct/0] 00:53:17
2698 > via st0.151
2699172.31.31.90/32 *[Local/0] 00:53:17
2700 Local via st0.151
2701192.168.11.2/32 *[Static/5] 00:53:07
2702 > to 172.26.131.1 via ge-0/0/0.0
2703192.168.12.2/32 *[Static/5] 00:53:00
2704 > to 172.26.133.1 via ge-0/0/1.0
2705192.168.255.27/32 *[Static/5] 00:52:58
2706 via st0.4001
2707 > via st0.4002
2708
2709inet.3: 6 destinations, 10 routes (6 active, 0 holddown, 0 hidden)
2710+ = Active Route, - = Last Active, * = Both
2711
271210.0.224.1/32 *[Static/5] 00:52:58
2713 > via gr-0/0/0.4001
2714 [Static/8] 00:53:00
2715 > via gr-0/0/0.4002
271610.0.232.1/32 *[Static/5] 00:53:00
2717 > via gr-0/0/0.4002
2718 [Static/8] 00:52:58
2719 > via gr-0/0/0.4001
272010.194.81.244/32 *[Static/5] 00:53:00
2721 > via gr-0/0/0.4002
2722 [Static/8] 00:52:58
2723 > via gr-0/0/0.4001
272410.194.81.245/32 *[Static/5] 00:52:58
2725 > via gr-0/0/0.4001
2726 [Static/8] 00:53:00
2727 > via gr-0/0/0.4002
2728100.124.0.244/32 *[Static/12] 00:52:58
2729 via gr-0/0/0.4001
2730 > via gr-0/0/0.4002
2731192.168.0.1/32 *[Static/6] 00:53:00, metric2 0
2732 via gr-0/0/0.4001
2733 > via gr-0/0/0.4002
2734
2735Default-JU_115_DefaultVPN.inet.0: 3 destinations, 5 routes (3 active, 0 holddown, 0 hidden)
2736+ = Active Route, - = Last Active, * = Both
2737
27380.0.0.0/0 *[BGP/170] 00:50:59, localpref 300, from 172.31.17.5
2739 AS path: I, validation-state: unverified
2740 > via gr-0/0/0.4001, Push 17
2741 via gr-0/0/0.4002, Push 17
2742 [BGP/170] 00:52:21, localpref 300, from 172.31.17.4
2743 AS path: I, validation-state: unverified
2744 > via gr-0/0/0.4001, Push 17
2745 via gr-0/0/0.4002, Push 17
2746172.40.1.0/24 *[Static/5] 00:53:20
2747 to table LAN-JU_115_DefaultVPN.inet.0
2748172.40.2.0/24 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
2749 AS path: I, validation-state: unverified
2750 > via gr-0/0/0.4001, Push 17
2751 via gr-0/0/0.4002, Push 17
2752 [BGP/170] 00:52:22, localpref 100, from 172.31.17.4
2753 AS path: I, validation-state: unverified
2754 > via gr-0/0/0.4001, Push 17
2755 via gr-0/0/0.4002, Push 17
2756
2757Default-reverse-JU_115_DefaultVPN.inet.0: 3 destinations, 5 routes (3 active, 0 holddown, 0 hidden)
2758+ = Active Route, - = Last Active, * = Both
2759
27600.0.0.0/0 *[BGP/170] 00:50:59, localpref 300, from 172.31.17.5
2761 AS path: I, validation-state: unverified
2762 > via gr-0/0/0.4001, Push 18
2763 via gr-0/0/0.4002, Push 18
2764 [BGP/170] 00:51:18, localpref 300, from 172.31.17.4
2765 AS path: I, validation-state: unverified
2766 > via gr-0/0/0.4001, Push 18
2767 via gr-0/0/0.4002, Push 18
2768172.40.1.0/24 *[Static/5] 00:53:20
2769 to table LAN-JU_115_DefaultVPN.inet.0
2770172.40.2.0/24 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
2771 AS path: I, validation-state: unverified
2772 > via gr-0/0/0.4001, Push 18
2773 via gr-0/0/0.4002, Push 18
2774 [BGP/170] 00:51:18, localpref 100, from 172.31.17.4
2775 AS path: I, validation-state: unverified
2776 > via gr-0/0/0.4001, Push 18
2777 via gr-0/0/0.4002, Push 18
2778
2779LAN-JU_115_DefaultVPN.inet.0: 4 destinations, 6 routes (4 active, 0 holddown, 0 hidden)
2780+ = Active Route, - = Last Active, * = Both
2781
27820.0.0.0/0 *[BGP/170] 00:50:59, localpref 300, from 172.31.17.5
2783 AS path: I, validation-state: unverified
2784 > via gr-0/0/0.4001, Push 17
2785 via gr-0/0/0.4002, Push 17
2786 [BGP/170] 00:52:21, localpref 300, from 172.31.17.4
2787 AS path: I, validation-state: unverified
2788 > via gr-0/0/0.4001, Push 17
2789 via gr-0/0/0.4002, Push 17
2790172.40.1.0/24 *[Direct/0] 00:53:07
2791 > via ge-0/0/2.0
2792172.40.1.2/32 *[Local/0] 00:53:08
2793 Local via ge-0/0/2.0
2794172.40.2.0/24 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
2795 AS path: I, validation-state: unverified
2796 > via gr-0/0/0.4001, Push 19
2797 via gr-0/0/0.4002, Push 19
2798 [BGP/170] 00:52:22, localpref 100, from 172.31.17.4
2799 AS path: I, validation-state: unverified
2800 > via gr-0/0/0.4001, Push 19
2801 via gr-0/0/0.4002, Push 19
2802
2803default-cbo-JU_115_DefaultVPN.inet.0: 2 destinations, 2 routes (2 active, 0 holddown, 0 hidden)
2804+ = Active Route, - = Last Active, * = Both
2805
28060.0.0.0/0 *[Static/175] 00:53:20
2807 to table Default-JU_115_DefaultVPN.inet.0
2808172.40.1.0/24 *[Direct/0] 00:53:07
2809 > via ge-0/0/2.0
2810
2811default-cloud-breakout.inet.0: 9 destinations, 9 routes (9 active, 0 holddown, 0 hidden)
2812+ = Active Route, - = Last Active, * = Both
2813
281410.164.169.136/31 *[Direct/0] 00:09:25
2815 > via st0.4002
281610.164.169.138/31 *[Direct/0] 00:11:26
2817 > via st0.4001
2818100.124.2.100/32 *[Direct/0] 00:53:20
2819 > via lo0.0
2820172.26.131.0/24 *[Direct/0] 00:53:07
2821 > via ge-0/0/0.0
2822172.26.133.0/24 *[Direct/0] 00:53:00
2823 > via ge-0/0/1.0
2824172.31.31.10/32 *[Direct/0] 00:53:20
2825 > via lo0.0
2826172.31.31.64/31 *[Direct/0] 00:53:08
2827 > via lt-0/0/0.0
2828172.31.31.66/31 *[Direct/0] 00:53:08
2829 > via lt-0/0/0.2
2830172.31.31.90/31 *[Direct/0] 00:53:17
2831 > via st0.151
2832
2833default-lbo-JU_115_DefaultVPN.inet.0: 2 destinations, 3 routes (2 active, 0 holddown, 0 hidden)
2834@ = Routing Use Only, # = Forwarding Use Only
2835+ = Active Route, - = Last Active, * = Both
2836
28370.0.0.0/0 *[Static/5] 00:52:50, metric2 0
2838 > to 172.26.133.1 via ge-0/0/1.0
2839 [Static/175] 00:53:20
2840 to table Default-JU_115_DefaultVPN.inet.0
2841172.40.1.0/24 *[Direct/0] 00:53:07
2842 > via ge-0/0/2.0
2843
2844default-local-breakout.inet.0: 11 destinations, 11 routes (11 active, 0 holddown, 0 hidden)
2845+ = Active Route, - = Last Active, * = Both
2846
28470.0.0.0/0 *[Static/5] 00:53:20, metric2 0
2848 > to 172.26.133.1 via ge-0/0/1.0
284910.164.169.136/31 *[Direct/0] 00:09:25
2850 > via st0.4002
285110.164.169.138/31 *[Direct/0] 00:11:26
2852 > via st0.4001
2853100.124.2.100/32 *[Direct/0] 00:53:20
2854 > via lo0.0
2855172.26.131.0/24 *[Direct/0] 00:53:07
2856 > via ge-0/0/0.0
2857172.26.133.0/24 *[Direct/0] 00:53:00
2858 > via ge-0/0/1.0
2859172.31.31.6/32 *[Static/1] 00:52:50, metric2 0
2860 > to 172.26.133.1 via ge-0/0/1.0
2861172.31.31.10/32 *[Direct/0] 00:53:20
2862 > via lo0.0
2863172.31.31.64/31 *[Direct/0] 00:53:08
2864 > via lt-0/0/0.0
2865172.31.31.66/31 *[Direct/0] 00:53:08
2866 > via lt-0/0/0.2
2867172.31.31.90/31 *[Direct/0] 00:53:17
2868 > via st0.151
2869
2870internet-JU_115_DefaultVPN.inet.0: 3 destinations, 6 routes (3 active, 0 holddown, 0 hidden)
2871+ = Active Route, - = Last Active, * = Both
2872
28730.0.0.0/0 *[BGP/170] 00:50:59, localpref 300, from 172.31.17.5
2874 AS path: I, validation-state: unverified
2875 > via gr-0/0/0.4002, Push 21
2876 [BGP/170] 00:52:21, localpref 300, from 172.31.17.4
2877 AS path: I, validation-state: unverified
2878 > via gr-0/0/0.4002, Push 21
2879 [Static/175] 00:53:20
2880 to table Default-JU_115_DefaultVPN.inet.0
2881172.40.1.0/24 *[Static/5] 00:53:20
2882 to table LAN-JU_115_DefaultVPN.inet.0
2883172.40.2.0/24 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
2884 AS path: I, validation-state: unverified
2885 > via gr-0/0/0.4002, Push 21
2886 [BGP/170] 00:52:21, localpref 100, from 172.31.17.4
2887 AS path: I, validation-state: unverified
2888 > via gr-0/0/0.4002, Push 21
2889
2890internet-lbo-JU_115_DefaultVPN.inet.0: 2 destinations, 3 routes (2 active, 0 holddown, 0 hidden)
2891@ = Routing Use Only, # = Forwarding Use Only
2892+ = Active Route, - = Last Active, * = Both
2893
28940.0.0.0/0 *[Static/5] 00:52:50, metric2 0
2895 > to 172.26.133.1 via ge-0/0/1.0
2896 [Static/175] 00:53:20
2897 to table default-lbo-JU_115_DefaultVPN.inet.0
2898172.40.1.0/24 *[Direct/0] 00:53:07
2899 > via ge-0/0/2.0
2900
2901internet-local-breakout.inet.0: 11 destinations, 11 routes (11 active, 0 holddown, 0 hidden)
2902+ = Active Route, - = Last Active, * = Both
2903
29040.0.0.0/0 *[Static/5] 00:53:20, metric2 0
2905 > to 172.26.133.1 via ge-0/0/1.0
290610.164.169.136/31 *[Direct/0] 00:09:25
2907 > via st0.4002
290810.164.169.138/31 *[Direct/0] 00:11:26
2909 > via st0.4001
2910100.124.2.100/32 *[Direct/0] 00:53:20
2911 > via lo0.0
2912172.26.131.0/24 *[Direct/0] 00:53:07
2913 > via ge-0/0/0.0
2914172.26.133.0/24 *[Direct/0] 00:53:00
2915 > via ge-0/0/1.0
2916172.31.31.6/32 *[Static/1] 00:52:50, metric2 0
2917 > to 172.26.133.1 via ge-0/0/1.0
2918172.31.31.10/32 *[Direct/0] 00:53:20
2919 > via lo0.0
2920172.31.31.64/31 *[Direct/0] 00:53:08
2921 > via lt-0/0/0.0
2922172.31.31.66/31 *[Direct/0] 00:53:08
2923 > via lt-0/0/0.2
2924172.31.31.90/31 *[Direct/0] 00:53:17
2925 > via st0.151
2926
2927mpls-JU_115_DefaultVPN.inet.0: 3 destinations, 6 routes (3 active, 0 holddown, 0 hidden)
2928+ = Active Route, - = Last Active, * = Both
2929
29300.0.0.0/0 *[BGP/170] 00:50:59, localpref 300, from 172.31.17.5
2931 AS path: I, validation-state: unverified
2932 > via gr-0/0/0.4001, Push 22
2933 [BGP/170] 00:52:21, localpref 300, from 172.31.17.4
2934 AS path: I, validation-state: unverified
2935 > via gr-0/0/0.4001, Push 22
2936 [Static/175] 00:53:20
2937 to table Default-JU_115_DefaultVPN.inet.0
2938172.40.1.0/24 *[Static/5] 00:53:20
2939 to table LAN-JU_115_DefaultVPN.inet.0
2940172.40.2.0/24 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
2941 AS path: I, validation-state: unverified
2942 > via gr-0/0/0.4001, Push 22
2943 [BGP/170] 00:52:21, localpref 100, from 172.31.17.4
2944 AS path: I, validation-state: unverified
2945 > via gr-0/0/0.4001, Push 22
2946
2947mpls-lbo-JU_115_DefaultVPN.inet.0: 2 destinations, 2 routes (2 active, 0 holddown, 0 hidden)
2948@ = Routing Use Only, # = Forwarding Use Only
2949+ = Active Route, - = Last Active, * = Both
2950
29510.0.0.0/0 *[Static/175] 00:53:20
2952 to table default-lbo-JU_115_DefaultVPN.inet.0
2953172.40.1.0/24 *[Direct/0] 00:53:07
2954 > via ge-0/0/2.0
2955
2956mpls-local-breakout.inet.0: 9 destinations, 9 routes (9 active, 0 holddown, 0 hidden)
2957+ = Active Route, - = Last Active, * = Both
2958
295910.164.169.136/31 *[Direct/0] 00:09:25
2960 > via st0.4002
296110.164.169.138/31 *[Direct/0] 00:11:26
2962 > via st0.4001
2963100.124.2.100/32 *[Direct/0] 00:53:20
2964 > via lo0.0
2965172.26.131.0/24 *[Direct/0] 00:53:07
2966 > via ge-0/0/0.0
2967172.26.133.0/24 *[Direct/0] 00:53:00
2968 > via ge-0/0/1.0
2969172.31.31.10/32 *[Direct/0] 00:53:20
2970 > via lo0.0
2971172.31.31.64/31 *[Direct/0] 00:53:08
2972 > via lt-0/0/0.0
2973172.31.31.66/31 *[Direct/0] 00:53:08
2974 > via lt-0/0/0.2
2975172.31.31.90/31 *[Direct/0] 00:53:17
2976 > via st0.151
2977
2978nat-lt-WAN_0.inet.0: 4 destinations, 4 routes (4 active, 0 holddown, 0 hidden)
2979+ = Active Route, - = Last Active, * = Both
2980
29810.0.0.0/0 *[Static/5] 00:53:07
2982 > to 172.26.131.1 via ge-0/0/0.0
2983172.26.131.0/24 *[Direct/0] 00:53:07
2984 > via ge-0/0/0.0
2985172.31.31.64/31 *[Direct/0] 00:53:08
2986 > via lt-0/0/0.1
2987172.31.31.65/32 *[Local/0] 00:53:08
2988 Local via lt-0/0/0.1
2989
2990nat-lt-WAN_1.inet.0: 4 destinations, 4 routes (4 active, 0 holddown, 0 hidden)
2991+ = Active Route, - = Last Active, * = Both
2992
29930.0.0.0/0 *[Static/5] 00:53:00
2994 > to 172.26.133.1 via ge-0/0/1.0
2995172.26.133.0/24 *[Direct/0] 00:53:00
2996 > via ge-0/0/1.0
2997172.31.31.66/31 *[Direct/0] 00:53:08
2998 > via lt-0/0/0.3
2999172.31.31.67/32 *[Local/0] 00:53:08
3000 Local via lt-0/0/0.3
3001
3002natVR-JU_115_DefaultVPN.inet.0: 1 destinations, 1 routes (1 active, 0 holddown, 0 hidden)
3003+ = Active Route, - = Last Active, * = Both
3004
30050.0.0.0/0 *[Static/5] 00:53:20
3006 to table LAN-JU_115_DefaultVPN.inet.0
3007
3008probe-VR.inet.0: 3 destinations, 3 routes (3 active, 0 holddown, 0 hidden)
3009+ = Active Route, - = Last Active, * = Both
3010
3011172.31.31.10/32 *[Static/5] 00:53:20
3012 Reject
3013172.31.31.14/32 *[Direct/0] 00:53:20
3014 > via lo0.300
3015172.31.31.15/32 *[Static/5] 00:53:20
3016 to table inet.0
3017
3018transit.inet.0: 18 destinations, 19 routes (18 active, 0 holddown, 0 hidden)
3019+ = Active Route, - = Last Active, * = Both
3020
302110.0.224.0/31 *[Direct/0] 00:52:58
3022 > via gr-0/0/0.4001
302310.0.224.0/32 *[Local/0] 00:53:08
3024 Local via gr-0/0/0.4001
302510.0.232.0/31 *[Direct/0] 00:53:00
3026 > via gr-0/0/0.4002
302710.0.232.0/32 *[Local/0] 00:53:08
3028 Local via gr-0/0/0.4002
302910.164.169.136/31 *[Direct/0] 00:09:25
3030 > via st0.4002
303110.164.169.138/31 *[Direct/0] 00:11:26
3032 > via st0.4001
303310.240.0.56/31 *[Direct/0] 00:52:58
3034 > via st0.4004
303510.240.0.57/32 *[Local/0] 00:53:17
3036 Local via st0.4004
303710.240.0.58/31 *[Direct/0] 00:53:00
3038 > via st0.4005
303910.240.0.59/32 *[Local/0] 00:53:17
3040 Local via st0.4005
3041100.124.2.100/32 *[Direct/0] 00:53:20
3042 > via lo0.0
3043172.26.131.0/24 *[Direct/0] 00:53:07
3044 > via ge-0/0/0.0
3045172.26.133.0/24 *[Direct/0] 00:53:00
3046 > via ge-0/0/1.0
3047172.31.31.10/32 *[Direct/0] 00:53:20
3048 > via lo0.0
3049172.31.31.64/31 *[Direct/0] 00:53:08
3050 > via lt-0/0/0.0
3051172.31.31.66/31 *[Direct/0] 00:53:08
3052 > via lt-0/0/0.2
3053172.31.31.90/31 *[Direct/0] 00:53:17
3054 > via st0.151
3055172.40.2.0/24 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
3056 AS path: I, validation-state: unverified
3057 > via gr-0/0/0.4001, Push 19
3058 via gr-0/0/0.4002, Push 19
3059 [BGP/170] 00:52:22, localpref 100, from 172.31.17.4
3060 AS path: I, validation-state: unverified
3061 > via gr-0/0/0.4001, Push 19
3062 via gr-0/0/0.4002, Push 19
3063
3064transit.inet.3: 6 destinations, 10 routes (6 active, 0 holddown, 0 hidden)
3065+ = Active Route, - = Last Active, * = Both
3066
306710.0.224.1/32 *[Static/5] 00:52:58
3068 > via gr-0/0/0.4001
3069 [Static/8] 00:53:00
3070 > via gr-0/0/0.4002
307110.0.232.1/32 *[Static/5] 00:53:00
3072 > via gr-0/0/0.4002
3073 [Static/8] 00:52:58
3074 > via gr-0/0/0.4001
307510.194.81.244/32 *[Static/5] 00:53:00
3076 > via gr-0/0/0.4002
3077 [Static/8] 00:52:58
3078 > via gr-0/0/0.4001
307910.194.81.245/32 *[Static/5] 00:52:58
3080 > via gr-0/0/0.4001
3081 [Static/8] 00:53:00
3082 > via gr-0/0/0.4002
3083100.124.0.244/32 *[Static/12] 00:53:00
3084 via gr-0/0/0.4001
3085 > via gr-0/0/0.4002
3086192.168.0.1/32 *[Static/6] 00:53:20, metric2 0
3087 via gr-0/0/0.4001
3088 > via gr-0/0/0.4002
3089
3090mpls.0: 14 destinations, 14 routes (14 active, 0 holddown, 0 hidden)
3091+ = Active Route, - = Last Active, * = Both
3092
309316 *[VPN/0] 00:53:20
3094 to table Default-JU_115_DefaultVPN.inet.0, Pop
309517 *[VPN/0] 00:53:20
3096 to table Default-reverse-JU_115_DefaultVPN.inet.0, Pop
309718 *[VPN/0] 00:53:20
3098 to table LAN-JU_115_DefaultVPN.inet.0, Pop
309919 *[VPN/0] 00:53:20
3100 to table internet-JU_115_DefaultVPN.inet.0, Pop
310120 *[VPN/0] 00:53:20
3102 to table mpls-JU_115_DefaultVPN.inet.0, Pop
3103299776 *[VPN/170] 00:52:51
3104 > via gr-0/0/0.4001, Pop
3105299776(S=0) *[VPN/170] 00:52:51
3106 > via gr-0/0/0.4001, Pop
3107299792 *[VPN/170] 00:52:51
3108 > via gr-0/0/0.4002, Pop
3109299792(S=0) *[VPN/170] 00:52:51
3110 > via gr-0/0/0.4002, Pop
3111299872 *[VPN/170] 00:52:51
3112 > via st0.4004, Pop
3113299888 *[VPN/170] 00:52:51
3114 > via st0.4005, Pop
3115299904 *[VPN/170] 00:52:51
3116 receive table transit.inet.0, Pop
3117299968 *[VPN/170] 00:11:26
3118 > via st0.4001, Pop
3119299984 *[VPN/170] 00:09:25
3120 > via st0.4002, Pop
3121
3122transit.mpls.0: 4 destinations, 4 routes (4 active, 0 holddown, 0 hidden)
3123+ = Active Route, - = Last Active, * = Both
3124
31250 *[MPLS/0] 00:53:21, metric 1
3126 Receive
31271 *[MPLS/0] 00:53:21, metric 1
3128 Receive
31292 *[MPLS/0] 00:53:21, metric 1
3130 Receive
313113 *[MPLS/0] 00:53:21, metric 1
3132 Receive
3133
3134bgp.l3vpn.0: 9 destinations, 18 routes (9 active, 0 holddown, 0 hidden)
3135+ = Active Route, - = Last Active, * = Both
3136
3137100.124.0.244:17510:0.0.0.0/0
3138 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
3139 AS path: I, validation-state: unverified
3140 via gr-0/0/0.4001, Push 17
3141 > via gr-0/0/0.4002, Push 17
3142 [BGP/170] 00:52:21, localpref 100, from 172.31.17.4
3143 AS path: I, validation-state: unverified
3144 via gr-0/0/0.4001, Push 17
3145 > via gr-0/0/0.4002, Push 17
3146100.124.0.244:17510:172.40.2.0/24
3147 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
3148 AS path: I, validation-state: unverified
3149 via gr-0/0/0.4001, Push 17
3150 > via gr-0/0/0.4002, Push 17
3151 [BGP/170] 00:52:22, localpref 100, from 172.31.17.4
3152 AS path: I, validation-state: unverified
3153 via gr-0/0/0.4001, Push 17
3154 > via gr-0/0/0.4002, Push 17
3155100.124.0.244:17511:172.40.2.0/24
3156 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
3157 AS path: I, validation-state: unverified
3158 via gr-0/0/0.4001, Push 19
3159 > via gr-0/0/0.4002, Push 19
3160 [BGP/170] 00:52:22, localpref 100, from 172.31.17.4
3161 AS path: I, validation-state: unverified
3162 via gr-0/0/0.4001, Push 19
3163 > via gr-0/0/0.4002, Push 19
3164100.124.0.244:17522:0.0.0.0/0
3165 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
3166 AS path: I, validation-state: unverified
3167 > via gr-0/0/0.4001, Push 22
3168 [BGP/170] 00:52:21, localpref 100, from 172.31.17.4
3169 AS path: I, validation-state: unverified
3170 > via gr-0/0/0.4001, Push 22
3171100.124.0.244:17522:172.40.2.0/24
3172 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
3173 AS path: I, validation-state: unverified
3174 > via gr-0/0/0.4001, Push 22
3175 [BGP/170] 00:52:21, localpref 100, from 172.31.17.4
3176 AS path: I, validation-state: unverified
3177 > via gr-0/0/0.4001, Push 22
3178100.124.0.244:17523:0.0.0.0/0
3179 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
3180 AS path: I, validation-state: unverified
3181 > via gr-0/0/0.4002, Push 21
3182 [BGP/170] 00:52:21, localpref 100, from 172.31.17.4
3183 AS path: I, validation-state: unverified
3184 > via gr-0/0/0.4002, Push 21
3185100.124.0.244:17523:172.40.2.0/24
3186 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
3187 AS path: I, validation-state: unverified
3188 > via gr-0/0/0.4002, Push 21
3189 [BGP/170] 00:52:21, localpref 100, from 172.31.17.4
3190 AS path: I, validation-state: unverified
3191 > via gr-0/0/0.4002, Push 21
3192239.1.148.125:17510:0.0.0.0/0
3193 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
3194 AS path: I, validation-state: unverified
3195 > via gr-0/0/0.4001, Push 18
3196 via gr-0/0/0.4002, Push 18
3197 [BGP/170] 00:51:18, localpref 100, from 172.31.17.4
3198 AS path: I, validation-state: unverified
3199 > via gr-0/0/0.4001, Push 18
3200 via gr-0/0/0.4002, Push 18
3201239.1.148.125:17510:172.40.2.0/24
3202 *[BGP/170] 00:50:59, localpref 100, from 172.31.17.5
3203 AS path: I, validation-state: unverified
3204 > via gr-0/0/0.4001, Push 18
3205 via gr-0/0/0.4002, Push 18
3206 [BGP/170] 00:51:18, localpref 100, from 172.31.17.4
3207 AS path: I, validation-state: unverified
3208 > via gr-0/0/0.4001, Push 18
3209 via gr-0/0/0.4002, Push 18
3210
3211lab@4837280A43AE.spokenew.JU_115>