Table 2: NAT Rules
Policy ActionDestination ZoneSource Zone
Source NAT to untrust zone interfaceuntrusttrust
Table 3: Ethernet Interfaces
IP AddressDHCP StateSecurity ZoneInterfacePort Label
UnassignedClientuntrustge-0/0/0 and ge-0/0/90/0 and 0/9
192.168.1.1/24Servertrustge-0/0/10/1
192.168.2.1/24Servertrustge-0/0/20/2
192.168.3.1/24Servertrustge-0/0/30/3
192.168.4.1/24Servertrustge-0/0/40/4
192.168.5.1/24Servertrustge-0/0/50/5
Table 4: LTE Interfaces
IP AddressSecurity ZoneInterface
N/AN/Acl-1/0/0
ISP assigned*untrustdl0 (logical)
Only if the LTE Mini-PIM is present
The SRX550 High Memory device is shipped with the following services and protocols enabled by default:
Table 5: Services, Protocols, and Startup Mode
Device Startup ModeProtocolsServices
SwitchingRSTP (all interfaces)SSH
HTTPS
NETCONF over SSH
To provide secure traffic, a basic set of screens are configured on the untrust zone.
4