Net Mode Configuration Commands
75
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
Command example:
SRX5308>
net dmz ipv4 configure
net-config[dmz-ipv4]>
enable_dmz
Keyword Associated Keyword to
Select or Parameter to Type
Description
enable_dmz Y or N Enables or disables the DMZ.
ip_address ipaddress The IP address of the DMZ port.
subnet_mask subnet mask The subnet mask of the DMZ port.
dhcp_mode None,
DHCP-Serves or
DHCP-Relay
Specifies the DHCP mode:
• None. DHCP is disabled for the DMZ.
• DHCP-Server. DHCP is enabled for the DMZ.
You can configure all keywords and parameters
except the relay_gateway keyword and
associated parameter.
• DHCP-Relay. Addresses are assigned in the
DMZ by a DHCP Relay. Configure the
relay_gateway keyword and associated
parameter.
dns_proxy_enable Y or N Enables or disables the DNS proxy.
DHCP server
domain_name domain name The server domain name (string) or FQDN for the
DHCP server.
starting_ip_address ipaddress The start IP address for the DHCP address pool.
ending_ip_address ipaddress The end IP address for the DHCP address pool.
primary_dns_server ipaddress The IP address of the primary DNS server in the
DMZ DHCP configuration.
secondary_dns_server ipaddress The IP address of the secondary DNS server in
the DMZ DHCP configuration.
wins_server ipaddress The IP address of the WINS server in the DMZ
DHCP configuration.
lease_time hours The duration in hours for which an IP address is
leased.
enable_ldap Y or N Enables or disables LDAP.
ldap_serverip ipaddress The IP address of the LDAP server.
ldap_search_base search base The search base (string) for LDAP
ldap_port number The port number for the LDAP server.
DHCP relay
relay_gateway ipaddress Set DHCP relay gateway server.