JuniperSRX NAT

查看命令:


run show security flow session

run show security nat source rule all

run show log xxx    //如果有配置system syslog file



edit security nat source rule-set xxx rule xxx

edit security nat source pool xxx     //地址池

edit security nat proxy-arp int ge-0/0/0.0 address x.x.x.x/32 to x.x.x.x/32    //为哪些地址在哪个接口上启用proxy-arp


Destination Nat:

edit security nat destination