JUniPer Cloud-Ready SRX Firewalls User Guide

June 10, 2024
JUNIPer

JUniPer Cloud-Ready SRX Firewalls

Product Information

The Cloud-Ready SRX Firewalls come with a QR claim code on the front or back panel, making them cloud-ready. These firewalls can be onboarded using the Mist AI mobile app or a web browser. The Mist AI app can be downloaded from Google Play Store or Apple App Store. The firewalls can be claimed and added to the organization’s inventory automatically using the app. The web browser onboarding process requires an activation code or claim code, which is provided to the user upon purchase.

Begin

This guide walks you through the simple steps to get a new cloud-ready SRX firewall up and running in the Mist cloud. You can onboard one or more firewalls using your computer, or a single firewall using your mobile phone. We show you how to complete two different ZTP-based onboarding methods:

  • To onboard a single firewall using your mobile phone.
  • To onboard one or more firewalls using your computer.

Your SRX firewall is cloud-ready if it has a QR claim code on the front or back panel.

Onboard One SRX Firewall Using the Mist AI Mobile App
From your mobile phone:

  1. Download and install the Mist AI app from the Google Play Store or Apple App Store.
  2. Open the Mist AI app and log in using your account credentials. If you do not have an account, see Create a Mist Account and Organization for details about creating one.
  3. Select your organization.
  4. Tap Claim Devices to Org and focus the camera on the QR code. The app automatically claims the SRX firewall and adds it into your organization’s inventory.
  5. On the Organization screen, tap Device Inventory → WAN Edges → Unassigned.
  6. Select the new SRX firewall. Then tap Primary Site and tap Assign.

Onboard One or More SRX Firewalls Using a Web Browser
Onboarding multiple SRX firewalls—
When you purchase multiple SRX firewalls, we provide you with an activation code along with your PO information. Make a note of this code.
Onboarding a single SRX firewall— Locate the QR code on your SRX firewall and jot down the alphanumeric claim code directly above it.

  1. Log in to your account at https://manage.mist.com/.
    If you don’t have an account, see Create a Mist Account and Organization for details about creating one.

  2. Go to Organization → Inventory → WAN Edges and click Claim WAN Edges.

  3. Enter the Activation code or Claim code.

  4. Confirm that Assign claimed WAN Edges to site is checked and Primary Site appears below the checkbox.

  5. Select Manage configuration with Mist.

  6. Enter a Root Password. This password becomes the root password on each claimed SRX firewall.

  7. Click Claim.
    If you claim multiple firewalls, expect a slight delay for the WAN Edges Claim Results window to pop up. Review the information and Close the window.

  8. View your new firewall or firewalls on the Inventory page. The status should show Disconnected.

Up and Running

Install the SRX Firewall in a Rack
The rack installation and power-on procedures vary slightly for each SRX firewall. For instructions specific to your SRX firewall, see the applicable hardware guide on the Juniper Mist Supported Hardware page.

Connect to the Network and Power On the SRX Firewall
NOTE:
Certain tasks in this procedure require you to configure or connect to services within your local network. Please be aware that we don’t provide instructions on how to configure or locate these services.

  1. Connect the 0/0 port (ge-0/0/0 interface) to the WAN network. The interface receives an IP address from the DHCP service provided by the ISP.
  2. Open ports TCP 443 and TCP 2200 on your Internet firewall to allow outbound communication between the SRX and the Mist cloud. You also need to open port TCP 6514 to allow the SRX to send traffic logs to the Mist cloud.
  3. Connect an Ethernet cable to any traffic (revenue) port on the SRX firewall and to your local network.
  4. Connect power to the firewall.
  5. Wait for a few minutes for the firewall to boot completely.

The SRX firewall should now appear as green/connected in the Mist portal. Congratulations! You’ve successfully onboarded your cloud-ready SRX firewall.

Keep Going

What’s Next?
Use the Mist portal to configure and monitor your SRX firewall for your network. These tables provide links to additional information to help you get started.

If you want to Then
Add a network See Networks
Define applications and configure application policies See

Applications
Create a template| See SRX WAN Edge Templates
Configure Sites| See Configure Sites and Variables
View and manage your Mist subscriptions| See Subscriptions and Activations
Learn about adopting (brownfield onboarding) an SRX firewall| See Adopting an SRX Firewall

General Information

If you want to Then
See all documentation available for WAN Assurance Visit [WAN Assurance

Documentation](https://www.juniper.net/documentation/product/us/en/mist-wan- assurance/)
Learn about Marvis| Visit Marvis Documentation
See all documentation available for Junos OS| Visit Junos OS Documentation
See product update information| Visit Product Updates

Learn with Videos

If you want to Then
See how you can configure an SRX cluster Watch the [Configuring an SRX

Cluster ](https://www.youtube.com/watch?v=Xc8rAqKdGnA)video
See a demonstration of how to deploy a branch site using templates| Watch the Design and Deploy a Branch Site Using Templates video
Learn how to deploy WAN Assurance| Watch the Deploy WAN Assurance on the SRX video

Juniper Networks, the Juniper Networks logo, Juniper, and Junos are registered trademarks of Juniper Networks, Inc. in the United States and other countries. All other trademarks, service marks, registered marks, or registered service marks are the property of their respective owners. Juniper Networks assumes no responsibility for any inaccuracies in this document. Juniper Networks reserves the right to change, modify, transfer, or otherwise revise this publication without notice. Copyright © 2023 Juniper Networks, Inc. All rights reserved.

References

Read User Manual Online (PDF format)

Read User Manual Online (PDF format)  >>

Download This Manual (PDF format)

Download this manual  >>

Related Manuals