Keith@SRX> show configuration | display set | no-more set version 15.1X49-D70.3 set system host-name SRX set system auto-snapshot set system root-authentication encrypted-password "$5$g0Goc8Gq$rNry7Miy053DtuFPuYqBxr0XuQNa2A6RBCt7bcRwun4" set system name-server 8.8.8.8 set system name-server 8.8.4.4 set system login message "This is Keith's Home LAB on SRX 300" set system login idle-timeout 10 set system login user Keith uid 123 set system login user Keith class super-user set system login user Keith authentication encrypted-password "$5$oFEeHlec$CbQQAfOkhVqnvaaQQK070b8liIJotOd8av0gZhaMBD4" set system services ssh root-login deny set system services telnet set system services xnm-clear-text set system services netconf ssh set system services dhcp-local-server group jdhcp-group interface irb.0 set system services web-management https system-generated-certificate set system syslog archive size 100k set system syslog archive files 3 set system syslog user * any emergency set system syslog file messages any any set system syslog file messages authorization info set system syslog file interactive-commands interactive-commands any set system max-configurations-on-flash 49 set system max-configuration-rollbacks 49 set system license autoupdate url https://ae1.juniper.net/junos/key_retrieval set system ntp server 216.239.35.4 set security address-book global address server-1 192.168.1.25/32 set security address-book global address g-Roblox-Address 128.116.119.0/24 set security screen ids-option untrust-screen icmp flood threshold 10 set security screen ids-option untrust-screen icmp ping-death set security screen ids-option untrust-screen ip source-route-option set security screen ids-option untrust-screen ip tear-drop set security screen ids-option untrust-screen tcp syn-flood alarm-threshold 1024 set security screen ids-option untrust-screen tcp syn-flood attack-threshold 200 set security screen ids-option untrust-screen tcp syn-flood source-threshold 1024 set security screen ids-option untrust-screen tcp syn-flood destination-threshold 2048 set security screen ids-option untrust-screen tcp syn-flood timeout 20 set security screen ids-option untrust-screen tcp land set security nat source rule-set trust-to-untrust from zone trust set security nat source rule-set trust-to-untrust to zone untrust set security nat source rule-set trust-to-untrust rule source-nat-rule match source-address 0.0.0.0/0 set security nat source rule-set trust-to-untrust rule source-nat-rule then source-nat interface set security nat destination pool dst-nat-pool-1 address 192.168.1.25/32 set security nat destination pool dst-nat-pool-1 address port 5001 set security nat destination rule-set rs1 from zone untrust set security nat destination rule-set rs1 rule r1 match destination-address 90.209.188.0/22 set security nat destination rule-set rs1 rule r1 match destination-port 5001 set security nat destination rule-set rs1 rule r1 match destination-port 4500 set security nat destination rule-set rs1 rule r1 match destination-port 500 set security nat destination rule-set rs1 rule r1 match destination-port 1701 set security nat destination rule-set rs1 rule r1 then destination-nat pool dst-nat-pool-1 set security nat proxy-arp interface ge-0/0/0.0 address 90.209.188.0/22 set security policies traceoptions file policylog set security policies traceoptions file size 2m set security policies traceoptions file files 2 set security policies traceoptions flag all set security policies from-zone trust to-zone trust policy trust-to-trust match source-address any set security policies from-zone trust to-zone trust policy trust-to-trust match destination-address any set security policies from-zone trust to-zone trust policy trust-to-trust match application any set security policies from-zone trust to-zone trust policy trust-to-trust then permit set security policies from-zone trust to-zone untrust policy Roblox-Block description "Block Roblox" set security policies from-zone trust to-zone untrust policy Roblox-Block match source-address any set security policies from-zone trust to-zone untrust policy Roblox-Block match destination-address g-Roblox-Address set security policies from-zone trust to-zone untrust policy Roblox-Block match application any set security policies from-zone trust to-zone untrust policy Roblox-Block then deny set security policies from-zone trust to-zone untrust policy Roblox-Block then log session-init set security policies from-zone trust to-zone untrust policy Roblox-Block then log session-close set security policies from-zone trust to-zone untrust policy Roblox-Block then count set security policies from-zone trust to-zone untrust policy trust-to-untrust match source-address any set security policies from-zone trust to-zone untrust policy trust-to-untrust match destination-address any set security policies from-zone trust to-zone untrust policy trust-to-untrust match application any set security policies from-zone trust to-zone untrust policy trust-to-untrust then permit set security policies from-zone untrust to-zone trust policy server-access match source-address any set security policies from-zone untrust to-zone trust policy server-access match destination-address server-1 set security policies from-zone untrust to-zone trust policy server-access match application any set security policies from-zone untrust to-zone trust policy server-access then permit set security zones security-zone trust host-inbound-traffic system-services all set security zones security-zone trust host-inbound-traffic protocols all set security zones security-zone trust interfaces irb.0 set security zones security-zone trust interfaces irb.10 set security zones security-zone untrust screen untrust-screen set security zones security-zone untrust host-inbound-traffic system-services http set security zones security-zone untrust host-inbound-traffic system-services https set security zones security-zone untrust host-inbound-traffic system-services ping set security zones security-zone untrust interfaces ge-0/0/0.0 host-inbound-traffic system-services dhcp set security zones security-zone untrust interfaces ge-0/0/0.0 host-inbound-traffic system-services tftp set interfaces traceoptions file interfacelog-22Sept set interfaces traceoptions file size 2m set interfaces traceoptions file files 5 set interfaces ge-0/0/0 unit 0 family inet dhcp-client client-identifier user-id ascii "7c4ca5123456@skydsl|abcd1234" set interfaces ge-0/0/1 unit 0 family ethernet-switching vlan members vlan-trust set interfaces ge-0/0/2 unit 0 family ethernet-switching interface-mode trunk set interfaces ge-0/0/2 unit 0 family ethernet-switching vlan members Office set interfaces ge-0/0/3 unit 0 family ethernet-switching vlan members vlan-trust set interfaces ge-0/0/4 unit 0 family ethernet-switching vlan members vlan-trust set interfaces ge-0/0/5 unit 0 family ethernet-switching vlan members vlan-trust set interfaces ge-0/0/6 unit 0 family ethernet-switching vlan members vlan-trust set interfaces ge-0/0/7 unit 0 family ethernet-switching vlan members vlan-trust set interfaces irb unit 0 family inet address 192.168.1.1/24 set interfaces irb unit 10 family inet address 10.10.10.1/24 set routing-options static route 192.168.1.0/24 next-hop 192.168.1.1 set protocols l2-learning global-mode switching set protocols lldp traceoptions file lldp-logs set protocols lldp interface all set access address-assignment pool junosDHCPPool family inet network 192.168.1.0/24 set access address-assignment pool junosDHCPPool family inet range junosRange low 192.168.1.2 set access address-assignment pool junosDHCPPool family inet range junosRange high 192.168.1.254 set access address-assignment pool junosDHCPPool family inet dhcp-attributes name-server 8.8.8.8 set access address-assignment pool junosDHCPPool family inet dhcp-attributes router 192.168.1.1 set access address-assignment pool junosDHCPPool family inet dhcp-attributes propagate-settings ge-0/0/0.0 set access address-assignment pool junosDHCPPool family inet host NAS hardware-address 00:11:32:8a:86:33 set access address-assignment pool junosDHCPPool family inet host NAS ip-address 192.168.1.25 set access address-assignment pool junosDHCPPool family inet host SynologyRouter hardware-address 00:11:32:a4:cc:98 set access address-assignment pool junosDHCPPool family inet host SynologyRouter ip-address 192.168.1.35 set access address-assignment pool OfficeDHCP family inet network 10.10.10.0/24 set access address-assignment pool OfficeDHCP family inet range OfficeDHCP-Range low 10.10.10.20 set access address-assignment pool OfficeDHCP family inet range OfficeDHCP-Range high 10.10.10.254 set access address-assignment pool OfficeDHCP family inet dhcp-attributes name-server 8.8.8.8 set access address-assignment pool OfficeDHCP family inet dhcp-attributes router 10.10.10.1 set access address-assignment pool OfficeDHCP family inet dhcp-attributes propagate-settings irb.10 set vlans Office vlan-id 10 set vlans Office l3-interface irb.10 set vlans vlan-trust vlan-id 3 set vlans vlan-trust l3-interface irb.0