Interface Terse
Run: show interfaces terse
1 step
-
Send
show interfaces terseSends Enter afterwards.
EX, MX and SRX: candidate config, commit confirmed, BGP and policies.
by Nathan Kirk · 82 downloads · MIT licence · revision 1 · published 14 Aug 2026
Set Interface Address — Writes configuration to persistent storage (steps[3], sent text)
commit confirmed {{MINUTES}}
Add Access VLAN to Port — Writes configuration to persistent storage (steps[4], sent text)
commit confirmed {{MINUTES}}
Add Trunk VLAN to Port — Writes configuration to persistent storage (steps[3], sent text)
commit confirmed {{MINUTES}}
Add Static Route — Writes configuration to persistent storage (steps[3], sent text)
commit confirmed {{MINUTES}}
Disable Interface — Writes configuration to persistent storage (steps[4], sent text)
commit confirmed {{MINUTES}}
Delete Interface Config — Writes configuration to persistent storage (steps[4], sent text)
commit confirmed {{MINUTES}}
Load Factory Default Config — Factory resets the device (steps[2], sent text)
load factory-default
Create Allow Policy — Writes configuration to persistent storage (steps[6], sent text)
commit confirmed {{MINUTES}}
Create Deny Policy — Writes configuration to persistent storage (steps[7], sent text)
commit confirmed {{MINUTES}}
Delete Security Policy — Writes configuration to persistent storage (steps[4], sent text)
commit confirmed {{MINUTES}}
Reboot Device — Reboots or reloads the device (steps[1], sent text)
request system reboot
Flagged automatically by matching command text. It is a prompt to read the script, not a verdict — plenty of legitimate buttons reboot things on purpose.
4 sets, 131 buttons, 245 steps · 175.5 KB
File format version 1 · exported by Smartcom Revisited
db3867e17c9a625927ae81e4dfd206665ae98944fb116eb637fe6e0ad9006c01
You get the exact file the uploader submitted, byte for byte — that checksum is what
sha256sum will print. Import it from the button panel in
SmartCom Revisited.
Exactly what gets sent
This is the complete script of the file below — nothing is summarised or hidden. Read it before you download it, the same way you would read a script someone emailed you.
Interfaces, chassis health, ARP, LLDP and the routing table.
Run: show interfaces terse
1 step
show interfaces terse
Sends Enter afterwards.
Run: show interfaces descriptions
1 step
show interfaces descriptions
Sends Enter afterwards.
Run: show interfaces {{IFACE}} detail
1 step · 1 input
show interfaces {{IFACE}} detail
Sends Enter afterwards.
Run: show interfaces {{IFACE}} extensive
1 step · 1 input
show interfaces {{IFACE}} extensive
Sends Enter afterwards.
Run: show interfaces {{IFACE}} statistics
1 step · 1 input
show interfaces {{IFACE}} statistics
Sends Enter afterwards.
Run: show interfaces {{IFACE}} media
1 step · 1 input
show interfaces {{IFACE}} media
Sends Enter afterwards.
Run: show interfaces diagnostics optics {{IFACE}}
1 step · 1 input
show interfaces diagnostics optics {{IFACE}}
Sends Enter afterwards.
Run: show ethernet-switching table
1 step
show ethernet-switching table
Sends Enter afterwards.
Run: show ethernet-switching table | match {{MAC}}
1 step · 1 input
show ethernet-switching table | match {{MAC}}
Sends Enter afterwards.
Run: show vlans
1 step
show vlans
Sends Enter afterwards.
Run: show vlans {{VLAN_NAME}} detail
1 step · 1 input
show vlans {{VLAN_NAME}} detail
Sends Enter afterwards.
Run: show spanning-tree bridge
1 step
show spanning-tree bridge
Sends Enter afterwards.
Run: show spanning-tree interface
1 step
show spanning-tree interface
Sends Enter afterwards.
Run: show lacp interfaces
1 step
show lacp interfaces
Sends Enter afterwards.
Run: show lldp neighbors
1 step
show lldp neighbors
Sends Enter afterwards.
Run: show arp
1 step
show arp
Sends Enter afterwards.
Run: show arp | match {{IP}}
1 step · 1 input
show arp | match {{IP}}
Sends Enter afterwards.
Run: show ipv6 neighbors
1 step
show ipv6 neighbors
Sends Enter afterwards.
Run: show chassis hardware
1 step
show chassis hardware
Sends Enter afterwards.
Run: show chassis alarms
1 step
show chassis alarms
Sends Enter afterwards.
Run: show chassis environment
1 step
show chassis environment
Sends Enter afterwards.
Run: show chassis routing-engine
1 step
show chassis routing-engine
Sends Enter afterwards.
Run: show system uptime
1 step
show system uptime
Sends Enter afterwards.
Run: show system storage
1 step
show system storage
Sends Enter afterwards.
Run: show system processes extensive | match cpu
1 step
show system processes extensive | match cpu
Sends Enter afterwards.
Run: show virtual-chassis status
1 step
show virtual-chassis status
Sends Enter afterwards.
Run: show poe interface
1 step
show poe interface
Sends Enter afterwards.
Run: show version
1 step
show version
Sends Enter afterwards.
Run: show system license
1 step
show system license
Sends Enter afterwards.
Run: show system alarms
1 step
show system alarms
Sends Enter afterwards.
Route table, BGP, OSPF, static routes and path testing.
Run: show route summary
1 step
show route summary
Sends Enter afterwards.
Run: show route
1 step
show route
Sends Enter afterwards.
Run: show route {{PREFIX}}
1 step · 1 input
show route {{PREFIX}}
Sends Enter afterwards.
Run: show route {{PREFIX}} detail
1 step · 1 input
show route {{PREFIX}} detail
Sends Enter afterwards.
Run: show route {{IP}} exact
1 step · 1 input
show route {{IP}} exact
Sends Enter afterwards.
Run: show route protocol static
1 step
show route protocol static
Sends Enter afterwards.
Run: show route protocol direct
1 step
show route protocol direct
Sends Enter afterwards.
Run: show route table {{VRF}}.inet.0
1 step · 1 input
show route table {{VRF}}.inet.0
Sends Enter afterwards.
Run: show route forwarding-table destination {{IP}}
1 step · 1 input
show route forwarding-table destination {{IP}}
Sends Enter afterwards.
Run: show bgp summary
1 step
show bgp summary
Sends Enter afterwards.
Run: show bgp neighbor {{PEER}}
1 step · 1 input
show bgp neighbor {{PEER}}
Sends Enter afterwards.
Run: show route receive-protocol bgp {{PEER}}
1 step · 1 input
show route receive-protocol bgp {{PEER}}
Sends Enter afterwards.
Run: show route advertising-protocol bgp {{PEER}}
1 step · 1 input
show route advertising-protocol bgp {{PEER}}
Sends Enter afterwards.
Run: show bgp group
1 step
show bgp group
Sends Enter afterwards.
Run: show ospf neighbor
1 step
show ospf neighbor
Sends Enter afterwards.
Run: show ospf interface
1 step
show ospf interface
Sends Enter afterwards.
Run: show ospf database
1 step
show ospf database
Sends Enter afterwards.
Run: show ospf route
1 step
show ospf route
Sends Enter afterwards.
Run: show isis adjacency
1 step
show isis adjacency
Sends Enter afterwards.
Run: show mpls interface
1 step
show mpls interface
Sends Enter afterwards.
Run: show ldp neighbor
1 step
show ldp neighbor
Sends Enter afterwards.
Run: show rsvp session
1 step
show rsvp session
Sends Enter afterwards.
Run: show vrrp summary
1 step
show vrrp summary
Sends Enter afterwards.
Run: show route instance summary
1 step
show route instance summary
Sends Enter afterwards.
Run: ping {{HOST}} count {{COUNT}}
1 step · 2 inputs
ping {{HOST}} count {{COUNT}}
Sends Enter afterwards.
Run: ping {{HOST}} routing-instance {{VRF}} count {{COUNT}}
1 step · 3 inputs
ping {{HOST}} routing-instance {{VRF}} count {{COUNT}}
Sends Enter afterwards.
Run: ping {{HOST}} source {{IP}} count {{COUNT}}
1 step · 3 inputs
ping {{HOST}} source {{IP}} count {{COUNT}}
Sends Enter afterwards.
Run: traceroute {{HOST}}
1 step · 1 input
traceroute {{HOST}}
Sends Enter afterwards.
Run: traceroute {{HOST}} routing-instance {{VRF}}
1 step · 2 inputs
traceroute {{HOST}} routing-instance {{VRF}}
Sends Enter afterwards.
Run: show host {{FQDN}}
1 step · 1 input
show host {{FQDN}}
Sends Enter afterwards.
Run: clear bgp neighbor {{PEER}}
2 steps · asks for confirmation before it runs · 1 input
Asks yes or no: “Reset the BGP session with {{PEER}}. Every prefix from that peer is withdrawn until the session rebuilds. Continue?”
Answering no stops the script here.
clear bgp neighbor {{PEER}}
Sends Enter afterwards.
Run: clear bgp neighbor soft {{PEER}}
2 steps · asks for confirmation before it runs · 1 input
Asks yes or no: “Re-exchange routes with {{PEER}} without dropping the session. Prefixes may churn while it settles. Continue?”
Answering no stops the script here.
clear bgp neighbor soft {{PEER}}
Sends Enter afterwards.
Run: clear arp hostname {{IP}}
2 steps · asks for confirmation before it runs · 1 input
Asks yes or no: “Remove the ARP entry for {{IP}}. Traffic to that host pauses until it is re-resolved. Continue?”
Answering no stops the script here.
clear arp hostname {{IP}}
Sends Enter afterwards.
Run: clear ospf neighbor
2 steps · asks for confirmation before it runs
Asks yes or no: “Reset every OSPF adjacency. Routes are withdrawn and reconverge — expect a brief loss of transit. Continue?”
Answering no stops the script here.
clear ospf neighbor
Sends Enter afterwards.
Candidate edits, compare, commit confirmed and rollback.
Run: show configuration
1 step
show configuration
Sends Enter afterwards.
Run: show configuration | display set
1 step
show configuration | display set
Sends Enter afterwards.
Run: show configuration {{PATTERN}}
1 step · 1 input
show configuration {{PATTERN}}
Sends Enter afterwards.
Run: show configuration interfaces {{IFACE}}
1 step · 1 input
show configuration interfaces {{IFACE}}
Sends Enter afterwards.
Run: configure ; show | compare ; exit
3 steps
configure
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: show system commit
1 step
show system commit
Sends Enter afterwards.
Run: configure ; rollback ? ; exit
3 steps
configure
Sends Enter afterwards.
rollback ?
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; show | compare rollback 1 ; exit
3 steps
configure
Sends Enter afterwards.
show | compare rollback 1
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: show system users
1 step
show system users
Sends Enter afterwards.
Run: configure ; status ; exit
3 steps
configure
Sends Enter afterwards.
status
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; set interfaces {{IFACE}} description "{{DESCRIPTION}}" ; show | compare ; commit comment "{{COMMENT}}" ; exit
5 steps · asks for confirmation before it runs · 3 inputs
configure
Sends Enter afterwards.
set interfaces {{IFACE}} description "{{DESCRIPTION}}"
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit comment "{{COMMENT}}"
Sends Enter afterwards.
exit
Sends Enter afterwards.
Commits with a rollback timer — run Confirm Commit within the window or it reverts itself.
5 steps · asks for confirmation before it runs · 4 inputs
configure
Sends Enter afterwards.
set interfaces {{IFACE}} unit 0 family inet address {{IP}}/{{PREFIX_LEN}}
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit confirmed {{MINUTES}}
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; set interfaces {{IFACE}} unit 0 family ethernet-switching interface-mode access ; set interfaces {{IFACE}} unit 0 family ethernet-switching vlan members {{VLAN_NAME}} ; show | compare ; commit confirmed {{MINUTES}} ; exit
6 steps · asks for confirmation before it runs · 3 inputs
configure
Sends Enter afterwards.
set interfaces {{IFACE}} unit 0 family ethernet-switching interface-mode access
Sends Enter afterwards.
set interfaces {{IFACE}} unit 0 family ethernet-switching vlan members {{VLAN_NAME}}
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit confirmed {{MINUTES}}
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; set interfaces {{IFACE}} unit 0 family ethernet-switching vlan members {{VLAN_NAME}} ; show | compare ; commit confirmed {{MINUTES}} ; exit
5 steps · asks for confirmation before it runs · 3 inputs
configure
Sends Enter afterwards.
set interfaces {{IFACE}} unit 0 family ethernet-switching vlan members {{VLAN_NAME}}
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit confirmed {{MINUTES}}
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; set vlans {{VLAN_NAME}} vlan-id {{VLAN}} ; show | compare ; commit comment "{{COMMENT}}" ; exit
5 steps · asks for confirmation before it runs · 3 inputs
configure
Sends Enter afterwards.
set vlans {{VLAN_NAME}} vlan-id {{VLAN}}
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit comment "{{COMMENT}}"
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; set routing-options static route {{PREFIX}} next-hop {{NEXT_HOP}} ; show | compare ; commit confirmed {{MINUTES}} ; exit
5 steps · asks for confirmation before it runs · 3 inputs
configure
Sends Enter afterwards.
set routing-options static route {{PREFIX}} next-hop {{NEXT_HOP}}
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit confirmed {{MINUTES}}
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; set system host-name {{HOSTNAME}} ; commit comment "{{COMMENT}}" ; exit
4 steps · asks for confirmation before it runs · 2 inputs
configure
Sends Enter afterwards.
set system host-name {{HOSTNAME}}
Sends Enter afterwards.
commit comment "{{COMMENT}}"
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; set system ntp server {{NTP}} ; commit ; exit
4 steps · asks for confirmation before it runs · 1 input
configure
Sends Enter afterwards.
set system ntp server {{NTP}}
Sends Enter afterwards.
commit
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; set system syslog host {{SERVER}} any notice ; commit ; exit
4 steps · asks for confirmation before it runs · 1 input
configure
Sends Enter afterwards.
set system syslog host {{SERVER}} any notice
Sends Enter afterwards.
commit
Sends Enter afterwards.
exit
Sends Enter afterwards.
Makes the last commit confirmed permanent. Run this before the rollback timer expires.
4 steps · asks for confirmation before it runs
configure
Sends Enter afterwards.
commit check
Sends Enter afterwards.
commit
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; commit check ; exit
3 steps · asks for confirmation before it runs
configure
Sends Enter afterwards.
commit check
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: save {{FILE}}
1 step · asks for confirmation before it runs · 1 input
save {{FILE}}
Sends Enter afterwards.
Run: configure ; rollback 0 ; exit
4 steps · asks for confirmation before it runs
Asks yes or no: “Throw away every uncommitted change in the candidate config, including anything a colleague is part-way through. Continue?”
Answering no stops the script here.
configure
Sends Enter afterwards.
rollback 0
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; rollback 1 ; show | compare ; commit ; exit
6 steps · asks for confirmation before it runs
Asks yes or no: “Revert to the configuration before the last commit and apply it. Any change made since is undone. Continue?”
Answering no stops the script here.
configure
Sends Enter afterwards.
rollback 1
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; rollback {{ROLLBACK}} ; show | compare ; commit ; exit
6 steps · asks for confirmation before it runs · 1 input
Asks yes or no: “Revert to rollback {{ROLLBACK}} and commit it. Everything configured since that point is undone, including current management access. Continue?”
Answering no stops the script here.
configure
Sends Enter afterwards.
rollback {{ROLLBACK}}
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; set interfaces {{IFACE}} disable ; show | compare ; commit confirmed {{MINUTES}} ; exit
6 steps · asks for confirmation before it runs · 2 inputs
Asks yes or no: “Disable {{IFACE}}. The link drops as soon as this commits. It is a commit confirmed, so it reverts on its own if you lose access — do not confirm it until you are sure. Continue?”
Answering no stops the script here.
configure
Sends Enter afterwards.
set interfaces {{IFACE}} disable
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit confirmed {{MINUTES}}
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; delete interfaces {{IFACE}} ; show | compare ; commit confirmed {{MINUTES}} ; exit
6 steps · asks for confirmation before it runs · 2 inputs
Asks yes or no: “Remove the whole configuration for {{IFACE}}, addressing and VLANs included. Continue?”
Answering no stops the script here.
configure
Sends Enter afterwards.
delete interfaces {{IFACE}}
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit confirmed {{MINUTES}}
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; load factory-default ; show | compare ; exit
5 steps · asks for confirmation before it runs
Asks yes or no: “Load the factory default into the candidate config. It is not committed by this button, but committing it afterwards wipes the device. Continue?”
Answering no stops the script here.
configure
Sends Enter afterwards.
load factory-default
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
exit
Sends Enter afterwards.
Security policies, zones, NAT, sessions and IPsec on SRX.
Run: show security policies
1 step
show security policies
Sends Enter afterwards.
Run: show security policies policy-name {{POLICY}} detail
1 step · 1 input
show security policies policy-name {{POLICY}} detail
Sends Enter afterwards.
Run: show security policies hit-count
1 step
show security policies hit-count
Sends Enter afterwards.
Run: show security zones
1 step
show security zones
Sends Enter afterwards.
Run: show security zones {{ZONE}}
1 step · 1 input
show security zones {{ZONE}}
Sends Enter afterwards.
Run: show security address-book
1 step
show security address-book
Sends Enter afterwards.
Run: show configuration applications
1 step
show configuration applications
Sends Enter afterwards.
Run: show security flow session summary
1 step
show security flow session summary
Sends Enter afterwards.
Run: show security flow session
1 step
show security flow session
Sends Enter afterwards.
Run: show security flow session source-prefix {{IP}}
1 step · 1 input
show security flow session source-prefix {{IP}}
Sends Enter afterwards.
Run: show security flow session destination-port {{PORT}}
1 step · 1 input
show security flow session destination-port {{PORT}}
Sends Enter afterwards.
Run: show security flow session policy {{POLICY}}
1 step · 1 input
show security flow session policy {{POLICY}}
Sends Enter afterwards.
Run: show security nat source rule all
1 step
show security nat source rule all
Sends Enter afterwards.
Run: show security nat source pool all
1 step
show security nat source pool all
Sends Enter afterwards.
Run: show security nat destination rule all
1 step
show security nat destination rule all
Sends Enter afterwards.
Run: show security nat static rule all
1 step
show security nat static rule all
Sends Enter afterwards.
Run: show security flow session nat
1 step
show security flow session nat
Sends Enter afterwards.
Run: show security ipsec security-associations
1 step
show security ipsec security-associations
Sends Enter afterwards.
Run: show security ipsec security-associations detail
1 step
show security ipsec security-associations detail
Sends Enter afterwards.
Run: show security ike security-associations
1 step
show security ike security-associations
Sends Enter afterwards.
Run: show security ike security-associations detail
1 step
show security ike security-associations detail
Sends Enter afterwards.
Run: show security screen statistics zone {{ZONE}}
1 step · 1 input
show security screen statistics zone {{ZONE}}
Sends Enter afterwards.
Run: show security idp status
1 step
show security idp status
Sends Enter afterwards.
Run: show security utm status
1 step
show security utm status
Sends Enter afterwards.
Run: show chassis cluster status
1 step
show chassis cluster status
Sends Enter afterwards.
Run: show chassis cluster interfaces
1 step
show chassis cluster interfaces
Sends Enter afterwards.
Run: show chassis cluster statistics
1 step
show chassis cluster statistics
Sends Enter afterwards.
Run: configure ; set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} match source-address {{SRC}} ; set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} match destination-address {{DST}} ; set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} match application {{SERVICE}} ; set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} then permit ; show | compare ; commit confirmed {{MINUTES}} ; exit
8 steps · asks for confirmation before it runs · 7 inputs
configure
Sends Enter afterwards.
set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} match source-address {{SRC}}
Sends Enter afterwards.
set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} match destination-address {{DST}}
Sends Enter afterwards.
set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} match application {{SERVICE}}
Sends Enter afterwards.
set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} then permit
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit confirmed {{MINUTES}}
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; set security address-book global address {{OBJECT}} {{SUBNET}} ; commit ; exit
4 steps · asks for confirmation before it runs · 2 inputs
configure
Sends Enter afterwards.
set security address-book global address {{OBJECT}} {{SUBNET}}
Sends Enter afterwards.
commit
Sends Enter afterwards.
exit
Sends Enter afterwards.
Writes matching packet decisions to the flow-trace file. Turn it off again with Stop Flow Trace.
6 steps · asks for confirmation before it runs · 1 input
configure
Sends Enter afterwards.
set security flow traceoptions file flow-trace
Sends Enter afterwards.
set security flow traceoptions flag basic-datapath
Sends Enter afterwards.
set security flow traceoptions packet-filter pf1 source-prefix {{IP}}
Sends Enter afterwards.
commit
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; delete security flow traceoptions ; commit ; exit
4 steps · asks for confirmation before it runs
configure
Sends Enter afterwards.
delete security flow traceoptions
Sends Enter afterwards.
commit
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: show log flow-trace | last {{LINES}}
1 step · 1 input
show log flow-trace | last {{LINES}}
Sends Enter afterwards.
Run: configure ; set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} match source-address {{SRC}} ; set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} match destination-address {{DST}} ; set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} match application any ; set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} then deny ; show | compare ; commit confirmed {{MINUTES}} ; exit
9 steps · asks for confirmation before it runs · 6 inputs
Asks yes or no: “Add a deny policy between {{SRC_ZONE}} and {{DST_ZONE}}. Check the ordering and make sure it cannot match your own management path. Continue?”
Answering no stops the script here.
configure
Sends Enter afterwards.
set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} match source-address {{SRC}}
Sends Enter afterwards.
set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} match destination-address {{DST}}
Sends Enter afterwards.
set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} match application any
Sends Enter afterwards.
set security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} then deny
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit confirmed {{MINUTES}}
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: configure ; delete security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}} ; show | compare ; commit confirmed {{MINUTES}} ; exit
6 steps · asks for confirmation before it runs · 4 inputs
Asks yes or no: “Delete policy {{POLICY}}. Traffic it permitted stops at the default deny. Continue?”
Answering no stops the script here.
configure
Sends Enter afterwards.
delete security policies from-zone {{SRC_ZONE}} to-zone {{DST_ZONE}} policy {{POLICY}}
Sends Enter afterwards.
show | compare
Sends Enter afterwards.
commit confirmed {{MINUTES}}
Sends Enter afterwards.
exit
Sends Enter afterwards.
Run: clear security flow session source-prefix {{IP}}
2 steps · asks for confirmation before it runs · 1 input
Asks yes or no: “Drop every session from {{IP}}. Their connections through this firewall break immediately. Continue?”
Answering no stops the script here.
clear security flow session source-prefix {{IP}}
Sends Enter afterwards.
Run: clear security flow session all
2 steps · asks for confirmation before it runs
Asks yes or no: “Drop every session on this SRX. Every connection through the firewall breaks at once and users will notice. Continue?”
Answering no stops the script here.
clear security flow session all
Sends Enter afterwards.
Run: clear security ipsec security-associations
2 steps · asks for confirmation before it runs
Asks yes or no: “Tear down every IPsec SA. Tunnels renegotiate and traffic across them stops until they do. Continue?”
Answering no stops the script here.
clear security ipsec security-associations
Sends Enter afterwards.
Run: request chassis cluster failover redundancy-group {{GROUP_ID}} node {{NODE_ID}}
2 steps · asks for confirmation before it runs · 2 inputs
Asks yes or no: “Force redundancy group {{GROUP_ID}} to node {{NODE_ID}}. Unsynchronised sessions drop during the switch, and the manual failover has to be reset afterwards. Continue?”
Answering no stops the script here.
request chassis cluster failover redundancy-group {{GROUP_ID}} node {{NODE_ID}}
Sends Enter afterwards.
Run: request system reboot
2 steps · asks for confirmation before it runs
Asks yes or no: “Reboot this Junos device now. Everything through it stops for the length of the boot, and any uncommitted candidate config is lost. Continue?”
Answering no stops the script here.
request system reboot
Sends Enter afterwards.
Sign in to report it, or email abuse@smartcomrevisited.com.