set version 12.1X47-D20.7 set system host-name vSRX1a set system time-zone Asia/Tokyo set system no-redirects set system root-authentication encrypted-password "$1$Ke0MwFgr$v7ydmBht8.UfwSuFbA0UR0" set system login class super-user-local idle-timeout 0 set system login class super-user-local permissions all set system login user admin uid 2000 set system login user admin class super-user-local set system login user admin authentication encrypted-password "$1$hhtAf5HI$E8ENK8/Npene7dKL25Eek1" set system services telnet set system syslog user * any emergency set system syslog host 192.168.12.29 any any set system syslog host 192.168.12.29 interactive-commands none set system syslog file messages any any set system syslog file messages authorization info set system syslog file messages interactive-commands none set system syslog file interactive-commands interactive-commands any set system license autoupdate url https://ae1.juniper.net/junos/key_retrieval set system ntp boot-server 192.168.12.29 set system ntp server 192.168.12.29 set interfaces ge-0/0/0 description IF-1B set interfaces ge-0/0/0 unit 0 family inet address 10.0.11.1/30 set interfaces ge-0/0/0 unit 0 family iso set interfaces ge-0/0/1 description IF-1C set interfaces ge-0/0/1 unit 0 family inet address 10.0.12.1/30 set interfaces ge-0/0/1 unit 0 family iso set interfaces ge-0/0/2 description IF-MGMT set interfaces ge-0/0/2 unit 0 family inet address 192.168.12.11/24 set interfaces lo0 unit 0 family inet address 10.0.1.1/32 set interfaces lo0 unit 0 family iso address 49.0002.0192.0168.1211.00 set routing-options static route 10.4.0.0/24 discard set routing-options static route 10.4.0.0/24 tag 10 set routing-options static route 10.0.1.0/24 discard set routing-options static route 10.0.1.0/24 tag 1 set routing-options router-id 10.0.1.1 set routing-options autonomous-system 1 set protocols bgp path-selection always-compare-med set protocols bgp group i1 type internal set protocols bgp group i1 local-address 10.0.1.1 set protocols bgp group i1 export s2b set protocols bgp group i1 neighbor 10.0.1.2 set protocols bgp group i1 neighbor 10.0.1.3 set protocols isis level 1 disable set protocols isis interface ge-0/0/0.0 set protocols isis interface ge-0/0/1.0 set protocols isis interface lo0.0 set policy-options policy-statement s2b term 1 from protocol static set policy-options policy-statement s2b term 1 from tag 10 set policy-options policy-statement s2b term 1 then origin igp set policy-options policy-statement s2b term 1 then as-path-prepend 4 set policy-options policy-statement s2b term 1 then accept set policy-options policy-statement s2b term 10 from protocol static set policy-options policy-statement s2b term 10 from tag 1 set policy-options policy-statement s2b term 10 then accept set policy-options policy-statement s2b term 999 then reject set security forwarding-options family inet6 mode packet-based set security forwarding-options family mpls mode packet-based set security forwarding-options family iso mode packet-based