set version 12.1X47-D20.7 set system host-name vSRX3a set system time-zone Asia/Tokyo set system root-authentication encrypted-password "$1$B224oSSF$0yqPZe34J76k9BwfTkw0//" set system login user admin uid 2000 set system login user admin class super-user set system login user admin authentication encrypted-password "$1$ZfMf12Vd$gWfEAMgPlhntcQiiaztj4." set system services telnet set system syslog user * any emergency set system syslog host 192.168.12.29 any any set system syslog host 192.168.12.29 interactive-commands none set system syslog file messages any any set system syslog file messages authorization info set system syslog file messages interactive-commands none set system syslog file interactive-commands interactive-commands any set system license autoupdate url https://ae1.juniper.net/junos/key_retrieval set system ntp boot-server 192.168.12.29 set system ntp server 192.168.12.29 set interfaces ge-0/0/0 description IF-3B set interfaces ge-0/0/0 unit 0 family inet address 10.0.31.1/30 set interfaces ge-0/0/0 unit 0 family iso set interfaces ge-0/0/1 description IF-3C set interfaces ge-0/0/1 unit 0 family inet address 10.0.32.1/30 set interfaces ge-0/0/1 unit 0 family iso set interfaces ge-0/0/2 description IF-MGMT set interfaces ge-0/0/2 unit 0 family inet address 192.168.12.31/24 set interfaces lo0 unit 0 family inet address 10.0.3.1/32 primary set interfaces lo0 unit 0 family inet address 10.0.3.11/32 set interfaces lo0 unit 0 family iso address 49.0002.0192.0168.1231.00 set routing-options static route 10.4.0.0/24 discard set routing-options static route 10.4.0.0/24 tag 10 set routing-options static route 10.0.3.0/24 discard set routing-options static route 10.0.3.0/24 tag 3 set routing-options router-id 10.0.3.1 set routing-options autonomous-system 3 set protocols bgp path-selection always-compare-med set protocols bgp group i3 type internal set protocols bgp group i3 local-address 10.0.3.1 set protocols bgp group i3 export s2b set protocols bgp group i3 neighbor 10.0.3.2 set protocols bgp group i3 neighbor 10.0.3.3 set protocols isis level 1 disable set protocols isis interface ge-0/0/0.0 set protocols isis interface ge-0/0/1.0 set protocols isis interface lo0.0 set policy-options policy-statement fnv term 1 then accept set policy-options policy-statement ps-accept term 1 then accept set policy-options policy-statement ps-reject term 1 then reject set policy-options policy-statement s2b term 1 from protocol static set policy-options policy-statement s2b term 1 from tag 10 set policy-options policy-statement s2b term 1 then origin igp set policy-options policy-statement s2b term 1 then as-path-prepend 4 set policy-options policy-statement s2b term 1 then accept set policy-options policy-statement s2b term 10 from protocol static set policy-options policy-statement s2b term 10 from tag 3 set policy-options policy-statement s2b term 10 then accept set policy-options policy-statement s2b term 999 then reject set security forwarding-options family inet6 mode packet-based set security forwarding-options family mpls mode packet-based set security forwarding-options family iso mode packet-based