Frequently Asked Questions

This topic provides commonly asked questions about SRX4700 Firewall with their answers.

  • Q1: Is SRX4700 Firewall integrated with customers' multifactor authentication (MFA) solution for second-factor authentication (OTP through mobile app and SMS)?

    A1: The SRX Series Firewalls, including the SRX4700 Firewall, can be integrated with various authentication solutions, including MFA for second-factor authentication. However, the specific integration details for OTP through mobile app, SMS or both would depend on the chosen MFA solution and its compatibility with the SRX Series.

  • Q2: Does SRX4700 support chassis clustering?

    bA2: No. SRX4700 does not support traditional SRX chassis clustering. Instead, it supports Multinode High Availability (MNHA), which provides high availability for active/backup deployments, including routing, hybrid, default gateway, and IPsec VPN use cases.

    Feature SRX4700 Support
    Traditional Chassis Cluster (HA) Not supported
    Multinode High Availability (MNHA) Supported
    Active/Backup Deployment Supported through MNHA
    Routing Deployments Supported through MNHA
    Hybrid Deployments Supported through MNHA
    Default Gateway Deployments Supported through MNHA
    IPsec VPN Tunnels in HA Setup Supported through MNHA
    See Multinode High Availability.
  • Q3: Can we terminate IPsec tunnels and support different operational modes (tunnel, dialup) in SRX4700 Firewall?

    A3: Yes, the SRX4700 Firewall can terminate IPsec tunnels and support different operational modes, including tunnel and dial-up modes. The SRX Series Firewalls, including the SRX4700 Firewall, are designed to handle various IPsec VPN configurations and operational modes. See IPsec VPN User Guide.

  • Q4: What are the key features supported on SRX4700 Firewall?

    A4: See Feature Explorer.

  • Q5: What are the interfaces supported on SRX4700 Firewall?

    A5: See Port Speed on SRX4700 Firewall.

  • Q6: Does SRX4700 Firewall support CGNAT?

    A6: Yes, SRX4700 Firewall supports Carrier-Grade NAT (CGNAT). See Juniper Scale-Out Stateful Firewall and CGNAT for SP Edge — JVD.