How to define a port range on a Juniper SRX

To create a range of ports within the SRX the following command is used. This example creates an application object named UDP-PORT-RANGE with a UDP port range of 5000-6999.

set applications application UDP-PORT-RANGE protocol udp destination-port 5000-6999

Once created you can then add this to a group. This group can then be added to the necessary policy. Below shows an example:

set groups GRP-PORTS
set applications application-set GRP-PORTS application RDP-3389
set applications application-set GRP-PORTS application UDP-PORT-RANGE

set security policies from-zone untrust to-zone trust policy example-policy match application GRP-PORTS

Rick Donato

Want to become an IT Security expert?

Here is our hand-picked selection of the best courses you can find online:
Internet Security Deep Dive course
Complete Cyber Security Course – Hackers Exposed
CompTIA Security+ (SY0-601) Certification Complete course
and our recommended certification practice exams:
AlphaPrep Practice Tests - Free Trial