set applications application memcache_port protocol tcp

set applications application memcache_port destination-port 11211-11311

set applications application memcache_port inactivity-timeout 7200

commit


set security policies from-zone DMZ to-zone Trust policy D-T_DMZ_to_49-memcache match source-address JQDMZ

set security policies from-zone DMZ to-zone Trust policy D-T_DMZ_to_49-memcache match destination-address net_192.168.49.0

set security policies from-zone DMZ to-zone Trust policy D-T_DMZ_to_49-memcache match application memcache_port

set security policies from-zone DMZ to-zone Trust policy D-T_DMZ_to_49-memcache then permit

commit

SRX 策略顺序调整工艺

insert security policies from-zone DMZ to-zone Trust policy D-T_DMZ_to_49-memcache before policy D-T_DMZ_to_86-91