I have inherited a network consisting of a main operation office and 2 branch offices. For conectivity, the main office uses a Juniper Networks Netscreen NS-25 and the branch offices use Netscreen NS5XP & NS5GT. By looking at the existing policies I can see that the main office is connected to each branch office via VPN tunnel. At the main office I can ping each branch office and vice versa, however while at branch office 1, I cannot ping branch office 2.
I'm sure that what I am trying to do is possible, I just am too unfamiliar with JUNOS. Essentially I would like to do this: Route traffic between 2 branch offices using the main office as a go between. Consider this diagram of the current network:
Branch 1 <----VPN----> Main Branch 2 <----VPN----> Main
(dedicated IP on both public sides) (Dynamic IP at Branch 2)
I would like to accomplish the following:
Branch1 <---- Main ----> Branch2
Any suggestion would greatly be appreciated.