Juniper Netscreen Firewall: ARP failing

Posted on 2008-11-06
Last Modified: 2012-06-21
I have a Juniper Networks Netscreen firewall connected to an ADSL bonding device (xrio UBM 400).  The firewall has a static IP address (as does the bonder) but the firewall keeps disappearing and becomes completely unaccessible - PING fails and so on.  This happens unpredictably but regularly when the Internet connection is being used.

The bonder manufacturer says that the bonder sends out an ARP request to the firewall immediately prior to it disappearing and that no response is returned.  They are replacing the firewall with a Cisco unit but I'm interested/concerned to know what the problem here might be - why would the firewall do this?  It seems to remain accessible perfectly well by the static IP address when the internet connection isn't being used.
Question by:evbuk
    LVL 32

    Expert Comment

    Are you running 6.1 or 6.0 ? If so, this is a known issue with the OS train. Ideally you should go back to the latest available on 5.4 and everything would be set alright. These boxes are amazing boxes. It is a problem and replacing it wouldn't be a good solution, what do you say :-)


    Author Comment

    I've now made the switch to a Cisco PIX ASA 500 firewall and this displays exactly the same behaviour - the firewall just stops replying to PING requests after an unpredictable amount of time and the Internet connection fails.  The bonder remains responsive to PING when this happens but anything the other side of the firewall is unavailable.

    The bonder device keeps sending ARP requests to the firewall which are not answered.

    I am at a complete loss here.
    LVL 32

    Accepted Solution

    Have they enabled logging on these boxes to see what happens during that time?


    Featured Post

    What Is Threat Intelligence?

    Threat intelligence is often discussed, but rarely understood. Starting with a precise definition, along with clear business goals, is essential.

    Join & Write a Comment

    Suggested Solutions

    The Cisco RV042 router is a popular small network interfacing device that is often used as an internet gateway. Network administrators need to get at the management interface to make settings, change passwords, etc. This access is generally done usi…
    Introduction This article explores the design of a cache system that can improve the performance of a web site or web application.  The assumption is that the web site has many more “read” operations than “write” operations (this is commonly the ca…
    After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
    After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

    733 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    17 Experts available now in Live!

    Get 1:1 Help Now