Solved

Juniper routing 2 trusted subnets

Posted on 2011-03-12
3
1,000 Views
Last Modified: 2012-08-14
I am having a routing problem on a Juniper SSG-20.  I have recently been running out of IP addresses on my network and wanted to setup a seperate subnet for developement and test machines.  I have 2 interfaces boud to the the trust zone bg0 192.168.34.xxx/24 and 0/3 10.0.34.xxx/24.  I can communicate between both subnets without trouble but only the bg0 interface can connect to the internet.  I have 2 WAN interfaces 1/0 main high speed fiber connection and 4/0 a copper T1 connection for backup.

Below is the Destination routing table.  There are policies to allow Any traffice from Trust to Untrust.  

trust-vr
  IP/Netmask                Gateway              Interface       Protocol Preference Metric Vsys Description Configure
* 10.0.0.0/27                                            ethernet0/1  C                    Root    -
* 10.0.0.1/32                                            ethernet0/1  H                    Root    -
* 192.168.34.0/24                                    bgroup0       C                    Root    -
* 192.168.34.5/32                                    bgroup0       H                    Root    -
* 216.211.255.160/28                              ethernet1/0  C                    Root    -
* 216.211.255.162/32                              ethernet1/0 H                     Root    -
* 0.0.0.0/0                    216.211.255.161 ethernet1/0 S             20 1 Root  
* 10.0.34.0/24                                          ethernet0/3 C                     Root    -
* 10.0.34.5/32                                          ethernet0/3 H                     Root    -
* 206.166.129.112/28                              ethernet0/4 C                     Root    -
* 206.166.129.114/32                              ethernet0/4 H                     Root    -
  206.166.129.112/28  206.166.129.113 ethernet0/4 S             20 1 Root    

Any Help would be greatly appreciated.
0
Comment
Question by:James Rizzitano
  • 2
3 Comments
 
LVL 13

Accepted Solution

by:
kdearing earned 500 total points
ID: 35117162
I'm not familiar with Juniper but given your situation, a few things come to mindt:
1. all devices have the Juniper as their default gateway
2. NAT/PAT configured for that subnet
3. security rules allow traffic from that subnet

I also noticed that all the other subnets have specific interfaces they're connected to except 192.168.34.0
What interfaces are included in that bridge group?
0
 

Author Comment

by:James Rizzitano
ID: 35117287
Only interface 0/2 is bound to the Bridge Group bg0
0
 

Author Closing Comment

by:James Rizzitano
ID: 35117312
Needed to set the internal  interface on my second subnet in the trust zone to NAT it was incorrectly set to route mode.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In the hope of saving someone else's sanity... About a year ago we bought a Cisco 1921 router with two ADSL/VDSL EHWIC cards to load balance local network traffic over the two broadband lines we have, but we couldn't get the routing to work consi…
Getting hacked is no longer a matter or "if you get hacked" — the 2016 cyber threat landscape is now titled "when you get hacked." When it happens — will you be proactive, or reactive?
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question