Solved

Juniper routing 2 trusted subnets

Posted on 2011-03-12
3
1,001 Views
Last Modified: 2012-08-14
I am having a routing problem on a Juniper SSG-20.  I have recently been running out of IP addresses on my network and wanted to setup a seperate subnet for developement and test machines.  I have 2 interfaces boud to the the trust zone bg0 192.168.34.xxx/24 and 0/3 10.0.34.xxx/24.  I can communicate between both subnets without trouble but only the bg0 interface can connect to the internet.  I have 2 WAN interfaces 1/0 main high speed fiber connection and 4/0 a copper T1 connection for backup.

Below is the Destination routing table.  There are policies to allow Any traffice from Trust to Untrust.  

trust-vr
  IP/Netmask                Gateway              Interface       Protocol Preference Metric Vsys Description Configure
* 10.0.0.0/27                                            ethernet0/1  C                    Root    -
* 10.0.0.1/32                                            ethernet0/1  H                    Root    -
* 192.168.34.0/24                                    bgroup0       C                    Root    -
* 192.168.34.5/32                                    bgroup0       H                    Root    -
* 216.211.255.160/28                              ethernet1/0  C                    Root    -
* 216.211.255.162/32                              ethernet1/0 H                     Root    -
* 0.0.0.0/0                    216.211.255.161 ethernet1/0 S             20 1 Root  
* 10.0.34.0/24                                          ethernet0/3 C                     Root    -
* 10.0.34.5/32                                          ethernet0/3 H                     Root    -
* 206.166.129.112/28                              ethernet0/4 C                     Root    -
* 206.166.129.114/32                              ethernet0/4 H                     Root    -
  206.166.129.112/28  206.166.129.113 ethernet0/4 S             20 1 Root    

Any Help would be greatly appreciated.
0
Comment
Question by:James Rizzitano
  • 2
3 Comments
 
LVL 13

Accepted Solution

by:
kdearing earned 500 total points
ID: 35117162
I'm not familiar with Juniper but given your situation, a few things come to mindt:
1. all devices have the Juniper as their default gateway
2. NAT/PAT configured for that subnet
3. security rules allow traffic from that subnet

I also noticed that all the other subnets have specific interfaces they're connected to except 192.168.34.0
What interfaces are included in that bridge group?
0
 

Author Comment

by:James Rizzitano
ID: 35117287
Only interface 0/2 is bound to the Bridge Group bg0
0
 

Author Closing Comment

by:James Rizzitano
ID: 35117312
Needed to set the internal  interface on my second subnet in the trust zone to NAT it was incorrectly set to route mode.
0

Featured Post

Easy, flexible multimedia distribution & control

Coming soon!  Ideal for large-scale A/V applications, ATEN's VM3200 Modular Matrix Switch is an all-in-one solution that simplifies video wall integration. Easily customize display layouts to see what you want, how you want it in 4k.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Imagine you have a shopping list of items you need to get at the grocery store. You have two options: A. Take one trip to the grocery store and get everything you need for the week, or B. Take multiple trips, buying an item at a time, to achieve t…
Network ports are the threads that hold network communication together. They are an essential part of networking that can be easily ignore or misunderstood, my goals is to show those who don't have a strong network foundation how network ports opera…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

808 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question