Solved

Juniper routing 2 trusted subnets

Posted on 2011-03-12
3
1,002 Views
Last Modified: 2012-08-14
I am having a routing problem on a Juniper SSG-20.  I have recently been running out of IP addresses on my network and wanted to setup a seperate subnet for developement and test machines.  I have 2 interfaces boud to the the trust zone bg0 192.168.34.xxx/24 and 0/3 10.0.34.xxx/24.  I can communicate between both subnets without trouble but only the bg0 interface can connect to the internet.  I have 2 WAN interfaces 1/0 main high speed fiber connection and 4/0 a copper T1 connection for backup.

Below is the Destination routing table.  There are policies to allow Any traffice from Trust to Untrust.  

trust-vr
  IP/Netmask                Gateway              Interface       Protocol Preference Metric Vsys Description Configure
* 10.0.0.0/27                                            ethernet0/1  C                    Root    -
* 10.0.0.1/32                                            ethernet0/1  H                    Root    -
* 192.168.34.0/24                                    bgroup0       C                    Root    -
* 192.168.34.5/32                                    bgroup0       H                    Root    -
* 216.211.255.160/28                              ethernet1/0  C                    Root    -
* 216.211.255.162/32                              ethernet1/0 H                     Root    -
* 0.0.0.0/0                    216.211.255.161 ethernet1/0 S             20 1 Root  
* 10.0.34.0/24                                          ethernet0/3 C                     Root    -
* 10.0.34.5/32                                          ethernet0/3 H                     Root    -
* 206.166.129.112/28                              ethernet0/4 C                     Root    -
* 206.166.129.114/32                              ethernet0/4 H                     Root    -
  206.166.129.112/28  206.166.129.113 ethernet0/4 S             20 1 Root    

Any Help would be greatly appreciated.
0
Comment
Question by:James Rizzitano
  • 2
3 Comments
 
LVL 13

Accepted Solution

by:
kdearing earned 500 total points
ID: 35117162
I'm not familiar with Juniper but given your situation, a few things come to mindt:
1. all devices have the Juniper as their default gateway
2. NAT/PAT configured for that subnet
3. security rules allow traffic from that subnet

I also noticed that all the other subnets have specific interfaces they're connected to except 192.168.34.0
What interfaces are included in that bridge group?
0
 

Author Comment

by:James Rizzitano
ID: 35117287
Only interface 0/2 is bound to the Bridge Group bg0
0
 

Author Closing Comment

by:James Rizzitano
ID: 35117312
Needed to set the internal  interface on my second subnet in the trust zone to NAT it was incorrectly set to route mode.
0

Featured Post

Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Hello , This is a short article on how would you go about enabling traceoptions on a Juniper router . Traceoptions are similar to Cisco debug commands but these traceoptions are implemented in Juniper networks router . The following demonstr…
Imagine you have a shopping list of items you need to get at the grocery store. You have two options: A. Take one trip to the grocery store and get everything you need for the week, or B. Take multiple trips, buying an item at a time, to achieve t…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

679 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question