Solved

Juniper failover scenario

Posted on 2011-09-26
2
564 Views
Last Modified: 2012-05-12
We have an office that has 2 internet ISPs, a comcast circuit their primary and another one that is an integrated voice/data circuit that I would like to use as a failover.  

Would i just create 2 routes, one to the comcast and one to the integrated voice/data and give the comcast one a lower administrative distance value so that it is primary?  or is it not quite that easy?
0
Comment
Question by:techlinden
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 

Accepted Solution

by:
techlinden earned 0 total points
ID: 36702355
nevermind.  i think i see how to do this.  i found this online.  http://kb.juniper.net/InfoCenter/index?page=content&id=KB8704
0
 
LVL 18

Expert Comment

by:Sanga Collins
ID: 36707510
I do the same thing a little differently. By putting the secondary interface in a custom zone in the untrust-vr. You can have both interfaces active at the same time. each VR can have its own default route. and in the trust-vr i make the failover route as follows: 0.0.0.0/0 --> untrust-vr, metric = 25.

When primary interface goes down, the new default route will send traffic to the untrust-vr and out to the internet. It allows me to use both connections for different services like web traffic out of connection #1 and server traffic out of vpn on connection #2 while still providing failover. You can also do the same default route 0.0.0.0/0 --> trust-vr, metric = 25 to have failover in both directions!
0

Featured Post

Industry Leaders: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
WatchGuard T50 - Internet Priority Based on VLAN or User 1 78
Cisco ASA 5506 4 60
ASA - RV130 VPN tunnel, cannot pass traffic 8 84
Draytek (Site to Site VPN using IPSec) 6 63
Occasionally, we encounter connectivity issues that appear to be isolated to cable internet service.  The issues we typically encountered were reset errors within Internet Explorer when accessing web sites or continually dropped or failing VPN conne…
Network traffic routing plays key role in your network, if you have single site with heavy browsing or multiple sites, replicating important application data from your Primary Default Gateway ,you have to route your other network traffic from your p…
Although Jacob Bernoulli (1654-1705) has been credited as the creator of "Binomial Distribution Table", Gottfried Leibniz (1646-1716) did his dissertation on the subject in 1666; Leibniz you may recall is the co-inventor of "Calculus" and beat Isaac…

763 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question