I'm a long time Sonicwall/CiscoASA guy but I now have to dive into Juniper.
remote SRX240 <----> main SRX240 <----> Internet
I have dual SRX240's connected over a Dual Bonded T-1 circuit. The T-1 circuit's are point to point with no internet traffic from AT&T.
The edge SRX240 is a branch office (IP 192.168.200.x for testing) and all traffic (including internet traffic) is to go over the bonded T-1 (only service available at the remote location).
The main SRX240 is on a 10.0.x.x network
I have everything running, but I noticed that the edge SRX (test lan 192.168.200.x) is NATing the T-1's ip address when I ping out to the internet. I get traffic after fixing some routing issues, but the main SRX240's traffic logs indicate the I'm sending ICMP from the remote SRX240's T-1 circuit ip. I've disabled NATing on the remote SRX240, but I don't understand why I don't see traffic from 192.168.200.x vs T-1's IP.
Is this a function of Juniper OS T-1 setup or is there something I'm missing. I believe with Cisco's you can turn on/off routing of private ip ranges. Is something similar going on.
Any insight would be helpful.