How to Configure Router for Metro Ethernet - which router to choose ?

Posted on 2014-11-20
Last Modified: 2014-11-20
I am not a router expert!    So, I am running a simple business network:  35 PC's including 2 servers behind a Juniper NS5GT "router/firewall" - using NAT (internally everyone is 192.168.0.x).    Email is routed through the firewall to the exchange server.   Majority of usage is outbound web browsing.

So, we have ordered and had installed a new 10MB Metro Ethernet fiber link from Comcast.   This fiber link will also be handling the phones - but that is not my concern at this time.

Here's the problem:   Comcast is giving me a WAN block of IP addresses as well as a LAN block of IP addresses.
WAN Block:  50.207.18/212/30  (GW is the .213, IP is .214)
LAN Block:      Usable: .241 thru .246

So...    Can I use the Juniper NS5GT ?     How can I configure it to do the job?   I thought at first that I could just ignore the LAN Block and assign the Juniper the address with gateway   In fact, I tried that with a Cisco RV120W (spare available to me to test at the time) and it seemed to work.   However, Comcast is telling me that this is not a valid configuration.   Thoughts?

If the Juniper 5GT will not work, which router would you recommend for this very simple configuration?
Question by:ponedog
  • 4
  • 3
LVL 93

Expert Comment

by:John Hurst
ID: 40455127
I use Juniper NS5GT and later SSG5 at clients. The configuration you have for one IP and gateway should be valid. For the IP, I would just use a single IP and not a range. Perhaps that is what Comcast is referring to .

Author Comment

ID: 40455165
John Hurst:   Are you on a Metro Ethernet link as well (with both a WAN block and a LAN block)?
LVL 93

Expert Comment

by:John Hurst
ID: 40455172
No. I am in a different country in North America and the local ISP's are not Metro Ethernet.

However my clients have a block of several IP addresses and I just use one.
Webinar: Aligning, Automating, Winning

Join Dan Russo, Senior Manager of Operations Intelligence, for an in-depth discussion on how Dealertrack, leading provider of integrated digital solutions for the automotive industry, transformed their DevOps processes to increase collaboration and move with greater velocity.


Author Comment

ID: 40455258
John Hurst:  thanks for your comments.   However, the key problem here is that the WAN Block and the LAN Block are 2 different disjoint block of addresses.  I am not sure how to tell the Juniper how to handle this situation...
LVL 93

Accepted Solution

John Hurst earned 500 total points
ID: 40455265
Juniper NS needs one IP from the WAN Block  the same as you had before Metro. Same settings except use

The LAN block is of course different. That is the internal setup 192.168.0.x as before. In theory, nothing here changes.

The only change is the hookup to the WAN.

Author Comment

ID: 40455340
John Hurst:   I just talked to a support engineer at Comcast.   Given our needs, he said that we can just ignore the LAN IP block (hmmm....   I think that is exactly what you said!).      I am closing the case and awarding the points to you - thanks a million !!
LVL 93

Expert Comment

by:John Hurst
ID: 40455483
@ponedog  - Thanks for the update and I was happy to help.

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Nimble Storage 3 103
Is there a substituion for this Comcast Modem 3 49
Windows PE .WIM files WDS issue 4 27
Changing Lease Duration for DHCP clients 34 28
If your business is like most, chances are you still need to maintain a fax infrastructure for your staff. It’s hard to believe that a communication technology that was thriving in the mid-80s could still be an essential part of your team’s modern I…
ADCs have gained traction within the last decade, largely due to increased demand for legacy load balancing appliances to handle more advanced application delivery requirements and improve application performance.
Viewers will learn how to connect to a wireless network using the network security key. They will also learn how to access the IP address and DNS server for connections that must be done manually. After setting up a router, find the network security…
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

791 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question