Link to home
Start Free TrialLog in
Avatar of hell_angel
hell_angelFlag for Malaysia

asked on

Juniper SRX NATting for Windows NLB IP

Hi.. I have setup a pair of Windows 2012 R2 NLB server for Exchange CAH/HUB Servers.
the NLB IP was tested working in the LAN segment. I configure static ARP MAC onto my Juniper SRZ X firewall and from firewall console, i'm able reach the NLB IP via PING test.

I have configured static NAT to the NLB IP, and when i'm try to access the NATed NLB IP from internet, it just failed. at first, i suspect if my NAT rules configured wrongly, and i configure another NAT rule pointed the NLB server real IP, and it just works when i browse the public IP from internet.

My SRX is running in 12.1X46-D35.1, bios is 2.6. is there any other thing that i should look into it?
Avatar of gheist
gheist
Flag of Belgium image

Because "static NLB IP is private IP address and cannot be reached from the internet.
Avatar of hell_angel

ASKER

I have configure STATIC NAT with public IP. so I should able reach the NLB IP with Public IP  from Internet..
You need to complement static nat with port list that you let pass between zones.
ASKER CERTIFIED SOLUTION
Avatar of dpk_wal
dpk_wal
Flag of India image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
n/a
Is this issue resolved ?