hell_angel
asked on
Juniper SRX NATting for Windows NLB IP
Hi.. I have setup a pair of Windows 2012 R2 NLB server for Exchange CAH/HUB Servers.
the NLB IP was tested working in the LAN segment. I configure static ARP MAC onto my Juniper SRZ X firewall and from firewall console, i'm able reach the NLB IP via PING test.
I have configured static NAT to the NLB IP, and when i'm try to access the NATed NLB IP from internet, it just failed. at first, i suspect if my NAT rules configured wrongly, and i configure another NAT rule pointed the NLB server real IP, and it just works when i browse the public IP from internet.
My SRX is running in 12.1X46-D35.1, bios is 2.6. is there any other thing that i should look into it?
the NLB IP was tested working in the LAN segment. I configure static ARP MAC onto my Juniper SRZ X firewall and from firewall console, i'm able reach the NLB IP via PING test.
I have configured static NAT to the NLB IP, and when i'm try to access the NATed NLB IP from internet, it just failed. at first, i suspect if my NAT rules configured wrongly, and i configure another NAT rule pointed the NLB server real IP, and it just works when i browse the public IP from internet.
My SRX is running in 12.1X46-D35.1, bios is 2.6. is there any other thing that i should look into it?
Because "static NLB IP is private IP address and cannot be reached from the internet.
ASKER
I have configure STATIC NAT with public IP. so I should able reach the NLB IP with Public IP from Internet..
You need to complement static nat with port list that you let pass between zones.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
n/a
Is this issue resolved ?