SRX

last person joined: 3 days ago 

Ask questions and share experiences about the SRX Series, vSRX, and cSRX.
  • 1.  HTTP Policy Isn't Passing Traffic

    Posted 05-29-2015 15:04
      |   view attached

     

    Recently deployed two SRX240H2 in a HA cluster at a new datacenter. Everything has been working well for the most part. Now trying to enable HTTP/HTTPS for our web services and the traffic is being stopped at the SRX240. After comparing the config to our other sites, which are setup similarly, I'm not sure why the SRX won't pass the traffic.

     

    Any insight would be appreciated. Thanks in advance!

    Attachment(s)

    txt
    config.txt   14 KB 1 version


  • 2.  RE: HTTP Policy Isn't Passing Traffic

     
    Posted 05-29-2015 21:03
    Please apply flow traces as in https://kb.juniper.net/InfoCenter/index?page=content&id=KB16110
    It can help us to identify why traffic is dropped


  • 3.  RE: HTTP Policy Isn't Passing Traffic
    Best Answer

    Posted 06-02-2015 09:07

     

    Thank you for pointing me towards the flow traces. I could see that my NAT policy was in fact working, but the firewall policy was not. 

     

    I removed the firewall policy and recreated it. It then began passing traffic correctly. I'm still unsure of why it was not working, but recreating it fixed the issue.

     

    Thanks for all of your help!