09-06-2010 11:38 PM
We not so long bought new Juniper SRX100H for our office and now there is strange problem. When i login by ssh on device and begin ping my default gateway then internet works on all computers in NAT, when i interrupt default gateway ping after that approximately in 1 minute internet disconnected. Anybody didn't have such problem? How it can be resolved?
09-07-2010 11:35 PM
root@sg01> show arp no-resolve
MAC Address Address Interface Flags
00:xx:xx:78:a7:f5 xxx.xxx.xxx.81 fe-0/0/0.0 none
00:22:b0:04:18:cd 192.168.1.6 vlan.0 none
Total entries: 2
Looks like here all ok, but no ping, no internet
09-08-2010 08:55 AM
My guess is that you may have another device on Internet-side L2 network that poisoning your gateway's ARP table. You may want to contact your ISP and have them verify what ARP entry they show when you are not pinging the gateway.
JNCIE-ENT #63, JNCIE-SP #705, JNCIE-SEC #17, JNCIS-FWV, JNCIS-SSL
09-11-2010 06:32 AM
You could try asking your ISP to add a hard arp entry for your SRX MAC and external IP address in order to see if there is indeed another device responding to ARP requests for your external IP address.