i have a very basic setup (i thought) with my SRX240. I am only using 2 interfaces, and 2 zones. Also i have a site-to-site VPN set up to another SRX, i think i used the wizard for that portion.
ge-0/0/0.0
164.58.206.2/25 {primary,preferred}
164.58.158.2/24
ge-0/0/1.0
172.16.0.1/22
I have SOURCE NAT configured and working from 172.0.0/22 to egress interface address. I also configured a STATIC NAT for 164.58.206.10 to 172.16.0.10, and it works fine in both directions.
Now the part i cannot seem to get working:
I have a static mapping for 164.58.158.50 to 172.16.0.50, it does translate IN (untrust ips to it can access the webserver), but it will not translate OUT to the internet.
configuration is attached, does anyone have any suggestions why this doesnt work?
Thanks!