From de VLan.3 SRX to SAN (work)
PING 172.16.50.3 (172.16.50.3): 56 data bytes
64 bytes from 172.16.50.3: icmp_seq=0 ttl=255 time=3.092 ms
64 bytes from 172.16.50.3: icmp_seq=1 ttl=255 time=2.578 ms
64 bytes from 172.16.50.3: icmp_seq=2 ttl=255 time=1.439 ms
64 bytes from 172.16.50.3: icmp_seq=3 ttl=255 time=2.468 ms
64 bytes from 172.16.50.3: icmp_seq=4 ttl=255 time=1.389 ms
64 bytes from 172.16.50.3: icmp_seq=5 ttl=255 time=1.489 ms
64 bytes from 172.16.50.3: icmp_seq=6 ttl=255 time=1.466 ms
64 bytes from 172.16.50.3: icmp_seq=7 ttl=255 time=1.496 ms
64 bytes from 172.16.50.3: icmp_seq=8 ttl=255 time=1.457 ms
64 bytes from 172.16.50.3: icmp_seq=9 ttl=255 time=6.488 ms
--- 172.16.50.3 ping statistics ---
10 packets transmitted, 10 packets received, 0% packet loss
round-trip min/avg/max/stddev = 1.389/2.336/6.488/1.501 ms
From SAN to SRX Gateway interface (work)
Session ID: 4691, Policy name: self-traffic-policy/1, Timeout: 4, Valid
In: 172.16.50.3/51646 --> 172.16.50.1/507;icmp, If: vlan.3, Pkts: 1, Bytes: 84
Out: 172.16.50.1/507 --> 172.16.50.3/51646;icmp, If: .local..0, Pkts: 1, Bytes
: 84
Session ID: 43370, Policy name: self-traffic-policy/1, Timeout: 2, Valid
In: 172.16.50.3/51644 --> 172.16.50.1/507;icmp, If: vlan.3, Pkts: 1, Bytes: 84
Out: 172.16.50.1/507 --> 172.16.50.3/51644;icmp, If: .local..0, Pkts: 1, Bytes
: 84
Session ID: 109664, Policy name: self-traffic-policy/1, Timeout: 4, Valid
In: 172.16.50.3/51645 --> 172.16.50.1/507;icmp, If: vlan.3, Pkts: 1, Bytes: 84
Out: 172.16.50.1/507 --> 172.16.50.3/51645;icmp, If: .local..0, Pkts: 1, Bytes
: 84
Session ID: 121778, Policy name: self-traffic-policy/1, Timeout: 2, Valid
In: 172.16.50.3/51643 --> 172.16.50.1/507;icmp, If: vlan.3, Pkts: 1, Bytes: 84
Out: 172.16.50.1/507 --> 172.16.50.3/51643;icmp, If: .local..0, Pkts: 1, Bytes
: 84
Total sessions: 4
NAt rules (the san interface it ISCSI) (work)
source NAT rule: Allow-internet Rule-set: Trust_ISCSI-to-untrust
Rule-Id : 3
Rule position : 3
From zone : Trust_ISCSI
To zone : untrust
Match
Source addresses : 172.168.50.0 - 172.168.50.255
Destination addresses : 0.0.0.0 - 255.255.255.255
Destination port : 0 - 0
Action : interface
Persistent NAT type : N/A
Persistent NAT mapping type : address-port-mapping
Inactivity timeout : 0
Max session number : 0
Translation hits : 0
Successful sessions : 0
Number of sessions : 0
San Default gateway
172.16.50.1
Vlan 3 IP
172.16.50.1
Try to ping google
packet lost and see no ping