Hi,
I currently have a Juniper SSG520 with one interface in a DMZ zone. This is attached to an unmanaged switch which connects to a VMware ESX virtual switch. Two interfaces from the vswitch connect to the dmz switch in failover mode.
I have a single point of failure in the unmanaged switch so want to add another switch and use a spare port on the Juniper SSG520. I'm not sure how the interface should be setup on the Juniper - redundant IF or bgroup IF?
Basically I need to ensure that traffic gets from the vswitch to the Juniper SSG520 in the event of any failure along the way. I've attached a diagram that shows the desired setup. Please advise.
Thanks,
John