SRX Services Gateway
Highlighted
SRX Services Gateway

SRX can't ping / access hosts trough vpn

12.06.16   |  
‎12-06-2016 01:01 AM

Hi!

I can ping SRX device from any host within LAN (directly attached to SRX or through vpn), but SRX device itself cant ping devices trhough vpn.

Captured some traffic on destination host with tcpdump - and it sends echo reply's back to SRX and ofcourse it can successfully ping that device (and access via ssh).

Policy rules seems to be fine, icmp allowed in trust zone - dunno where to look Smiley Sad

 

 

 

1 REPLY
SRX Services Gateway
Solution
Accepted by topic author Nomad-71
‎12-06-2016 01:55 AM

Re: SRX can't ping / access hosts trough vpn

12.06.16   |  
‎12-06-2016 01:11 AM

Do you have Junos-host zone configured? If so you need a policy from Junos-host zone to the external/untrus/trust zone to allow this traffic.

Thanks,
Suraj
Please Mark My Solution Accepted if it Helped, Kudos are Appreciated too