SRX Services Gateway
SRX Services Gateway

SRX can't ping / access hosts trough vpn

‎12-06-2016 01:01 AM


I can ping SRX device from any host within LAN (directly attached to SRX or through vpn), but SRX device itself cant ping devices trhough vpn.

Captured some traffic on destination host with tcpdump - and it sends echo reply's back to SRX and ofcourse it can successfully ping that device (and access via ssh).

Policy rules seems to be fine, icmp allowed in trust zone - dunno where to look Smiley Sad




SRX Services Gateway
Accepted by topic author Nomad-71
‎12-06-2016 01:55 AM

Re: SRX can't ping / access hosts trough vpn

‎12-06-2016 01:11 AM

Do you have Junos-host zone configured? If so you need a policy from Junos-host zone to the external/untrus/trust zone to allow this traffic.

Please Mark My Solution Accepted if it Helped, Kudos are Appreciated too