Im creating my own virtual lab with vSRX and practicing with it. I encounter a weird problem, I cannot establish a connection accross 2 host as expected. I already checked the zones and policies of the interfaces but no luck. Please help me, i dont know what config i am missing or what might be the problem. I tried using vSRX version 15.1X49-D170 and 15.1X49-D180 but encountering same problem. Thanks in advance
Are you sure this traffic is coming onto the vSRX?
I see both hosts are in same subnet. In that case, when you initiate ping from 10.100.100.8 for 10.100.100.10, it will generate a ARP query for 10.100.100.10. Since this host is in different broadcast domain, the ARP query will go unanswered and vSRX will not receive the ping packet.
Do you have any special requirement to have the hosts in same subnet communicate via vSRX?
If so, then you may want to configure proxy arp for 10.100.100.10 on ge-0/0/0 of vSRX such that vSRX will respond to the ARP query and receive the ICMP packet. Similarly, proxy arp for 10.100.100.8 needs to be configured on ge-0/0/1.
If there is no such need, please change the subnet on one side and test the connectivity.