SRX

 View Only
last person joined: 11 hours ago 

Ask questions and share experiences about the SRX Series, vSRX, and cSRX.

Juniper SRX - OPC Communication Flow Issue

  • 1.  Juniper SRX - OPC Communication Flow Issue

    Posted 09-19-2021 05:14

    Hi, 

    We have Juniper SRX300 in our network. As per the scenario, two servers are there that are sharing the data using OPC communication through the Juniper SRX. Server-A gets data from Server-B as per the scheduled time. The configured schedule in the application on Server-A is 6 hours, so every 6 hours Server-A tries to fetch the latest data from Server-B. The issue is Server-A is only able to get the limited data sometimes its 40 %, sometimes its 30%, sometimes its 60% and other values end in error. When I physically bypass the firewall and connect the servers through a switch only, the data fetching works perfectly fine.  Also, when I check the data fetching for a single value via OPC communication tool, it shows that data is there but when data is fetched in bulk it causes the said issue. 
    I have checked the logs for any blocked traffic, and have also monitored and reviewed the traceoption logs during the scheduled time interval for the data fetching. Also, IDP is not enabled. 
    I have tried the below mentioned: 

    1) Allow all communication between Server-A & Server-B (Considering that after some interval, application may be using some other port for reverification) 
    2) Globally allowing all the communication (There may be some other communication involved)
    3) Changed the traffic between Server-A to Server-B to packet-mode. 

    Still the issue remains the same. I have done this troubleshooting, still I am unable to figure what may be the probable cause that causing this data flow to stop.  I have attached the scenario block diagram for reference. 

    Really needs the expert opinion on this as I am exhausted with the resources and knowledge I had to troubleshoot the issue. 

    If any further logs are required, can be shared. 



    ------------------------------
    AWAIS AHMAD
    ------------------------------