SRX

 View Only
last person joined: 5 days ago 

Ask questions and share experiences about the SRX Series, vSRX, and cSRX.
  • 1.  Add 2nd ISP to be used by only one network.

    Posted 09-06-2023 10:30

    Using an SRX1500 on 21.2 

    Currently all of our networks are are using a single ISP for all internet traffic. We are exploring adding a 2nd ISP that will be used exclusively by one of our internal networks. Anything on 10.40.0.0/24 should use ISP2. 

    ISP2 would be all NAT'd traffic, no need for a DMZ zone.  The ability to use ISP2 as a backup for ISP1 would be nice but not necessary a requirement for this.  

    Currently we are just routing everything 0.0.0.0 to our single default gateway.  How do I setup the SRX to route 10.40.0.0/24 via ISP2?



    ------------------------------
    JOHN MUNOZ
    ------------------------------


  • 2.  RE: Add 2nd ISP to be used by only one network.

    Posted 09-06-2023 12:34

    You can use filter based forwarding to direct all the traffic sourced from that subnet to the desired ISP.  This scenario is covered in the following kb article.

    https://supportportal.juniper.net/s/article/How-to-configure-Filter-Based-Forwarding-on-SRX-for-a-typical-dual-ISP-scenario?language=en_US



    ------------------------------
    Steve Puluka BSEET - Juniper Ambassador
    IP Architect - DQE Communications Pittsburgh, PA (Metro Ethernet & ISP - Retired)
    http://puluka.com/home
    ------------------------------