Sorry for delayed response as this msg didn't pop in my email.:(
Q. When you say you have two routing tables, does this mean you created a separate virtual router routing instance for each of the ISP Or did are they both in the same routing instance and have the same metrics for the the default route out?
?
Actually we have two routing instances yes we have separate routing instace for each ISP (A& B). A is default and all traffic where B is doing source based routing based on traffic coming from specific IP (Proxy etc). Though they have same metric and routing tables are redistributed into each other.
Are both ISP in the same zone?
Same zone = Untrust? yes though they terminate on separate physical interfaces.
Q. And I assume the default gateway for the 175.A.B.C server is on the SRX.
Yes 175.A.B.C (server) 's default gateway (175.X.YZ) is on SRX.
My next stupid question is it possible if Traffic from 30.X.Y.Z(Any external soruce) is receiving on interface B (175.X.Y.Z) and in response traffic can go via other ISP A on interface A (Ge-A.0)/(112.X.Y.Z)? As that's what I can see in "Security Flow session" Traffic is showing on Ge-A.0 instead of Ge-B.0
In: 1.127.48.43/25324 --> 175.A.B.C/443, If: ge-A.0, Pkts: 8, Bytes: 1601
That's the whole issue:)