Ping result
########################
1 ) Ping my public IP from computer is ok as you can see :SUCCESS
C:\Program Files\Windows Resource Kits\Tools>pathping 192.197....
Tracing route to 192.197... over a maximum of 30 hops
0 Mobile.aei.local [192.168.90.1]
1 192.197....
Computing statistics for 25 seconds...
Source to Here This Node/Link
Hop RTT Lost/Sent = Pct Lost/Sent = Pct Address
0 Mobile.aei.local [192.168.90.1
0/ 100 = 0% |
1 2ms 0/ 100 = 0% 0/ 100 = 0% 192.197.....
Trace complete.
############################################################
2 ) Ping google from computer as you can see
C:\Program Files\Windows Resource Kits\Tools>pathping 8.8.8.8
Tracing route to 8.8.8.8 over a maximum of 30 hops
0 Mobile.....local [192.168.90.1]
1 192.168.90.254
2 * * *
Computing statistics for 50 seconds...
Source to Here This Node/Link
Hop RTT Lost/Sent = Pct Lost/Sent = Pct Address
0 Mobile.aei.local [192.168.90.1]
0/ 100 = 0% |
1 0ms 0/ 100 = 0% 0/ 100 = 0% 192.168.90.254
100/ 100 =100% |
2 --- 100/ 100 =100% 0/ 100 = 0% Mobile....local [0.0.0.0]
Trace complete.
##########################################################
3) ping on SRX220 from interface vlan.90 to google.ca FAILED
root@AEI1-SRX220> ping 8.8.8.8 source 192.168.90.254
PING 8.8.8.8 (8.8.8.8): 56 data bytes
#########################################################
4) ping on SRX220 from Egress interface (PP0.0) to google.ca SUCCESS
root@AEI1-SRX220> ping 8.8.8.8 source 192.197....
PING 8.8.8.8 (8.8.8.8): 56 data bytes
64 bytes from 8.8.8.8: icmp_seq=0 ttl=48 time=35.731 ms
64 bytes from 8.8.8.8: icmp_seq=1 ttl=48 time=35.842 ms
64 bytes from 8.8.8.8: icmp_seq=2 ttl=48 time=41.723 ms
64 bytes from 8.8.8.8: icmp_seq=3 ttl=48 time=41.737 ms
64 bytes from 8.8.8.8: icmp_seq=4 ttl=48 time=35.898 ms
64 bytes from 8.8.8.8: icmp_seq=5 ttl=48 time=35.581 ms
64 bytes from 8.8.8.8: icmp_seq=6 ttl=48 time=35.861 ms
^C
--- 8.8.8.8 ping statistics ---
7 packets transmitted, 7 packets received, 0% packet loss
round-trip min/avg/max/stddev = 35.581/37.482/41.737/2.689 ms
#################################################
here is my NAT config
forwarding-options {
family {
mpls {
mode packet-based;
}
}
}
nat {
source {
rule-set 1 {
from zone trust;
to zone untrust;
rule 1a {
match {
source-address 192.168.0.0/16;
destination-address 0.0.0.0/0;
}
then {
source-nat {
interface;
}
}
}
}
}
}
zones {
security-zone untrust {
interfaces {
pp0.0;
}
}
security-zone trust {
interfaces {
vlan.10;
vlan.50;
vlan.60;
vlan.70;
vlan.80;
vlan.90;
}
}
}
##############################
Route config
root@AEI1-SRX220> show configuration routing-options
static {
route 0.0.0.0/0 next-hop pp0.0;
route 192.168.0.0/16 next-hop 192.168.90.253;
}
Thanks