Well, as long as the Branch A admin already has policy and routes in place to push the branch B traffic to HQ you should be able to configure branch B and HQ to support it. If they don't have that in place, then there isn't really much that you can do.
When you say "Juniper Router" do you mean an SRX? If so you'll need to couple security policy (and maybe NAT) with your routing policy. But then it should be pretty straightforward.
------------------------------
Allyn Crowe
------------------------------
Original Message:
Sent: 07-17-2024 07:16
From: Anonymous
Subject: Tunnel
This message was posted by a user wishing to remain anonymous
If I understood correctly, in order for BranchA and BranchB to have communication, it is enough to reroute the traffic between BranchB and HQ, because I have access to them. I don't have access to BranchA, nor does their administrator want to participate, so the only option left for me is between BranchB and HQ to try to finish it.
Original Message:
Sent: 07-16-2024 10:54
From: Allyn Crowe
Subject: Tunnel
You should be able to just put routes on the routers to allow Branch A to use the HQ tunnel to send it's traffic for branch B to HQ which will then use the tunnel to branch A. That does assume that the other administrator will put a route for the Branch B network(s) on their router if you're not using a dynamic routing protocol. If you're doing a dynamic routing protocol you'll need to redistribute or inject the branch B routes into the session between HQ and branch A.
------------------------------
Allyn Crowe
Original Message:
Sent: 07-15-2024 05:17
From: Anonymous
Subject: Tunnel
This message was posted by a user wishing to remain anonymous
Hello everyone,
I have the following situation. A tunnel was created on juniper routers, between BranchA and HQ, and with BranchB and HQ. BranchA and BranchB regularly communicate with HQ through the tunnel, how to achieve communication between BranchA and BranchB if I only have access to BranchB and HQ, I don't have access to BranchA and the administrator of that side does not want to participate in that matter, he said to do it between BranchB and HQ. How is it possible to enable communication between BranchA and BranchB, without the configuration of BranchA?