[j-nsp] Rerouting of sessions in ScreenOS

Thomas Eichhorn te at te3networks.de
Sat Feb 27 03:50:49 EST 2010


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi all,

I have discovered a small problem within ScreenOS - which is absolutely clear
why it happens - but maybe there is a workaround.

My networks looks like that:


***************    ***********           *******     **********
* Destination *----* Router 1*----BGP ---* SSG * --- * SOURCE *
***************    ***********           *******     **********
                                            |
                                      *************
                                      * Default GW*
                                      *************

The problem looks like that:

Source is always sending traffic to destination,
but if the SSG has rebooted, it has not yet established
the BGP to router 1, so the traffic flows to default gw.

This remains until I reset manually the session, because
of beeing the traffic UDP there is no session timeout.

Do I have any possibility to get the device automatically
to notice that it have a better route now, and change/clear
the session?

Thanks in advance,
Tom
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iEYEARECAAYFAkuI3OkACgkQrUvjMoak8Zd8SACfZ5L7fds5nfm2rLBzUGlns4m6
hEgAn1ZZzg7QPVbD2/GkgsPSURbd8QcV
=fRrq
-----END PGP SIGNATURE-----


More information about the juniper-nsp mailing list