[j-nsp] 答复: SRX650 full-mesh vpn, ssh not passed
xujianlx at gmail.com
Mon Aug 5 03:58:14 EDT 2013
Actually, when I disable the first link of node 1, all nodes could pass
every kind of traffic well, except node 2.
And I build an same lab system, the issue not happen.
发件人: Ojamo, V. [mailto:lists.ville at ojamo.eu]
发送时间: 2013年8月5日 15:02
收件人: '徐见'; juniper-nsp at puck.nether.net
主题: RE: [j-nsp] SRX650 full-mesh vpn, ssh not passed
The pictures cannot be viewed without Weibo account?
> -----Original Message-----
> From: juniper-nsp [mailto:juniper-nsp-bounces at puck.nether.net]
> On Behalf Of ??
> Sent: Monday, August 05, 2013 1:18 PM
> To: juniper-nsp at puck.nether.net
> Subject: [j-nsp] SRX650 full-mesh vpn, ssh not passed
> Hi all:
> As the theme said, I have a route-based vpn,
> and run ospf protocol.
> Physical link topology is here:
> logical link topology is here:
> the issue just between node 1 and node 2.
> As you can see, there are four links on node 1, and one link
> 2, and
> 2 vpn tunnel have been built between both,(st0.0, st0.1)
> And the two tunnel works as primary(st0.0) and backup(st0.1).
> The problem is, when primary down, ssh traffic from NET A to
> B, can’t
> passed, but from NET B to NET A is ok,
> Show route “NET B”, show route “NET A” commands show both
> them have
> learned route from right tunnel (st0.1), ping command in
> is ok
> Anyone could give any idea?
> juniper-nsp mailing list juniper-nsp at puck.nether.net
More information about the juniper-nsp