Fault resolution: Implementing ECMP functions on the firewall

Source: Internet
Author: User

Fault resolution: Implementing ECMP functions on the firewall

I. Network Topology

Ii. basic configuration

1. The Gateway in the workplace is the EX4200 of Juniper, Which is configured with vlan524: 10.63.224.0/24 and vlan525: 10.63.225.0/24. Configure the next hop of the default route to point to the firewall.

2. Two Internet leased lines (China Telecom and China Mobile) are connected on the firewall SSG550-1, and two default routes are configured with the next hop pointing to the carrier respectively. For example:

 

 

 

 

3. FirewallConfigure a vro.

 

4. FirewallSet the 224 CIDR block to access the Internet through the telecom leased line, and the 225 CIDR block to access the Internet through the mobile leased line.


 

 


 

 

5. add firewall policies


 

Ii. Fault

 

1. Sometimes 225 CIDR blocks can access the Internet through a mobile leased line, and sometimes cannot access the Internet through a mobile leased line.

2. trace the Internet address 219.142.1.170 on the firewall, and the result is to go out through the telecom leased line.

 

For example:


 

Iii. Solution

1. The analysis shows that the ECMP function is not enabled on the firewall, and the traffic cannot be transmitted simultaneously on both lines.

 

 

 

Iv. Conclusion

1. The problem has been resolved after verification.

 

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.