Can you try policy based routing using input firewall filter on EX? This was you can redirect the traffic to another forwarding-instance where your proxy resides. You will also have to take care of reverse routing from the proxy forwarding instance back to inet.0 on EX so that return traffic can go back to client VLANs.

Thanks,
Nilesh.

Cord MacLeod wrote:
I feel silly for asking this, but apparently my brain isn't working today.

I've got some machines in a public vlan, 100 and some RFC 1918 machines on another vlan, 120. I redistribute 0.0.0.0 in ospf through my network down to these EX4200's that the machines are hanging off of. Is there a way for my RFC 1918 machines to default to different next hop (proxy machine) when not attempting to route between vlans so they can hit outside. The way we do it now is changing the default gateway on the machines. I'd like to perform this automatically on the ex4200s if possible.

Any ideas?
_______________________________________________
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp

_______________________________________________
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp

Reply via email to