We have a problem using juniper in pbr routing mode to send http(s) requests to mwg . When we start the traffic througth juniper to open youtube videos after 20 seconds its stops. When we set client to connect directly to mwg using proxy in browser settings there is no problem. we are using cookie auth. what problem should be ?
if we shutdown one appliance same problem continues.
MWG vers. 7.1.6
2 virtual MWG Server in HA
Problem solved to set Juniper Tcp Syn time out parameters to unset. Because Juniper is looking for user request while user watching videos. If it cannot see any tcp syn packet from client it will close the session.
unset flow tcp-sync-bit-check
unset flow tcp-syn-check