在SRX上配置基于路由的站点到站点IPSec VPN



在SRX系列学习字节上配置基于路由的站点到站点IPsec VPN讨论了两个瞻博网络SRX系列设备之间安全VPN隧道的配置。简要讨论了基于路由的VPN的概念,并显示了配置和监视VPN所需的命令。
该学习字节适用于希望在其SRX设备上开始配置IPsec VPN的初学者到中级工程师。

演讲人:JNCI瞻博网络大使Petr Klimai
与Junos OS版本有关:所有Junos版本
与瞻博网络平台相关的产品:SRX系列。

21 comments
  1. Awesome!!! Can you show how to build using BGP or OSPF between them?
    What about NAT for crossing interfaces, is this needed in general for JunOS.

  2. Thank you..
    But what happens if other at Srx B it using Nat. If Side b is only using 1 static ip on its Modem and srx interface connected to the modem is natting.

  3. I had a great challenge setting up GRE over IPSec between SRX and Cisco and SRX and Fortigate in my days, such a pain when you just know few things about IPSec or firewall on Juniper, lol. Oh, and not to mention a freaking D-link. Just needed to get OSPF and other things working over it properly. Would be interesting to hear about those all parameters additionally, or how to get a gre tunnel over that as well, though 🙂 For IPSec recap – Thanks Petr, that's really well explained.

  4. what an absolutely fantastic tutorial…..this is amazing…something i found totally mind blowing is now graspable.
    thank you so much

Comments are closed.