在SRX上配置基於路由的站點到站點IPSec VPN



在SRX系列學習位元組上配置基於路由的站點到站點IPsec VPN討論了兩個瞻博網路SRX系列設備之間安全VPN隧道的配置。簡要討論了基於路由的VPN的概念,並顯示了配置和監視VPN所需的命令。
該學習位元組適用於希望在其SRX設備上開始配置IPsec VPN的初學者到中級工程師。

演講人:JNCI瞻博網路大使Petr Klimai
與Junos OS版本有關:所有Junos版本
與瞻博網路平台相關的產品:SRX系列。

21 comments
  1. Awesome!!! Can you show how to build using BGP or OSPF between them?
    What about NAT for crossing interfaces, is this needed in general for JunOS.

  2. Thank you..
    But what happens if other at Srx B it using Nat. If Side b is only using 1 static ip on its Modem and srx interface connected to the modem is natting.

  3. I had a great challenge setting up GRE over IPSec between SRX and Cisco and SRX and Fortigate in my days, such a pain when you just know few things about IPSec or firewall on Juniper, lol. Oh, and not to mention a freaking D-link. Just needed to get OSPF and other things working over it properly. Would be interesting to hear about those all parameters additionally, or how to get a gre tunnel over that as well, though 🙂 For IPSec recap – Thanks Petr, that's really well explained.

  4. what an absolutely fantastic tutorial…..this is amazing…something i found totally mind blowing is now graspable.
    thank you so much

Comments are closed.