[j-nsp] SRX/J VPN BGP with multiple proxy-ids

Brandon Bennett bennetb at gmail.com
Tue Feb 2 23:15:45 EST 2010


I have a unique situaion where I cam trying to bring up an IPSec VPN on a
J-series running 10.0.

The VPN is terminated on an IOS device on the far end and has multiple
proxy-ids but i also need to run local BGP across the VPN (probably a pretty
unique situation).

It seems that a route-based VPN will support BGP but only a single proxy-id
is supported.

A policy-based VPN will support mutliple proxy-ids but it seems that BGP
doesn't go through the policy so it will not come up.

Does anyone know of any work arounds to either have multiple proxy-ids with
route-based vpns (desirable) or configure BGP to be proccessed by the zone
policies?

Thanks in advance,

Brandon


More information about the juniper-nsp mailing list