[j-nsp] L2L SRX - Linux

Hans Kristian Eiken hans.kristian.eiken at gmail.com
Sat Oct 27 00:45:56 EDT 2012


Route-based vpn on Netscreen/SRX do not use any other transport
encapsulation than policy-based vpn, it uses standards based ipsec.
Actually it is possible to use policy-based vpn from any vendor on one side
of the vpn tunnel and route-based vpn on the Juniper side. At least I have
not been able yet to find a situations where this is do not work in
ScreenOS 6.3, where the ability came to map several SA's to a route based
vpn tunnel.

--
Hans Kristian Eiken

2012/10/26 Nick Kritsky <nick.kritsky at gmail.com>

> By the way, does anybody know if SRX/Netscreen route-based VPNs use
> any sort of transport encapsulation like GRE or IPIP? Or is it just
> plain tunnel with 0.0.0.0/0 encryption domain and policy-based
> routing?
>
> thanks
> Nick
> _______________________________________________
> juniper-nsp mailing list juniper-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/juniper-nsp
>


More information about the juniper-nsp mailing list