Quantcast
Channel: All SRX Services Gateway posts
Viewing all articles
Browse latest Browse all 17645

Re: Replacing a SSG5 with SRX100H2 in branch office

$
0
0

You will probably want to remove the proxy-id from both sides of the tunnel then in this situation.  these restrict what subnets can be sent over the tunnel.  If you remove them on both sides the Juniper devices will have no restriction, just routing alone will forward the traffic.

 

You also then need to add the static route to the tunnel interface for the additional subnets.

 

And of course you still need the security policies updated with the address objects previously mentioned.


Viewing all articles
Browse latest Browse all 17645

Trending Articles