Hi,
as already stated in this other thread (http://forums.juniper.net/t5/SRX-Services-Gateway/Bug-Reintroduced-on-Dynamic-VPN/td-p/302281), I just upgraded a SRX220H2 from 12.1X47-D15.4 to 12.3X48-D40.5 and have the exact same issue as described in PR1135780, although this should already be fixed in a previous version. The httpd.log states that web management is not allowed from this interface.
Allowing web management on the public interface fixes this, but seems like a bad solution.
With no management-url configured, the web-management seems not to be accessible from the public interface, but if a management-url is configured, it is.
Anyone else experiencing this?
Any other recommendations for workarounds or hints to check?
Unfortunally I am not able to open a bug report, because my SRX is already out of warranty...