Route-based vpn on Netscreen/SRX do not use any other transport encapsulation than policy-based vpn, it uses standards based ipsec. Actually it is possible to use policy-based vpn from any vendor on one side of the vpn tunnel and route-based vpn on the Juniper side. At least I have not been able yet to find a situations where this is do not work in ScreenOS 6.3, where the ability came to map several SA's to a route based vpn tunnel.
-- Hans Kristian Eiken 2012/10/26 Nick Kritsky <nick.krit...@gmail.com> > By the way, does anybody know if SRX/Netscreen route-based VPNs use > any sort of transport encapsulation like GRE or IPIP? Or is it just > plain tunnel with 0.0.0.0/0 encryption domain and policy-based > routing? > > thanks > Nick > _______________________________________________ > juniper-nsp mailing list juniper-nsp@puck.nether.net > https://puck.nether.net/mailman/listinfo/juniper-nsp > _______________________________________________ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp