I have a similar configuration. WAN0 and st0.0 (glued to WAN0) in inet.0, WAN1 and st0.1 (glued to WAN1) are in a VR.

Works okay.





On 30.03.2015 17:03, M Abdeljawad via juniper-nsp wrote:
Hi All
I have a question about SRX VPN support under virtual router;There are two WAN 
links and each link member in different Virtual Router (not inet0), and the VPN 
tunnels must be established from both virtual routers



Per to my search I found two conflict results as below;



Below KB link mention that its supported, and the st0interface and the IKE 
listener interface can be assigned to the custom virtualrouter.

http://kb.juniper.net/InfoCenter/index?page=content&id=KB21487





And below document link mention that the IKE listener mustbe member of inet.0 
for the VPN to work.

http://www.juniper.net/documentation/en_US/junos11.4/topics/concept/virtual-router-support-for-route-based-vpns.html





What if I used Lo0 interface and assigned it to inet.0 andused it as the 
external VPN interface, is this valid solution?


RegardsMahmoud
_______________________________________________
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp

_______________________________________________
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp

Reply via email to