Re: [j-nsp] VPN tunnel between OpenSwan and SRX220

2013-08-18 Thread Ben Dale
Hi Laurent. Is your ultimate goal to get the GRE running over IPSEC, or just a vanilla IPSEC tunnel? Your configuration will need to change either way: If you want GRE over IPSEC: You need to remove the /32 on the st0.0 interface and the Openswan rightsourceip and make them a contiguous subne

Re: [j-nsp] VPN tunnel between OpenSwan and SRX220

2013-08-18 Thread Phil Fagan
Any resolve? On Aug 6, 2013 10:34 AM, "Laurent CARON" wrote: > Hi, > > I'm trying to establish a VPN tunnel between a SRX220 and an OpenSwan box. > > SRX is: > Model: srx220h > JUNOS Software Release [12.1X44-D20.3] > > OpenSwan: 2.6.37 > > Both are currently hooked on a test LAN. > > 192.168.0.1

Re: [j-nsp] VPN tunnel between OpenSwan and SRX220

2013-08-07 Thread Phil Fagan
try turning up your IKE debug on the SRX to help expose more: >request security ike debug-enable local remote level 15 On Tue, Aug 6, 2013 at 9:55 AM, Laurent CARON wrote: > Hi, > > I'm trying to establish a VPN tunnel between a SRX220 and an OpenSwan box. > > SRX is: > Model: srx220h > JUNOS

Re: [j-nsp] VPN tunnel between OpenSwan and SRX220

2013-08-06 Thread Luca Salvatore
...@puck.nether.net] On Behalf Of Laurent CARON Sent: Wednesday, 7 August 2013 1:55 AM To: juniper-nsp Subject: [j-nsp] VPN tunnel between OpenSwan and SRX220 Hi, I'm trying to establish a VPN tunnel between a SRX220 and an OpenSwan box. SRX is: Model: srx220h JUNOS Software Release [12.1X44-

[j-nsp] VPN tunnel between OpenSwan and SRX220

2013-08-06 Thread Laurent CARON
Hi, I'm trying to establish a VPN tunnel between a SRX220 and an OpenSwan box. SRX is: Model: srx220h JUNOS Software Release [12.1X44-D20.3] OpenSwan: 2.6.37 Both are currently hooked on a test LAN. 192.168.0.18 = openswan box on lan 192.168.0.120 = juniper box on lan 172.31.254.41 = ipsec o