RE: Juniper VPN Tunnel Query

2010-09-17 Thread Paul Hutchings
ystem Admin Issues Subject: RE: Juniper VPN Tunnel Query OK, just making sure you had local access to the Juniper ... I'd suggest to actually try the route based VPN on 0.0.0.0 rather than assume the metric would mess it up. I'll still be here if you try and it fails, you can say you

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Erik Goldoff
Consultant Systems, Networks, & Security ' Security is an ongoing process, not a one time event ! ' From: Paul Hutchings [mailto:paul.hutchi...@mira.co.uk] Sent: Friday, September 17, 2010 10:11 AM To: NT System Admin Issues Subject: RE: Juniper VPN Tunnel Query the “site”

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Paul Hutchings
0 9:33 AM To: NT System Admin Issues Subject: RE: Juniper VPN Tunnel Query I'm assuming it won't work because of the metrics? From: Erik Goldoff [mailto:egold...@gmail.com] Sent: 17 September 2010 14:25 To: NT System Admin Issues Subject: RE: Juniper VPN Tunnel Query I ap

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Erik Goldoff
m Admin Issues Subject: RE: Juniper VPN Tunnel Query I’m assuming it won’t work because of the metrics? From: Erik Goldoff [mailto:egold...@gmail.com] Sent: 17 September 2010 14:25 To: NT System Admin Issues Subject: RE: Juniper VPN Tunnel Query I apologize for not knowing the 6.x version

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Paul Hutchings
I'm assuming it won't work because of the metrics? From: Erik Goldoff [mailto:egold...@gmail.com] Sent: 17 September 2010 14:25 To: NT System Admin Issues Subject: RE: Juniper VPN Tunnel Query I apologize for not knowing the 6.x version documentation, I've been stuck on the

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Erik Goldoff
? Erik Goldoff IT Consultant Systems, Networks, & Security ' Security is an ongoing process, not a one time event ! ' From: Paul Hutchings [mailto:paul.hutchi...@mira.co.uk] Sent: Friday, September 17, 2010 9:16 AM To: NT System Admin Issues Subject: RE: Juniper VPN Tunnel Query

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Paul Hutchings
an see that internet requests are trying to go out via the Junipers default gateway rather than through the tunnel. From: Erik Goldoff [mailto:egold...@gmail.com] Sent: 17 September 2010 14:12 To: NT System Admin Issues Subject: RE: Juniper VPN Tunnel Query But otherwise the VPN tunnel work

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Erik Goldoff
to:paul.hutchi...@mira.co.uk] Sent: Friday, September 17, 2010 8:46 AM To: NT System Admin Issues Subject: RE: Juniper VPN Tunnel Query It won’t let me create that policy – the GUI just comes up with a cryptic message “peer to_siteA have vpn with tunnel interface binding, vpn invalid or not exist”?!

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Paul Hutchings
It won't let me create that policy - the GUI just comes up with a cryptic message "peer to_siteA have vpn with tunnel interface binding, vpn invalid or not exist"?! From: Erik Goldoff [mailto:egold...@gmail.com] Sent: 17 September 2010 12:58 To: NT System Admin Issues Subject:

Re: RE: Juniper VPN Tunnel Query

2010-09-17 Thread Andrew S. Baker
It's a deal! -ASB: http://XeeSM.com/AndrewBaker Sent from my Motorola Droid On Sep 17, 2010 8:03 AM, "Erik Goldoff" wrote: > Erik Goldoff would like to recall this message “ RE: Juniper VPN Tunnel > Query “ > > > > But as well all know, that capability doe

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Erik Goldoff
Erik Goldoff would like to recall this message “ RE: Juniper VPN Tunnel Query “ But as well all know, that capability does not exist within Outlook’s SMTP messaging, so instead, please limit the forthcoming derision and ridicule to a fun, jovial nature appropriate for a Friday J Erik

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Erik Goldoff
OK, apologies, coffee just kicking in here, quite a few hours earlier than where you are. Possibly a better method using the Juniper policies. In your Trust to Untrust, or Trust to Global policies Create an ANY-ANY-ANY-TUNNEL ( Source Destination Service Action ) using the tunnel create

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Erik Goldoff
d...@gmail.com] Sent: Friday, September 17, 2010 7:49 AM To: NT System Admin Issues Subject: RE: Juniper VPN Tunnel Query OK, at site B you set up a static route 10.60.1.1 255.255.255.255 -> 192.168.99.1- so that all site B computers know how to get to the main firewall via the loc

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Erik Goldoff
To: NT System Admin Issues Subject: RE: Juniper VPN Tunnel Query Erik can you expand a little please? Site A (main site) 10.60.0.0/16 main firewall IP of 10.60.1.1 Site B (remote site) 192.168.99.0/24 – junipers LAN IP is 192.168.99.1 At Site B right now everyone’s default gateway would

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Paul Hutchings
r 2010 12:31 To: NT System Admin Issues Subject: RE: Juniper VPN Tunnel Query Static route on the local systems for the remote 'main' firewall/internet via the local IP of your local Juniper, and a default gateway on local systems pointing to that remote main firewall ? Erik Goldoff

RE: Juniper VPN Tunnel Query

2010-09-17 Thread Erik Goldoff
Static route on the local systems for the remote ‘main’ firewall/internet via the local IP of your local Juniper, and a default gateway on local systems pointing to that remote main firewall ? Erik Goldoff IT Consultant Systems, Networks, & Security ' Security is an ongoing process, not a