IPSEC between StrongSwan and Juniper SRX1400 - ipsec.conf rebuild
Budget: $10 – $30 USD
I need someone make a review ipsec.conf works to connect to Juniper SRX1400 on my side have Debian Linux with StrongSwan and ipsec. VPN SITE to SITE. On image attached have junniper output configuration.
Right and left ip no real just for publication proposes of this job i will replace then.
left=100.100.100.1 (myside with linux)
right=200.200.200.2 (juniper)
Follow my conf:
conn VPN-Juniper
left=100.100.100.1
leftsubnet=192.168.200.0/24
right=200.200.200.2
rightsubnet=10.200.180.0/24
ike=aes256-sha2_256-modp1024!
esp=aes256-sha2_256!
keyingtries=0
ikelifetime=1h
lifetime=8h
dpddelay=30
dpdtimeout=120
dpdaction=restart
authby=secret
auto=start
keyexchange=ikev1
type=tunnel
Follow articles without success:
https://rtodto.net/ipsec-between-strongswan-and-srx/
https://kb.juniper.net/InfoCenter/index?page=content&id=KB34920&actp=METADATA
Right and left ip no real just for publication proposes of this job i will replace then.
left=100.100.100.1 (myside with linux)
right=200.200.200.2 (juniper)
Follow my conf:
conn VPN-Juniper
left=100.100.100.1
leftsubnet=192.168.200.0/24
right=200.200.200.2
rightsubnet=10.200.180.0/24
ike=aes256-sha2_256-modp1024!
esp=aes256-sha2_256!
keyingtries=0
ikelifetime=1h
lifetime=8h
dpddelay=30
dpdtimeout=120
dpdaction=restart
authby=secret
auto=start
keyexchange=ikev1
type=tunnel
Follow articles without success:
https://rtodto.net/ipsec-between-strongswan-and-srx/
https://kb.juniper.net/InfoCenter/index?page=content&id=KB34920&actp=METADATA