I'm settting up a new site with a HA pair of SRX240H. I will have roughly 250 site-to-site VPN's setup through this pair. I have a few questions I don't seem to find answers for yet:
- How many tunnels can be terminated on a single st0 interface?
- Can I have all of the tunnels terminate on the single st0 interface or do I need to build a st0 interface for each VPN?
- Can you have dynamic tunnels and static in this mix?
- How many st0 interfaces can a 240H handle?
On a multi-point setup the documentation it states that if you must put NHTB in the multipoint unless its a Juniper device on the other end.
"set interfaces st0 unit 0 family inet next-hop-tunnel 10.11.11.11 ipsec-vpn sunnyvale-vpn"
I can't seem to make that work yet without putting in the NHTB for even devices that are Juniper.
All and any help is greatly appreciated!