Screen OS

last person joined: 8 months ago 

This is a legacy community with limited Juniper monitoring.
  • 1.  How to assign IP Pool to a VPN?

    Posted 02-21-2014 08:14

    Hi Guys,

     

    We have established a site-to-site policy based VPN following this article. Now, is it possible to assign an IP Pool to this VPN? We can create an IP Pool under Objects > IP Pools > New, right?  But how can we assign it to the existing VPN? Please advise.

     

    Thanks in advanced!

     

    Arnel


    #site-to-site
    #policy-based
    #vpn
    #IPPool
    #SSG5


  • 2.  RE: How to assign IP Pool to a VPN?
    Best Answer

    Posted 02-21-2014 15:23

    I don't follow what you want to accomplish.  Could you outline the goal.

     

    IP pools are used by dynamic vpn where computers connect into the firewall and then get assigned an address from this pool to access resources.

     

    Site-to-site vpn connect agreed upon network segments on both sides of hte tunnel and permit the communication over the vpn link.

     

    Are you looking to nat the vpn traffic?  In that case you will need to create a route based vpn  instead of a policy based one.

     

    What is your connection scenario?



  • 3.  RE: How to assign IP Pool to a VPN?

    Posted 02-22-2014 07:57

    I think you have pretty much explained it Steve. 🙂 So, we cannot assign an IP pool for a site-to-site policy based VPN connection. Thank you very much!

     

    Arnel