I don't think either of those...
I am connecting to someone who has a specific IKE ID on their tunnel, that is different than the gateway I am connecting to.
My SRX ip is 1.1.1.1 (this would actually be my public IP)
I do not set a local IKE-ID
The VPN Gateway address I am connecting to is 2.2.2.2 (This would actually be the peer public IP)
The peer IKE ID is 10.10.1.5 (This is actually a private address used here).
Sometimes a picture is worth 1000 words...
I've attached a picture of the setting on the Sonicwall VPN, I don't know what they call this on the Cisco side (which is what the peer device is)
Does that help? The red box is what I need to duplicate on the SRX. That has a private IP owned by the peer network in it, however it is NOT included in any SA's.
Thanks!
Mark