VPN Mode Configuration Commands
209
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
Command example:
SRX5308>
vpn ipsec wizard configure Gateway
vpn-config[wizard]>
ip_version IPv6
vpn-config[wizard]>
conn_name SRX5308-to-Peer44
vpn-config[wizard]>
preshared_key 2%sgd55%!@GH
vpn-config[wizard]>
local_wan_interface WAN1
conn_name connection name The unique connection name (alphanumeric
string).
preshared_key key The key (alphanumeric string) that needs to
be entered on both peers.
local_wan_interface WAN1, WAN2, WAN3, or
WAN4
Specifies the local WAN interface that the VPN
tunnel uses as the local endpoint.
enable_rollover Y or N Enables or disables VPN rollover mode. If
VPN rollover mode is enabled, you need to
issue the rollover_gateway keyword to
specify the WAN interface to which the VPN
rollover should occur.
Note: Rollover mode functions only when the
IP version is IPV4.
rollover_gateway WAN1, WAN2, WAN3, or
WAN4
If VPN rollover mode is enabled, specifies the
WAN interface to which the rollover should
occur.
Remote WAN and local WAN address information
remote_wan_ipaddress ipaddress,
ipv6-address, or domain
name
Depending on the setting of the ip_version
keyword, specifies an IPv4 or IPv6 local WAN
address. You can also specify a domain name.
local_wan_ipaddress ipaddress,
ipv6-address, or domain
name
Depending on the setting of the ip_version
keyword, specifies an IPv4 or IPv6 local WAN
address. You can also specify a domain name.
Remote LAN IPv4 address information
remote_lan_ipaddress ipaddress The IPv4 remote LAN address when the
ip_version keyword is set to IPv4.
remote_lan_net_mask subnet mask The IPv4 remote LAN subnet mask when the
ip_version keyword is set to IPv4.
Remote LAN IPv6 address information
remote_lan_ipv6address ipv6-address The IPv6 remote LAN address when the
ip_version keyword is set to IPv6.
remote_lan_prefixLength prefix length The IPv6 remote LAN prefix length when the
ip_version keyword is set to IPv6.
Keyword Associated Keyword to
Select or Parameter to Type
Description