Configuring a Gateway for Site B
Knowledge Base ID: KB4138
Version: 4.0
Published: 07 Oct 2008
Updated: 07 Oct 2008
Categories: . Firewall/IPSec_VPN
. IPSec
. ScreenOS

Synopsis:
Configuring a Gateway for Site B

Solution:

To configure a gateway for site B, perform the following steps:

Step one: Open the WebUI. For more information on accessing the WebUI, go to Accessing Your NetScreen, SSG, or ISG Firewall Using the WebUI

Step two: From the Juniper firewall menu, click VPNs, select AutoKey Advanced, and then click Gateway.

Image of step two

Step three: From the Gateway selection screen, click New.

Image of step three

Step four: From the Gateway Name text box, enter a gateway name.

Note: For this example, we entered Site A GW.

Image of step four and five

Step five: From Security Level, click to select Custom.

Step six: From Remote Gateway Type, click to select StaticIP Address, and then in the IP Address text box, enter site A's untrust IP address.

Note: For this example, we entered 1.1.1.1.

Image of step six

Step seven: In the Preshared Key text box, enter a Preshared Key.

Warning: The pre-shared keys on Juniper firewall device A and Juniper firewall device B must be identical.

Image of step seven and eight

Step eight: From the Local ID text box, enter a local ID.

Note: For this example, we entered siteb.netscreen.com.

Step nine: From the Outgoing Interface drop-down menu, click to select the interface from which you connect to the Internet.

Note: For this example, we selected ethernet3.

Image of step nine

Step ten: Click Advanced.

Image of step ten

Step eleven: From the Phase 1 Proposal drop-down menu, click to choose a phase 1 proposal.

Note: Your Juniper firewall supports up to four proposals for Phase 1 negotiations, allowing you to define how restrictive a range of security parameters for key negotiation you will accept.

Note: For this example, we selected pre-g2-3des-sha.

Image of step eleven and twelve

Step twelve: From Mode (Initiator), click to select Aggressive.

Step thirteen: Click Return.

Image of step thirteen

Step fourteen: Click OK.

Image of step fourteen

Purpose:
Troubleshooting