Need help with phase 2 to Juniper SSG

  • I could use some help with establishing phase 2 to Juniper SSG ( screenos ) device.

    I can't seem to find any options thats work. If anyone has done this I'd appreciate knowing what settings you used .


  • I finally got it to work, roughly these are the settings ( I know they are the least secure - but they work)
    P1: 3des,md5, dh 2
    aggressive yes
    DPD: yes
    monitor MUST be used. autokey ike advanced: check vpn monitor+optimized+rekey
    set proxy-id to class C networks

Log in to reply