06-20-2014 07:34 AM
I have a Juniper SRX in the data center on a public IP. I have my EdgeMax device that is BEHIND NAT and I want to create a tunnel to my SRX device. I have set up dynamic VPN accounts on it. My goal is to set up this device as a CPE where the customer would have this device plugged in to their network and I can give them a public /27 that they can then use as if they are corrected directly to me in the DC.
06-20-2014 10:31 AM - edited 06-20-2014 10:31 AM
If you meant IPSec, you can start with http://wiki.ubnt.com/IPSec_VPN_-_CLI_Commands#IPSec_with_NAT-T
06-20-2014 10:35 AM
Could you clarify if IPsec (encryption etc.) is required or if you just need GRE tunnel? Also it sounds like you want to do layer-2 GRE with bridging?
06-20-2014 10:54 AM
I wasnt the opposite config for R2. I want to put a public IP on the LAN side and on the WAN side it will have an IP that it gets from a DHCP server. I am looking to do something like this:
My goal is be a virtual ISP for clients that are in a location with internet from sone one else
Over all I am looking for layer2. GRE would be fine however you need to be on a public IP for it to work and the device is behind NAT.