<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Juniper VPN vs Cisco in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/juniper-vpn-vs-cisco/m-p/4462025#M1083462</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Could someone please tell me how to match these Juniper parameters on a Cisco ASA&amp;nbsp;ASA5545&amp;nbsp;Version 9.12(3)12. Below is the Juniper config I need to match on the ASA&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;set interfaces st0.53 family inet&lt;BR /&gt;set security zones security-zone untrust interfaces st0.53&lt;BR /&gt;set routing-instances transit-router interface st0.53&lt;BR /&gt;set routing-instances transit-router routing-options static route 172.18.x.x next-hop st0.53&lt;BR /&gt;&lt;BR /&gt;set security ike proposal ike-pre-sha256-aes256-dh19-28800 authentication-method pre-shared-keys&lt;BR /&gt;set security ike proposal ike-pre-sha256-aes256-dh19-28800 encryption-algorithm aes-256-cbc&lt;BR /&gt;set security ike proposal ike-pre-sha256-aes256-dh19-28800 dh-group group19&lt;BR /&gt;set security ike proposal ike-pre-sha256-aes256-dh19-28800 lifetime-seconds 28800&lt;BR /&gt;&lt;BR /&gt;set security ike policy ike-policy-test mode main&lt;BR /&gt;set security ike policy ike-policy-test pre-shared-key ascii-text xxxxxxx&lt;BR /&gt;set security ike policy ike-policy-test proposals ike-pre-sha256-aes256-dh19-28800&lt;BR /&gt;&lt;BR /&gt;set security ike gateway ike-gateway-test ike-policy ike-policy-test&lt;BR /&gt;set security ike gateway ike-gateway-test address 109.x.x.x&lt;BR /&gt;set security ike gateway ike-gateway-test external-interface lo0.0&lt;BR /&gt;set security ike gateway ike-gateway-test version v2-only&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;set security ipsec proposal ipsec-esp-sha256-aes256-3600 protocol esp&lt;BR /&gt;set security ipsec proposal ipsec-esp-sha256-aes256-3600 encryption-algorithm aes-256-cbc&lt;BR /&gt;set security ipsec proposal ipsec-esp-sha256-aes256-3600 lifetime-seconds 3600&lt;/P&gt;&lt;P&gt;set security ipsec policy ipsec-policy-test proposals ipsec-esp-sha256-aes256-3600&lt;BR /&gt;set security ipsec policy ipsec-policy-test perfect-forward-secrecy keys group19&lt;BR /&gt;&lt;BR /&gt;set security ipsec vpn test ike gateway ike-gateway-test&lt;BR /&gt;set security ipsec vpn test ike ipsec-policy ipsec-policy-test&lt;BR /&gt;set security ipsec vpn test&amp;nbsp; bind-interface st0.53&lt;BR /&gt;set security ipsec vpn test establish-tunnels on-traffic&lt;/P&gt;</description>
    <pubDate>Wed, 08 Sep 2021 20:38:02 GMT</pubDate>
    <dc:creator>ekortie28897</dc:creator>
    <dc:date>2021-09-08T20:38:02Z</dc:date>
    <item>
      <title>Juniper VPN vs Cisco</title>
      <link>https://community.cisco.com/t5/network-security/juniper-vpn-vs-cisco/m-p/4462025#M1083462</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Could someone please tell me how to match these Juniper parameters on a Cisco ASA&amp;nbsp;ASA5545&amp;nbsp;Version 9.12(3)12. Below is the Juniper config I need to match on the ASA&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;set interfaces st0.53 family inet&lt;BR /&gt;set security zones security-zone untrust interfaces st0.53&lt;BR /&gt;set routing-instances transit-router interface st0.53&lt;BR /&gt;set routing-instances transit-router routing-options static route 172.18.x.x next-hop st0.53&lt;BR /&gt;&lt;BR /&gt;set security ike proposal ike-pre-sha256-aes256-dh19-28800 authentication-method pre-shared-keys&lt;BR /&gt;set security ike proposal ike-pre-sha256-aes256-dh19-28800 encryption-algorithm aes-256-cbc&lt;BR /&gt;set security ike proposal ike-pre-sha256-aes256-dh19-28800 dh-group group19&lt;BR /&gt;set security ike proposal ike-pre-sha256-aes256-dh19-28800 lifetime-seconds 28800&lt;BR /&gt;&lt;BR /&gt;set security ike policy ike-policy-test mode main&lt;BR /&gt;set security ike policy ike-policy-test pre-shared-key ascii-text xxxxxxx&lt;BR /&gt;set security ike policy ike-policy-test proposals ike-pre-sha256-aes256-dh19-28800&lt;BR /&gt;&lt;BR /&gt;set security ike gateway ike-gateway-test ike-policy ike-policy-test&lt;BR /&gt;set security ike gateway ike-gateway-test address 109.x.x.x&lt;BR /&gt;set security ike gateway ike-gateway-test external-interface lo0.0&lt;BR /&gt;set security ike gateway ike-gateway-test version v2-only&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;set security ipsec proposal ipsec-esp-sha256-aes256-3600 protocol esp&lt;BR /&gt;set security ipsec proposal ipsec-esp-sha256-aes256-3600 encryption-algorithm aes-256-cbc&lt;BR /&gt;set security ipsec proposal ipsec-esp-sha256-aes256-3600 lifetime-seconds 3600&lt;/P&gt;&lt;P&gt;set security ipsec policy ipsec-policy-test proposals ipsec-esp-sha256-aes256-3600&lt;BR /&gt;set security ipsec policy ipsec-policy-test perfect-forward-secrecy keys group19&lt;BR /&gt;&lt;BR /&gt;set security ipsec vpn test ike gateway ike-gateway-test&lt;BR /&gt;set security ipsec vpn test ike ipsec-policy ipsec-policy-test&lt;BR /&gt;set security ipsec vpn test&amp;nbsp; bind-interface st0.53&lt;BR /&gt;set security ipsec vpn test establish-tunnels on-traffic&lt;/P&gt;</description>
      <pubDate>Wed, 08 Sep 2021 20:38:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/juniper-vpn-vs-cisco/m-p/4462025#M1083462</guid>
      <dc:creator>ekortie28897</dc:creator>
      <dc:date>2021-09-08T20:38:02Z</dc:date>
    </item>
  </channel>
</rss>

