Feature Explorer AI AI

×

Subscribe now to get the Latest Updates

Watch a 2-minute overview video

AutoVPN spokes

More Information:

AutoVPN spokes

AutoVPN allows network administrators to configure the hub in a hub-and-spoke IPsec VPN topology for current and future client device connections. No configuration changes are required on the hub when spoke devices are added or deleted, thus allowing administrators flexibility in managing large-scale network deployments. AutoVPN is supported on route-based IPsec VPNs. AutoVPN traffic must be IPv4. Dynamic routing protocols are supported to forward packets through the VPN tunnels. The supported authentication for AutoVPN hubs and spokes is X.509 public key infrastructure (PKI) certificates. The group IKE user type configured on the hub allows strings to be specified to match the alternate subject field in spoke certificates. Partial matches for the subject fields in spoke certificates can also be specified. AutoVPN is configured and managed on SRX Series devices using the CLI. Multiple AutoVPN hubs can be configured on a single SRX Series device. The maximum number of spokes supported by a configured hub is specific to the model of the SRX Series device. AutoVPN supports VPN monitoring and dead peer detection.
Product / Application Software Introduced Release
NFX150 Junos OS 18.1R1
vSRX Junos OS 15.1X49-D40
SRX300 Junos OS 15.1X49-D35
SRX320 Junos OS 15.1X49-D35
SRX340 Junos OS 15.1X49-D35
SRX345 Junos OS 15.1X49-D35
SRX380 Junos OS 20.1R1
SRX550 Junos OS 12.1X44-D10
SRX550 HM Junos OS 15.1X49-D30
SRX1500 Junos OS 15.1X49-D30
SRX1600 Junos OS 23.4R1
SRX2300 Junos OS 23.4R1
SRX4100 Junos OS 15.1X49-D65
SRX4120 Junos OS 25.2R1
SRX4200 Junos OS 15.1X49-D65
SRX4300 Junos OS 24.2R1
SRX4600 Junos OS 17.4R2
SRX4700 Junos OS 24.4R1-S2