Feature Explorer AI AI

×

Subscribe now to get the Latest Updates

Watch a 2-minute overview video

Passing of traffic during a policy mismatch between key server and group member

More Information:

Passing of traffic during a policy mismatch between key server and group member

Currently, packets that do not match the traffic policy provided by the group key server are dropped by default. You have an option to change the default behavior to disable encryption and forward the packets instead of dropping them. You can configure the forward-policy-mismatch within the group vpn object configuration to enable the support for forwarding policy-mismatched packets at the [edit security group-vpn member ipsec] hierarchy level.
Product / Application Software Introduced Release
MX5 Junos OS 18.2R1
MX10 Junos OS 18.2R1
MX40 Junos OS 18.2R1
MX80 Junos OS 18.2R1
MX104 Junos OS 18.2R1
MX204 Junos OS 18.2R1
MX240 Junos OS 18.2R1
MX301 Junos OS 25.4R1
MX304 Junos OS 22.2R3
MX480 Junos OS 18.2R1
MX960 Junos OS 18.2R1
MX2008 Junos OS 18.2R1
MX2010 Junos OS 18.2R1
MX2020 Junos OS 18.2R1
MX10003 Junos OS 18.2R1
vMX Junos OS 18.2R1