Check point r65 vpn sks

broken image
broken image

Traffic selectors seem to have an incompatibility with the encryption domains where the services used are showing up in the traffic selector and Juniper doesn't allow ports/services in a traffic selector so a mismatch occurs. That leaves route-based and traffic selectors. Juniper SRX doesn't have policy-based VPNs for IKEv2. The last interoperability document that I've found for Site-to-site VPN compatibility is from back in 2017 and only has IKEv1 compatible with Juniper SRX. Has anybody successfully configured an IKEv2 VPN between Checkpoint and Juniper SRX?

broken image