interfaces { loopback lo { address 169.254.253.18/32 address 169.254.253.22/32 } } protocols { bgp 65000 { neighbor 169.254.253.17 { remote-as 7224 update-source 169.254.253.18 } neighbor 169.254.253.21 { remote-as 7224 update-source 169.254.253.22 } network 0.0.0.0/0 } } vpn { ipsec { disable-uniqreqids { } ipsec-interfaces { interface eth0 } esp-group ESP1 { compression disable lifetime 3600 mode tunnel pfs enable proposal 1 { encryption aes128 hash sha1 } } ike-group IKE1 { lifetime 28800 proposal 1 { dh-group 2 encryption aes128 hash sha1 } } esp-group ESP2 { compression disable lifetime 3600 mode tunnel pfs enable proposal 1 { encryption aes128 hash sha1 } } ike-group IKE2 { lifetime 28800 proposal 1 { dh-group 2 encryption aes128 hash sha1 } } site-to-site { peer 204.246.163.76 { authentication { mode pre-shared-secret pre-shared-secret 6jXRHDeT.ZP2eHvwrkESZ3XXoDhAunCd } ike-group IKE1 local-ip 207.182.253.60 tunnel 1 { allow-nat-networks disable allow-public-networks disable esp-group ESP1 local { subnet 169.254.253.18/32 } remote { subnet 169.254.253.17/30 } } tunnel 2 { allow-nat-networks disable allow-public-networks disable esp-group ESP1 local { subnet 10.1.12.0/24 } remote { subnet 10.20.0.0/16 } } } peer 204.246.163.77 { authentication { mode pre-shared-secret pre-shared-secret 9ud1bwxMX.yFE4920Vl0Zm0mfL8if5Ts } ike-group IKE1 local-ip 207.182.253.60 tunnel 1 { allow-nat-networks disable allow-public-networks disable esp-group ESP1 local { subnet 169.254.253.22/32 } remote { subnet 169.254.253.21/30 } } tunnel 2 { allow-nat-networks disable allow-public-networks disable esp-group ESP1 local { subnet 10.1.12.0/24 } remote { subnet 10.20.0.0/16 } } } } } }