set security ike proposal ike-p1 authentication-method pre-shared-keys set security ike proposal ike-p1 dh-group group2 set security ike proposal ike-p1 authentication-algorithm sha1 set security ike proposal ike-p1 encryption-algorithm aes-128-cbc set security ike proposal ike-p1 lifetime-seconds 86400 set security ike policy ike-p1pol mode main set security ike policy ike-p1pol proposals ike-p1 set security ike policy ike-p1pol pre-shared-key ascii-text PASSWORD set security ike gateway gw ike-policy ike-p1pol set security ike gateway gw address PEERWAN-IP set security ike gateway gw external-interface ge-0/0/0.0 set security ipsec proposal ipsec-Prop protocol esp set security ipsec proposal ipsec-Prop authentication-algorithm hmac-sha1-96 set security ipsec proposal ipsec-Prop encryption-algorithm aes-128-cbc set security ipsec proposal ipsec-Prop lifetime-seconds 86400 set security ipsec policy ipsec-policy proposals ipsec-Prop set security ipsec vpn ike-vpn ike gateway gw set security ipsec vpn ike-vpn ike ipsec-policy ipsec-policy set security ipsec vpn ike-vpn establish-tunnels immediately set security nat source rule-set trust_untrust rule rule_1 match source-address 192.168.1.187/32 set security nat source rule-set trust_untrust rule rule_1 match destination-address 192.168.75.5/32 set security nat source rule-set trust_untrust rule rule_1 then source-nat off set security nat source rule-set trust_untrust rule rule_2 match source-address 192.168.1.188/32 set security nat source rule-set trust_untrust rule rule_2 match destination-address 192.168.75.5/32 set security nat source rule-set trust_untrust rule rule_2 then source-nat off set security nat source rule-set trust_untrust rule rule_3 match source-address 192.168.1.189/32 set security nat source rule-set trust_untrust rule rule_3 match destination-address 192.168.75.5/32 set security nat source rule-set trust_untrust rule rule_3 then source-nat off set security nat source rule-set trust_untrust rule rule_4 match source-address 192.168.1.190/32 set security nat source rule-set trust_untrust rule rule_4 match destination-address 192.168.75.5/32 set security nat source rule-set trust_untrust rule rule_4 then source-nat off set security policies from-zone untrust to-zone trust policy vpn-untrust-1 match source-address 192.168.75.5 set security policies from-zone untrust to-zone trust policy vpn-untrust-1 match destination-address Server-IPs set security policies from-zone untrust to-zone trust policy vpn-untrust-1 match application any set security policies from-zone untrust to-zone trust policy vpn-untrust-1 then permit tunnel ipsec-vpn ike-vpn set security policies from-zone untrust to-zone trust policy vpn-untrust-1 then permit tunnel pair-policy vpn-trust-1 set security policies from-zone trust to-zone untrust policy vpn-trust-1 match source-address Server-IPs set security policies from-zone trust to-zone untrust policy vpn-trust-1 match destination-address 192.168.75.5 set security policies from-zone trust to-zone untrust policy vpn-trust-1 match application any set security policies from-zone trust to-zone untrust policy vpn-trust-1 then permit tunnel ipsec-vpn ike-vpn set security policies from-zone trust to-zone untrust policy vpn-trust-1 then permit tunnel pair-policy vpn-untrust-1