spremkumar Thu, 09/20/2007 - 05:18

hi carl

you dont need to use nat here. if you are concerned about the data confidentiality ipsec tunnel will be able to take care of with enough encryption strength configured on the tunnel end point devices.


spremkumar Thu, 09/20/2007 - 19:23

Ok ... do throw some clarity on the current setup you have in place and what you are tryind to do so.


carl_townshend Thu, 09/20/2007 - 22:33


Basically, I have a new cisco asa, I have a public ip address that im going to put the outside interface on, inside will be something like I want to route this via a vpn to my head office, I am unsure why we dont need nat as its travelling across the internet. Is this because the tunnels end point is routable then once that has connected the traffic flows inside it and so doesnt need natting ?


