cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
274
Views
0
Helpful
1
Replies

2 IPs on 1 Interface

imranraheel
Level 1
Level 1

I want to bind two Ips on a single interface, basically i have a site to site vpn and other side wants me to inject uisng a perticular private IP. I have nat enabled I am using 192.168.1.0/24 and other site wants me to inject 192.168.211.0/29 Please let me know how to perform this.

I guess i have two options

Oplicy based Nat

Applying 2 Ip on 1 interface

Please suggest me a better

1 Reply 1

JORGE RODRIGUEZ
Level 10
Level 10

best is to do it through policy nat as you indicated, assume your source/inside is 192.168.1.0/24,if other end of tunnel wants you to come in NATed as 192.168.211.0/29 then you need the policy nat and appropriate acls for interesting traffic.

Something similar as the exmaple link bellow.

access-list new extended permit ip 192.168.211.0 255.255.255.248

access-list policy-nat extended permit ip 192.168.1.0 255.255.255.0

static (inside,outside) 192.168.211.0 access-list policy-nat

plus the cryptop map statements etc..

bellow is a link with good example , this link pertains to when you have overlaping networks between tunnels but the principle is almost the same.

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00808c9950.shtml

Rgds

Jorge

Jorge Rodriguez
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: