cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
277
Views
0
Helpful
1
Replies

VPN and NAT

networker99
Level 1
Level 1

Is it possible to NAT VPN traffic to an address that does not exist on either interface.

For example if two sites have overlapping address ranges (say both have an internal network of (1.1.1.x). The outside space between the firewalls are 2.2.2.x, can I nat the interesting traffic to 3.3.3.x?, or does it have to be NAT'd to an address on the outside interface...

1 Reply 1

Jon Marshall
Hall of Fame
Hall of Fame

You can NAT it to whatever you want and as long as your crypto map acl's that define interesting traffic refer to the Natted address you will be fine.

Jon