Site-To-Site VPN and NAT

Unanswered Question
Sep 26th, 2009
User Badges:

Hi,

We have established site-to-site VPN between two locations over internet. This is between two hosts only as these are the only one which communicate with each other over IPSEC.

10.1.1.1 from location A to 192.168.1.1 from location B. ( nonat - access list has these hosts mentioned ). Tunnel is terminating on "outside" interface at both locations.

Now, we need to make 10.1.1.1 available to public internet using static address translation. ( static (inside,outside) PUBLIC_IP, 10.1.1.1 ). If we add this configuration will it work? Nonat as well as static dest. nat for the the same private address is kind of confusing me. Or is there any other way to have this done.

Can this be done not only on ASA but also on 3800 series ISR.

Please share the experience.

Any link on cisco.com is appreciable.

Thanks in advance.

Subodh

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.

Actions

This Discussion