Antonio Knox Thu, 04/28/2011 - 07:13
User Badges:
  • Silver, 250 points or more

Looks like is your VPN gateway.  In this case you will need to NAT to the address of your outside interface (traffic from --> will appear to be sourced from here.

!----Define the gobal address (this will be, in this case, the existing address on the outside interface, which is perfectly doable any address in the range (besides .1)will do , though)---

global (outside) 1

!----Define the traffic that will NAT to the global address when passing through the outside interface to the VPN gateway ( -->

access-list nat-to-vpn extemded permit ip host

!---Apply interesting traffic to NAT

nat (inside) 1 access-list nat-to-vpn

Please rate helpful posts.


This Discussion