cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
489
Views
0
Helpful
1
Replies

VPN Client Address Pools

2d-ruttino
Level 1
Level 1

In all of the sample configs I have seen, the pool of address' used to give to the VPN clients are from a different subnet than the local one (inside). Is there a reason to, or not to, use address from the local inside subnet?

1 Reply 1

kbeltz
Level 1
Level 1

It should be a different subnet than the inside so the return packets are routed to the gateway vpn device. If they’re on the same subnet, the gateway will discard the packet.