cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2751
Views
0
Helpful
4
Replies

what is the difference between nat traversal and nat exemption.

donnie
Level 1
Level 1

Hi all. In my site to site vpn connection both nat traversal and nat exemption are enabled. What is the difference between the 2 and why do i need both for my ipsec vpn to work. Thks in advance.

4 Replies 4

lgijssel
Level 9
Level 9

These are two different things.

isakmp nat traversal allows for VPN client traffic to be transported using the NAT-T feature.

nat exemption is what we use to not-NAT traffic that is sent over a VPN tunnel.

regards,

Leo

Jon Marshall
Hall of Fame
Hall of Fame

Hi

Just to expand on previous post.

Nat-traversal is needed when there is a device that sits somewhere in the path between your VPN devices that performs NAT on the packets.

Nat exemption is used to make sure that certain IP addresses are not subject to NAT and are left as is.

Jon

Then why we need nat between vpn devices at all?

Sometimes the design of the network places a device using ipsec inside of a device that is doing address translation at the outside edge of the network. In this case we need nat traversal.

HTH

Rick
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: