Cisco ASA VPN with two remote overlapping networks
We have a scenario with two VPN connected remote network (customers) each using the same LAN subnet.
Customer VPN1 = remote network 192.168.0.0/24
Customer VPN2 = remote network 192.168.0.0/24
Is there a way through the use of destination NAT or another NAT configuration to overcome this overlap? The customers cannot perform NAT on their side of the tunnel as their firewalls are not ASA (They are using Meraki) and do not support the NAT configuration.
Thank you very much for the response. I relayed this information to our customer with the Meraki firewall. He said he can NAT on the tunnel, however, the translation is global. It translates this for all VPN's not just the one terminating to my ASA. He has several VPN's and the others cannot be changed. Is there a way to translate on a a specific VPN tunnel while not affecting (not NATing) the other VPN tunnels on the Meraki firewall.? Thanks again.
I am not sure if it does support multiple VPN translations..or not.
Do both customer 1 and 2 not use an ASA or Cisco router? or do both use Meraki? If one of the customers has a device that supports translating VPN traffic, perhaps that customer would be willing to translate at their end?
Please remember to select a correct and rate helpful posts
Please remember to rate and select a correct answer
DocumentationCode download linksGoalRequirementLimitationsSupported ISR
and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationConfigure one of the connectivity
options to access the Cisco IMC from the n...
Firepower Threat Defense (NGFWv) on UCS E-series - Transparent Mode in
HA DocumentationCode download linksGoalRequirementLimitationsSupported
ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationCo...
Question I am currently unable to specify "crypto keyring" command when
configuring VPN connection on my cisco 2901 router. The following
licenses have been activated on my router :