cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
337
Views
0
Helpful
2
Replies

Creating Site to Site Dynamic VPN

Kaoch0824
Level 1
Level 1

Is there another secure way of creating dynamic vpn (site to site vpn with static IP on one end and dynamic IP on the other end). I do not feel comfortable allowing any peer to connect.

2 Replies 2

JORGE RODRIGUEZ
Level 10
Level 10

Is not that the dynamic is completely wide opened for any one to connect, it still needs to authenticate the tunnel through wild-card pre-shared keys, I don't see any other way other than have a static IP instead of dynamic at the tunnel termination point on the dynamic side.

Jorge

Jorge Rodriguez

I totally agree too. I am throwing this question out for inputs. Creating a vpn topology with static IP at one end and the other end dynamic IP, disregarding all the vpn phases and how it negotiates, would it be fair to say this setup is more vulnerable than creating a site to site vpn with static IP on both end?