Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

Site to Site VPN using private address and port forwarding

Hi folks, I'm having some difficulty setting up a site to site VPN using two ASAs.  One side uses a private address configured via DHCP from the service provider.  This in supposedly NATed by the ISP so that incoming traffic to our public address is forwarded to the private address, likewise outbound traffic has its source IP address translated to this public address.  My question is, should this work or do I need to have the public address configured on the outside interface of the ASA?  If it should work, there is something I'm missing from the configuration, is there any special configuration that would make it work?

Thanks in advance. S.

1 REPLY

Site to Site VPN using private address and port forwarding

Dear Shane,

It should work with nated private to public address.  Please make sure that all vpn-tunnel bound traffic is static-routed to gateway address of ISP.

thanks

Rizwan Rafeek.

392
Views
0
Helpful
1
Replies
CreatePlease to create content