Discussion in 'Cisco' started by Bruce Fournier, Jul 11, 2003.

  1. Hello all,
    We are bringing in vpn connections from client sites which terminate in our
    DMZ area. The circuits and the associated routers belong to the clients, and
    the routers at our site also belong to them. currently we are routing the
    traffic into our site through a Microsoft ISA server with multiple NIC's
    installed. I want to change that to a cisco router like a 3662 or something
    along those lines. The problem that I forsee is that we are using the network, and so do some of our clients, so if I am at host
    on our network and need to talk to host on the client network the
    router will see the packet and think it's on the local network and not route
    it through the site to site vpn. Is there any way around this?
    Thanks in advance
    Bruce Fournier, Jul 11, 2003
  2. Bruce Fournier

    /dev/alex Guest

    use a alias IP of maybe 192.168.x.x on the same nic. We resolved alot
    of these issues and more by using the Linux frees/WAN IPsec setup.
    Ran much better and more easily maintained than the Cisco alternative.

    /dev/alex, Jul 11, 2003
