vpn on 2811 with overlapping networks and all natting on one side

Discussion in 'Cisco' started by Robby Cauwerts, Nov 26, 2007.

  1. Hi,

    I have a vpn setup with the same private networks at both sides.
    We don't control the other vpn peer and my customer wants to do all
    the natting on his side.
    With a pix/asa it is possible to nat the source and destination on one
    side of a vpn setup (bi-directional translation):

    Has someone done the same setup with a router (2811 with ADVSECURITY)?

    Robby Cauwerts, Nov 26, 2007
    1. Advertisements

  2. Robby Cauwerts

    Brian V Guest

    Yup, very simple. Nothing "different" you need to do on your end except add
    the NAT statements (and build the VPN using the NAT'd IP's instead of your
    privates). You simply give your peer the NAT'd IP's.
    Brian V, Nov 26, 2007
    1. Advertisements

  3. Ok,
    thanks for the feedback!
    I will give it a try.
    Robby Cauwerts, Nov 27, 2007
    1. Advertisements

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments (here). After that, you can post your question and our members will help you out.