Link to home
Start Free TrialLog in
Avatar of denverjaye
denverjaye

asked on

Using PAT to route the outside interface address inside a VPN tunnel

Is it possble to use the outside interface of a VPN router (in my case a Nortel Contivity 1100) on the inside of a tunnel using PAT?  Basically I have a client that is refusing to let us use private addresses in a VPN tunnel between us.  They said that they have clients set this up all the time.  I don't understand how this would work because that outside interface is the endpoint for the VPN tunnel.  How could you then use that same address to PAT on the inside of the tunnel?  For example, the VPN router has an external IP address of 10.10.10.1.  That is also of course its endpoint when building tunnels.  There is a server on the inside of the network at 192.168.10.5.  In the VPN router, can you PAT that outside interface address of 10.10.10.1 so that maybe 10.10.10.1:4451 coming over the VPN tunnel will be routed to 192.168.10.5 on the inside?
Avatar of netnounours
netnounours

Hi,

There is a feature that I used in a case similar to yours. You can define a new NAT policy and apply it to one tunnel only. You'll find that option in the Branch Office tunnel configuration

I hope that helps
ASKER CERTIFIED SOLUTION
Avatar of benhanson
benhanson

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial