Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

Overlapping private subnets on b2b tunnel

Posted on 2009-07-09
4
420 Views
Last Modified: 2012-05-07
How do we define interesting traffic on an b2b tunnel with overlapping private subnets.Please see the jpg file attached.
sites.JPG
0
Comment
Question by:harish_a4u
4 Comments
 
LVL 77

Accepted Solution

by:
arnold earned 250 total points
ID: 24823547
What router do you have? Is altering the segment on one side out of the question?

You have to mask the LAN IPs for the purpose of the VPN.
Side A for the purpose of outgoing traffic need to pretend as though it is a different IP segment and the same for site B.

have a look at the link below where it discusses on to setup a site-to-site VPN between sites that have overlaping segments.

http://inetpro.org/wiki/Category:Configuration

http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a00800949f1.shtml?
0
 
LVL 79

Assisted Solution

by:lrmoore
lrmoore earned 250 total points
ID: 24823666
Nat the traffic first, then the interesting traffic is defined by the natted IP addresses. NAT has to happen on both sides.
I2 nats 10.0.0.0 to 11.0.0.0
Lenovo nats 10.0.0.0 to 12.0.0.0

I2 defines interesting traffic:
 access-list 101 permit ip 11.0.0.0 0.255.255.255 12.0.0.0 0.255.255.255

Lenovo is mirror image
 access-list 101 permit ip 12.0.0.0 0.255.255.255 11.0.0.0 0.255.255.255

0
 

Author Comment

by:harish_a4u
ID: 24845858
Thanks Irmoore and arnold.I will try this in my lab.
0

Featured Post

Easy, flexible multimedia distribution & control

Coming soon!  Ideal for large-scale A/V applications, ATEN's VM3200 Modular Matrix Switch is an all-in-one solution that simplifies video wall integration. Easily customize display layouts to see what you want, how you want it in 4k.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Edgemax OS VPN, to Barracuda Link Balancer 7 182
Site-to-Site VPN Cisco ASA 5505 to Cisco RV320 4 214
AWS Design\Cisco Meraki 4 34
Configuring VPN in server 2012 5 21
Do you have an old router lying around the house that you don’t know what to do with? Check the make and model, then refer to either of these links to see if its compatible. http://www.dd-wrt.com/site/support/router-database http://www.dd-wrt.c…
How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

856 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question