Solved

Overlapping private subnets on b2b tunnel

Posted on 2009-07-09
4
414 Views
Last Modified: 2012-05-07
How do we define interesting traffic on an b2b tunnel with overlapping private subnets.Please see the jpg file attached.
sites.JPG
0
Comment
Question by:harish_a4u
4 Comments
 
LVL 76

Accepted Solution

by:
arnold earned 250 total points
Comment Utility
What router do you have? Is altering the segment on one side out of the question?

You have to mask the LAN IPs for the purpose of the VPN.
Side A for the purpose of outgoing traffic need to pretend as though it is a different IP segment and the same for site B.

have a look at the link below where it discusses on to setup a site-to-site VPN between sites that have overlaping segments.

http://inetpro.org/wiki/Category:Configuration

http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a00800949f1.shtml?
0
 
LVL 79

Assisted Solution

by:lrmoore
lrmoore earned 250 total points
Comment Utility
Nat the traffic first, then the interesting traffic is defined by the natted IP addresses. NAT has to happen on both sides.
I2 nats 10.0.0.0 to 11.0.0.0
Lenovo nats 10.0.0.0 to 12.0.0.0

I2 defines interesting traffic:
 access-list 101 permit ip 11.0.0.0 0.255.255.255 12.0.0.0 0.255.255.255

Lenovo is mirror image
 access-list 101 permit ip 12.0.0.0 0.255.255.255 11.0.0.0 0.255.255.255

0
 

Author Comment

by:harish_a4u
Comment Utility
Thanks Irmoore and arnold.I will try this in my lab.
0

Featured Post

How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

Join & Write a Comment

Like many others, when I created a Windows 2008 RRAS VPN server, I connected via PPTP, and still do, but there are problems that can arise from solely using PPTP.  One particular problem was that the CFO of the company used a Virgin Broadband Wirele…
Overview Often, we set up VPN appliances where the connected clients are on a separate subnet and the company will have alternate internet connections and do not use this particular device as the gateway for certain servers or clients. In this case…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

763 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

15 Experts available now in Live!

Get 1:1 Help Now