[Webinar] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 381
  • Last Modified:

VPN Site 2 Site - Policy NAT

We have a company that has a NETGEAR ProSafe VPN Firewall FVX538
 router that we have had no problems with and has worked very well for years. A new company has come on board that requires a site to site VPN between the 2 sites and they require us to use a different subnet that what we currently have to connect to them as they have a number of other sites and our subnet conflicts with one that they already have.
Is there any way to fool the hardware into thinking that we are the subnet that they require? The new site has a cisco asa firewall/router and I have been told it can perform Policy NAT. Is it possible to do something like this on the netgear or will this need to be replaced?
0
Mitch P
Asked:
Mitch P
1 Solution
 
FrabbleCommented:
You're not going to be able to handle the overlapping addresses with the Netgear. Even if you get it replaced, the other sites will need to access your devices with whatever is the adopted NAT network and you the conflicting site with another. Cisco's NAT handling allows the changing of DNS queries across the firewall with the translated address but this is really a short term solution, especially if you move to centralised services.

Long term solution is that you or the other site change the network currently used.  
0

Featured Post

Nothing ever in the clear!

This technical paper will help you implement VMware’s VM encryption as well as implement Veeam encryption which together will achieve the nothing ever in the clear goal. If a bad guy steals VMs, backups or traffic they get nothing.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now