Improve company productivity with a Business Account.Sign Up

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 385
  • Last Modified:

VPN Site 2 Site - Policy NAT

We have a company that has a NETGEAR ProSafe VPN Firewall FVX538
 router that we have had no problems with and has worked very well for years. A new company has come on board that requires a site to site VPN between the 2 sites and they require us to use a different subnet that what we currently have to connect to them as they have a number of other sites and our subnet conflicts with one that they already have.
Is there any way to fool the hardware into thinking that we are the subnet that they require? The new site has a cisco asa firewall/router and I have been told it can perform Policy NAT. Is it possible to do something like this on the netgear or will this need to be replaced?
0
Mitch P
Asked:
Mitch P
1 Solution
 
FrabbleCommented:
You're not going to be able to handle the overlapping addresses with the Netgear. Even if you get it replaced, the other sites will need to access your devices with whatever is the adopted NAT network and you the conflicting site with another. Cisco's NAT handling allows the changing of DNS queries across the firewall with the translated address but this is really a short term solution, especially if you move to centralised services.

Long term solution is that you or the other site change the network currently used.  
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

NEW Internet Security Report Now Available!

WatchGuard’s Threat Lab is a group of dedicated threat researchers committed to helping you stay ahead of the bad guys by providing in-depth analysis of the top security threats to your network.  Check out this quarters report on the threats that shook the industry in Q4 2017.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now