cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
427
Views
0
Helpful
1
Replies

Can I NAT prior to VPN Tunnel?

pduffany
Level 1
Level 1

Hi,

I would like to add servers to a site to site ipsec tunnel configuration for transport.

However, I will need to NAT those machines for presentation at the other side.

For a Cisco 1760 (vpn endpoint) running on 12.3 code, is this possible?

If it is possible, could I get a link to a config? Or perhaps a snippet here?

We are using two ethernet interfaces for this:

ethernet1/0 is the inside

ethernet0/0 is the outside

Can't seem to find any documentation for it.

Thanks,

Paul

1 Accepted Solution

Accepted Solutions

Farrukh Haroon
VIP Alumni
VIP Alumni

This is the 'NAT Order of Operation' employed by Cisco devices, It seems NAT is before the crypto check anyway

http://www.cisco.com/en/US/tech/tk648/tk361/technologies_tech_note09186a0080133ddd.shtml

Regards

Farrukh

View solution in original post

1 Reply 1

Farrukh Haroon
VIP Alumni
VIP Alumni

This is the 'NAT Order of Operation' employed by Cisco devices, It seems NAT is before the crypto check anyway

http://www.cisco.com/en/US/tech/tk648/tk361/technologies_tech_note09186a0080133ddd.shtml

Regards

Farrukh

Review Cisco Networking for a $25 gift card