01-27-2007 01:14 AM - edited 03-11-2019 02:25 AM
i ve a case on which i seems to be a little bit lost. maybe you experts can help me solving it. by the way i am attaching the diagram for more clarity of the situtation.
we have one company say 1st company connecting to us through the internet cloud using VPN tunnel and 've access to some of our servers, till this part everything seems alright and working.
The part where it became confusing is that now this 1st company will access to another company which is connected to our network through another line.
This 2nd company has it's own network of course and question is how do i configure on the pix that if packets coming in from 1st company for 2nd company should go to this router instead of else where.
hope it is clear. any question please do ask.
01-27-2007 02:31 AM
Hi .. posting the diagram would help . and also the VPN configuration on your pix.
01-27-2007 03:30 AM
01-27-2007 09:05 AM
Salam Zulqurnain,
What you need to do is make another VPN tunnel on 2nd company's router terminating on your HO PIX and enable communication between different VPN peers on the PIX. The command on the PIX is (same-security-traffic permit intra-interface). For more information, look at (hairpinning) concept!
Regards,
01-27-2007 09:06 AM
Salam Zulqurnain,
What you need to do is make another VPN tunnel on 2nd company's router terminating on your HO PIX and enable communication between different VPN peers on the PIX. The command on the PIX is (same-security-traffic permit intra-interface). For more information, look at (hairpinning) concept!
Please vote if this helps!
Regards,
01-27-2007 09:20 PM
actually my 2nd company router is connecting with HO through a dedicated leased line and the communication is between successfully,
now what i am understanding from you is that i need to setup VPN Tunnel on our HO router connecting to 2nd company router and on my pix which is towards the internet side have to enable this command. am i right, anyways, a little for clarification would be great.
01-27-2007 09:31 PM
Yes, you got the idea correctly... the command which I've included allows communication between VPN spokes once the tunnel is established.
There is an example on Cisco site, If you are interested, visit the following URL:
Please vote for me if this is helpful!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide