cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1497
Views
0
Helpful
10
Replies

vbond and vedge behind nat firewall

nezar jam
Level 1
Level 1

If you have topology Vmanage , Vsamrt , Vbond behind firewall ,  Vedge in other site also behind firewall 

i configured Vedge  ip address for vbond  public ip , also i made nat for it on the firewall - DC  1 to 1

Vedge can,t  register 

any one can help ?    

10 Replies 10

omz
VIP Alumni
VIP Alumni

I think the suggested design is not to have vBond behind NAT. 

Do you have eth0 on vBond configured for VPN0? Can you try with Gig interface on vbond in VPN0?

 

the Vbond already configured with interface Gig0/0 

"already" .. should have shared the updated topology in the first place 

all ports opened 

Looks like this is LAB environment ( EVE or PNET Lab), remove FW and check with direct connection?

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

its working if i removed the public ip and used the private ip with routing 

 

in real live there is no routing between ISP and your site , only NAT

balaji.bandi
Hall of Fame
Hall of Fame

is this Fortinet doing NAT here? what kind of NAT Static NAT?

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Yes Static Nat from outside to inside

Gentry17
Level 1
Level 1

You can likewise in fact out the vEdge behind a firewall with PAT, on the grounds that the vBond will work with NAT crossing, yet you're not actually going to assess a lot other than DTLS or IPSec which you're presumably not going to decode.