ATTENTION: We are currently working an issue with posting. Thank you for your patience while we work on a resolution.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
202
Views
0
Helpful
1
Replies

NAT

msubtain
Level 1
Level 1

I am in the situation where i can not have more than 1 Static IP address on one of my branch offices, and the possible soution with available hardware is going to be look like this,

INTERNAL SWITCH(OFFICE LAN) 10.250.1.0/24

|

|

CISCO ASA 5510 (NAT/PAT/VPN)

|

|

CISCO 1841

|

|

-------INTERNET--------

|

|

Cisco 837(NAT)public IP address

|

|

Watchgaurd X15 (VPN/NAT)

WAN PORT: 192.168.0.254

INTERNAL: 10.250.2.254

|

|

INTERNAL SWITCH(Office LAN 10.250.2.0/24)

A SITE TO SITE VPN tunnel needs to be establish between CISCO ASA in HEADOFFICE and WATCHGAURD in BRANCHOFFICE, Can anyone have a look to see if this will work without any problems, primarily the branch office will run CITRIX sessions over the VPN.

1 Reply 1

b.hsu
Level 5
Level 5

If you are doing internal authentication for example:

Configuration | User Management | Users | Modify

Define the ip address and subnet mask for this particular user under the identity tab.

Configuration | System | Address Management | Assignment

Check the option for: Use Address from Authentication Server.