12-21-2005 09:34 AM - edited 03-03-2019 11:17 AM
I am attempting to connect my Cisco 515E to a site to site VPN. The IP on the other side has the same IP # as my PIX. Will this be a problem?
12-21-2005 10:39 AM
YEAH . it will be a problem. You cannot have overlapping IP addresses on a site-to-site VPN. Your crypto ACLs cannot be defined if you have overlapping IP addresses. NAT the traffic at one end (preferably the destination) and then encrypt your traffic on the IPSEC.
Doing this, you can communicate between the LANs successfully. Hope this helps. rate replies if found useful. Let us know if you need more assistance on this.
Raj
12-21-2005 10:41 AM
oops. did i read the question wrong !!! if you have the PIX inside IP same at both the ends, i dont think you will have any issues. its the remote LAN subnet that matters the most here. PIX inside is anyway local to the locations, and does not come into picture for IPSEC connections.
Raj
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide