- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-26-2018 03:05 AM
hi need to know whats the source and destination ip address like below schedule that i have to fill
Access rules
Source IP |
Dest IP |
Destination protocol & port |
Application used |
Comments |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
need to make site to site vpn from remote location to head office location and giving access to users on remote location on some servers at head office site , so what is mean by source and dest ip ?
is it source mean the local or private N,W IP addresses of remote location is users (ip of machine coming from)
and destination ip addresses are the ip of the machines os servers at head office location that we trying to connect ?
thanks
Solved! Go to Solution.
- Labels:
-
Other Routing
-
Routing Protocols
-
WAN
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-26-2018 06:09 AM
For example, if you had:
VPN IP 22.22.22.22
HQ FW
Internet
Remote FW
VPN IP 33.33.33.33
HQ FQ might check for incoming traffic for destination IP 22.22.22.22 with source IP 33.33.33.33
while the Remote FW might check for incoming traffic for destination IP 33.33.33.33 with source IP 22.22.22.22.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-26-2018 03:47 AM
Basically yes to what you say.
Only thing to watch out for is are you doing any NAT on these IPs and if so you would need to exempt them from the NAT or use the translated IP(s).
Jon
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-26-2018 04:18 AM
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-26-2018 04:25 AM
could u please find the attached nw diagram for my remote location that we need the users to access out side (head office servers)
may it could help
and ip source and dest should be what ?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-26-2018 04:34 AM
"Who" get this information? I.e. whoever is asking for it should be able to answer questions about what's needed.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-26-2018 05:51 AM
YES I KNOW IM JUST NEED TO KNOW THE CONCEPT OF SOURCE AND DESTINATION AS EXPLANATION
what is the source and dest?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-26-2018 06:09 AM
For example, if you had:
VPN IP 22.22.22.22
HQ FW
Internet
Remote FW
VPN IP 33.33.33.33
HQ FQ might check for incoming traffic for destination IP 22.22.22.22 with source IP 33.33.33.33
while the Remote FW might check for incoming traffic for destination IP 33.33.33.33 with source IP 22.22.22.22.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-29-2018 01:44 AM
just to correct me if im on remote location (33.33.33.33) and i need to have an access to some servers on Head office site (22.22.22.22) so in that case the source ip should me ip addresses of the machines that already connected to remote location where traffic coming from
and the destination ip should be the ip addresses of the machines (servers that i want to access on head office site) that we are trying to access
am i right ???
thanks alot for help :)
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-30-2018 04:41 AM
When it comes to tunnels, the end hosts would have source and destination IPs as they normally would. The devices that support the tunnel, "wrap" the host packets in their own packet, which usually has a different set of source and destination IPs, those of the tunnel end point devices.
E.g.
HQ host 10.1.1.1
HQ tunnel device 22.22.22.22
VPN transit network (e.g. Internet)
Remote tunnel device 33.33.33.33
Remote host 192.168.1.1
From HQ host to remote host - across VPN tunnel
tunnel src 22.22.22.22 dest 33.33.33.33 (encapsulated src 10.1.1.1 dest 192.168.1.1)
What your security device ACLs need to have depends on whether they see packets before or after they've be encapsulated. Usually they see the encapsulated packet.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-02-2018 07:53 AM
remote tunnel device and hq tunnel device mean the real (static) ip for both site ?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-03-2018 05:36 AM
