08-08-2012 03:41 AM
Dear All,
I have a requiremnt for site to site VPN configuration but the remote end firewall doesnt got Public ip ,public ip is termintaed on the router. please find the attached diagram
LAN -->Firewall-privateip --> Router-publicip --ISP
how can i setup site to site VPN tunnel, appreciate urgent help
Thanks in advance..
Shanil
Solved! Go to Solution.
08-08-2012 09:22 AM
You can configure static 1:1 NAT for the ASA outside interface with a spare public ip address on the router.
If you don't have spare public ip, then you need to configure static PAT for UDP/500 and UDP/4500 on the router, and enable NAT-T on the ASA.
08-08-2012 09:22 AM
You can configure static 1:1 NAT for the ASA outside interface with a spare public ip address on the router.
If you don't have spare public ip, then you need to configure static PAT for UDP/500 and UDP/4500 on the router, and enable NAT-T on the ASA.
08-08-2012 11:59 AM
Would you please share the config ..or any example config please
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: