01-10-2019 01:22 AM
Hi
Got an ASA 5520 and a block og public ip addresses. I uses a.b.c.d as the public IP and that is used for the WAN interface. I would then like to use a.b.c.e as the ip that the IPSec Site-2-Site VPN connects to from the remote networks. Not sure how to do it or if it is possible. Some how I need to forward the public IP a.b.c.e to the VPN service.
Solved! Go to Solution.
01-10-2019 01:43 AM
no. what exactly you after?
you want your site-to-site vpn to connect to a different public ip address. any reason why is that?
01-10-2019 01:34 AM
so your ASA outside interface has an ip address a.b.c.d configured. but you want yours site to site vpn to use another public ip address.
i thing that not possible as your other address is not in service. and is not binded to any outside interface.
01-10-2019 01:38 AM
Is it then possible to bind two (or more) public IP's to the same (WAN)interface?
01-10-2019 01:43 AM
no. what exactly you after?
you want your site-to-site vpn to connect to a different public ip address. any reason why is that?
01-11-2019 02:53 AM
The guys in charge had an idea of less activity if it wasn't the IP found by trace back from accessing the internet from inside the network. But thanks for letting me know that it is not possibly.
01-11-2019 04:18 AM
01-11-2019 04:22 AM - edited 01-11-2019 04:23 AM
@Rob IngramI see what you saying. even in that case though the remote side need to connect to public ip address of the ASA outside interface. Than nat can put in place for the another public ip address. at the end of the day remote peer need a ip address that is configured on the outside interface.
01-11-2019 04:28 AM
01-11-2019 04:34 AM
do you have any example config. interested to see them.
01-11-2019 04:39 AM
We skipped the idea and just configured as "normal".
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide