cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
319
Views
0
Helpful
1
Replies

ASA 5520 & using public addresses for remote VPN

bownessbrad
Level 1
Level 1

I am confused as to how to apply NAT to the following scenario:

Internet----->ASA----->Internal Network

publicIP publicIP

VPNClient---->ASA----->ACL to resources

(publicip) (single NAT'd ip)

What I want to accomplish is have users VPN through the ASA box and use one IP address on the internal side of the ASA, therefore NAT must be applied on the inside and how? Is this possible?

I can get this to work without NAT enabled, that is users will grab an ip address from our internal DHCP server. What I want is the VPN tunnel to use a private ip, then all users NAT to a single public ip on our internal network. if this works then I will apply ACl's based on groups.

How do I accomplish this?

1 Reply 1

bownessbrad
Level 1
Level 1

Am I asking a question thaT NO ONE UNDERSTANDS or nOT POSSIBLE?