08-02-2024 01:51 PM - edited 08-02-2024 02:14 PM
Hi,
I recently set up a site-to-site IPsec VPN tunnel with a customer, and soon after informed me that they use the same subnet for their VPN Peer IP address and the LAN behind it. They can't do NATing at the moment. They've even planned for some of our LAN traffic to communicate directly with their peer IP. I have never seen a VPN with the same IP addressing scenario, so I'm not sure whether this set up will work or not. I have tried to search online but with no succuss.
The VPN tunnel is currently active, and we have set it up as a route-based tunnel using tunnel mode for the IPsec transform-set. Can anyone provide insights or confirmation on whether this configuration will work?
Site A:
Peer IP: 10.10.10.1 , LAN 10.10.0.0/24
Site B:
Peer IP 20.20.20.55, LAN 20.20.20.0/24
08-02-2024 02:10 PM
Do you use ASA FW?
MHM
08-02-2024 02:12 PM
Thanks for your reply! from our end we use a Cisco router
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide