06-05-2012 07:48 AM
We have 2 sites HQ and Remote connected with MPLS as in the above picture.There are applications in DMZ s that need to talk to each other but the communication is going through the LAN (Remote DMZ- HQ LAN - HQ DMZ) but we don't want the DMZs talk to each other through the LAN.We want to configure a VPN tunnel between HQ and Remote Firewalls so that all the communication between the DMZs go through a VPN tunnel through MPLS through the LAN. Is this considered as a Layer2 VPN or the Layer 3 VPN model and also is there any special configuration that needs to be done on the firewalls other than normal site-site VPN config.
Thanks
Solved! Go to Solution.
06-05-2012 08:02 AM
It is Layer 3 VPN and no special configuration required on the firewall other than the normal site-to-site VPN. Just have to enable the isakmp and apply crypto map to the LAN interface.
06-05-2012 08:02 AM
It is Layer 3 VPN and no special configuration required on the firewall other than the normal site-to-site VPN. Just have to enable the isakmp and apply crypto map to the LAN interface.
06-05-2012 10:13 AM
Thanks Jennifer.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide