cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
400
Views
0
Helpful
1
Replies

VPN Concentrator and overlapping remote sites

kentnoyes
Level 1
Level 1

I'm trying to use a 3030 concentrator for 15-20 site-to-site VPNs. The site-to-site remote sites are other vendors. A few of these remote sites send me traffic from the same subnet (overlapping subnets). Is there any way on the concentrator to NAT their traffic on the way in to the concentrator so I won't have to require them to change their NAT configuration?

I looked at static translations but I don't see how to do that per-tunnel. Most of the solutions on Cisco's site deal with the remote sites overlapping with my site as opposed to the remote sites overlapping with each other.

1 Reply 1

ddawson
Level 1
Level 1

The 3000 series VPN concentrator can't NAT the remote addresses so that they appear as something else to your internal network. You might be able to do it in a PIX or an IOS router, since they both support that flavor of NAT. I haven't tried it, but I bet it would work.