10-06-2003
04:42 AM
- last edited on
02-21-2020
11:43 PM
by
cc_security_adm
Hello,
I have to configure a site-to-site VPN between 2 PIX. The first one has a public IP adress on its external interface whereas the second has a private IP.
PIX1-------router1---Internet---router2--------PIX2
(public IP) | (public IP) | (private IP)
Do I need to re-address private addressing between router2 and PIX2 so as I've got a public IP associated with my PIX2's external interface or is there a way to terminate my VPN tunnel on the PIX2 private address ?
thanks for your help
10-06-2003 05:47 AM
Hi,
it's possible to terminate the VPN tunnel on PIX2. Just make sure that router2 forwards UDP/500 (=IKE) and ESP (=IPSEC) from its external interface to the outside interface of the PIX2.
Kind Regards,
Tom
10-06-2003 05:54 AM
Hi,
How can I do this ?
I have to translate the outside interface of the PIX2 to a public adress on the router2 ?
Best regards
10-06-2003 06:34 AM
Hi -
Here's a good document on PIX-to-PIX VPN Configuration also lots more configuration examples on the 2nd link.
http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/prod_configuration_examples_list.html
Hope this helps - Jay.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide