double nat

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

double nat

L0 Member

hello, my palo alto pa440 wan is connected to another firewall who is connected to the isp with a public ip natted to my firewall.i have to setup an ipsec tunnel i don't understand if i have to use the public ip or the vlan ip as local peer ip address

thanks

2 REPLIES 2

L0 Member

I believe with this on your end you would put your outside IP of the firewall. So that would be the vlan IP that your firewall sends traffic out as.

With this configuration, the other end would have to be on a public IP and your device would have to be the initiator, or have port forwarding setup on the firewall your PA440 is connected to.

rov.jpg

this is my situation, i need to set up the tunnel using the 77.72.198.204 public ip that i reach usign vlan 2034

  • 499 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!