04-11-2019 09:37 AM
I have 10.240.0.0/12 in the Proxy ID and would like to NAT all my 192.168.x.x addresses behind 10.248.250.10 out of that 10.240/12.
my plan is to create the NAT rule and assign that 10.248.250.10 to the VPN tunnel Interface. will this create a route to whole 10.240/12 or just 10.248.250.10? I have active networks on 10.240 subnet. so trying to be cautious before making the change.
04-11-2019 09:59 AM
Use 10.248.250.10/32 as IP on tunnel interface. Then you are fine.
04-11-2019 10:11 AM
thank you. I will try this and let you know the result.
04-11-2019 12:38 PM
@Raido_Rattameister without even putting that IP on the interface, I am able to ping the endpoint on other side.
we have just unidirectional traffic from my side to the other. I think that's the reason it worked.
04-11-2019 01:41 PM
You need IP on tunnel interface only if you do dynamic routing or tunnel monitoring.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!