cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Who Me Too'd this topic

Site-to-Site vpn and NAT

L0 Member

Hello,

I have one vpn configuration question, I hope somebody can help...

I am configuring vpn site-to-site in my site PaloAlto, other site is not important in this case.

I am making source and destination NAT for the traffic that is used for vpn. The purpose of this NAT is that we have lot of vpn tunnels and we have similar IP networks on local and remote site. I want to make correct vpn configuration.

1. When I am configuring IPsec Tunnels and have to identify local and remote  ProxyID, what IP network I should add? pre nat or post nat  network ?

2. I have to configure a static rule for vpn traffic. What destination network should be in that way? is it pre nat or post nat network ? if I am adding pre nat network I faced problems that there are other static routes which is used in my local network (because some remote sites subnets are similar like my site subnets).

I hope I write everything clearly and somebody can help me

Thanks,

Arturas

Who Me Too'd this topic