Hello, I have two customers with the same IP subnet, both behind separate IPSEC tunnels to my London hub (image attached, apologize for poor quality). Is it possible they can connect to my hub without any NAT on their side ? I've done a hack I don't like it works. By enabling ECMP and 'symmetric return' option the traffic is flowing from both customers Ireland and Frankfurt without problems - but I don't like it. Second question applies to the traffic in opposite direction - from my hub to the clients. Is there any option to enable the traffic without involving the customer ? I assume there is not much we can do in this case - the customer has to do proper NATs their side. Thanks a lot for replies !
... View more