1828596 Members
2035 Online
109983 Solutions
New Discussion

VPN with NAT!

 
ajay_25
Occasional Contributor

VPN with NAT!

all my pcs in my HQ are configured with private ip addresses. my DSL router only have public ip. all my branch offices also have the same configuration (one public ip with nat).

now i want to configure VPN connection from HQ to branch office.

is it possible to configure VPN with NAT?

any suggestion from u guzs will highly appreciated.

4 REPLIES 4
Stuart Browne
Honored Contributor

Re: VPN with NAT!

Do you intend to do the VPN's in your router boxes, or from individual PC's?

Or were you planning on putting a Linux box (or some VPN device) at each location to do the VPN implementation for you?
One long-haired git at your service...
Ivan Ferreira
Honored Contributor

Re: VPN with NAT!

VPN with NAT is possible but with a lot of restrictions and Warnings, you should carefully read this document, tha NAT-T section:

http://www.jacco2.dds.nl/networking/freeswan-l2tp.html

For a general introduction see, and how to get arround NAT:

http://www.linuxjournal.com/article/7881

Por que hacerlo dificil si es posible hacerlo facil? - Why do it the hard way, when you can do it the easy way?
steven Burgess_2
Honored Contributor

Re: VPN with NAT!

Hi

The easiest resolution for this is to purchase a cisco PIX router and use the cisco client cd's. The configuration is straightforward and you are not messing about with mixed vendor products which I have found is a nightmare. The client configuration is simple and hassle free

VPN and NAT is supported coming from the inside to the outside interfaces.

You can pick one up relatively cheaply (£150 ish) on ebay.

http://www.cisco.com/en/US/products/sw/secursw/ps2120/products_configuration_guide_book09186a0080172852.html

HTH

Steve
take your time and think things through
Patrick Terlisten
Honored Contributor

Re: VPN with NAT!

Do you want to build a site-2-site or client-2-site vpn? Is the public ip a static ip or dynamich ip?
Best regards,
Patrick