We have an ISG 2000 with multiple VPNs. We want to NAT some traffic coming in from one of those VPNs. In the past, I've set up a loopback interface, added MIPs and DIPs to that interface, but had to add the specific tunnel interface supporting that VPN to the loopback interface's group in order to pass and translate the traffic appropriately.
I want to do the same thing, but for a different range of IP addresses.
The original loopback interface (loopback.2) is using an IP address of 10.1.1.129/27 with MIPs in that same subnet. The interface of tunnel.6 is a member of the loopback.2 group.
The new loopback interface (loopback.4) would have an IP address of 10.10.0.254/24 and the MIPs would also be in that subnet. Since the traffic destined for that subnet would also be coming in through tunnel.6, can I make tunnel.6 a member of the loopback.4 group, also?
Thanks!
#Tunnel#loopback#interface#group#member#ISG