SRX Services Gateway
SRX Services Gateway

Destination nat to VPN Pool IP

‎09-04-2012 06:59 AM

Dear Team,

 

I have a server which connects to a remote server outside the network through Cisco SSL VPN. The server at our end recieves dynamic IP from the pool configured at remote end device. Our end SRX is just passthrough for this traffic.

 

I have a requirment to have a destination nat to this dynamic IP for my home users to login and work on the application.

 

Any suggestions please.

 

Regards,

AN

 

2 REPLIES 2
SRX Services Gateway

Re: Destination nat to VPN Pool IP

‎09-05-2012 04:15 PM

Would it be possible to just NAT to the IP of the host's interface to the local network, and let the host's internal routing handle which way the traffic should go?

---
JNCIE-SEC #69, JNCIE-ENT #492, JNCSP-SEC, JNCSP-ENT, JNCIS-SP, JNCDS-DC, JNCDS-SEC
SRX Services Gateway

Re: Destination nat to VPN Pool IP

‎09-15-2012 01:37 AM

Hi,

 

The destination nat to the Internal host's local IP is working but when that internal users joins to the remote network through client vpn, our destination nat is getting failed as the local ip becomes unreachable from SRX.

 

The virtual adpter gets diffrent subnet ip from the remote VPN box and our srx box is totally transparent.

 

Any work around if availble please share.

 

Regards,

AN