Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VPN ipsec

Good Morning.

I would like to know how I can make an IPSEC tunnel but encryption domain must be a public IP

we cannot accommodate private IP addesses / networks for the interesting traffic



This thread was automatically locked due to age.
Parents
  • Hello Adem,

    this works, why not? There is no difference in publix IPs versus private IP addresses. The only difference is that there are private IP ranges being reserved for internal use and thus most routers don't route them.

    In other words: this special treatment is done with private IPs, so using public IPs is not problem at all. As long as you "own" these IPs...

    Just go ahead and define your tunnel as you would with private IP.

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

  • we are trying to establish a connection with an external entity and they require it to be via public IP

  • Hello Adem,

    That's the concept of a VPN: you connect one public IP one the first site to another second public IP on a remote site.

    What happens inside the tunnel normally does not matter. Packets seems to just "fall out" of the endpoint at the other site and vice versa.

    Routing has to be done "outside" the tunnel.

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

Reply
  • Hello Adem,

    That's the concept of a VPN: you connect one public IP one the first site to another second public IP on a remote site.

    What happens inside the tunnel normally does not matter. Packets seems to just "fall out" of the endpoint at the other site and vice versa.

    Routing has to be done "outside" the tunnel.

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

Children
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?