Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Site-to-Site IPSec VPN with SNAT

Hi all,

I need to configure a Site-to-Site IPSec VPN with SNAT, I mean the source network must be natted to single IP address before enter in VPN connection.

I created a SNAT rule with:
Source Private Network ---> Any ----> Remote Private Network
Source Translation: 192.168.200.1
Advanced Option "Rule applies to IPSec packets" enable

My question is: in "Site-to-Site IPSec VPN" Connections, what do I have to configure as "Local Networks"? The "Source Private Network" or 192.168.200.1 or both?

Best Regard,
Stefano


This thread was automatically locked due to age.
Parents
  • Hi Bob,

    My apologize for delay.

    I confirm in my side it need only 192.168.200.1 in "Local Network". I enabled the "Rule applies to IPSec packets" NAT option too. I had no time slot to test if it works without that option. If I'll test it, I let you know.

    Thanks for support.

    Regards,
    Stefano
Reply
  • Hi Bob,

    My apologize for delay.

    I confirm in my side it need only 192.168.200.1 in "Local Network". I enabled the "Rule applies to IPSec packets" NAT option too. I had no time slot to test if it works without that option. If I'll test it, I let you know.

    Thanks for support.

    Regards,
    Stefano
Children
No Data
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?