Monday, May 6, 2019

VPN connectivity, same network?

Sorry, the title should read VPN connectivity, same subnet

Hi all,

I haven't ran in to this scenario yet, however my gut answer is "You can just use NAT" if you have the same IPs over a VPN tunnel, however when I went to interview, apparently NAT is only one acceptable answer. I remember getting a different answer, but I forgot what it was, and how you'd go about implementing that on a firewall?

With NAT, you can just change the translated source etc.. and have firewall rules to go over.

I have seen this

https://www.juniper.net/documentation/en_US/release-independent/nce/topics/concept/lan2lan-vpn-jseries-srx-series-overview.html.

And it talks about route based VPNs however even then, surely you'd have to use NAT?



No comments:

Post a Comment