Wednesday, October 6, 2021

Using the peering IP to access a server for VPN? | Cisco ASA

Hello all,

First and foremost, sorry for the title but could not figure it out how to explain my question using just few words.

So we have a customer of ours that want a VPN tunnel between them and another company, let say Company B

Our customer peering IP: 50.50.50.50 & Company B peering IP: 90.90.90.90. The traffic or subnet that should go over the tunnel are 192.168.10.10 and 192.168.10.20 and they need to access 90.90.90.90 on port X.

From the technical aspect, is this possible? Like the peering IP is 90.90.90.90 and the server our customer needs to access is also the IP of 90.90.90.90, which for me does not make sense. They should have a separate IP for that server.

Because I was given this task and Im wondering how this will be possible. The reason is that from my point of view, the 90.90.90.90 is just a peering IP but not an IP of a server or so. I asked them of course about this (have not got any responses yet) and maybe I look stupid but I have configured several VPN tunnels but not in this way.

The access-list will look something like this:

access-list X.X.X.X extended permit tcp 192.168.10.0 255.255.255.0 host 90.90.90.90 eq X

but I have a hard time to understand this setup..

Appreciate any help.



No comments:

Post a Comment