Re: Hide NAT for VPN clients

Lee Sharp <[email protected]> Tue, 21 Jan 2014 22:42:10 -0600
Newsgroups gmane.comp.security.firewalls.m0n0wall
Message-ID <[email protected]>
On 01/21/2014 05:33 PM, Sam Kretchmer wrote:
> Hi,
>
> I wanted to find out if there is any way to have m0n0wall hide NAT inbound
> remote client VPN connections so they look like the IP on the LAN
> interface to other hosts on the inside.
>
> I am using a m0n0wall box as a IPSEC gateway, but my internal clients use
> a different default gateway than the m0n0wall box, so internal clients do
> not know how to get back to the remote client IP=B9s now, as m0n0wall
> preserves the remote source IP on the remote client VPN connections.

Once they have a tunnel to m0n0wall, they are un-NATed.  You just need a 
static route in the default gateway to the m0n0wall server for those IP 
addresses.

			Lee