Re: Completely transparent VPN between NATed sites

Ken Caruso <[email protected]>
Newsgroups gmane.comp.security.vpn
Message-ID <1060966272.3580.40.camel@icrap>
If you mean that 192.168.2.0/24 and 192.168.1.0/24 are routed directly
to each other, yes this is really just a matter of routing your traffic
through a tunnel. When you say FTP, LDAP, and H.323 I assume you mean
using these protocls between the internal addresses of the two sites?
Build tunnels between the two sites and add a static route to each of
the tunnel boxes, pointing out the tunnel and that should be it.

-Ken


On Fri, 2003-08-15 at 02:59, René Matthäi wrote:
> Hi,
> 
> do you think it is generally possible to run a setup such as
> 
> 
> LAN-A ----- FW/NAT =====(internet)===== FWL/NAT ----- LAN-B
> 192.168.1.x                                           192.168.2.x
> 
> 
> so that _everything_ works, including FTP, LDAP, H.323...?
> 
> I mean, practically possible :-)
> 
> I am interested in both suggestions for specific hardware and also 
> especially the OpenSource solutions FreeS/WAN, KAME and builtin ipsec 
> under the *BSDs.
> 
> Greetings,
> 
> René
> 
> 
> _______________________________________________
> VPN mailing list
> [email protected]
> http://lists.shmoo.com/mailman/listinfo/vpn
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.