- Posts: 96
- Thank you received: 0
VPN IP Addresses and NAT.....
15 years 9 months ago #29062
by timparker
VPN IP Addresses and NAT..... was created by timparker
Hello all.
I am working on my remote access VPN set up and am about ready to try a couple of new users with it. But have a few questions before doing this.
I have an IP Pool set up on the ASA 5505 for the VPN Clients. Its 192.168.5.95-115. I am "blocking off" this same range on our internal network (192.168.16.0/24). I currently have a Static NAT configured for .95 for my testing.
Is there a way to do all of these in one fail swoop or do I need to do each one individually? Since I only have a small number copying and pasting won't be bad, but if I can do them in one statement that would be nice.
TIA.
Tim
I am working on my remote access VPN set up and am about ready to try a couple of new users with it. But have a few questions before doing this.
I have an IP Pool set up on the ASA 5505 for the VPN Clients. Its 192.168.5.95-115. I am "blocking off" this same range on our internal network (192.168.16.0/24). I currently have a Static NAT configured for .95 for my testing.
Is there a way to do all of these in one fail swoop or do I need to do each one individually? Since I only have a small number copying and pasting won't be bad, but if I can do them in one statement that would be nice.
TIA.
Tim
15 years 9 months ago #29083
by Smurf
Wayne Murphy
Firewall.cx Team Member
www.firewall.cx
Now working for a Security Company called Sec-1 Ltd in the UK, for any
Penetration Testing work visit www.sec-1.com or PM me for details.
Replied by Smurf on topic Re: VPN IP Addresses and NAT.....
Whats the static nat for ?
Wayne Murphy
Firewall.cx Team Member
www.firewall.cx
Now working for a Security Company called Sec-1 Ltd in the UK, for any
Penetration Testing work visit www.sec-1.com or PM me for details.
15 years 9 months ago #29090
by timparker
Replied by timparker on topic Re: VPN IP Addresses and NAT.....
I set up a specific nat for my VPN connection so that I can allow myself to certain things that "normal" users wouldn't or shouldn't be able to get to.
I am still trying to get a grasp on the NAT and Security Policies (Rules) as the way/person that I "learned" previously from I am not so sure it was correct. The last place I worked, our "Cisco Guy" was good but I don't think he really knew the right way or the Cisco way of doing things.
I will probably have a couple new posts today to try and get some help in getting my head around this stuff. I have most of it working but still have some issues....
I am still trying to get a grasp on the NAT and Security Policies (Rules) as the way/person that I "learned" previously from I am not so sure it was correct. The last place I worked, our "Cisco Guy" was good but I don't think he really knew the right way or the Cisco way of doing things.
I will probably have a couple new posts today to try and get some help in getting my head around this stuff. I have most of it working but still have some issues....
Time to create page: 0.120 seconds