Address Translation and L2L Sessions

Because IPsec L2L sessions create a logical extension between two networks, the assumption is that the two locations have unique network numbers. Of course, if you are connecting two of your own sites together, you should have designed your network to have unique numbers. However, if you are connecting to a different company, such as a business partner, you might have overlapping addresses between the two companies or networks. In this situation, you would have to implement address translation to solve the problem.

The VPN 3000 concentrators support basic address translation abilities that you can apply to an interface and affect all traffic entering or leaving it or for L2L sessions. In this book I’ll discuss ...

Get The Complete Cisco VPN Configuration Guide now with O’Reilly online learning.

O’Reilly members experience live online training, plus books, videos, and digital content from 200+ publishers.