PIX/ASA Tunnel terminating on not directly facing interface.

From: Gustavo Novais (gustavo.novais@novabase.pt)
Date: Thu Jul 19 2007 - 06:36:21 ART


Hi Group,

I'm facing a dilemma, (question from client) regarding the PIX/ASA VPN
functionality.

Is it possible for me to terminate a tunnel on a DMZ interface on the
ASA, but with the traffic coming from the outside network?

That means that the ESP traffic will flow into the outside interface,
and flow internally to the DMZ interface, get decapsulated and then flow
back to the processing engine of the ASA.

Any ideas anyone? I'm trying to prove whether it is possible or not

Thanks

Gustavo Novais



This archive was generated by hypermail 2.1.4 : Sat Aug 18 2007 - 08:17:41 ART