Re: site to site vpn between two 5505 asa's with overlapping

From: Radioactive Frog <pbhatkoti_at_gmail.com>
Date: Tue, 29 Mar 2011 21:28:17 +1100

I find this kind of scenario all the time in live production network.

The fix is NAT policy based nat as Ryan has mentioned.

On Sun, Mar 27, 2011 at 3:51 AM, faizan khurshid <
faizankhurshid921_at_hotmail.com> wrote:

> as per understanding answer is no reason one Side of ASA will find this
> subnet on its own local interface it keep the packet over there it will not
> forward
>
> first thing how u create access-list if both sites have same local subnet
>
>
> > Date: Sat, 26 Mar 2011 19:46:27 +0300
> > Subject: site to site vpn between two 5505 asa's with overlapping
> subnets
> > From: immrccie_at_gmail.com
> > To: ccielab_at_groupstudy.com
> >
> > HI all,
> >
> > i need to setup a L2L vpn between two ASA 5505 model. but due to poor
> > planning both sides has same subnet (192.168.1.0/24)
> >
> > now i need to set up L2L wtih overlapping subnets.
> >
> > is it possible with asa ?
> >
> > if yes can some one point me to a link
> >
> > i would appreciate if some one tests this senario and post the configs
> >
> > thanks
> >
> >
> > Blogs and organic groups at http://www.ccie.net
> >
> > _______________________________________________________________________
> > Subscription information may be found at:
> > http://www.groupstudy.com/list/CCIELab.html
>
>
> Blogs and organic groups at http://www.ccie.net
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html

Blogs and organic groups at http://www.ccie.net
Received on Tue Mar 29 2011 - 21:28:17 ART

This archive was generated by hypermail 2.2.0 : Fri Apr 01 2011 - 06:35:42 ART