Re: OT:remote access VPN routing transit

From: marc abel <marcabel_at_gmail.com>
Date: Tue, 29 Jan 2013 17:29:17 -0600

I'm a bit confused about your question. Do A and B have overlapping IP
addresses? or are you just concerned that you are tunneling too many IP
addresses? It shouldn't be a problem to tunnel 10.x.x.x/8.

If they have overlapping addresses your choices are to change IPs on one
end or to use NAT between the sites.

On Fri, Jan 25, 2013 at 11:53 AM, Dennis Worth <dennis.worth_at_gmail.com>wrote:

> Group,
>
> I am faced with slight problem and am reaching out to see what others have
> done on BCP basis. Company A was aquired by Company B and is company B is
> advertising to company A and large amount of public IP's that are
> internally used by them to access all the internal apps etc @ Company B.
> Now the dilema is that all the remote VPN users are split-tunneling a
> 10.x.x.x/8 which is Company A's entire network internally and need to hit
> the parent company B's subnets.
>
>
> 1st thought was to advertise a laundry list of subnets over the VPN for
> which users could route accordingly. Not sure this is right approach.
> 2nd thought was can I tunnel everything and send hem back out FW.
>
> Maybe an easy solution here, but just not seeing it.
> any thoughts or has any one had similar scenario?
>
> Thanks group for all your help,
>
> --
> Dennis Worth
>
>
> Blogs and organic groups at http://www.ccie.net
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html
>
>
>
>
>
>
>
>

-- 
Marc Abel
CCIE #35470
(Routing and Switching)
Blogs and organic groups at http://www.ccie.net
Received on Tue Jan 29 2013 - 17:29:17 ART

This archive was generated by hypermail 2.2.0 : Sun Feb 03 2013 - 16:27:18 ART