VPN Labs vpn questions VPN Forum VPN News
Dr.VPNlabs Discussion Newsletter
 
 Search VPN Topics
 All Categories
 Primers
 VPN, Firewall, Security ...
 Guides
 HowTo, Choosing a VPN ...
 Reference
 Articles, FAQs, Whitepapers ...
 Standards
 Architectures, Protocols ...
 Downloads
 VPN, Firewall, Security ...
 Products & Services
 Hardware, Software, Services
 Organizations
 Business
 Market Research, Law ...
 Forums
 News
 Archive, Events, Newsletters ...
 
VPN labs is an open community for researching, testing, reviewing, and discussing Virtual Private Networks. Get trusted, unbiased advice on just about everything related to VPN. For more detail check: How to use this site. VPN Labs - VIRTUAL PRIVATE NETWORKS - Free VPN Software and Virtual Private Network News.
 
Dr. VPNlabs Question (Archived)
 Author  Question
Cyrille   posted: 2002-02-15 06:33:09
Considering the need to establish an IPSec vpn between two Cisco PIX, one on the corporate location with fixed IP and permanent connection, and a remote connected to a ADSL router with dynamic IP changing each 12 hours. The DSL router is doing NAT between a private lan (could be 192.168.1.x) and the dynamicly negotiated IP. Forwarding is done for incoming packet to the
Pix and this way the tunnel can be built up.

How to deal with IKE security association, so that when the DSL IP is changing, a new tunnel is established quickly between the two pix? Such as a ping behavior at IPsec level. Knowing that only the corporate Pix know that it can no more reach the remote office pix...
 Author  Answer
Dr. VPNlabs   posted: 2002-03-05 17:04:01
Cyrille,
I'm not sure I understand your question, are you trying to connecto two Cisco PIX's using an IPsec VPN?
Given that, you want to setup IKE for NAT:
http://www.isp-pl anet.com/technology/2001/ ipsec_nat.html

htt p://www.vpnc.org/ietf-ips ec/00.ipsec/msg01850.html

cheers,
Dr. VPN Labs staff
 
Link to VPNlabs  |  Suggest a Link  |  Contact Us  |  About Us  
 
© 2001 - 2005 VPNlabs.org Disclaimer