How to set up a Lan to Lan VPN without using your external IP address?

I have two 28 subnets A & B.

My PIX and ASA outside interface addresses are both in A subnet.

I am in the middle of a migration of the PIX to ASA and need to use the PIX outside of the address of the interface on the ASA for the last two remaining lan to lan VPN.

I do like that because the sellers of these virtual private networks to connect to are huge dinosaurs IT and the aaages to get their sh * t tri... This means that I have to pass the IP address to my ASA, so I can't sentence have change for a new IP peer.

I tried to figure out how to set a specific my counterpart VPN IP address but I can't figure out how...

I even physically connected a second ethernet port and tried to give a similar IP in the same range, which it says it is not possible to have both outside the IP addresses on the same subnet.

Hello

It is not possible to have an IP address "secondary" on the physics/logic interface of a Cisco firewall.

And as you've noticed, you cannot configure the same subnet on 2 different interface either.

We are talking about such a large configuration that you want to just migrate from completely to the ASA PIX and make a switch during a maintenance window?

Couldn't you just pass the ASAs 'outside' IP address address to that on the PIX and move the ASAs 'outside' of the PIX? Or not the ASAs "outside" IP address already some configured related to what makes this impossible?

-Jouni

Tags: Cisco Security

Similar Questions

  • Hi, how to set the maximum number of connections of FMS on the same IP address

    How to set the maximum number of connections of FMS on the same IP address?

    The application.clients object available in action script server-side maintains a list of all clients connected to the Court at this moment here.

    You can browse the table and compare the property Client.ip to determine the max connections from an ip address and therefore accept/reject connections.

    It can be as simple as this in the application.onConnect

    application.onConnect = function (clientObj)

    {

    var totalConnections = 0;

    for (i = 0; i< application.clients.length;="">

    {

    If (application.clients [i] [ip] is clientObj [ip])

    {

    totalConnections ++;

    }

    }

    If (totalConnections > 10)

    this.rejectConnection (clientObj);

    on the other

    this.acceptConnection (clientObj);

    }

    Above the piece of code is untested so you may have to make some changes to make it work, but your solution should look something like this.

  • How to lock a folder OR file in windows without using the 3rd party software

    How to lock a folder OR file in windows without using any software of the 3 part,.

    Please help me if there is another way to lock.

    Hi kvegesna,

    To lock a folder or file in Windows XP, the only way is to encrypt the file or folder.

    How to encrypt a folder in Windows XP

    http://support.Microsoft.com/kb/308989

    How to remove encryption from a file or a folder in Windows XP

    http://support.Microsoft.com/kb/308993

  • I bought Adobe Creative Suite 5.5 Design Premium a few years ago. I have since upgraded my windows computer to a new one without a CD player. How can download &amp; install Adobe Creative Suite 5.5 without using the disc that I bought?

    I bought Adobe Creative Suite 5.5 Design Premium a few years ago. I have since upgraded my windows computer to a new one without a CD player. How can download & install Adobe Creative Suite 5.5 without using the disc that I bought?

    Here are the links to download:

    Download CS5.5 products

  • How to set up DT IDS on an i355 without service

    I use Direct Talk on a pair of handsets i355 and I want to use the private function. I understand that this is possible, although I may have no service on the handset. The manual States that you should use the PTN but if the phone is not in service what is the alternative?

    Does anyone have any expierience with this?

    Thanks in advance!

    Found this on another site:

    How to set up private intercom on the i355:

    Private intercom allows (mostly) private life which can only be overridden if a person makes duplicate 'LINE 1' - a radio information. Otherwise, it's a private function which limits the setting still receive all other radios too to hear the conversation.

    The radio must be set for YOUR CHANNEL and YOUR CODE or YOUR CHANNEL and PVT to reach a specific radio only. You can complete the 2way communication if you know 'LINE 1' information of the other party. This function can be used to achieve (in general) only a material you are trying to achieve by using the following configuration information:

  • How to find the list of the patches applied without using the inventory?

    Hello

    I asked this question once.
    How you will find the list of the patches applied to the House of Oracle database without using commands like opatch lsinventory - detal etc...
    I think that registry$ story is a view from where you can find the list of the applied patches.
    But I think that he understands all the bug fixes, stand alone or one-off patches. It will mainly list on the CPU patches applied (correct me if I'm wrong).

    Thank you
    Fany

    Salvation;

    Please read
    You can delete $ORACLE_HOME/.patch_storage Directory? [403218.1 ID]

    Respect of
    HELIOS

  • How to set up EA6500 so another router can be used as access point?

    I have an EA6500 but successor getting wireless for individual room in my house.   I have an old DIR655 router that I want to connect wired to switch in this room, I want to use to extend the signal wirelessly to the same SSID.

    How to configure EA6500 and DIR655 for this?

    Help, please.  Thank you.

    Yes, you must reset your router Dlink as sabretooth suggested. If the Dlink IP address is 192.168.0.1, which differs from your EA6500 IP of 192.168.1.1, you can do a Lan to Wan set up.
    Moreover, you would be to see name/SSID wireless router since it still broadcasts a Wi - Fi signal.

  • How to set the user name and password when you use the class for SOCKS5 Proxy?

    Hi all

    I use the proxy class for SOCKS5, so need to set the user name and password, I can't find where I put the value. If the API support.

    Thanks in advance!

    Exactly how to repeat the question five times ater, we told you the answer would erase anything? A: this isn't. This irritates just the hell out of people. Irritating the hell of those who's trying to help you is not rational behavior either.

    I have no idea on the support of third-party for transmission by proxy via NIO.

  • How to set the Home Page of a newly-opened using the file tab &gt; tab Menu?

    When I open a new tab, is there a way to set the home page for the new tab to use when it is open, or new tabs always open as blank pages?

    New tab homepage extension:

    https://addons.Mozilla.org/en-us/Firefox/addon/777

  • How to set the Satellite A100-596 to factory without Recovery DVD settings

    I gave my young niece of my old laptop A100-596 for Christmas.
    It worked perfectly on Christmas Eve I packed it upward, in packing of origin, but at the time my niece connected on it has lost 40 GB of data among the drives C and E - everything E drive and the dvd drive had stopped working!

    Now, no one has any explanation for what is happening, nor any reason why a laptop that has performed flawlessly for 18 months would suddenly lose 3/4 of the data on it, but whatever!

    So now I want to restore it to factory, but without a job settings dvd, how? I have all disks involved in perfect condition!
    In addition, I want to fool proof so it can be retrieved in case the person or nothing damaged, this time he cannot repeat the action.

    So I think that if I partition the hard drive so that the recovery of files is accessible by me with a password, which I will NOT share with any of the children, if they bumble once again, then I will be able to recover.

    Moreover, even restoring the system files have disappeared, so I can't even it roll back to a working condition!

    Any advice?

    Hello

    You wrote so much and I think it's the best we descuss all questions slowly.

    I don't know what you mean under non-working DVDs. Is the drive defective optical drive or media DVD is not readable?

    Anyway, the fact is that if you want to have the factory again settings you must install operating system using Toshiba DVD recovery. If you don't have it you can do clean OS installation using the Microsoft DVD facilities. All the necessary drivers, tools and utilities are available on the Toshiba support under http://eu.computers.toshiba-europe.com page > support & downloads.

    When you use recovery media Toshiba HARD whole disc will be erased. Absolutely everything. All data and partitions.
    What you want to do with recovering data unfortunately will not work. You cannot copy the recovery image and start it from the other partitions. Not on Satellite A100.

    On new A300, something like this is possible because the recovery image is stored on the second partition in folder HDDRecovery.

    If you have any other questions please let us know.

  • How to set the time difference between each data when using keithley 2400 scanning

    Hello friends,

    I use scanning Keithley vi the extent of SCANNING and acquire vi. I want to measure the voltage for each step and a pause between each two data, so I need a delay between each I step.

    I'm a starter to use Labview, thank you very much for your answers.

    Perry

    As Dennis says, if you use the built-in scan function, you will need to consult the manual. See Section 10-16 (this is page 10 of article 16, only paragraphs not but 10, 16) for the manual Keithley 2400.

    The Keithley 24xx series has a speed of measurement in units called PLC (Power Line Cycles). The default speed is 1PLC, which means a measure is taken with each cycle of line 1 power supply or 1/60th of a second (16.67ms). 24XX can range from 0.01 PLC (all 0.16ms) 10 PLC (all 166.6ms). The faster you measure, the less accuracy you get.

    To programmatically set this value, the command is

    ENSe:CURRent:NPLCycles

    ENSe:VOLTage:NPLCycles

    Depending on what you are sensing and where is the number of controllers from 0.01 to 10.

    Another factor that will determine the time between data points is the cycle SDM. These are more complicated, look at your Keithley manual for more information. Look at article 6 and article 11 for more information.

    Note:

    PLC times are based on a cycle of 60 Hz US.

  • How to set the date of beginning of a calendar using an element

    Hello

    I have a calendar by using the SQL query:

    SELECT(b)"NAME" | ' ' || b."NAME" "Agent."
    a."DATE_ACTIVITE" 'day. '

    a."FICHE_ID".

    OfPLUG a, b AGENT
    WHEREa.AGENT_ID = b.AGENT_ID

    AND one. "' EQUIPE_ID ' like NVL (REPLACE (: P60_EQUIPE_ID,-, 1, NULL), '%')

    AND one. "" AGENT_ID "like NVL (REPLACE (: P60_AGENT_ID,-, 1, NULL), '%')

    ORDER OF "Agent".

    I would like the calendar to start at a date contained in an element: P61_DATE_ACTIVITE

    I tried to play with the element of apex: APEX$ NEW_START_DATE, by setting its value to the value of the element, but it has not given results.

    Do you have any suggestions?

    Thank you.

    Hi Chipniz

    I would update your code to be like this

    $(document).ready(function() {
    // Get Year and Month
    var year = 2015; /*year = 2015*/
    var month = 0;  /*month = 1 --> put it 1-1*/
    // Goto the date
    var d = new Date();
    d.setFullYear(year);
    d.setMonth(month);
        $('#CALENDAR_ID').fullCalendar('gotoDate', d);
    });
    

    Reference

    Re: Link column to the right calendar page

    I hope that solves your problem

    Concerning

    Mahmoud

  • How to set the value of the point of application using pl/sql in the application process

    Hi guys,.

    I want a global variable (application point) whose value will be set to start when a user logs on to the application. The value will be retrieved from the database by using a sql query. I don't exactly know the syntax to set the value of the point of application in the application process. Also, I want to know what type of enforcement process should I use to set the value of the point of application, when a user starts a session. The value of the point of application varies from one user to the user.

    Help, please.

    I use apex 4.2

    Kind regards

    Waqas

    You can use the application element as a link with his name. That is to say. your point of application is named G_MY_APPLICATION_ITEM, then you can / set of access using: G_MY_APPLICATION_ITEM.

    For example

    BEGIN

    -assign as a variable

    : G_MY_APPLICATION_ITEM: = 'LARRY ';

    --

    -use in a SQL statement

    SELECT WHATEVER_COLUMN

    IN: G_MY_APPLICATION_ITEM

    FROM MY_TABLE

    WHERE USERNAME =: APP_USER

    ;

    END;

    Peter

  • How to set the SSH Timeout ESX 3.5 host using Putty

    How can I configure the ssh Timeout on a 3.5 ESX host for that after I PuTTY in the host he drops the ssh connection after 15 minutes if the session is inactive?

    Pete

    Not sure it's possible with sshd.

    But you can do with bash.

    Place just an environment variable (in rc.local or profile):

    Export TMOUT = 900

    André

    * If you found this device or any other answer useful please consider awarding points for correct or helpful answers

  • How can I fix the problem when another computer is using the same IP address with me?

    My computer has proven to me that there is another computer using my IP address.

    He said I need to contact the administrator.
    I don't know how to do in this regard. Help, please.

    Since it's your own home network, it means you are the network administrator. Which basically means that you should have total control on who can and can not connect to internet through this network.

    Then, you should have a router somewhere in your House. This is the device that sends the wireless signal. Most likely, it will be connected to a phone jack or cable from the wall, or a modem, depending on which company you get your internet service.

    You need to find this device, the router and restart for it. Do the same on your computer. Once both have restarted, try to connect to the internet. The router must have an ID written somewhere on it. This same ID should appear in your network and sharing Center , if you click on "Connect To A Network.

    The homegroup is something a little different. A homegroup is really just a collection of your own computers, or in your home. For example, if you had a desktop and a laptop, and I wanted to share the files from one to the other, you should join them in the same homegroup. It has nothing to do with putting on the Internet, just the connection of two computers together. It of good that you set up a homegroup with a password, but won't really help you here.

Maybe you are looking for

  • My 2010 cannot initialize / start (no command)

    I started an update for my lenovo a2010 and at the end it says error. I waited a bit and pulled out the battery because I couldn't do anything. Now when I start it it said no order, even for the recovery. Can anyone help?

  • MAX is unable to detect the webcams

    I have three different webcams. Two of them worked in MAX and LabVIEW. When I tried to install the third argument, everything stopped working. I think the problem was perhaps a database corrupted - I received the following error message: http://digit

  • I got the password stored on the laptop for the username, and now his party and I don't remember! How can I connect?

    I get the log on screen asking me username and password, my username appears, then the password says wrong! I can not even a help option see tip!

  • Cannot send emails from Comcast account

    All of a sudden I can't send e-mail from comcast account from my computer Dell. Is this a bug! I can send messages from the iphone, itouch and MAC very well. What the heck is this problem? I tried the port out 25 and 587. I've turned on auth and off.

  • Publisher 2007

    I recently upgraded from Publisher 2003 and Publisher 2007.  I run Vista.  Once the upgrade has completed, the page icons at the bottom of the screen that allows navigation from one page to another with a composition that contains multiple pages was