scalable design vcs-e for the clients of MPLS and internet

Hi all

I think of an evolutionary design of VCS-highway in a service provider architecture.

Some clients reach vcs-e across one MPLS network, another customer over the internet (each client with its own vcs - c).

I have a vcs-e with dual NICs and nat enabled.

VCS - e is a private network.

In this architecture, if I nat vcs-e in one public ip address, I can't inject the public IP address in the VPN client (clients use the address private, and anyway, they will not receive a public IP, MPLS and the internet). And I can't inject a private Internet ip address. In addition, every customer wants to use an ip address of vcs - e compatible with their plan ip... then maybe customer wants to use an address of 172.31.x.y and a B client an IP address of 192.168.x.y.

Best solution would be to nat vcs-e address in different ip address for each client / internet through the firewall, for example vcs-e 10.1.1.1 in 172.31.24.1 for the customer has, in 192.168.24.1 for client B and 80.x.y.z for the internet, according to the firewall context... but I'm not sure that I can do (I can? I think I can only the ip address of nat vcs-e statically 1 to 1).

I am attaching a figure illustrating the design of the network.

Any suggestion?

Hello

In your design, it is allowed to do NAT between VCS - C and VCS-E if you configure using links/box of course, which I think is what you plan to do. A nearby area will fail in this design.

If your customer can have a VCS - C on their private network and that you connect to your VCS-E through a NAT firewall as you describe as the "best solution".  There is no need to NAT any return to the client IP address, since the VCS - C will make an outbound connection only for the VCS-E.

Robert

Tags: Cisco Support

Similar Questions

Maybe you are looking for

  • Re: No sound using a HDMI cable

    Hi, first sorry for my English, but I m French So my problem is that when I connect to my pc to my TV with HDMI Cable I put t get the sound than the screenPlease help me with my problem.

  • create a home screen icon in safari

    How to create an icon on my homescreen iPad for a web page in Safari to iOS 9.1? I found several old descriptions, but neither share the button or the button +. (above the target page) gives a button "add to home screen".

  • Connect with the gas on TCP/IP Analyzer

    Overview: I am trying to contact several Thermoscientific via TCP/IP gas analyzers. I have successfully set up the MAX connections and think I'm pretty close to being able to connect these data in real time. Questions: I'm not very familiar with TCP/

  • Why my Lifecam down permanently the key of my videos down?

    I use my LifeCam to record playing me the guitar however specifically 8 seconds in each video I save it seems to fall a key, it becomes annoying. (Imagine a person very acute talk then suddenly have a very deep and booming voice) Can someone help me

  • Issue of Windows logo

    I have no windows logo on my desktop.  Have windows 7.