VPN using globally routable addresses

Hello

We need to configure a VPN site to site with a customer who will not use the RFC1918 addresses for our endpoint source / destinations.

So we asked us NAT these devices in our assigned overall Internet block.

My question is, will this work?

Our Cisco ASA terminate the VPN and connect directly on the Internet using a 27 block provided by our ISP.

If we NAT devices inside who must be protected via the VPN in this block and then understood these NAT resolves in the ACL of this encryption card will work?

Thanks in advance.

Chris

Yes it works, and how you have described is exactly how implement you - for example.

inside the network 192.168.5.0/24

Address public natted - 195.166.77.10

remote network - 172.16.5.0/24

your card crypto access list reads

vpntraffic list allowed access host ip 195.166.77.10 172.16.5.0 255.255.255.0

Jon

Tags: Cisco Security

Similar Questions

  • Using global variables in a device custom

    Hello world

    I have problems with the passing of data through my device customized using global variables. I want to allow a user to select a RIO device address when you set up the system definition file. This is recorded in a global variable using the hand Page VI. I would later use this RIO device address in RT driver to deploy a bitfile. I can hard-code, but it is much more convenient to use a global.

    When I try to store the address of the global variable, it updates the value temporarily (I confirmed that the structure of the event recognizes the change of value). When I click the node of the tree to define system linked to the Main Page VI and then click on it again, the hand Page VI runs again. I wrote the code to repopulate the address of device of RIO with the last value stored in the global variable, but it is empty. I've included the VI global variables in my build, so I can't imagine why it can reset this value.

    Any help would be appreciated!

    Thank you

    Mitch

    Have you tried to use the custom device properties to store this value instead of GVs?

    Configuration VI, you can set this property, and if I'm not mistaken, you can read these properties on the RT driver.

  • "Another device on the network use my ip address".

    I tried to check my mail and could not and got this message "another device on the network use the IP address of your computer." I have never seen it before. He also said that I could change the IP address, if I continued to have problems. I bought this iMac and used Migration to transfer all the stuff from my old iMac that is still used. That was months ago, but I never had this message up to now. So should I change one of the IP addresses? And if so, how is that done?

    http://osxdaily.com/2010/09/19/another-device-on-the-network-is-using-your-Compu ters-ip-address.

  • The "Rescue use E-mail address" link does not work

    I don't remember my security questions and went to edit my profile, I want to change my security questions because I forgot them so I ended up making too many attempts. Now when I go to 'Use rescue Email Address' link doesn't do anything. It is certainly a problem on the side of Apple, as I can not click on the link on my phone or my computer. So, how can I change my security questions? Who is in charge with Apple ID account page programming must solve this problem.

    If you are unable to remember your password, security issues, do not have access to your address of rescue or are unable to reset your password for any reason, your only option is to contact the Support of Apple ID, to speak to an operator you should explain that your problem is related to your Apple ID This way you can be attributed to the assistance, even if you do not have an AppleCare plan.

    You will need to be patient with the process and to be ready to prove without doubt that the account belongs to you. Do not expect access to be restored immediately and if you are not the owner of the Apple ID saved to the device the account will not be reset.

  • Use of the address bar to search for phrases that contain no spaces?

    When I type the sentences that contain spaces in the search bar, it evokes a search on google as specified by my topic: config under the keyword. URL

    However, when I type something who * do not * contains a space (e.g. potatoes), firefox tries to connect to http://potatoes/, return an "impossible to establish connection to the server to potatoes.

    my key word. Set URL: http://www.google.com/search?ie=UTF-8 & oe = UTF - 8 & q =
    Browser.Fixup.Alternate.Enabled is * wrong *.
    Browser.urlbar.AutoComplete.Enabled is * real * (although I don't think that this has nothing to do with it)

    Hello jywang74, please update firefox version 33.0.2 - here you will see a different behavior (keyword.url is no longer used btw, the address bar uses the same provider of search in the search bar).

    http://msujaws.WordPress.com/2014/08/01/faster-and-snappier-searches-now-in-Firefox-Aurora/

  • can connect by using the ip address, but not by using web address settings?

    Try to connect to the internet using access point mobile Windows 7 Firefox browser.
    I can access a Web site by using the ip address using however nothing www.msn.com or whatever it is.
    In the connection to the internet in Network Options window that I have no idea of what to put in there, I have tried auto that nothing works

    (hit the uppercase text - c)

    There servers DNS Setup correctly?

  • My MAC friends tell me NOT to use icloud email address.

    My MAC friends tell me NOT to use icloud email address.

    They advised me that because they claim that icloud email address cannot be deleted.   I speak no deletion of an Apple or iCloud account. I'm simply talking about the ability to delete an icloud email address.

    They tell me to use Gmail, Yahoo or AOL, as these companies allow you to erase / delete an email address.   It just looks good to me. I'm trying to get the best advice.

    Thank you

    ICloud e-mail address is provided for you once you've created an Apple ID (which is the same as your email address valid)

    Your iCloud email address is also an alias of your Apple ID and Yes, you can change your username (email address) Apple

    Read here on how to change your Apple ID: change your Apple - Apple Support ID

  • Another device is using my IP address

    Today morning when I switched on my macbook, I received a message pop - up-"another device on the network use the IP address of your computer.

    This means that my computer is hacked? Or has nothing to do with the common wi - fi network, I use?

    http://osxdaily.com/2010/09/19/another-device-on-the-network-is-using-your-Compu ters-ip-address.

  • That means "another device on the network use the IP address of your computer"?, that means "another device on the network is using the IP address of your computer?

    That means "another device on the network use the IP address of your computer"?, that means "another device on the network is using the IP address of your computer?

    A

    Most likely, the computer becomes a network address of a router. The assignment of an address ("lease") expires and must be renewed after a certain period of time, which could be an hour or a day. The lease expired without being renewed because the device has been disconnected at the time. Meanwhile, the address has been leased to another device on the network, or maybe the router has not updated its list of addresses the leases. When the device offline comes back online, a conflict results. Depending on the type of router you have, the conflict can resolve itself automatically. If not, then in the menu bar, select please

    ▹ System Preferences network ▹ 

    If the preferences window is locked, click the lock icon in the lower left corner and enter your password to unlock it. Click the Advanced button, and then select the TCP/IP tab in the sheet that drops down. Look at the menu option

    Configure IPv4

    If the selection in this menu is

    Using DHCP

    Click on the button

    Renew the DHCP lease

    Test.

    Make sure that you have more than one DHCP server on the network. That could happen if you have more than one access point Wi - Fi, or if you have a router and broadband a wide device distinct in connection mode sharing.

    B

    Less likely, you have a network address that you assigned yourself and another device is itself by assigning the same address. In this case, the selection to configure IPv4 menu will be either manually or using DHCP with manual address. This kind of conflict will not be resolved automatically. You have the following options to solve:

    1. Change the selection in menu using DHCP.
    2. Change the address assigned manually to one that is not used by another device.
    3. Change the address of the other device.

    Which of these options you choose depends on the details of why you use a static IP address. Any changes you make to the network settings is necessary before taking effect. To do this, click OK, and then click apply.

    If the router is also your device at wide band, then he may be operating in bridged mode. In this case, only one customer at a time will be able to connect to the Internet. Consult the manufacturer or ISP documentation for how to reconfigure the device in the connection mode sharing.

    C

    According to a report a "DirectTV" receiver can cause the problem. If necessary, disconnect the device from the network, or power off and test. Consult the support services provider.

  • How to change the search engine used in the address bar?

    I use the address bar to find, place of the actual search bar field. Why? It is easier. Or it used to be. He used to use Google. He is now using Yahoo!. This is unacceptable. Haha. How can I change that search engine is used in the ADDRESS bar?

    You can change the pref keyword. URL on the topic: config page to use Google's "I'm Feeling Lucky" or "Browse by name" Google.

  • Make error at startup on another device using my IP address

    The last 2 weeks, I get this error message when I start up my Power Mac, "another device on the network use the IP address of your computer."  When I go to the network window in system preferences says Ethernet is connected, but all DCHP info is empty.  I never got this message before and even if I can use this computer using wifi, I prefer the wired connection.  How can I correct this situation?

    Thank you!

    Is something on the network using IP static?

  • Someone else is using my IP address? Help!

    Hello

    My wifi starts to turn and goes out several times per day. When I hit 'open network preferences', he says that another device is using my IP address. I turned the router and turns off again several times, but it's always the case. How to make this stop?

    You may need to change your router password wireless and while there, see

    What are the settings in the browser and all other components of your online access...

    What did you do in this regard so far?

  • Someone uses another SMTP relay and then using my email address to send spam.

    Someone uses another SMTP relay and then using my email address to send spam. They have no access to my hotmail otherwise I see on sent items. I can see the SMTP server on the header. What should do?

    They send SPAM to some of my contacts.

    Someone uses another SMTP relay and then using my email address to send spam. They have no access to my hotmail otherwise I see on sent items. I can see the SMTP server on the header. What should do?

    They send SPAM to some of my contacts.

    Not a question for the forum of Virus and malware/scanning software and removal of threats.

    A moderator will move your post to the Forum Microsoft Account, Hotmail, Skydrive.

    http://ask-Leo.com/my_contact_list_is_getting_spam_from_me_what_do_i_do.html

  • Get 810 error message when you try to connect to the VPN using L2TP protocol

    Original title: L2TP will not let me connect.

    I am in Workstation 9 and in each virtual machine, I have an AD - DC (2K8R2Enterprise), CA and RRAS (2K8R2Enterprise) and my last vm is a win7 (they are all tests).  All are not updated, but the PPTP, IKEv2 work without problem.  The second server that has the CAs and RRAS is a member of the AD - DC server.  The Win7 is not on the domain and I have Win7 a client certificate.  I have ensured that the CA root of trust is in the user store and computer Trusted Root CA.  I have also ensured that the Win7 client certificate is in the user store and personal computer.  I get a 810 error message when I try to connect to the VPN using the L2TP protocol.  I have exhaustively studied this problem and I can't find a solution to this problem.  I also raise the functional level of the domain to 2K8R2.

    I think this should be a simple and easy solution, but where can I find the answer?
    Please help me.
    Thank you for your time.
    Allan.

    Hi Allan,

    The question you posted would be better suited in the TechNet Forums. I would recommend posting your query in the Forum TechNet site:

    http://social.technet.Microsoft.com/forums/en/category/w7itpro

    If you need any other assistance, let know us and we would be happy to help you.

  • Why LabVIEW example projects using Global Variables?

    I'm puzzled.  I've been pretty good programmers LabVIEW talks (including some who work for the OR) and came away with the impression that Global Variables should, as a general rule, be avoided, with functional Global Variables (alias VI Globals) generally preferred for "local memory".

    I have studied some of the example distributed with LabVIEW, 2012 and 2013, in particular the proposed acquisition in real time and am struck by the use of Global Variables, where I'd be inclined to use instead a FGV.  For examples, to stop all the loops on the RT target, the overall "All the RT loop Stop" is defined; 'Constants' of configuration (such as timeouts, Streme network names, the names of the journal folder) are kept as Globals; Streme network endpoints are stored in Globals.

    [Note - there is a weird spelling of the second word of the network Streme, above - when I tried to post with the correct spelling, I got an error message saying this word is 'not allowed in this community".]  I apologize for the offense, but I must confess that I do not understand what the problem with the help of the spelling of this word...]

    Why use Globals in these cases, rather than write a bunch of VIGs to hold these data?  Note that almost all these Globals are 'Read' essentially (written once when a resource is acquired, for example) or "Read Only" (treated as if they were a constant).  Indeed, read-only variables can be written as a Subvi with only an output terminal, acting as a (visible, due to the icon) constant.

    I can see advantages to this approach.  On the one hand, VIGs can have error bounds who run the data flow (I just spotted a bug "data flow" in code, I am developing that is based on this model, to read configuration data to an XML file in a world and in the same VI, Global wiring to a "use - me" terminal, but with no guarantee that I'll read the overall after I write it).

    It is, I suppose, a matter of 'speed' - perhaps Global Variables are 'faster' than VIGs (especially if the VIG 'sits' on an error line).  My thought, however, is that this difference is likely to be trivial, especially as these VIGs (or Globals) tend to become "occasional" calls (with the exception of the indicator 'all the loop Stop' which is called once per line).

    Are there other arguments or considerations that make a Variable global to a better choice than a VIG?  Is there a reason that LabVIEW developers put in these start-up of projects LabVIEW?

    BS

    I have to ask, how do you use functional Global Variables?  Like just a Get and Set?  If so, you can use a global variable.

    Yes, globals are faster and use much less overhead.  At the summits of CLA in recent years, we talked about using globals.  The most common use is for Write-Once-Read Many and writing-never-Read Many with configuration data.  It's a good idea to use globals with the constants that can change on you.  It turns out that the world will have the same performance as a constant in this case.  This is done so that you don't have 1 place to edit the 'constant '.

    The rule on "Globals are evil" actually goes back several years when NEITHER had the huge "people of the country are bad" vendata.  But NEITHER explains well how to do things properly.  So I found people, instead of using local variables, using the value property node.  It's even worse because the property causes thread swaps and kills your performance.  It wasn't until I shouted to people to use wires and shift registers I have seen improvements in the way in which people wrote their code.  So people are always riffling in the use of globals and decided to use FGVs with the EEG and fixed rather cases.  But this does not solve the problem of the conditions of race with critical data and you cause an additional burden.

    So from my experience, I use globals all the time for configuration data.  Yes, you must be careful about the race conditions.  But as long as you understand that it is a common and useful practice.

    I would not use a global variable for data that are constantly changing (use registers to offset or Action motor) and/or processes that have critical sections of code (use a motor of Action).

    NOTE: I use the definition of Mercer to FGV (a Get/Set only) and motor Action (many cases which specifically affect the data).

Maybe you are looking for

  • Confused about the disk space with the photo library

    I understand that Photos uses hard links, and that therefore the photo library should not take much more space than the old Aperture library. But in a sense, I think that's not strictly true, and ' t actually takes this amount of space. My current ph

  • Windows Movie Maker - sound only, no video is displayed

    Using the Director to download my video noise is get recorded. Black screen is displayed on the video section. Any ideas on what I am doing wrong? I checked the help on the program and measures diplay window all correctly until I try to capture the s

  • LabelField text position

    Hi, I have created fat labelfields by adding some padding on them and have managed to align the text in the Middle through DrawStyle.HCENTER. I wonder how I can make centered vertically as VCENTER does nothing. I can think of a way to achieve what I

  • BlackBerry Smartphones Blackberry 8330 screen stays on all the time.

    My new 8330 screen was darkening properly for a few weeks and now stays on all the time. I adjusted the timeout of several parameters and saved the settings before setting off, and nothing works. My battery is reached! Please, is - that someone has h

  • Site dedicated to the list of songs - need to best way to list

    I looked on many sites that present the music from iTunes to "you-name-it" sites that have the alphabet and you choose a letter to access a list starting with that letter.I am building a site and contemplating, I have only about 100 songs in a list,