ASA ikev2 VPN s-2-s (PKI) - part three
Today I would like to implement NAT based on the configuration presented in one of my last posts: “ASA ikev2 VPN s-2-s (PKI) - part one”. Assume that LAN networks have the same addresses on both sides:
11.11.11.0/24 10.0.0.0/24 11.11.0.0/24
/----\ .11 .1 ----- .1 .2 ----- .1 .11/----\
| R1 |----------| ASA1 |----------| ASA2 |----------| R2 |
\----/ ----- |.100 ----- \----/
Loop0 /----\ Loop0
11.11.12.12 | R3 | 11.11.12.12
Loop1 \----/ Loop1
11.11.13.13 PKI SERVER 11.11.13.13
Sometimes it happens, for example when two companies merge together. For this post only I simplify the design and instead of the same subnets I have six hosts, where three have the...