Virtual Private Networks VPN-NAT problem

Bookmark this page:  YahooMyWeb Yahoo!  Google Google  Windows Live Favorites Windows Live  del.icio.us del.icio.us  digg digg  Add to Netscape Netscape
Subject Author Date
VPN-NAT problem iago21k 03-15-06
Posted by on March 15, 2006, 7:21 am
Please log in for more thread options
We're trying to use your router to create an IPSEC\IKE VPN tunnel
with an external client but have encountered a problem:
Our LAN is an 10.34.10.0/24 Class C but the resources on the network we
need to connect to is a 10.0.0.0/11 Class A range. The network
administrators of the other LAN have given us their public IP gateway
address and have been assigned an encryption domain in the
172.20.44.0/28 Class C range, we have consequently reserved a range of
14 addresses (10.34.10.33-46) to match it.
Our problem is that we are unable to convert our inside LAN range to
the outside encryption domain range of the other network.
The IKE negotiating starts but ends abruptly, caused by invalid
requests from host in the 10.* range instead of the required 172.*.
We have can't alter our network infrastructure for various reasons
and the adsl\router is currently used in SUA mode for the internal LAN.
What specification must the router have to solve this problem as the
one listed below can't do it.

Any help would be appreciated
Ciao


Zyxel Prestige 652 Series
Internet Access Sharing
=B7 RFC 791 for IP, RFC 826 for ARP, and
ICMP support
=B7 NAT/PAT support
=B7 Multi-NAT (Network Address
Transmission) support
=B7Dynamic DNS
Network Protocols
=B7IEEE 802.1d Transparent bridging
=B7IP routing supports RIP-1 and RIP-2
Management Support
=B7 Menu-driven user interface
=B7 Command-line interpreter (CLI)
=B7 Password-protected Telnet support
=B7 Web-based Graphical User Interface
(GUI) configuration
=B7 SNMP support
=B7 TFTP and FTP firmware upgrade and
configuration backup and restore
=B7 Built-in diagnostic tool
Firewall
=B7 Filter on source and/or destination IP
address/port value
=B7 Stateful Packet Inspection
=B7 Denial of Service
=B7 URL blocking
=B7 Attack Alert and logs
=B7 Access Control
Virtual Private Network
=B7 Support Two IPSec connections
=B7 Internet Key Exchange including
Aggressive Mode
=B7 IPSec with AH, ESP
=B7DES (56-bit) and 3DES (168-bit)
encryption
Physical Interface
=B7 One RJ -45 port for Ethernet LAN
connection
=B7 One RJ-11 or RJ-45 port for ADSL
connection
=B7 One DB-9F RS-232 Console for local
configuration and management
=B7 One DB-9M RS-232 Console for Dial
backup
Other Features
=B7 Dial Backup
=B7 UPnP
=B7 ZyXEL Centralized Network Management
support*


Similar ThreadsPosted
SSH through VPN problem February 19, 2006, 3:45 am
VPN-NAT problem March 15, 2006, 7:21 am
problem June 16, 2006, 5:29 pm
VPN Problem October 15, 2006, 1:25 pm
WinXP VPN Problem March 24, 2005, 1:12 am
OpenVPN DNS problem March 27, 2005, 5:17 pm
WinXP VPN Problem May 25, 2005, 1:44 pm
Checkpoint VPN NAT/PAT problem November 3, 2005, 7:24 pm
Problem with Linksys RV 042 November 8, 2005, 1:02 am
VPN browse problem May 10, 2006, 8:46 pm
VPN Install problem lzo May 20, 2006, 3:23 am
VPN connection problem February 19, 2007, 6:07 pm
Strange Client Problem March 22, 2005, 12:01 pm
VPN connection Problem if on same network March 23, 2005, 4:59 pm
POPTOP + no route problem July 13, 2005, 5:30 pm