[c-nsp] IOS FW - IP Aliasing

J Springer js at jspringer.net
Tue May 2 12:19:55 EDT 2006


I have a customer using an 800-series router (12.2) with the IOS FW 
feature set that has configured a peer-to-peer VPN to a remote gateway.

Since the remote does not want to access the local machine by its 
private IP address once the VPN is established, it is assigning a 
non-routable /30 that we are to use to identify the local private machine.

I do not have access to the customer firewall.  Is there a command that 
I can have my customer use to static/proxy one IP address to another?

We really don't want to IP a loopback interface on the local private 
machine and route the /30 to it if we don't have to.

Example:

Local Public: 10.0.0.1
Remote Public: 10.10.10.1

Local Private: 192.168.0.0/24
Remote Private: 192.168.10.0/24

Remote assigns 172.16.0.0/30 and wants to ftp to 172.16.0.1 instead of 
192.168.0.34 once the VPN has been established.

Is there an IOS option that we can use for this non-nat IP-IP translation?


More information about the cisco-nsp mailing list