I have been asked to NAT some traffic leaving our network behind the vrrp address of our pair. No problem there.
My question relates to the replies back. All connections will be initiated on our side - none will ever be initiated from the remote side ( an HSRP address of a pair of Ciscos).
My question is this:
with the reply packets to my vrrp address - the firewall forwards them to the requesting client, from the state table. What will the source ip of the packets be that are sent to the internal clients be? The VRRP address or the actual IP address?
Thanks.
My question relates to the replies back. All connections will be initiated on our side - none will ever be initiated from the remote side ( an HSRP address of a pair of Ciscos).
My question is this:
with the reply packets to my vrrp address - the firewall forwards them to the requesting client, from the state table. What will the source ip of the packets be that are sent to the internal clients be? The VRRP address or the actual IP address?
Thanks.