Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

NAT - Tunnelling IPSEC within a GRE tunnel - has anyone done this

Status
Not open for further replies.

maddog32

MIS
Apr 10, 2002
14
0
0
GB
Hi,

I'm using L2TP/IPSEC to create a Win2k VPN solution from a client to an Adv Server. In the middle there are some Cisco routers that are performing NAT which is obviously causing problems.

In order to overcome these problems I wondered whether anyone has tried creating a GRE tunnel between two routers and then encapsulating the IPSEC packets within the GRE tunnel. Provided NAT is performed after the creation of the GRE packet this should work. Shouldn't it?

Is anyone using this approach? Am I talking rubbish? How has everyone else solved this problem (excluding using PPTP!).

Cheers.
 
This will work. I use GRE for nearly all of my router to router traffic. You should set up your acls carefully though to prevent redundant encryption.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top