Re: PPTP and NAT

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance

From: Phillip Windell (_at_.)
Date: 07/26/04


Date: Mon, 26 Jul 2004 15:59:58 -0500

I need to clairify something besides my other post. You are not NATing
anything twice. The "second" NAT is occuring on the *decapsulated* traffic
after it is no longer part of the VPN Session. VPN only goes as far as the
"termination point" of the Tunnel,...beyond that VPN no longer exists. The
data stream is decapsulated at the end of the Tunnel and is just normal LAN
traffic from that point.

-- 
Phillip Windell [MCP, MVP, CCNA]
www.wandtv.com
"TwistedPair" <twistedpair@mail.com> wrote in message
news:uUrnSB1cEHA.3616@TK2MSFTNGP10.phx.gbl...
> Hi All,
> Here is the scenario:
>
> PPTP Server -> Firewall -> Internet -> Firewall -> Client
> 192.168.x.x
> 192.168.y.y
>
> I want to be able to NAT PPTP from one internal net to another after it
had
> been NAT'ed to and from the Internet.  Can this protocol cope with this
> scenario?
>
> Thanks,
> Pair
>
>


Relevant Pages

  • Re: PPTP and NAT
    ... PPTP doesn't have any problem with this. ... with NAT -- but even that has been solved with NAT-T. ... > Here is the scenario: ... > I want to be able to NAT PPTP from one internal net to another after it ...
    (microsoft.public.windows.server.networking)
  • Re: NATting both ways
    ... on my "VPN" network off a PIX 525. ... We are using ip nat inside and ip nat outside on our inside and ... creates a VPN to another router on a remote network. ... crypto map CLIENTMAP client authentication list default ...
    (comp.dcom.sys.cisco)
  • Re: VPN From W2K/Pro to W2K Server Doesn;t Work Through Firewall
    ... My belief is that your NAT ... My understanding is that IPSec AH protocol does not work with NAT devices ... IPSec operates in either one of two modes - transport mode or tunnel mode. ... provide a VPN remote access solution. ...
    (microsoft.public.win2000.security)
  • Re: AD & NAT
    ... scenario outlined above is most common though and should be able to be ... We cant avoid this NAT. ... The real IP at the three datacentre for DCs is 10.x.x.x. ... The client desktops at all locations would be having ...
    (microsoft.public.windows.server.active_directory)
  • Re: VPN From W2K/Pro to W2K Server Doesn;t Work Through Firewall
    ... I did know you have Linux for NAT and my original suggestions still stand. ... Windows 2000 server through a Linux router with NAT. ... solution has IPsec passthrough, NAT breaks IPsec AH. ... regardless of what vendor you're using for NAT and VPN. ...
    (microsoft.public.win2000.security)