On 8/26/05, Philippe Lang <philippe dot lang at attiksystem dot ch> wrote:
> Hi,
>
> I'm trying to replace my actual Lightning firewall with a Soekris 4801
> (m0n0wall 1.11), and I have a small problem:
>
> My network is 10.0.0.0/8, and the remote network is 172.26.26.0/24.
>
> The problem is that the remote network already has a VPN with another
> 10.0.0.0/8 network.
>
> My solution with the Lightning was to map my 10.0.0.0/8 to the
> 172.31.1.0/24 network, and create a VPN between 172.26.26.0/24 and
> 172.31.1.0/24 networks, with a "mapto/source" and a "mapto/destination"
> on my Lightning, like:
>
> Source Destination Cmd Translation Type
> ----------------------------------------------------------------
> 10.0.0.111/32 172.26.26.0/24 mapto 172.31.1.111 Source
> 172.26.26.0/24 172.31.1.111/32 mapto 10.0.0.111 Destination
>
Try advanced outbound NAT to setup the same. I've never tried it for
something like this specifically, but it might work. Report back if
you have any success or not.
-Chris |