VPN, Road Warriors, and Nat question

From:
Date: 10/29/02


Date: Tue, 29 Oct 2002 22:40:48 -0000

There's tons of info about setting up VPNs on the net, but I can't seem to
get my head straight on one thing: most people these days connect via a
NAT-ed connection (either via an ADSL router or their ISP, or corporate
LAN). Very few connect straight out on their own IP.

If I set up a VPN server on my company's LAN, will anyone ever be able to
connect to it if they are behind a NAT firewall beyond my control? If not,
am I just wasting my time fiddling with poptop, FreeSWAN and all the others
(neither of which I've got working yet)?

Should I just forget VPN completely and instead kill Vint Cerf for choosing
such a tiny 32-bit address space that we have to use NAT in the first place?
These geniuses can be such idiots.

But seriously, any ideas on being able to get NAT connections to VPN would
be appreciated.

JJ



Relevant Pages

  • Re: Need small office hardware firewall advice.
    ... If you are not going to use NAT, steer clear of Sonicwall. ... Ability to route real IP addresses on my LAN. ... > I'm also a little confused about the VPN features on these products. ...
    (comp.security.firewalls)
  • Re: Need small office hardware firewall advice.
    ... > If you are not going to use NAT, steer clear of Sonicwall. ... Ability to route real IP addresses on my LAN. ... >> I'm also a little confused about the VPN features on these products. ...
    (comp.security.firewalls)
  • Re: VPN, Road Warriors, and Nat question
    ... any ideas on being able to get NAT connections to VPN would ... The technology you are looking for is called NAT Traversal. ... > If I set up a VPN server on my company's LAN, will anyone ever be able to ...
    (comp.security.firewalls)
  • Re: LAN to LAN Routing
    ... are you using NAT? ... Networking, Internet, Routing, VPN, Anti-Virus, Tips & Troubleshooting on ... > I am having real problems setting up a LAN to LAN route, ... > Network 'A' is a new Windows 2003 setup all on the IP Address Range ...
    (microsoft.public.win2000.ras_routing)
  • Re: NATting both ways
    ... on my "VPN" network off a PIX 525. ... We are using ip nat inside and ip nat outside on our inside and ... creates a VPN to another router on a remote network. ... crypto map CLIENTMAP client authentication list default ...
    (comp.dcom.sys.cisco)