DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

VPN with Multi-SA and NAT

  • cliffey
  • Topic Author
  • Offline
  • New Member
  • New Member
More
11 Mar 2019 13:29 #1 by cliffey
VPN with Multi-SA and NAT was created by cliffey
Hi,

can anyone shed some light on an issue im stuck with.
I have a VPN between my Draytek 2960 and a Cisco.
Unfortunatly i have had to setup a Translated local address (NAT) VPN.
All the traffic flows to the primary SA with no issues, however the second SA is not working.
If i create a Multi-SA line, i can see the phase 2 come up if i use the Translated local NAT address, unfortunatly i cannot get the traffic to pass over the VPN.
For example my "Details are"
local subnet (Mine) - 192.168.0.1/24
Transated local subnet - 10.254.254.0/24
Remote Subnet - 172.16.32.1/24

so if the multi-SA is set to 10.254.254.0/24 for the local subnet the second phase comes up as that is what the remote device is expecting, unfortunatly my traffic is 192.168.0.x so wont transfer over the VPN.

Anyone have any ideas??

Please Log in or Create an account to join the conversation.