<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Cisco &#8211; How to configure nat for an IPSec VPN</title>
	<atom:link href="http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/</link>
	<description>Tips and Video Tutorials - Cisco .:. Linux .:. VOIP</description>
	<lastBuildDate>Fri, 30 Jul 2010 13:55:31 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
	<item>
		<title>By: HPR</title>
		<link>http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/comment-page-1/#comment-32389</link>
		<dc:creator>HPR</dc:creator>
		<pubDate>Mon, 29 Jun 2009 13:36:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/#comment-32389</guid>
		<description>HI
is it posible to configure NAT for trafic intended for the IPSEC tunnel...
I want to hide my inside ip but route trafik inside an IPSEC tunnel over the internet.
The reciver must only see 1 IP from my nat pool</description>
		<content:encoded><![CDATA[<p>HI<br />
is it posible to configure NAT for trafic intended for the IPSEC tunnel&#8230;<br />
I want to hide my inside ip but route trafik inside an IPSEC tunnel over the internet.<br />
The reciver must only see 1 IP from my nat pool</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dmitry</title>
		<link>http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/comment-page-1/#comment-32286</link>
		<dc:creator>Dmitry</dc:creator>
		<pubDate>Wed, 27 May 2009 14:27:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/#comment-32286</guid>
		<description>Forgot to stress that marker points to the route-map command.</description>
		<content:encoded><![CDATA[<p>Forgot to stress that marker points to the route-map command.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dmitry</title>
		<link>http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/comment-page-1/#comment-32284</link>
		<dc:creator>Dmitry</dc:creator>
		<pubDate>Wed, 27 May 2009 14:22:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/#comment-32284</guid>
		<description>Hi Josh,

thank you very much for the useful video.

But what if you need translate (PAT) some public port to the inside one? 

ip nat inside source static tcp 192.168.10.2 3389 interface fastEthernet4 23389 route-map nonat

% Invalid input detected at &#039;^&#039; marker.

OS 12.4(T4) CISCO 877

Regards,
Dmitry</description>
		<content:encoded><![CDATA[<p>Hi Josh,</p>
<p>thank you very much for the useful video.</p>
<p>But what if you need translate (PAT) some public port to the inside one? </p>
<p>ip nat inside source static tcp 192.168.10.2 3389 interface fastEthernet4 23389 route-map nonat</p>
<p>% Invalid input detected at &#8216;^&#8217; marker.</p>
<p>OS 12.4(T4) CISCO 877</p>
<p>Regards,<br />
Dmitry</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dan</title>
		<link>http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/comment-page-1/#comment-27595</link>
		<dc:creator>Dan</dc:creator>
		<pubDate>Fri, 13 Mar 2009 13:30:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/#comment-27595</guid>
		<description>Helo. I have IOS 12.2(13), and on my device the command ip nat source route-map POLICY-NAT interface s0/0 overload won&#039;t work.
After ip nat I can only use inside, outside, pool, etc as parameters but not source. Thanks in advance.</description>
		<content:encoded><![CDATA[<p>Helo. I have IOS 12.2(13), and on my device the command ip nat source route-map POLICY-NAT interface s0/0 overload won&#8217;t work.<br />
After ip nat I can only use inside, outside, pool, etc as parameters but not source. Thanks in advance.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ahmed</title>
		<link>http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/comment-page-1/#comment-27540</link>
		<dc:creator>Ahmed</dc:creator>
		<pubDate>Thu, 12 Mar 2009 14:17:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/#comment-27540</guid>
		<description>the command i am using here is..

ip nat inside soure route-map NAT-POLICY pool IP-POOL.</description>
		<content:encoded><![CDATA[<p>the command i am using here is..</p>
<p>ip nat inside soure route-map NAT-POLICY pool IP-POOL.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ahmed</title>
		<link>http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/comment-page-1/#comment-27539</link>
		<dc:creator>Ahmed</dc:creator>
		<pubDate>Thu, 12 Mar 2009 14:15:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/#comment-27539</guid>
		<description>Dear all.. 

as you all know that there is probelm when you configure IPsec and NAT on same router.. 
The soloution is shown in the video

for this cisco have a sloution like configuring a route-map putting some access lists in it to bypass vpn traffic from nat operation.. 

This solution for me is working in case when there is nat overload (PAT) and for static nat .. but it is not working for Dynamic nat where we also have a list of ip address to be translated with .. which we define in ip nat pool statement.. 

can any one give me some sollution for this... 
i hope you understand what i mean.. 

if you need some details what i am talking about please read the link 
http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a0080094634.shtml 


even this example is giving such a solution for PAT and Static nat but not for dynamic nat.. 

i believe i can get a solution from you.. 

Regards, 

Ahmed Ali</description>
		<content:encoded><![CDATA[<p>Dear all.. </p>
<p>as you all know that there is probelm when you configure IPsec and NAT on same router..<br />
The soloution is shown in the video</p>
<p>for this cisco have a sloution like configuring a route-map putting some access lists in it to bypass vpn traffic from nat operation.. </p>
<p>This solution for me is working in case when there is nat overload (PAT) and for static nat .. but it is not working for Dynamic nat where we also have a list of ip address to be translated with .. which we define in ip nat pool statement.. </p>
<p>can any one give me some sollution for this&#8230;<br />
i hope you understand what i mean.. </p>
<p>if you need some details what i am talking about please read the link<br />
<a href="http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a0080094634.shtml" rel="nofollow">http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a0080094634.shtml</a> </p>
<p>even this example is giving such a solution for PAT and Static nat but not for dynamic nat.. </p>
<p>i believe i can get a solution from you.. </p>
<p>Regards, </p>
<p>Ahmed Ali</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: John</title>
		<link>http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/comment-page-1/#comment-17695</link>
		<dc:creator>John</dc:creator>
		<pubDate>Fri, 24 Oct 2008 13:29:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/#comment-17695</guid>
		<description>I&#039;m now 3 weeks total into my Cisco experience and I have to say this page was a godsend.  No one I&#039;ve talked to (CCNAs and CCIEs included) knew about applying a route-map to a static NAT like this.  Solved a brain scrambling problem I&#039;ve been having.

Thanks!</description>
		<content:encoded><![CDATA[<p>I&#8217;m now 3 weeks total into my Cisco experience and I have to say this page was a godsend.  No one I&#8217;ve talked to (CCNAs and CCIEs included) knew about applying a route-map to a static NAT like this.  Solved a brain scrambling problem I&#8217;ve been having.</p>
<p>Thanks!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: bibo4shizo</title>
		<link>http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/comment-page-1/#comment-17479</link>
		<dc:creator>bibo4shizo</dc:creator>
		<pubDate>Tue, 21 Oct 2008 03:18:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/#comment-17479</guid>
		<description>thanks a lot josh,let me go through the document I have gotten from the link.You know I&#039;m struggling with too many technologies these days,rushing from VoIP to GSM/GPRS.I guess I will be relying on you guys for some help.</description>
		<content:encoded><![CDATA[<p>thanks a lot josh,let me go through the document I have gotten from the link.You know I&#8217;m struggling with too many technologies these days,rushing from VoIP to GSM/GPRS.I guess I will be relying on you guys for some help.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Josh</title>
		<link>http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/comment-page-1/#comment-17464</link>
		<dc:creator>Josh</dc:creator>
		<pubDate>Tue, 21 Oct 2008 00:41:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/#comment-17464</guid>
		<description>bibo4shizo,

Yes, it is possible. Take a look at this link.

http://www.cisco.com/en/US/docs/routers/access/1800/1801/software/configuration/guide/vpnezvpn.html

Josh</description>
		<content:encoded><![CDATA[<p>bibo4shizo,</p>
<p>Yes, it is possible. Take a look at this link.</p>
<p><a href="http://www.cisco.com/en/US/docs/routers/access/1800/1801/software/configuration/guide/vpnezvpn.html" rel="nofollow">http://www.cisco.com/en/US/docs/routers/access/1800/1801/software/configuration/guide/vpnezvpn.html</a></p>
<p>Josh</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: bibo4shizo</title>
		<link>http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/comment-page-1/#comment-17209</link>
		<dc:creator>bibo4shizo</dc:creator>
		<pubDate>Fri, 17 Oct 2008 04:10:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.blindhog.net/cisco-how-to-configure-nat-for-an-ipsec-vpn/#comment-17209</guid>
		<description>Hi guys nice topic.Though a bit out of topic,I wanted to find out if you can have point to point IPSEC VPN and also Easy VPN at one of the vpn ends.

I have deployed easy VPN without p2p VPN and the other way round.

Please advise</description>
		<content:encoded><![CDATA[<p>Hi guys nice topic.Though a bit out of topic,I wanted to find out if you can have point to point IPSEC VPN and also Easy VPN at one of the vpn ends.</p>
<p>I have deployed easy VPN without p2p VPN and the other way round.</p>
<p>Please advise</p>
]]></content:encoded>
	</item>
</channel>
</rss>
