We have four branches each connected with a PIX 506 to our main office with a PIX 520. The 506 is the only router device in the branch, connects to the Internet via DSL/pppoe and establishes an IPSec/VPN connection.
Everything works fine, but now the fifth branch is coming and the IP address range of this branch overlaps with the address range of branch 1. Unfortunately no range is changeable, so I am forced to use NAT somewhere. To make it really tricky, I'm not allowed to use any additional piece of hardware.
Now the question: Is it possible to NAT (or PAT) a private net, send it to an IPSec tunnel and establish a connection to a DSL provider with only one PIX 506 and no other router?
Thanks in advance
Frank
Everything works fine, but now the fifth branch is coming and the IP address range of this branch overlaps with the address range of branch 1. Unfortunately no range is changeable, so I am forced to use NAT somewhere. To make it really tricky, I'm not allowed to use any additional piece of hardware.
Now the question: Is it possible to NAT (or PAT) a private net, send it to an IPSec tunnel and establish a connection to a DSL provider with only one PIX 506 and no other router?
Thanks in advance
Frank
