Page 1 of 1

IPSEC on nated traffic

Posted: Fri Sep 25, 2015 6:59 pm
by leostereo
Hi guys, I already have my nat / routing schemme working as show in the picture attached.
Clients have internet access but traffic security is comprised when goes out the nat.
I was trying to add some security to the network encripting outgoing traffic between the nat routers and the gateway but could not success so far.
Is there any sample/doc to follow to acomplish that ?
Does ipsec support point to multi point topology or do I need to set up an ipsec instance for each nat router ?

Thanks
Leandro.

Re: IPSEC on nated traffic

Posted: Fri Sep 25, 2015 11:10 pm
by leostereo
I got it working.
Please let me know if you need my config.
Following I will try to make it point to multipoint.
Also need to check the performance (so far I can not get more than 6Mbps).
There is also an mtu issue there. For example now I need to set my pc to 1400 to make facebook work.

Leandro.