background image
Chapter 10. Configuring VPN
Internet Security Router User
’s Manual
106
2.
Configure incoming static NAT pool (reverse-static-NAT) for translating addresses in range
192.168.12.1-192.168.12.254 to 192.168.1.1-192.168.1.254
Figure 10.15. Extranet Example
– Incoming NAT Pool Configuration on ISR2
Step 3: Configure Extranet rules
1.
Configure outbound Firewall rules to map the source IP address of outbound packets from
192.168.1.x range to 192.168.12.x (defined by Outgoing_NAT pool) range before sending the
packet to VPN.
Figure 10.16. Extranet Example
– Outbound ACL Rule on ISR2
2.
Configure inbound Firewall rules to map the destination IP address of inbound packets from
192.168.12.x range to 192.168.1.x range after the packet is processed by VPN.