nanog mailing list archives

Re: VPN recommendations?


From: William Herrin <bill () herrin us>
Date: Thu, 10 Feb 2022 10:54:39 -0800

On Thu, Feb 10, 2022 at 10:18 AM Shawn L <shawnl () up net> wrote:
Meraki MX series? Dynamic IPs and NATs don't really cause them a problem.  Some CGNats do (AT&T I'm looking at you).

Thanks Shawn,

The documentation I found at
https://documentation.meraki.com/MX/Site-to-site_VPN/Site-to-Site_VPN_Settings
suggests that the NAT firewall has to be explicitly configured to
deliver UDP 500/4500 to the Meraki behind it. Are you aware of any
documentation that describes:

LAN - Meraki - NAT (dynaimic IP) - Internet - (static IP) Meraki - LAN

Where the left-side Meraki is responsible for establishing and keeping
the NAT translations alive without any special configuration on the
NAT?

Regards,
Bill


-- 
William Herrin
bill () herrin us
https://bill.herrin.us/


Current thread: