Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

Site_to_site VPN Connection - same subnet at both ends - IpSEC Nat Settings

Hello,

I' trying to configure "Nat Settings" (see image for example) inside the configuration of a Site_to_site ipsec vpn.

I have two separated subet in my network 192.168.1.x/24 and 192.168.21.x/24 and I would like that both subnet, inside the vpn, are NATed to 192.168.129.x/24 (Local_NATed_LAN).

It works only using subnet with same cidr range (for example 192.168.1.0 /24 NATed with 192.168.129.0/24). If I try using 192.168.0.0/16 as SF1_LAN (to include both subnets) nothing works.

Is it the right behaviour?

Thanks



Added TAGs
[edited by: Erick Jan at 2:39 AM (GMT -8) on 3 Feb 2025]
x An error occurred. Please try again or contact your administrator.