DNAT before IPSEC VPN
Hello,
We have a requirement to create a simple IPSec VPN to another customer who is also using a Fortigate firewall at their end.
However, due to a conflict of subnets in our environment, I need to destination NAT their subnet before it hits the IPSec VPN.
Is this even possible? I was of the view that the remote end would have to NAT their subnet that conflicts with our environment and provide us with a new subnet that we can use to route over IPSec VPN. However, the remote end customer is adamant that this should be done at our end.
So in other words, I need to do a DNAT before the traffic hits the IPSec VPN tunnel from our end.
Can someone please help with this?
Thanks.
