Question
Virtual IP from site1 to site2 over VPN link
I have a number of sites connected via site-to-site interface-based VPN tunnels. The connections are via a fiber network that we don' t control the inbound internet traffic on. I have one site that also has a DSL link on WAN2. What I' d like to be able to do is create a virtual IP on this unit (site1) to direct traffic (lets say p80) to a system on the LAN of site2. p80->WAN2/site1->V-IP (p80, LAN2-IP/site2)->[VPN]->WAN1/site2->LAN2-IP Is this possible? I' ve tried to create a virtual IP as I normally would for a local ' site1' IP, but I think I' m running into an issue with the ' mapped IP' being in the remote ' site2' subnet. I' ve tried creating my FW policies such that: a) SRCIFC = WAN2 SRCADD = All DESTIFC = WAN1 DESTADD = V-IP (with IP that is part of site2 LAN) b) SRCIFC = WAN2 SRCADD = All DESTIFC = SITE2-Phase1 (VPN ifc linked to WAN1) DESTADD = V-IP (with IP that is part of site2 LAN) Any insight or recommendations?
