Overlapping networks on the remote site

  • Hi,

    I have several site-to-site VPNs of these two site remote subnets overlapped.
    The bigger subnet is and the smaller is (It's not my idea :-)
    Theoretically is not a problem because the packets are sent to the smaller subnet (Longest prefix match)


    But I experience a problem with.
    If the bigger subnet VPN establish sooner then the (Longest prefix match) doesn't work, but the smaller subnet VPN establish sooner, works properly.

    I can't guarantee the establishing order, because if idle the connection disconnects and etc.

    Any Idea?


  • Generally speaking one option to resolve addressing conflicts would be to NAT before VPN.

