IPSEC Tunnel using Public IP's



  • I need some routing help Please.
    I'm trying to build a IPSEC Tunnel using pfsense and cisco asa in the other end, here is the scenario.

    Site A
    111.111.111.80 (Public IP / pfsense WAN interface IP)
    10.0.0.0 LAN Subnet

    Site B
    222.222.222.150 (Public IP / CISCO ASA WAN interface IP)
    Don't Know their Local LAN

    IPSEC Tunnel Phase 1

    From 111.111.111.80 To Remote Gateway 222.222.222.150 Results OK

    Here is the problem…

    IPSEC Phase 2

    They want me (SITE B) to use this public ip (222.222.222.151) to encapsulate the data between the Tunnel.
    I have this setup

    MODE = Tunnel
    Local Network = Lan Subnet
    Remote Network = Type = Address = 222.222.222.151 (Public IP) Notice that is different from the Phase 1, Also they want to use 111.111.111.81 (This IP is another Public IP from My end) as my local Network from their end.

    PLEASE H E L P how can I accomplish this?

    Thanks in advance



  • Did you ever get this worked out?  I am having a similar issue…


Log in to reply