Troubles with DNAT

Options

I setup 2 Phase 2 VPN NATTED with the same GW (Phase1) in IKEv2. The Topology is this:

LOCAL LAN1 192.168.7.0/24 → NATTED ON 10.64.33.0/24 - REMOTE SUBNET 172.28.0.0/16

LOCAL LAN2 172.16.69.0/24 → NATTED ON 10.64.34.0/24 - REMOTE SUBNET 172.28.0.0/16

The 2 phases 2 go Online but only 1 DNAT works, the second one nope… Where i mistake?

If I disable the working one the other starts to work. The one that works is random, sometimes LAN1, sometimes LAN2

Sorry for my bad English…

All Replies

Security Highlight