Originally posted by stek
View Post
- Visitors can check out the Forum FAQ by clicking this link. You have to register before you can post: click the REGISTER link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below. View our Forum Privacy Policy.
- Want to receive the latest contracting news and advice straight to your inbox? Sign up to the ContractorUK newsletter here. Every sign up will also be entered into a draw to WIN £100 Amazon vouchers!
Reply to: Site-to site VPN question
Collapse
You are not logged in or you do not have permission to access this page. This could be due to one of several reasons:
- You are not logged in. If you are already registered, fill in the form below to log in, or follow the "Sign Up" link to register a new account.
- You may not have sufficient privileges to access this page. Are you trying to edit someone else's post, access administrative features or some other privileged system?
- If you are trying to post, the administrator may have disabled your account, or it may be awaiting activation.
Logging in...
Previously on "Site-to site VPN question"
Collapse
-
Can't you do it with ACL's so that the IP's of the two new hosts can't talk to each other?
Leave a comment:
-
Site-to site VPN question
We have;
Simple-ish network in the office, Cisco ASA 5505 and 2960-S switch, three vlans, general, DMZ and guest. 10.22.x.x/24 private network.
Site-to-site VPN to external customer internally we use 192.168.x.x/24 which via crypto maps and shiit too hard for me allows access over VPN to customer hosts.
We need to set up two more internal hosts to connect the same way but, and this is the important bit, they must NOT be able to see each other internally. We've tried them on 192.168.x.x/24 and of course they do see each other and this is causing undesirable issues.
I tried putting them in new vlans so they can't see each other locally, but I can't seem to create connection profiles with the same peer IP address (the customers VPN) as it exists already.
Is vlans they wrong way to go? Should I be looking at subnetting them out?
More info if needed!Tags: None
- Home
- News & Features
- First Timers
- IR35 / S660 / BN66
- Employee Benefit Trusts
- Agency Workers Regulations
- MSC Legislation
- Limited Companies
- Dividends
- Umbrella Company
- VAT / Flat Rate VAT
- Job News & Guides
- Money News & Guides
- Guide to Contracts
- Successful Contracting
- Contracting Overseas
- Contractor Calculators
- MVL
- Contractor Expenses
Advertisers
Contractor Services
CUK News
- Six things coming to contractors in 2026: a year of change, caution and (maybe) opportunity Today 06:24
- Umbrella companies, beware JSL tunnel vision now that the Employment Rights Act is law Yesterday 06:11
- 26 predictions for UK IT contracting in 2026 Jan 5 07:17
- How salary sacrifice pension changes will hit contractors Dec 24 07:48
- All the big IR35/employment status cases of 2025: ranked Dec 23 08:55
- Why IT contractors are (understandably) fed up with recruitment agencies Dec 22 13:57
- Contractors, don’t fall foul of HMRC’s expenses rules this Christmas party season Dec 19 09:55
- A delay to the employment status consultation isn’t why an IR35 fix looks further out of reach Dec 18 08:22
- How asking a tech jobs agency basic questions got one IT contractor withdrawn Dec 17 07:21
- Are Home Office immigration policies sacrificing IT contractors for ‘cheap labour’? Dec 16 07:48

Leave a comment: