Important Notice: Our web hosting provider recently started charging us for additional visits, which was unexpected. In response, we're seeking donations. Depending on the situation, we may explore different monetization options for our Community and Expert Contributors. It's crucial to provide more returns for their expertise and offer more Expert Validated Answers or AI Validated Answers. Learn more about our hosting issue here.

What must be filled in Phase 2 field “VPN client address” ?

field filled phase
0
Posted

What must be filled in Phase 2 field “VPN client address” ?

0

This field is the virtual IP address that the IPSec VPN client will have inside the remote subnet. With most of VPN gateways, this address must not belong to the remote network subnet. For example, if you use a VPN gateway with a subnet 192.168.0.0/255.255.255.0, you should use in “VPN Client address” a value like 192.168.100.1 or 10.10.10.1. Take the case you choose an IP address non-used in the subnet like 192.168.0.200. When the IPSec VPN Client is sending a TCP or an UDP packet to a target remote computer 192.168.0.x, this target will send inside its subnet an ARP request in order to get IPSec VPN Client MAC address and reply directly to it. But, this request cannot receive any answer because the client is not physically present inside the subnet. So, initial packets from the client will not be answered. If your VPN gateway can answer this ARP request for the IPSec VPN Client, you can fill “VPN Client address” field with an IP address belonging to remote subnet.

Related Questions

What is your question?

*Sadly, we had to bring back ads too. Hopefully more targeted.

Experts123