Search /
Docfinder:
Advanced search  |  Help  |  Site map
RESEARCH CENTERS
SITE RESOURCES
Click for Layer 8! No, really, click NOW!
Networking for Small Business
TODAY'S NEWS
Proctor & Gamble outsources security to IBM, but keeping security staff
Updated management appliance corrals Apple iPhone
Critics question Comcast broadband caps
Privacy feature in IE8 leaks private data
Wireless LANs face huge scaling challenges
Banks mining cash from their computer gear
Industry mourns slain Cisco exec
IBM flash memory breaks 1 million IOPS barrier
Microsoft virtualization tools reinforce user's data center plans
Novell revenue up, net income loss at $15 million
Watch Out! Firing IT Workers Can Cost You
Microsoft buys European comparison shopping site for $486M
Steve Jobs' death greatly exaggerated; obit a mistake
Sprint brings more partners aboard for WiMAX rollout
Samsung stained by ink cartridge suit
Security /

Dealing with IP address overlapping

Related linksToday's breaking news
Send to a friendFeedback

Sign up to receive this and other networking newsletters in your inbox.

Using a virtual private network to bring together existing smaller networks creates on almost inevitable headache: overlapping private IP addresses.

This issue can be resolved using double network address translation (NAT) at sites where the gear has private IP addresses that overlap with addresses at other sites. But that is very complex to configure.

Advertisement:

Some VPN users believe that rather than setting up double NATs, it is actually easier in the long run to renumber the devices whose numbers overlap.

Because of the complexity of using NAT in an IP Security VPN, the Internet Engineering Task Force is considering proposals for standards that would greatly reduce the need for NAT in IPSec VPNs. One suggestion would give all servers on the VPN a global address, eliminating the need for an address translation.

Those measures would be stopgaps until IPv6 becomes widely deployed. IPv6 will provide enough public IP addresses to go around so NAT becomes less necessary.

This potentially reduced addressing complexity is another reason to consider moving to IPv6 stacks if you are considering setting up a VPN. If you already have a VPN that is growing, IPv6 might also be a solution for your NAT nightmare.

Tim Greene is a senior editor at Network World, covering virtual private networking gear, remote access, core switching and local phone companies. You can reach him at tgreene@nww.com.

Standard needed so VPN failures can be detected
Network World, 08/02/99

Review: VPNs
Network World, 05/10/99

Review: VPN/firewalls
Network World, 04/19/99

Archive of Network World on Virtual Private Network newsletters


NWFusion offers more than 40 FREE technology-specific email newsletters in key network technology areas such as NSM, VPNs, Convergence, Security and more.
Click here to sign up!
New Event - WANs: Optimizing Your Network Now.
Hear from the experts about the innovations that are already starting to shake up the WAN world. Free Network World Technology Tour and Expo in Dallas, San Francisco, Washington DC, and New York.
Attend FREE
Your FREE Network World subscription will also include breaking news and information on wireless, storage, infrastructure, carriers and SPs, enterprise applications, videoconferencing, plus product reviews, technology insiders, management surveys and technology updates - GET IT NOW.
* HOME    * RESEARCH CENTERS     * NEWS     * EVENTS

Contact us | Terms of Service/Privacy | How to Advertise
Reprints and links | Partnerships | Subscribe to NW
About Network World, Inc.

Copyright, 1994-2006 Network World, Inc. All rights reserved.