VLAN Trunk over Site-to-Site VPN



  • Hi,

    I just configured a Policy-Base Site-to Site VPN for my new office with NS208 & NS204 and the new office is using a new network segment. Now I would like to extended the existing Cisco switch VLAN from the old office to the new office with dot1q trunking via the VPN. I am not sure how I can do something like that, or whatever setup can archive this goal.

    Thanks



  • Don’t think you can let the Netscreen pass 802.1q tags. I think there are one or two models in the lineup that can pass 802.1q tags with special ScreenOS.

    But why do you need it? If you have a segmented network and want to keep you “vlans” separated set up a VPN for each net. Then reapply 802.1Q tagging on the other end? Could that work in your setup?


 

36
Online

38.4k
Users

12.7k
Topics

44.5k
Posts