Score:0

ipSec VPN configuration, VLANs advertised

sz flag

We are in the process of setting up an ipSec VPN between 2 locations. There are various encryption methods, algorythms and preshared keys to set up. Network1 will have access to specific VLANs on Network2 and vise versa.

The questions is:
Should side 1 have the exact same target VLANs configured as the ones advertised on side 2?
Or can for example side 2 advertise more VLANs than the actual destination ones configured on side 1?

Score:1
za flag

Prior to setting up VPNs, PSKs, cipers and other buzzwords, it's worthy to read some books to understand that network sites don't advertise VLANs. At least usually. Unless you are really-really sure about what you're doing, because linking VLANs through WAN and using a high latency network is generally a really bad idea.

But if you want a formal answer - no, you don't care about VLAN numbers on the sites, because VLANs are on 2nd layer of OSI model, and you will link your sites on the 3rd level of OSI model.

I sit in a Tesla and translated this thread with Ai:

mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.