Can I implement ProxyClient with the Client located in Public Network and the ADN/ProxyClient Concentrator located in Private Network?

<< Back to Knowledge Search



A public IP address is required on the ADN/ProxyClient Concentrator to make this set up work, as the ADN/ProxyClient Concentrator will use that IP on itself to broadcast the Explicit ADN route to another ADN peer, including the ProxyClient.

In a scenario where the ADN/ProxyClient Concentrator only has a private network IP address and the Client is located on a Public Network, the ADN/ProxyClient Concentrator will broadcast a private network and the Client on the Public network has no way of establishing an Explicit ADN tunnel to the ADN/ProxyClient Concentrator IP.

However there is an option to implement this, but it only works if there is no other ADN peer in the internal network. The changes need to be done on the Concentrator for the ProxyClient traffic .

The Firewall which faces the Public Network needs to NAT the "Proxy" Public IP to the Proxy Internal IP.

On the ProxyClient Concentrator

  1. In the ProxySG Web Management Console select Configuration > ADN > Tunneling > Load Balancing > Explicit > External VIP. 
  2. Specify the public IP on the router which will be NATed back to the Concentrator located in internal network.



Additional Information
Bug Number
InQuira Doc IdFAQ1363

Article Feedback

Hide Properties
First Published      10/01/2014
Last Modified      10/01/2014
Last Published      10/01/2014
Article Audience
Product      ProxySG
Software      ProxyClient, SGOS 5, SGOS 6
Article Number      000008382
Was this helpful?
Previous MonthNext Month