|----------| | | servers INTERNET--------| ROUTER | | DMZ | in DMZ | |(doesn't | | | with | | implement| | public | | IPSEC ) | | ip address | |----------| | | | | | | 192.168.0.0|-----| | | -----------------|linux|------------------- | | fw | ROAD |-----| WARRIOR | | 10.0.0.0 | | | NT domain | LAN | | | Hi everybody. I would allow a road warrior to connect to the LAN NT domain. I was thinking about a freeswan VPN server in the LAN with a public ip address and doing NAT in the linux fw from the public to the local ip. Is that a good idea? Anybody has any suggestion? I'm newbie in freeswan, can you help me?