IPsec Troubleshooting: Configuration Behind a NAT Device Parent topic

In the second example, the Deep Edge is located behind a NAT device.
NAT-A: Public IP 202.101.1.1, NAT translates 192.168.1.2 to 202.101.1.3
Appliance-A: Internal IP 192.168.1.2, on interface eth0. Local networks are 172.16.1.0/24
NAT-B: Public IP 202.101.2.1, NAT translates 202.101.2.3 to 192.168.2.2
Appliance-B: Internal IP 192.168.2.2, on interface eth0. Local networks are 172.16.2.0/24
vpn_behind_nat.jpg

Deep Edge VPN behind a NAT device

VPN Connection Configuration

Location Configuration
Appliance-A
Name: toB
Enable: Yes
Gateway type: Initiate
Gateway: 202.101.2.3
Interface name: Eth0
Policy name: default
Authentication type: Pre-shared key
Key: ******
Local Networks: 172.16.1.0/24
Remote Networks: 172.16.2.0/24 VPN ID: 192.168.1.2
Appliance-B
Name: toA
Enable: Yes
Gateway type: Response
Interface name: Eth0
Policy name: default
Authentication type: Pre-shared key
Key: ******
Local Networks: 172.16.1.0/24
Remote Networks: 172.16.2.0/24