Coexistence of ike-interface and sip-interface. Is it possible?
Hello fellows.
I have a configuration of IPSec on my SBC, where tunnel is organized via public IP address 11.22.33.44, and sip configuration bases on private IP address 192.168.20.1. Both - ike and sip interfaces are located in the same realm "IPSEC", so SBC knows that outgoing sip traffic must be tunneled. Generally, I connect two sip servers with their private IP addresses via IPsec tunnel, established between SBC and Firewall on remote side. I think this scheme is considered as canonical.
I wonder if somebody created IPsec tunnel, where ike-interface and sip-interface share the same IP address like on the scheme below? In this case sip server #2 will be connected to Cisco Firewall via IPsec and will know nothing about sip server #1. Is it possible at all?