VPN Source NAT subnet and actual in same Encryption domain

Question asked by Markus Hoyer on Aug 7, 2018
I have a question regarding VPN. On a VSX platform in a single domain on a single Virtual System I am trying to establish a VPN, where we are source NAT'ing in our end and they are aswell.


I can establish Phase 1 and 2 without issues and I can tell that the VPN is establishing with the correct NAT'ed subnet, yet we're not able to send traffic through. 


Does this cause an issue if we have both the actual subnet and NAT'ed subnet in the VPN domain manually defined on the VS?


