The IP Passthrough feature allows a single PC on the LAN to have the Router's public address assigned to it. It also provides Port Address Translation (PAT)–Network Address Port Translation (NAPT) via the same public IP address for all other hosts on the private LAN subnet. Here are the steps for configuring the Gateway in IP Passthrough:

Trying to set up ASA 5505 to allow IPSEC passthru for AT&T Global network Client VPN.

You can configure the Firebox to pass inbound IPSec VPN traffic through to another VPN endpoint, such as a VPN concentrator on the trusted or optional network. To configure the Firebox to pass this VPN traffic to another endpoint, you must disable the built-in IPSec policy that sends all inbound traffic to the Firebox. This vpn traffic needs to be passed specifically to the untrusted int of the sophos. To complicate things slightly the sophos untrusted int has several virtual IPs assigned to it to accomodate port forwarding from several public IPs on the pfsense. VPN clients can ping all these virtual IPs as well as the IP of the physical int.

VPN Passthrough is a feature that allows VPN traffic created by other endpoints to "pass through" the router. How to configure VPN Passthrough? Most of TP-Link routers enable VPN Passthrough by default. You can enable/disable this function in the router’s management webpage.

