    Site-to-Site VPN help


      At work we want to connect a remote user's home to our network using a Site-to-Site VPN. The primary reasoning being to allow VoIP traffic to the user's home IP phone.


      The plan is to place a PIX 501 firewall at the user's home to negotiate the VPN process with our existing ASA 5510.


      The user has a typical Comcast connection.


      I guess my question would be is this possible even though we will not have a public IP address to identify the remote PIX? I'm thinking the NAT involved with the existing home router will muck things up for us when trying to communicate between the PIX. Also, since it is a home Internet connection that means there is no fixed public IP address. Won't this cause problems too?