cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
362
Views
0
Helpful
2
Replies

ASA NAT Question

ajay_dand
Level 1
Level 1

Hi,

I am facing this scenario.

Mail Server on LAN (behind ASA5510) is Pri.IP.Add.1 with SMTP on port 25.

This is to be NATed to Pub.IP.Add.1 from ISP 1 on port 25.

Also to be NATed to Pub.IP.Add.2 from ISP 2 on port 26 (with port forwarding).

Can anybody guide as to how this can be achieved on ASA v7.2?

Thanks in Advance.

2 Replies 2

m.sir
Level 7
Level 7

If I understand correctly we talk about direction outside-->dmz

so scenario should be following

static (dmz,outside) tcp Pub.IP.Add.1 25 Pri.IP.Add.1 25 netmask 255.255.255.255

static (dmz,outside) tcp Pub.IP.Add.2 26 Pri.IP.Add.1 25 netmask 255.255.255.255

You need also modify the outside ACL

M.

hi M.Sir,

Tried the suggestion. However it doesn't work. It gives me error, when I try creating the second rule, stating the static translation to port 25 already exists. Any other suggestions?

Thanks again.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card