Help with NAT in Cisco877 / ASA5505

Unanswered Question
Sep 19th, 2007

hi all

i'm connected usin this architecture :

Internet--->Cisco 877---->ASA5505---->LAN

i connect to internet via ADSL using a static IP:

Router Cisco 877 :

- Inside :

- outside : Dialer0 (

ASA5505 :

- Inside :

- outside :

i would like to permit internet, Mail, FTP into my local LAN users.

until yet i'm connected to internet using default configuration for both ASA and cisco877. i can send mails with my exchange server situated in the LAN, but i can't receive mails !. i think i need to use NAT....but where ? and how to permit my needs.

Thanks and Regards.

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
aghaznavi Tue, 09/25/2007 - 09:04

For dynamic NAT and PAT, you first configure a nat command identifying the real addresses on a given interface that you want to translate. Then you configure a separate global command to specify the mapped addresses when exiting another interface (in the case of PAT, this is one address). Each nat command matches a global command by comparing the NAT ID, a number that you assign to each command.

mannschaft Wed, 09/26/2007 - 06:28


thanks aghaznavi; but this is not resolving my issue.

always using the same architecture :

internet----> Cisco 877----> ASA5505---->LAN

i have configured VPN server on Cisco 877 for some remote users.i used a basic configuration with Radius Authentification, but when testing the config it's not working. i think that the ASA with a basic config and no ACL implemented is bloking the authentication with my Active Directory.

someone have the same configuration or can help me to make remote users logging to my LAN using VPN ???



This Discussion