Some NAT questions PIX/ASA

Unanswered Question
Jan 10th, 2008
User Badges:


I want to NAT an inside local subnet ( to inside global ( when going to but I need the hosts to keep the same address after would I accomplish this?

global (inside) 8 netmask

nat (inside) 8 access-list nat1

access-list nat1 permit ip

I'm not sure how to keep the same host address.

Also, would this work for incoming traffic translations also, or is this just for outgoing traffic?

Any help would be much appreciated!!



  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 3 (1 ratings)
srue Thu, 01/10/2008 - 07:11
User Badges:
  • Blue, 1500 points or more

change "global (inside) 8..." to "global (outside) 8..."

everything else looks good. however, this is only for outgoing NAT. This won't allow incoming connections (aside from return traffic).

jigsaw2026 Fri, 01/11/2008 - 04:11
User Badges:


Thank you for getting back to me. Actually I finally figured that what I needed was a static entry with an ACL, as this also works for incoming translations (and keeps host address the same).




This Discussion