ASA5505 NAT/Translation

Unanswered Question
Jan 14th, 2009
User Badges:

As a packet travels through the firewall (inside => outside) is it possible to NAT the source IP (with the outside interface of the FW) and translate the destination IP? Also, the destination IP (translated IP) would need a static route in the firewall to be reachable.


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Jon Marshall Wed, 01/14/2009 - 10:57
User Badges:
  • Super Blue, 32500 points or more
  • Hall of Fame,

    Founding Member

  • Cisco Designated VIP,

    2017 LAN, WAN




you want to present the destination as to your inside client of

nat (inside) 1

global (outside) 1 interface

the above NAT's your client

static (outside,inside) netmask

No you don't need a route to the real destination but you would need to ensure any traffic destined for from the inside ended up at inside interface of your firewall.



This Discussion