cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
248
Views
0
Helpful
1
Replies

NAT through ASA

fgasimzade
Level 4
Level 4

Can any explain mne please, whey having this config:

global (outside-Baku) 1 interface

global (outside-Ganja) 2 interface

global (remote-access) 3 interface

nat (remote-access) 3 access-list nat-vpn-internet

nat (inside-Bct) 2 access-list nat-ganja

nat (inside-Bct) 1 access-list nat

I have the following nat translation:

gyd-asa# sh nat remote-access outside-baku

match ip remote-access 192.168.121.0 255.255.255.0 outside-Baku any

dynamic translation to pool 3 (No matching global)

translate_hits = 214, untranslate_hits = 0

The same is for outside-ganja interface. But, there is no translation from remote-access to inside-BCT. Isn't it weird? Thank you in advance!

1 Reply 1

Kureli Sankar
Cisco Employee
Cisco Employee

Where is the global (outside_Baku) 3 ?

Where is the global (outside-Ganja) 3 ?

nat/global IDs should match.

http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/cfgnat.html#wp1042553

What you have configured are:

inside_Bct --> Outside-Baku

Inside-Bct --> outside-Ganja

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card