I am working on deploying an ASA 5520 with 8.3. The issue I am having is pretty simple. What is the best way for me to allow traffic to communicate between my Inside network and my DMZ in regards to NAT.
Please keep in mind that 8.3 changes things with NAT commands.
Thanks for your help
By default, ASA 8.3 does not enforce nat-control (the command in 8.2 and lower that forced a nat translation to be required in order for the connection to be successful)
If you had nat-control enabled before you migrated, then you will have a nat-control equivalent configuration. You can see the configuration that it makes here.
So in theory, if your ASA is setup correctly, you shouldn't need a nat statement.
However, if you are having issues, I suggest identity nat, its easy to configure and often solves most issues.
Below is an example where I translate 192.168.1.0 to 192.168.1.0 when it goes to the dmz
obj network insideNetwork
subnet subnet 192.168.1.0 255.255.255.0
object network insideDmz
subnet 192.168.1.0 255.255.255.0
nat (inside,dmz) static insideNetwork