07-24-2010 01:34 AM - edited 02-20-2020 09:42 PM
if i apply acl on some router a, and i block one ip from internal network, then i use nat on that router,nat will change that ip to public ip ,then how can i block that using my previous access list?
07-25-2010 11:59 PM
if i apply acl on some router a, and i block one ip from internal network, then i use nat on that router,nat will change that ip to public ip ,then how can i block that using my previous access list?
Hi,
If you apply acl in local lan interface for private ip if the source match for deny then it will not go for internet traffic for natting.
Hope to Help !!
Ganesh.H
Remember to rate the helpful post
07-26-2010 07:25 AM
If you know what the internal private ip will be translated to you can create a new ACL for the inbound traffic applied on the outside interface. But that will work if the internal ip is natted and if it is not overload PATted to the global.
PK
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide