Destination NAT and Source Nat

Unanswered Question
Jul 4th, 2012
User Badges:

Hi, my network have mobile users with notebooks, and they use public smtp IP address, when they out of office, without VPN ASA works well, but when they comes back in office they should change SMTP IP back to private. I know that my task could be solved via DNS service, but for some reason I should do Dnat and Snat on ASA, please answer me, Is it posible? (Because ASA have to nat and dnat on same interface Insidem and back this traffic to Inside again

)Please see this picture, I draw my task there. Thanks!

Attachment: 
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
rizwanr74 Fri, 07/06/2012 - 13:07
User Badges:
  • Gold, 750 points or more

Yes it is posible through policy nat.


here is the example.


access−list policy−nat extended permit ip host 10.1.1.20 host 5.5.5.5



global (dmz) 2  192.168.2.2

nat (inside) 2 access-list policy−nat


Hope that helps.


thanks

Actions

This Discussion

Related Content