cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
857
Views
0
Helpful
1
Replies

Destination NAT and Source Nat

Krasnoperov
Level 1
Level 1

Hi, my network have mobile users with notebooks, and they use public smtp IP address, when they out of office, without VPN ASA works well, but when they comes back in office they should change SMTP IP back to private. I know that my task could be solved via DNS service, but for some reason I should do Dnat and Snat on ASA, please answer me, Is it posible? (Because ASA have to nat and dnat on same interface Insidem and back this traffic to Inside again

)Please see this picture, I draw my task there. Thanks!

1 Reply 1

rizwanr74
Level 7
Level 7

Yes it is posible through policy nat.

here is the example.

access−list policy−nat extended permit ip host 10.1.1.20 host 5.5.5.5

global (dmz) 2  192.168.2.2

nat (inside) 2 access-list policy−nat

Hope that helps.

thanks

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card