cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
344
Views
0
Helpful
2
Replies

create static nat rule cli

I need to create a static nat rule that allows outside requests to the inside interface using http. I also need to create an access rule for this. Can someone please explain and show me the command I need to use in asa 5500 firewall version 9.x?

Thanks!

1 Accepted Solution

Accepted Solutions

Jouni Forss
VIP Alumni
VIP Alumni

Hi,

Do you mean that you want to create Static NAT rule where the local IP address is the actual IP address of the ASA "inside" interface?

If so then that is not possible. You wont be able to connect to the "inside" interface through another interface even when using NAT configuration.

You would have to use VPN connection to be able to connect to the "inside" interface IP address.

Otherwise you will need to connect to the ASA with using the "outside" interface IP address.

If you meant that you want to configure Static NAT for some internal host then the configuration format would be

object network STATIC

host

nat (inside,outside) static

Hope this helps

- Jouni

View solution in original post

2 Replies 2

Jouni Forss
VIP Alumni
VIP Alumni

Hi,

Do you mean that you want to create Static NAT rule where the local IP address is the actual IP address of the ASA "inside" interface?

If so then that is not possible. You wont be able to connect to the "inside" interface through another interface even when using NAT configuration.

You would have to use VPN connection to be able to connect to the "inside" interface IP address.

Otherwise you will need to connect to the ASA with using the "outside" interface IP address.

If you meant that you want to configure Static NAT for some internal host then the configuration format would be

object network STATIC

host

nat (inside,outside) static

Hope this helps

- Jouni

Thanks, that did it.

object network STATIC

host

nat (inside,outside) static

Review Cisco Networking products for a $25 gift card