Hello I want to migrate an ASA 5510 8.3(2) to an ASA 5515 9.1. I want to know if there are some changes in NAT syntax, for example I have a static nat define in the old asa like this:
nat (inside,outside) source static object network object network destination static object network object network
I want to know before I start the migration if there is some changes in the syntax.
Also I have an ACL define in the old ASA this way:
access-list name extended permit ip host x.x.x.x host x.x.x.x
Thanks for your advice beforehand
Yes the NAT syntax has all changed. There are dozens of articles on this. I recommend in particular Jouni Forss' writeup here:
There is also a very good article at tunnelsup.com:
Also see the conversion tool that is available there.
Access-lists now use the real IP in the syntax for hosts that have static NAT entires. 8.2 and earlier used the public IP address.