Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

ASA5505 NAT/Translation

As a packet travels through the firewall (inside => outside) is it possible to NAT the source IP (with the outside interface of the FW) and translate the destination IP? Also, the destination IP (translated IP) would need a static route in the firewall to be reachable.

Thanks

2 REPLIES
Hall of Fame Super Blue

Re: ASA5505 NAT/Translation

Michael

Source 192.168.5.1

destination 212.17.12.1

you want to present the destination as 10.5.1.1 to your inside client of 192.168.5.1

nat (inside) 1 192.168.5.1 255.255.255.255

global (outside) 1 interface

the above NAT's your client

static (outside,inside) 10.5.1.1 212.17.12.1 netmask 255.255.255.255

No you don't need a route to the real destination but you would need to ensure any traffic destined for 10.5.1.1 from the inside ended up at inside interface of your firewall.

Jon

New Member

Re: ASA5505 NAT/Translation

Thanks Jon I will give this a try.

286
Views
0
Helpful
2
Replies