Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

firewall nat ports being used

This is a general query & doesnt the error seen is not of a cisco firewall. this is from a mcafee firewall which quite often gives "all nat ports being used" message.

Not certain what it means & if it has impact on overall performance of the firewall.

Appreciate suggestions.

Thanks!

2 REPLIES
Hall of Fame Super Blue

Re: firewall nat ports being used

Sunny

It may be to do with a NAT overload ie. where you translate multiple private IP addresses to one public IP address.

With this setup the firewall doesn't just translate the IP address but also has to modify the port number. Because there is a finite number of ports ie. 1 - 65535 it may be that the firewall has run out of available ports ie. there are too many private addresses that need translating for the available ports.

Note that not all of the 1 - 65535 port numbers are available to the firewall when doing NAT overload.

Jon

New Member

Re: firewall nat ports being used

Thanks Jon. This one involves a one on one NAT description for an application server to be made accessible from internet.

Any indications on how this could be the case.

114
Views
0
Helpful
2
Replies