cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
273
Views
0
Helpful
2
Replies

firewall nat ports being used

suthomas1
Level 6
Level 6

This is a general query & doesnt the error seen is not of a cisco firewall. this is from a mcafee firewall which quite often gives "all nat ports being used" message.

Not certain what it means & if it has impact on overall performance of the firewall.

Appreciate suggestions.

Thanks!

2 Replies 2

Jon Marshall
Hall of Fame
Hall of Fame

Sunny

It may be to do with a NAT overload ie. where you translate multiple private IP addresses to one public IP address.

With this setup the firewall doesn't just translate the IP address but also has to modify the port number. Because there is a finite number of ports ie. 1 - 65535 it may be that the firewall has run out of available ports ie. there are too many private addresses that need translating for the available ports.

Note that not all of the 1 - 65535 port numbers are available to the firewall when doing NAT overload.

Jon

Thanks Jon. This one involves a one on one NAT description for an application server to be made accessible from internet.

Any indications on how this could be the case.

Review Cisco Networking products for a $25 gift card