Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements
Step-by-Step Configuration and Troubleshooting Best Practices for the NGFW, NGIPS and AMP Technologies A Visual Guide to the Cisco Firepower Threat Defense (FTD)
Community Member

NAT through ASA

Can any explain mne please, whey having this config:

global (outside-Baku) 1 interface

global (outside-Ganja) 2 interface

global (remote-access) 3 interface

nat (remote-access) 3 access-list nat-vpn-internet

nat (inside-Bct) 2 access-list nat-ganja

nat (inside-Bct) 1 access-list nat

I have the following nat translation:

gyd-asa# sh nat remote-access outside-baku

match ip remote-access 192.168.121.0 255.255.255.0 outside-Baku any

dynamic translation to pool 3 (No matching global)

translate_hits = 214, untranslate_hits = 0

The same is for outside-ganja interface. But, there is no translation from remote-access to inside-BCT. Isn't it weird? Thank you in advance!

1 REPLY
Cisco Employee

Re: NAT through ASA

Where is the global (outside_Baku) 3 ?

Where is the global (outside-Ganja) 3 ?

nat/global IDs should match.

http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/cfgnat.html#wp1042553

What you have configured are:

inside_Bct --> Outside-Baku

Inside-Bct --> outside-Ganja

137
Views
0
Helpful
1
Replies
CreatePlease to create content