Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Cisco ASA 5510

I'm rolling out an ASA 5510, and I'm having some problems.

For reference, here's a diagram of what I'm trying to do:

All of the trusted networks 10.* have nat-exeption rules between eachother. 10.1.1.* and 10.1.10.* are using Pat on the external interface using the interface IP. They are able to access hosts on the internet without any problems.

My problem is that when I try to do a one-to-one nat from say to an outside, public IP, it doesnt work. What's interesting, however, is that I can plug a laptop into the outside interface, with an address in the range of that outside interface, and it can access the host on the natted IP of 12.*.*.15.

What's complicating the issue is that I also have the old Watchguard Firebox in place. The firebox and the ASA are sharing a dumb switch that is uplinked to our ISP-managed router. Still, I have tried disconnecting this completely with no luck, and am also able to connect via VPN to the outside interface on the ASA without any problem...

Any idea what might be going wrong here? I'll upload my config shortly...

New Member

Re: Cisco ASA 5510

what do you meantha the one-to-one nat "doesn't work" because in the next statement you say that it does work. Got the config?