09-15-2013 07:44 AM - edited 03-07-2019 03:28 PM
hi ,
assume i have pc with ip 1.1.1.1
note that pc can reach internet with ip 1.1.1.1
connected with router as below :
pc----------------router-------------------switch----------------internet
on router , i want to set condition ,
if ping on 8.8.8.8 failed from router , i want router to nat the ip 1.1.1.1 to ip 2.2.2.2
how to do that ??????
regards
09-15-2013 08:07 AM
Hi,
1.1.1.1 and 2.2.2.2 are both public IP segments. Usually NAT is done for private IP segments.
Here is good doc to read on conditional NAT:
http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/nat_static.html#wp1074755
HTT
09-15-2013 09:43 AM
hi , im just getting ips 1.1.1.1 2.2.2.2 as an exapmles ,
i just ask about conditional nat ,
thanks alot , i will read it and discuss with u
regards
09-15-2013 09:48 AM
im looking about creating ip sla and define icmp echo time out , and when this condition occurs i want to perform the natting ,
i searched but ddint find any about my goal !
regards
09-15-2013 10:00 AM
Hi.
Is the out interface the same even if ping would fail?
Let me know
Regards
Carlo
Sent from Cisco Technical Support iPhone App
09-15-2013 10:13 AM
hi ,
to make more explanation ,
i have two isp gateways using bgp protocol ,
here is simple topology
lan network=======routerx========switch=======gateway router1==========isp1
|
|
|
isp2
now on lan network i have assume i have two subnets
subnet 1 advertised to isp1 assume 1.1.1.0/24
subnet 2 advertised to sip2 2.2.2.0/24
note that on
gateway router1
im performing route map so that subnet 1 go to isp1 and subnet 2 go to isp2
===============================================
now lets go to my issue ,
assume that isp1 failed , or " ping from src ip of 1.1.1.1 to 8.8.8.8" failed !!!!
i want some hosts of subnet 1.1.1.0/24 to go internet from isp2 ,
this is my clear issue
i mean that off my work will be on routerx
how connect nating with ip sla ???
regards
09-15-2013 10:45 AM
Hi.
You can try to work with next-hop availability based on ip sla.
Please give a look to this doc
https://supportforums.cisco.com/docs/DOC-8313
HTH
Regards.
Carlo
Please rate all helpful posts
"The more you help the more you learn"
09-15-2013 10:48 AM
hi ,
i know about route map and its integration with next hop availability but i need natting in this case .
each subnet is only advertied to its isp ,
regards
09-15-2013 11:41 AM
Hi.
If you read that doc you can apply nat based on next hop reachability even using ip sla.
If the first route map does not satisfy the condition , because of track object down, you can apply nat based on second route map configuring
ip nat pool ISP-B 2.2.2.2 2.2.2.2 netmask 255.255.255.252
ip nat inside source route-map ispb pool ISP-B overload.
HTH
Regards
Carlo
Sent from Cisco Technical Support iPhone App
09-21-2013 07:02 AM
hi all ,
plz pay attention to my config and tell me why it always doing nat ??!!!
i mean it always doing nat whatever the track was up or down ,
here is my config below :
lan====>ip nat inside=routerx==>ip nat outside======switch=======gateway router1==========isp1
|
|
|
isp2
ip nat pool tod x.x.111.1 x.x.111.30 netmask 255.255.255.224
ip nat inside source route-map natprtg pool tod
ip access-list extended natprtg
permit ip host zzzzz any
======================================================
Gateway7600#sh route-map
route-map natprtg, permit, sequence 10
Match clauses:
ip address (access-lists): natprtg
Set clauses:
ip next-hop verify-availability 172.30.40.1 50 track 5 [up]
Policy routing matches: 86750 packets, 11236147 bytes
========================================================
sh ip nat translations===> natting found
now when track is down :
Gateway7600#sh route-map
route-map natprtg, permit, sequence 10
Match clauses:
ip address (access-lists): natprtg
Set clauses:
ip next-hop verify-availability 172.30.40.1 50 track 5 [down]
Policy routing matches: 86750 packets, 11236147 bytes
when i type show ip nat trans natting still found !!!!???????/
why ??????/
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide