cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
181
Views
0
Helpful
1
Replies

How to apply ACL to NAT

rmaslanka
Level 1
Level 1

When using a command like:

ip nat inside source static tcp 10.X.X.X 80 66.X.X.X 80 extendable

to route traffic from the internet to an internal web server, how can I / where do I apply an ACL to allow web traffic from only specific hosts / ranges on the internet?

1 Reply 1

thisisshanky
Level 11
Level 11

You can use route-maps which match those access-lists with the nat commands. But you need latest IOS, in the range of 12.2(4)T for a minimum.

Check this link.

http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122newft/122t/122t4/ftnatrt.htm

Sankar Nair
UC Solutions Architect
Pacific Northwest | CDW
CCIE Collaboration #17135 Emeritus