cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
387
Views
3
Helpful
1
Replies

NAT-T on PIX

somanabich
Level 1
Level 1

I have the following network setup.

PIX1---ADSLRtr1---Internet----ADSLRtr2---PIX2

ADLSRtr1 has no NAT, so outside interface of the PIX1 is a real IP Address.

ADSLRtr2 has NAT, so outside interface of PIX2 is 10.x.x.x IP Address.

I want to know if NAT-T is the solution here? If so do I need it defined on both PIX'es?

PIX OS is 6.3 so NAT-T is enabled.

Also, can I get IPSec Debug messages sent to a syslog server, so that I can see what's going on? Also which address do I use for the peer address on PIX2 which is natted.

Any feedback would be great.

Regards

Nik Mihelioudakis

1 Reply 1

Kamal Malhotra
Cisco Employee
Cisco Employee

Hi Nik,

Yes NAT-T is the solution and you need it configured on both the PIXs.

You can configure the syslog on the PIX :

http://www.cisco.com/en/US/customer/products/sw/secursw/ps2120/products_command_reference_chapter09186a00801727a9.html#wp1028090

HTH,

Please rate if helps,

Regards,

Kamal

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card