I am trying to use a static adress translation for the local net 192.168.117.0 to net 172.18.18.0, but i only want to use this translation when the destination are net 192.0.0.0 (this is a net beyond a vpn connection). i can use this configuration below, but then the global pat doesn´t work so the users on the local net cannot connect to Internet.
access-list 101 permit ip 172.18.18.0 255.255.255.0 192.0.0.0 255.255.255.0
I can see the translation in log viewer (Built static translaton from inside: 192.168.117.100 to outside(test): 172.18.18.100) but the packet are not going in to the vpn tunnel any more, to destination 192.0.0.0. Here is the configuration Pix 501.
access-list inside_access_in permit ip any any
access-list outside_access_in permit icmp any any echo-reply
access-list test permit ip 192.168.117.0 255.255.255.0 192.0.0.0 255.255.255.0
global (outside) 15 interface
nat (inside) 15 0.0.0.0 0.0.0.0 0 0
static (inside,outside) 172.18.18.0 access-list test 0 0
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...