Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Static NAT Inaccessible Through VPN Connections

I have a router cisco 836 with this features:


Version 12.2(11r)YV


CPU rev number 7

1 Ethernet interface

1 ISDN Basic Rate interface

1 ATM interface

128K bytes of NVRAM.

12288K bytes of processor board System flash (Read/Write)

2048K bytes of processor board Web flash (Read/Write)


The question is, when I apply this configuration, the router do not assume the static nat.


access-list 100 deny ip host

access-list 100 permit ip any

route-map nonat permit 10

match ip address 100

ip nat inside source static tcp 3389 213.XX.XX.XX 3389 route-map nonat


Everything seems fine but if I do show running-config, it apears:


ip nat inside source static tcp 213.XX.XX.XX route-map nonat


If the router reload, the router do not assume the nat to port 3389. It just make a static nat between public and private IP so we lost the connection to router and the customer lose the communications.

Nelson Mendes

From Portugal