Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

SA 520: connecting different public ip's to different private ip's


I have Cisco SA 520 recieving http-trafic to different public ip addressses needing to be forwarded to different private ip's. I have tried to use "Networking-> Optional port-> Protocol Bindings" but no success.


www.pages at wan public ip -> port 80 -> forward to private ip

www pages at wan public ip 123.123.123 4 -> port 80 -> forward to private ip

Protocol binding configuration:

service = http;  local gateway = dedicated lan; source network start single address=; Destination network Start Single address;

I have made the firewall rules.

SA 520's dedicated wan address is gw

I have only Dedicated wan in use. Firmware version is 1.1.21


New Member

Re: SA 520: connecting different public ip's to different privat

It looks like you are trying to do 1:1 NATing.

With SA500, you can achieve tihs by using IP Aliasing and then defining the mapping under IPv4 Rules.

Under the WAN > IP Alias, you create the IP aliasing to associates your public IP addresses ( and .4) with your WAN interface.

Then under Firewall > IPv4 Rules, define a firewall rules for insecure zone to secure zone direction and to allow http (80) servcie.

To map the priviate IP addresses ( and .62), under the "Destination NAT settings" enter the private IP address in the Internal IP address field.

In the external IP address field, select the IP alias (which is your external IP address) you define earlier.

The SA500 admin guide below under "Configuring a Firewall Rule for Inbound Traffic" has some more information about the meaning of the field.

Hopefully this helps!



CreatePlease login to create content