Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Is it possible to do a Source NAT on a Cisco ASA Firewall?

Status
Not open for further replies.

boodox

MIS
Sep 24, 2002
54
GB
Hi All,

I'm looking for some advise on NAT. I've got a requirement to do a Source NAT from an internal address to an external address on a Cisco ASA firewall. Hopefully the flow below explains

Source-->Firewall*-->Switch-->Router-->Router-->Destination
(*Source NAT)

I know you can do Source NAT on Nokias but I'm struggling to find a way of doing it on a Cisco ASA. First of all,

* Is it possible? From what I've read, it's not.
* If not, is there a workaround by which I can do the NAT on the switch or the router on the other side of the firewall?

I'd REALLY appreciate any advise.

Thanks in advance
bdx
 
Please help me understand your definition of Source NAT. Soruce NAT in some circles is actually a high availability feature and in some it is simply just NAT/masquerading.

I hate all Uppercase... I don't want my groups to seem angry at me all the time! =)
- ColdFlame (vbscript forum)
 
Hi unclerico,

My mistake. I needed to do a destination NAT and NOT a source NAT to a single address so apologies for misleading.

As it turns out, the requirement for a single destination NAT wasn't possible because it was causing load-balancing problems for the third party who we were trying to connect to.

We ended up doing normal one-to-one NAT's (which is what I'd originally wanted) and it works fine.

Thanks for the offer of help and apologies again for any confusion.

Thanks
bdx
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top