[c-nsp] NAT ACL

Richard Gallagher rgallagh at cisco.com
Thu Oct 14 11:12:04 EDT 2004


Christophe,

It will check the ACL before doing the NAT:

- http://www.cisco.com/warp/public/556/5.html

HTH, Rich

On Thu, 2004-10-14 at 16:05, jcvaraillon at dolnet.gr wrote:
> 
> 
> Hi,
> 
> 
> On an Ethernet interface, I have an incoming access-list (ip access-groupe 10
> in) and I need to  put
> a nat command (ip nat inside).
> 
> I am concerned by the access-list 10.
> 
> What is the router doing first: NATing or filtering ?
> 
> Do the router filter what comes IN first and then do the NAT? In which case I
> can keep my access-list.
> 
> Do the router perfrom NAT first and then proceed with the filtering? In which
> case I have to modify my access-list.
> 
> 
> Any comments/suggestions are welcom.
> 
> Thanks
> 
> Christophe
> 
> 
> _______________________________________________
> cisco-nsp mailing list  cisco-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/



More information about the cisco-nsp mailing list