[c-nsp] Don't NAT a Subset of Traffic

Sridhar Ayengar ploopster at gmail.com
Sun Aug 22 06:06:47 EDT 2010


Ziv Leyes wrote:
> Where do you want to pass the traffic without NAT? to your own public network? What else do you have connected there? Some server?
> I can suggest you either create a NAT pool  of a single public IP from your range, and  let it access the other public IPs in the same range.
> OTOH, if all your devices are on the same network, why don't you just access them via the local IPs instead the public ones?

Actually, I just figured it out.  I neglected to deny the traffic into 
the private network from the public network.  It's working now.  Thanks.

Peace...  Sridhar


More information about the cisco-nsp mailing list