[c-nsp] PAT on Interface

Tseveendorj Ochirlantuu tseveendorj at gmail.com
Sun Nov 27 23:01:26 EST 2016


Hello,

I'm trying to PAT if source come from OUTSIDE interface to T interface
address and also from OUTSIDE to OUTSIDE interface address

OUTSIDE and T interface have same security-level 0
my ASA using 9.2 software and IPsec VPN configured


First one is NAT exempt
nat (inside,outside) source static obj-SrcNet obj-SrcNet destination static
obj-amzn obj-amzn

This is my configured NAT
! I think below NAT is  if the packet from amzn-infra to zmsbanksms
destination then it will NAT and overload on outside interface address.
nat (outside,outside) source dynamic amzn-infra interface destination
static zmsbanksms zmsbanksms

! but i don't know how if the packet from amzn-infra to destination t
object then it should NAT and overload on t interface address
nat (outside,t) source dynamic amzn-infra interface destination static t t

How do I do ? Is there any configuration issue on NAT ?


More information about the cisco-nsp mailing list