<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic CSM Source Nating in Application Networking</title>
    <link>https://community.cisco.com/t5/application-networking/csm-source-nating/m-p/326173#M5331</link>
    <description>&lt;P&gt;Hello, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'll looking for some info on how to source nat inter site requests on the CSM. At present I have two servers on different layers of my platform.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Server A with address 192.168.1.1 &amp;amp; server B with address 192.168.2.1 both are connected to different router below the CSM and can route via a firewall on their private addresses.  &lt;/P&gt;&lt;P&gt;The application on server A has to talk to server B on 155.y.y.7  public address. &lt;/P&gt;&lt;P&gt;The issue is that the source of serverA is not getting nated so the return traffic is not going back via CSM but being routed back to firewall with the two private addresses thus we are getting out of sync packets.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Existing Config on CSM&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static nat virtual&lt;/P&gt;&lt;P&gt;real 192.168.1.1 &lt;/P&gt;&lt;P&gt;real 192.168.2.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;serverfarm serverA &lt;/P&gt;&lt;P&gt;  no nat client&lt;/P&gt;&lt;P&gt;  real 192.168.1.1&lt;/P&gt;&lt;P&gt;   inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;vserver serverA-vip&lt;/P&gt;&lt;P&gt;  virtual 155.x.x.1 tcp 0&lt;/P&gt;&lt;P&gt;  serverfarm serverA &lt;/P&gt;&lt;P&gt;  persistent rebalance&lt;/P&gt;&lt;P&gt;  inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; serverfarm serviceB&lt;/P&gt;&lt;P&gt;  nat server &lt;/P&gt;&lt;P&gt;  no nat client&lt;/P&gt;&lt;P&gt;  real 192.168.2.1&lt;/P&gt;&lt;P&gt;   inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;vserver serverB-vip &lt;/P&gt;&lt;P&gt;  virtual 155.y.y.7 tcp 0&lt;/P&gt;&lt;P&gt;  serverfarm serviceB&lt;/P&gt;&lt;P&gt;  persistent rebalance&lt;/P&gt;&lt;P&gt;  inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;P&gt;Charlie.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 17 Feb 2005 14:13:12 GMT</pubDate>
    <dc:creator>c.downie</dc:creator>
    <dc:date>2005-02-17T14:13:12Z</dc:date>
    <item>
      <title>CSM Source Nating</title>
      <link>https://community.cisco.com/t5/application-networking/csm-source-nating/m-p/326173#M5331</link>
      <description>&lt;P&gt;Hello, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'll looking for some info on how to source nat inter site requests on the CSM. At present I have two servers on different layers of my platform.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Server A with address 192.168.1.1 &amp;amp; server B with address 192.168.2.1 both are connected to different router below the CSM and can route via a firewall on their private addresses.  &lt;/P&gt;&lt;P&gt;The application on server A has to talk to server B on 155.y.y.7  public address. &lt;/P&gt;&lt;P&gt;The issue is that the source of serverA is not getting nated so the return traffic is not going back via CSM but being routed back to firewall with the two private addresses thus we are getting out of sync packets.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Existing Config on CSM&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static nat virtual&lt;/P&gt;&lt;P&gt;real 192.168.1.1 &lt;/P&gt;&lt;P&gt;real 192.168.2.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;serverfarm serverA &lt;/P&gt;&lt;P&gt;  no nat client&lt;/P&gt;&lt;P&gt;  real 192.168.1.1&lt;/P&gt;&lt;P&gt;   inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;vserver serverA-vip&lt;/P&gt;&lt;P&gt;  virtual 155.x.x.1 tcp 0&lt;/P&gt;&lt;P&gt;  serverfarm serverA &lt;/P&gt;&lt;P&gt;  persistent rebalance&lt;/P&gt;&lt;P&gt;  inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; serverfarm serviceB&lt;/P&gt;&lt;P&gt;  nat server &lt;/P&gt;&lt;P&gt;  no nat client&lt;/P&gt;&lt;P&gt;  real 192.168.2.1&lt;/P&gt;&lt;P&gt;   inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;vserver serverB-vip &lt;/P&gt;&lt;P&gt;  virtual 155.y.y.7 tcp 0&lt;/P&gt;&lt;P&gt;  serverfarm serviceB&lt;/P&gt;&lt;P&gt;  persistent rebalance&lt;/P&gt;&lt;P&gt;  inservice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;P&gt;Charlie.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Feb 2005 14:13:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/csm-source-nating/m-p/326173#M5331</guid>
      <dc:creator>c.downie</dc:creator>
      <dc:date>2005-02-17T14:13:12Z</dc:date>
    </item>
    <item>
      <title>Re: CSM Source Nating</title>
      <link>https://community.cisco.com/t5/application-networking/csm-source-nating/m-p/326174#M5332</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Charlie,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;as you can see in your config, you have 'no nat client'.&lt;/P&gt;&lt;P&gt;This is the source nat.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All you have to do is create a pool of address and then  assign it to the serverfarm with 'nat client &lt;POOL-NAME&gt;'.&lt;/POOL-NAME&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This will nat all traffic from any client.&lt;/P&gt;&lt;P&gt;If you want to avoid this, you need to create a 2nd serverfarm that would be used exclusively when connection is made from server A.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if you need anything else.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Gilles.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Feb 2005 14:43:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/csm-source-nating/m-p/326174#M5332</guid>
      <dc:creator>Gilles Dufour</dc:creator>
      <dc:date>2005-02-17T14:43:21Z</dc:date>
    </item>
  </channel>
</rss>

