<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASR 1004 static NAT for Public port 6000 problem in Routing and SD-WAN</title>
    <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272889#M219087</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hello Mike,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pelease take reference for the following output, thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip access-list extended outside_in&lt;/P&gt;&lt;P&gt; permit tcp any host 59.6.8.6 eq 6000&lt;/P&gt;&lt;P&gt; permit tcp any any established&lt;/P&gt;&lt;P&gt; permit ip any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;router# sh access-list outside_in&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;Extended IP access list outside_in&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10 permit tcp any host 59.6.8.6 eq 6000 (2467 matches)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 20 permit tcp any any established (8745 matches)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 30 permit ip any any (82562 matches)&lt;/P&gt;&lt;P&gt;router#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;router#show ip nat translations inside 10.10.0.36&lt;/P&gt;&lt;P&gt;Pro&amp;nbsp; Inside global&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inside local&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Outside local&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Outside global&lt;/P&gt;&lt;P&gt;udp&amp;nbsp; 59.6.8.6:60000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:89&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:60000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:89&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:55000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:21&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 175.160.118.126:28448 175.160.118.126:28448&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 58.83.254.181:44096&amp;nbsp;&amp;nbsp; 58.83.254.181:44096&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 175.160.118.126:7313&amp;nbsp; 175.160.118.126:7313&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:10618&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:54216&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 124.115.0.185:5002&amp;nbsp;&amp;nbsp;&amp;nbsp; 124.115.0.185:5002&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13091&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13091&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 58.83.254.181:44111&amp;nbsp;&amp;nbsp; 58.83.254.181:44111&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13105&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13105&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12748&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12748&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13616&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13616&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 175.160.118.126:7602&amp;nbsp; 175.160.118.126:7602&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12348&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12348&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13016&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13016&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12693&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12693&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13333&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13333&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13597&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13597&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.72:12735&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.72:12735&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 175.169.65.101:1493&amp;nbsp;&amp;nbsp; 175.169.65.101:1493&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:14060&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:14060&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12749&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12749&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12337&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12337&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:14219&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:14219&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 175.169.65.101:2211&amp;nbsp;&amp;nbsp; 175.169.65.101:2211&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 58.83.254.181:44110&amp;nbsp;&amp;nbsp; 58.83.254.181:44110&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;router#debug ip nat&lt;/P&gt;&lt;P&gt;router#debug ip nat ?&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;lt;1-99&amp;gt;&amp;nbsp; Access list forced&lt;/P&gt;&lt;P&gt;&amp;nbsp; WORD&amp;nbsp;&amp;nbsp;&amp;nbsp; Access list name&lt;/P&gt;&lt;P&gt;&amp;nbsp; ha&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; High Availability debugging&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;router#debug ip nat &lt;/P&gt;&lt;P&gt;% Incomplete command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;router#&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 19 Jul 2013 13:43:39 GMT</pubDate>
    <dc:creator>oracat777</dc:creator>
    <dc:date>2013-07-19T13:43:39Z</dc:date>
    <item>
      <title>ASR 1004 static NAT for Public port 6000 problem</title>
      <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272880#M219078</link>
      <description>&lt;P&gt;hello all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I configured static NAT on an ASR 1004 with the following command,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip nat inside source static tcp 10.10.0.36 5000 59.16.18.17 6000 extendable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it is OT system installed in 10.10.0.36, it can works well when we use it via internal network via the internal IP address.&lt;/P&gt;&lt;P&gt;but when we use it from Internet, the file upload function do not work, and if I change the public NATed port from 6000 to 56000, the file upload function works well.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I guess maybe TCP port 6000 is received by CISCO or RFC, but I can not find the cue to proof, could you help me to explain or help me to try to solve it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yu.&lt;/P&gt;</description>
      <pubDate>Tue, 05 Mar 2019 04:26:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272880#M219078</guid>
      <dc:creator>oracat777</dc:creator>
      <dc:date>2019-03-05T04:26:28Z</dc:date>
    </item>
    <item>
      <title>Re:ASR 1004 static NAT for Public port 6000 problem</title>
      <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272881#M219079</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Yu,&lt;BR /&gt;Do you have an ACL or firewall on the public port that could be blocking port 6000? Also, are you using that public IP for NAT overload? If so, It's possible there was an existing PAT session on that port during your testing. Did you verify it was being injected into the translation table with 'show ip nat translation'?&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;Mike&lt;BR /&gt;&lt;BR /&gt;Sent from Cisco Technical Support Android App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 14 Jul 2013 06:21:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272881#M219079</guid>
      <dc:creator>Mike Williams</dc:creator>
      <dc:date>2013-07-14T06:21:15Z</dc:date>
    </item>
    <item>
      <title>ASR 1004 static NAT for Public port 6000 problem</title>
      <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272882#M219080</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks Mike,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;there is no acl on Router for port 6000, and no Firewall in the network.&lt;/P&gt;&lt;P&gt;I am using the NAT overload with the command such as &lt;/P&gt;&lt;P&gt;ip nat inside source static tcp 10.10.0.36 5000 59.6.8.7 6000 extendable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and I have tried to make a NAT to an new Public IP address, for example,&lt;/P&gt;&lt;P&gt;the outside interface Public ip address is 59.6.8.6, and I setup the OA system NATed Public IP address to 59.6.8.7(it is not the PAT public ip address, this IP address is the first time to use)&lt;/P&gt;&lt;P&gt;so I think this port TCP 6000 is not been used while I config the NAT, so I think maybe it is the Port tcp 6000 problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yu.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 14 Jul 2013 14:57:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272882#M219080</guid>
      <dc:creator>oracat777</dc:creator>
      <dc:date>2013-07-14T14:57:50Z</dc:date>
    </item>
    <item>
      <title>ASR 1004 static NAT for Public port 6000 problem</title>
      <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272883#M219081</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yu,&lt;/P&gt;&lt;P&gt;Can you post the output for 'show ip nat translations inside 10.10.0.36'? Can you also put an ACL on your public interface so we can see if the traffic is at least hitting the router?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip access-list extended outside_in&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;SPAN style="font-size: 10pt;"&gt;permit tcp any host &lt;PUBLIC ip=""&gt; eq 6000&lt;/PUBLIC&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; permit tcp any any established&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; permit ip any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface &lt;OUTSIDE interface=""&gt;&lt;/OUTSIDE&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ip access-group outside_in in&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would wait until you have a maintenance window to apply the ACL. Once you have it applied, please test the NAT again and post the output of the 'show access-lists outside_in' and&lt;SPAN style="font-size: 10pt;"&gt; 'show ip nat translations inside 10.10.0.36' commands.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 14 Jul 2013 15:52:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272883#M219081</guid>
      <dc:creator>Mike Williams</dc:creator>
      <dc:date>2013-07-14T15:52:31Z</dc:date>
    </item>
    <item>
      <title>ASR 1004 static NAT for Public port 6000 problem</title>
      <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272884#M219082</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Mike,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks for your kindly help, I will try your command later,&lt;/P&gt;&lt;P&gt;and in my condition,&lt;/P&gt;&lt;P&gt;the public PAT ip address in the ousite interface is 59.6.8.6(for example)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if I do the static NAT with the following command,&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;ip nat inside source static tcp 10.10.0.36 5000 &lt;SPAN style="text-decoration: underline;"&gt;&lt;STRONG&gt;59.6.8.6 6000&lt;/STRONG&gt;&lt;/SPAN&gt; extendable&lt;/P&gt;&lt;P&gt;all function can work well, &lt;STRONG style="text-decoration: underline; "&gt;except &lt;/STRONG&gt;upload an attached file.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if I do the static NAT with the following command,&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;ip nat inside source static tcp 10.10.0.36 5000 &lt;SPAN style="text-decoration: underline;"&gt;&lt;STRONG&gt;59.6.8.6 65000&lt;/STRONG&gt;&lt;/SPAN&gt; extendable&lt;/P&gt;&lt;P&gt;all function can work well, &lt;SPAN style="text-decoration: underline;"&gt;&lt;STRONG&gt;include &lt;/STRONG&gt;&lt;/SPAN&gt;upload an attached file.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if I do the static NAT with the following command,&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;ip nat inside source static tcp 10.10.0.36 5000 &lt;SPAN style="text-decoration: underline;"&gt;&lt;STRONG&gt;59.6.8.7 6000&lt;/STRONG&gt;&lt;/SPAN&gt; extendable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;all function can work well, &lt;SPAN style="text-decoration: underline;"&gt;&lt;STRONG&gt;except &lt;/STRONG&gt;&lt;/SPAN&gt;upload an attached file.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I will paste all the configuration about outside interface and ACL later, thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;BR.&lt;/P&gt;&lt;P&gt;Yu.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Jul 2013 02:26:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272884#M219082</guid>
      <dc:creator>oracat777</dc:creator>
      <dc:date>2013-07-15T02:26:08Z</dc:date>
    </item>
    <item>
      <title>ASR 1004 static NAT for Public port 6000 problem</title>
      <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272885#M219083</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; configuration for outside interface, no firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0/1/3&lt;/P&gt;&lt;P&gt; description wan &lt;/P&gt;&lt;P&gt; ip address &lt;STRONG style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;59.6.8.6 &lt;/STRONG&gt;255.255.255.248&lt;/P&gt;&lt;P&gt; ip nat outside&lt;/P&gt;&lt;P&gt; negotiation auto&lt;/P&gt;&lt;P&gt; crypto map cisco&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;end&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the "crypto map cisco" conmand is associated with an EZvpn, I have tried to remove this command from the ourside interface, and it is still can not work for uploading the attached files.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yu.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Jul 2013 03:48:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272885#M219083</guid>
      <dc:creator>oracat777</dc:creator>
      <dc:date>2013-07-15T03:48:03Z</dc:date>
    </item>
    <item>
      <title>ASR 1004 static NAT for Public port 6000 problem</title>
      <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272886#M219084</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I cannot find the root cause for this problem, is there any one can help me?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;any advise will be appreciated!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks in advance!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yu.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Jul 2013 13:06:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272886#M219084</guid>
      <dc:creator>oracat777</dc:creator>
      <dc:date>2013-07-19T13:06:03Z</dc:date>
    </item>
    <item>
      <title>ASR 1004 static NAT for Public port 6000 problem</title>
      <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272887#M219085</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can you please post the output of "show ip nat translations" when you have this configured for port 6000? Can you also debug ip nat and post the relevant debug output when trying to hit the NAT? And did you do the outside ACL test I recommended?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Jul 2013 13:18:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272887#M219085</guid>
      <dc:creator>Mike Williams</dc:creator>
      <dc:date>2013-07-19T13:18:48Z</dc:date>
    </item>
    <item>
      <title>ASR 1004 static NAT for Public port 6000 problem</title>
      <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272888#M219086</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Mike,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks for your aways kindly help, I want to provide as more as I can information, but I do not have a maintenance window for this router, I will try to do the debug and ACL now.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yu.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Jul 2013 13:24:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272888#M219086</guid>
      <dc:creator>oracat777</dc:creator>
      <dc:date>2013-07-19T13:24:31Z</dc:date>
    </item>
    <item>
      <title>ASR 1004 static NAT for Public port 6000 problem</title>
      <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272889#M219087</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hello Mike,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pelease take reference for the following output, thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip access-list extended outside_in&lt;/P&gt;&lt;P&gt; permit tcp any host 59.6.8.6 eq 6000&lt;/P&gt;&lt;P&gt; permit tcp any any established&lt;/P&gt;&lt;P&gt; permit ip any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;router# sh access-list outside_in&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;Extended IP access list outside_in&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10 permit tcp any host 59.6.8.6 eq 6000 (2467 matches)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 20 permit tcp any any established (8745 matches)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 30 permit ip any any (82562 matches)&lt;/P&gt;&lt;P&gt;router#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;router#show ip nat translations inside 10.10.0.36&lt;/P&gt;&lt;P&gt;Pro&amp;nbsp; Inside global&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inside local&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Outside local&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Outside global&lt;/P&gt;&lt;P&gt;udp&amp;nbsp; 59.6.8.6:60000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:89&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:60000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:89&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:55000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:21&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ---&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 175.160.118.126:28448 175.160.118.126:28448&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 58.83.254.181:44096&amp;nbsp;&amp;nbsp; 58.83.254.181:44096&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 175.160.118.126:7313&amp;nbsp; 175.160.118.126:7313&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:10618&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:54216&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 124.115.0.185:5002&amp;nbsp;&amp;nbsp;&amp;nbsp; 124.115.0.185:5002&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13091&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13091&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 58.83.254.181:44111&amp;nbsp;&amp;nbsp; 58.83.254.181:44111&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13105&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13105&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12748&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12748&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13616&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13616&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 175.160.118.126:7602&amp;nbsp; 175.160.118.126:7602&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12348&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12348&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13016&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13016&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12693&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12693&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13333&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13333&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13597&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:13597&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.72:12735&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.72:12735&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 175.169.65.101:1493&amp;nbsp;&amp;nbsp; 175.169.65.101:1493&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:14060&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:14060&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12749&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12749&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12337&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:12337&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:14219&amp;nbsp;&amp;nbsp;&amp;nbsp; 218.65.60.70:14219&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 175.169.65.101:2211&amp;nbsp;&amp;nbsp; 175.169.65.101:2211&lt;/P&gt;&lt;P&gt;tcp&amp;nbsp; 59.6.8.6:6000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.0.36:5000&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 58.83.254.181:44110&amp;nbsp;&amp;nbsp; 58.83.254.181:44110&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;router#debug ip nat&lt;/P&gt;&lt;P&gt;router#debug ip nat ?&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;lt;1-99&amp;gt;&amp;nbsp; Access list forced&lt;/P&gt;&lt;P&gt;&amp;nbsp; WORD&amp;nbsp;&amp;nbsp;&amp;nbsp; Access list name&lt;/P&gt;&lt;P&gt;&amp;nbsp; ha&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; High Availability debugging&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;router#debug ip nat &lt;/P&gt;&lt;P&gt;% Incomplete command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;router#&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Jul 2013 13:43:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272889#M219087</guid>
      <dc:creator>oracat777</dc:creator>
      <dc:date>2013-07-19T13:43:39Z</dc:date>
    </item>
    <item>
      <title>ASR 1004 static NAT for Public port 6000 problem</title>
      <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272890#M219088</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That output indicates to me that it is translating the port correctly and creating NAT sessions. The ACL shows me the requests are hitting the router. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you be a little more specific about the issue you are having. As far as I can tell, this appears to be an application problem and not a network/NAT problem.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Jul 2013 13:53:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272890#M219088</guid>
      <dc:creator>Mike Williams</dc:creator>
      <dc:date>2013-07-19T13:53:19Z</dc:date>
    </item>
    <item>
      <title>ASR 1004 static NAT for Public port 6000 problem</title>
      <link>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272891#M219089</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks for your result for the debug, I really appreciate it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;please let me try to say the issue more detail.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;there is an OA system(it is a B/S systems, we access to it via browser &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://10.10.0.36:5000"&gt;http://10.10.0.36:5000&lt;/A&gt;&lt;SPAN&gt;) in the company IT room, it provide some functions, for example news and upload files and so on.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;everyone in the company internal network can access the OA system with its internal IP address, all functions works well.&lt;/P&gt;&lt;P&gt;we have made a static port NAT from 10.10.0.36:5000 to 59.6.8.6:6000(59.6.8.6 is the IP address of WAN interface)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;everyone in the public INTERNET now can access to the OA system with is Public IP address(&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://59.6.8.6:6000"&gt;http://59.6.8.6:6000&lt;/A&gt;&lt;SPAN&gt;), all functions can work well, &lt;/SPAN&gt;&lt;STRONG&gt;except upload files.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;then, I changed the static port NAT and make it maped to port 65000 of the WAN ip address(from 10.10.0.36:5000 to 59.6.8.6:65000).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;everyone in the public INTERNET now can access to the OA system with is Public IP address(&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://59.6.8.6:65000"&gt;http://59.6.8.6:65000&lt;/A&gt;&lt;SPAN&gt;), all functions can work well, include upland files.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;then, I changed the static NAT and make it maped to port 6000 of another public IP address 59.6.8.7(this ip address is the first time to be use and it is not the ip address in the WAN interface).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;everyone in the public INTERNET now can access to the OA system with is Public IP address(&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://59.6.8.7:6000"&gt;http://59.6.8.7:6000&lt;/A&gt;&lt;SPAN&gt;), all functions can work well, &lt;/SPAN&gt;&lt;STRONG&gt;except upload files.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no obvious error when the upload failed, and no any support from the OA systems developer.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think it may be a pre-reserved TCP port 6000 problem, and I do not known how to proof or test it is an software problem(I think both the mapping port 6000 and 65000 are same to the software).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yu.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Jul 2013 14:16:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing-and-sd-wan/asr-1004-static-nat-for-public-port-6000-problem/m-p/2272891#M219089</guid>
      <dc:creator>oracat777</dc:creator>
      <dc:date>2013-07-19T14:16:16Z</dc:date>
    </item>
  </channel>
</rss>

