<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX 525 Static NAT in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-525-static-nat/m-p/736930#M1007205</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;access-list NATME permit ip host inside_ip destination_ip or network&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) static_ip access-list NATME.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hope this help&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 19 Apr 2007 19:11:29 GMT</pubDate>
    <dc:creator>Tshi M</dc:creator>
    <dc:date>2007-04-19T19:11:29Z</dc:date>
    <item>
      <title>PIX 525 Static NAT</title>
      <link>https://community.cisco.com/t5/network-security/pix-525-static-nat/m-p/736928#M1007203</link>
      <description>&lt;P&gt;I have a PIX 525 with a static NAT which is part of a VPN tunnel:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) 10.91.6.2 access-list translation2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list dieboldtranslation2 permit ip host 10.11.150.1 host 10.79.15.3&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The host on my end is trying to get out and I can see the attempt to build the tcp conncetion in the firewall, But the access-lists are never getting hit, never an attmept to translate from inside to outside to the 10.91.6.2 address:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;302013: Built outbound TCP connection 74840423 for outside:10.79.15.3/5202 (10.79.15.3/5202) to inside:10.11.150.1/2492 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I know the routing is correct, my inside host is a couple of hops away, but there is connectivity from it to my PIX&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anyone have any ideas?&lt;/P&gt;&lt;P&gt;Also, is the direction correct on the log entry for the traffic, would that be a clue?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 10:00:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-525-static-nat/m-p/736928#M1007203</guid>
      <dc:creator>richmorrow624</dc:creator>
      <dc:date>2019-03-11T10:00:19Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 525 Static NAT</title>
      <link>https://community.cisco.com/t5/network-security/pix-525-static-nat/m-p/736929#M1007204</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The static command must not be included in the certified PIX Firewall. The static command enables particular instances of NAT. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 19 Apr 2007 18:38:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-525-static-nat/m-p/736929#M1007204</guid>
      <dc:creator>bwilmoth</dc:creator>
      <dc:date>2007-04-19T18:38:54Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 525 Static NAT</title>
      <link>https://community.cisco.com/t5/network-security/pix-525-static-nat/m-p/736930#M1007205</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;access-list NATME permit ip host inside_ip destination_ip or network&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) static_ip access-list NATME.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hope this help&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 19 Apr 2007 19:11:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-525-static-nat/m-p/736930#M1007205</guid>
      <dc:creator>Tshi M</dc:creator>
      <dc:date>2007-04-19T19:11:29Z</dc:date>
    </item>
  </channel>
</rss>

