<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: static PAT in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/static-pat/m-p/628962#M1028903</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think you mean NAT. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list permit 100 tcp any host 10.1.1.1&lt;/P&gt;&lt;P&gt;Should be access-list permit 100 tcp any host 10.1.1.1 eq 80&lt;/P&gt;&lt;P&gt;static(in,out) tcp 10.1.1.1 80 10.2.2.2 80&lt;/P&gt;&lt;P&gt;This is OK assuming the IP's are correct.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list permit 100 tcp any host 10.1.1.1&lt;/P&gt;&lt;P&gt;Again make more restrictive!!&lt;/P&gt;&lt;P&gt;static(in,out) tcp 10.1.1.1 53 10.2.2.3 53&lt;/P&gt;&lt;P&gt;This is OK (this is for DNS zone transfers you know)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH and please rate.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 15 Jan 2007 22:18:03 GMT</pubDate>
    <dc:creator>Collin Clark</dc:creator>
    <dc:date>2007-01-15T22:18:03Z</dc:date>
    <item>
      <title>static PAT</title>
      <link>https://community.cisco.com/t5/network-security/static-pat/m-p/628961#M1028901</link>
      <description>&lt;P&gt;is this a valid static PAT&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list permit 100 tcp any host 10.1.1.1&lt;/P&gt;&lt;P&gt;static(in,out) tcp 10.1.1.1 80 10.2.2.2 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list permit 100 tcp any host 10.1.1.1&lt;/P&gt;&lt;P&gt;static(in,out) tcp 10.1.1.1 53 10.2.2.3 53&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 09:19:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-pat/m-p/628961#M1028901</guid>
      <dc:creator>aksher</dc:creator>
      <dc:date>2019-03-11T09:19:42Z</dc:date>
    </item>
    <item>
      <title>Re: static PAT</title>
      <link>https://community.cisco.com/t5/network-security/static-pat/m-p/628962#M1028903</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think you mean NAT. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list permit 100 tcp any host 10.1.1.1&lt;/P&gt;&lt;P&gt;Should be access-list permit 100 tcp any host 10.1.1.1 eq 80&lt;/P&gt;&lt;P&gt;static(in,out) tcp 10.1.1.1 80 10.2.2.2 80&lt;/P&gt;&lt;P&gt;This is OK assuming the IP's are correct.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list permit 100 tcp any host 10.1.1.1&lt;/P&gt;&lt;P&gt;Again make more restrictive!!&lt;/P&gt;&lt;P&gt;static(in,out) tcp 10.1.1.1 53 10.2.2.3 53&lt;/P&gt;&lt;P&gt;This is OK (this is for DNS zone transfers you know)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH and please rate.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Jan 2007 22:18:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-pat/m-p/628962#M1028903</guid>
      <dc:creator>Collin Clark</dc:creator>
      <dc:date>2007-01-15T22:18:03Z</dc:date>
    </item>
  </channel>
</rss>

