<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NAT rule in ASA for Tunnel interface in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275347#M1077483</link>
    <description>&lt;P&gt;i need NAT rule from INSIDE to VIT_Tunnel.&lt;/P&gt;</description>
    <pubDate>Tue, 19 Jan 2021 15:33:33 GMT</pubDate>
    <dc:creator>Nitin S</dc:creator>
    <dc:date>2021-01-19T15:33:33Z</dc:date>
    <item>
      <title>NAT rule in ASA for Tunnel interface</title>
      <link>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275326#M1077480</link>
      <description>&lt;P&gt;Hello All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have configure IPsec&amp;nbsp; VTI tunnel on ASA. i am try to configure NAT rule but interface not showing while adding nat statemen.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 15:10:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275326#M1077480</guid>
      <dc:creator>Nitin S</dc:creator>
      <dc:date>2021-01-19T15:10:27Z</dc:date>
    </item>
    <item>
      <title>Re: NAT rule in ASA for Tunnel interface</title>
      <link>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275328#M1077481</link>
      <description>&lt;P&gt;What NAT rule you need?&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 15:13:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275328#M1077481</guid>
      <dc:creator>Oleg Volkov</dc:creator>
      <dc:date>2021-01-19T15:13:22Z</dc:date>
    </item>
    <item>
      <title>Re: NAT rule in ASA for Tunnel interface</title>
      <link>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275341#M1077482</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/290681"&gt;@Nitin S&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You shouldn't need to...&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;"&lt;STRONG&gt;VTI eliminates the need to use&lt;/STRONG&gt; crypto access lists and &lt;STRONG&gt;Network Address Translation (NAT) exemption rules&lt;/STRONG&gt;."&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-firewalls/212478-configure-asa-virtual-tunnel-interfaces.html" target="_self"&gt;https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-firewalls/212478-configure-asa-virtual-tunnel-interfaces.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you are having an issue, please run packet-tracer from the CLI and "show nat detail", provide the output from both.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 15:31:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275341#M1077482</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-01-19T15:31:02Z</dc:date>
    </item>
    <item>
      <title>Re: NAT rule in ASA for Tunnel interface</title>
      <link>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275347#M1077483</link>
      <description>&lt;P&gt;i need NAT rule from INSIDE to VIT_Tunnel.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 15:33:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275347#M1077483</guid>
      <dc:creator>Nitin S</dc:creator>
      <dc:date>2021-01-19T15:33:33Z</dc:date>
    </item>
    <item>
      <title>Re: NAT rule in ASA for Tunnel interface</title>
      <link>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275349#M1077484</link>
      <description>&lt;P&gt;Ok but why ?&lt;/P&gt;&lt;P&gt;Can You provide full rule ?&lt;/P&gt;&lt;P&gt;It is must be twice nat?&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 15:35:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275349#M1077484</guid>
      <dc:creator>Oleg Volkov</dc:creator>
      <dc:date>2021-01-19T15:35:46Z</dc:date>
    </item>
    <item>
      <title>Re: NAT rule in ASA for Tunnel interface</title>
      <link>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275351#M1077485</link>
      <description>&lt;P&gt;i need NAT rule to do destination NAT &amp;amp; source PAT.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 15:36:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275351#M1077485</guid>
      <dc:creator>Nitin S</dc:creator>
      <dc:date>2021-01-19T15:36:36Z</dc:date>
    </item>
    <item>
      <title>Re: NAT rule in ASA for Tunnel interface</title>
      <link>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275355#M1077486</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/290681"&gt;@Nitin S&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You want to NAT traffic over the route based VPN? Normally when using a route based VPN you just route traffic over the tunnel without NAT, which is probably why the VTI interface does not show when attempting to create NAT rule. You could try "any" when specifying the interface name in a NAT rule.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 15:46:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275355#M1077486</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-01-19T15:46:37Z</dc:date>
    </item>
    <item>
      <title>Re: NAT rule in ASA for Tunnel interface</title>
      <link>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275392#M1077488</link>
      <description>&lt;P&gt;If I right it is bug&amp;nbsp;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="gjgjgj.png" style="width: 977px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/102156i42B842DA4C9F82F5/image-size/large?v=v2&amp;amp;px=999" role="button" title="gjgjgj.png" alt="gjgjgj.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 16:58:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4275392#M1077488</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2021-01-19T16:58:10Z</dc:date>
    </item>
    <item>
      <title>Re: NAT rule in ASA for Tunnel interface</title>
      <link>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4620714#M1090498</link>
      <description>&lt;P&gt;Non applicable in all cases thuogh, but the "any" keyword may save your life.&lt;/P&gt;
&lt;P&gt;Nat rule that should be entered this way:&lt;/P&gt;
&lt;P&gt;nat (VTI,outside) source dynamic RFC1918-1 SRCNAT destination static DSTNETWORK&amp;nbsp;DSTNETWORK&lt;/P&gt;
&lt;P&gt;but it's not applicable since VTI interface isn't available, entered this way did the trick to me:&lt;/P&gt;
&lt;P&gt;nat (any,outside) source dynamic RFC1918 SRCNAT destination static DSTNETWORK&amp;nbsp;DSTNETWORK&lt;/P&gt;</description>
      <pubDate>Mon, 30 May 2022 17:11:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4620714#M1090498</guid>
      <dc:creator>Massimo Baschieri</dc:creator>
      <dc:date>2022-05-30T17:11:58Z</dc:date>
    </item>
    <item>
      <title>Re: NAT rule in ASA for Tunnel interface</title>
      <link>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4766905#M1097384</link>
      <description>&lt;P&gt;Thanks, this workaround works for me.&lt;/P&gt;</description>
      <pubDate>Wed, 01 Feb 2023 17:02:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4766905#M1097384</guid>
      <dc:creator>hansrodlo</dc:creator>
      <dc:date>2023-02-01T17:02:43Z</dc:date>
    </item>
    <item>
      <title>Re: NAT rule in ASA for Tunnel interface</title>
      <link>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4956676#M1105715</link>
      <description>&lt;P&gt;this workaround actually does the job when using VTI: nat(any,&lt;EM&gt;interface&lt;/EM&gt;)...&lt;/P&gt;</description>
      <pubDate>Thu, 09 Nov 2023 20:16:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-rule-in-asa-for-tunnel-interface/m-p/4956676#M1105715</guid>
      <dc:creator>fgfuentes</dc:creator>
      <dc:date>2023-11-09T20:16:25Z</dc:date>
    </item>
  </channel>
</rss>

