<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NAT for multiple internal subnets in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987083#M1107387</link>
    <description>&lt;P&gt;somehow having object network allvlan with subnet 0.0.0.0 doesn't help.&lt;BR /&gt;still the address of the other subnets is not translated. Only the address of the devices in 192.168.2.0 is translated.&lt;/P&gt;</description>
    <pubDate>Fri, 29 Dec 2023 19:38:51 GMT</pubDate>
    <dc:creator>kacper25711</dc:creator>
    <dc:date>2023-12-29T19:38:51Z</dc:date>
    <item>
      <title>NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986667#M1107359</link>
      <description>&lt;P&gt;Hello, would anyone be able to explain me how to configure NAT for multiple internal subnets on a 5505 firewall?&lt;BR /&gt;I have 6 subnets 192.168.2.0, .10.0, .20.0, .30.0, .40.0 and .50.0.&amp;nbsp;&lt;BR /&gt;It's configured like this for all 6 subnets, but the address translationonly only works for the 192.168.2.0 subnet for some reason:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="kacper25711_1-1703815809885.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/205967iE74667CA3417306A/image-size/medium?v=v2&amp;amp;px=400" role="button" title="kacper25711_1-1703815809885.png" alt="kacper25711_1-1703815809885.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I don't know why,&amp;nbsp;&lt;SPAN&gt;object-group network doesn't work here.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;the topology looks more less like this at the moment, maybe it would be easier to configure if firewall device was connected straight to the internal router? If yes, how should I configure it?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="kacper25711_2-1703816011171.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/205968iE47FAE819922DAC1/image-size/medium?v=v2&amp;amp;px=400" role="button" title="kacper25711_2-1703816011171.png" alt="kacper25711_2-1703816011171.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 02:19:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986667#M1107359</guid>
      <dc:creator>kacper25711</dc:creator>
      <dc:date>2023-12-29T02:19:11Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986738#M1107361</link>
      <description>&lt;P&gt;try below example : ( all more subnet to object group)&lt;/P&gt;
&lt;P&gt;object-group network all_subnets&lt;BR /&gt;network-object 192.168.0.0 255.255.255.0&lt;BR /&gt;network-object 10.10.10.0 255.255.255.0&lt;BR /&gt;nat (inside,outside) source dynamic interface&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 08:26:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986738#M1107361</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2023-12-29T08:26:22Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986908#M1107373</link>
      <description>&lt;P&gt;I get this problem here:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="kacper25711_0-1703863915285.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/206022i30924A02DB44F2B3/image-size/medium?v=v2&amp;amp;px=400" role="button" title="kacper25711_0-1703863915285.png" alt="kacper25711_0-1703863915285.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;can only set a group of tcp/upd ports/services, not a subnet&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 15:32:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986908#M1107373</guid>
      <dc:creator>kacper25711</dc:creator>
      <dc:date>2023-12-29T15:32:49Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986915#M1107375</link>
      <description>&lt;P&gt;Friend there is&lt;/P&gt;
&lt;P&gt;Object-group and object-network&lt;/P&gt;
&lt;P&gt;Use object-network&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 15:38:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986915#M1107375</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-12-29T15:38:58Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986935#M1107376</link>
      <description>&lt;P&gt;it's an unrecognized command&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="kacper25711_0-1703865314355.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/206027i502271C85AC22008/image-size/medium?v=v2&amp;amp;px=400" role="button" title="kacper25711_0-1703865314355.png" alt="kacper25711_0-1703865314355.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 15:55:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986935#M1107376</guid>
      <dc:creator>kacper25711</dc:creator>
      <dc:date>2023-12-29T15:55:25Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986956#M1107379</link>
      <description>&lt;P&gt;Object&amp;nbsp; network&amp;nbsp;&lt;/P&gt;
&lt;P&gt;without - inbetween&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 16:21:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986956#M1107379</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-12-29T16:21:08Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986964#M1107380</link>
      <description>&lt;P&gt;yes, but there I can only set 1 subnet for 1 object, right?&lt;BR /&gt;I created objects for all 6 subnets, but it only works for the 192.168.2.0 subnet.&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 16:41:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986964#M1107380</guid>
      <dc:creator>kacper25711</dc:creator>
      <dc:date>2023-12-29T16:41:54Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986972#M1107381</link>
      <description>&lt;P&gt;Object network vlan1&lt;/P&gt;
&lt;P&gt;Subnet x.x.x.x&lt;/P&gt;
&lt;P&gt;Object network vlan2&amp;nbsp;&lt;/P&gt;
&lt;P&gt;subnet y.y.y.y&lt;/P&gt;
&lt;P&gt;Then&amp;nbsp; finally&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Object-group allVLAN&lt;/P&gt;
&lt;P&gt;Object vlan1&lt;/P&gt;
&lt;P&gt;Object vlan2&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then you use this object-group in NAT or ACL&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 16:56:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4986972#M1107381</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-12-29T16:56:09Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987003#M1107383</link>
      <description>&lt;P&gt;well it still doesn't allow me to create an object-group:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="kacper25711_0-1703871562967.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/206033iD41CD74588119E62/image-size/medium?v=v2&amp;amp;px=400" role="button" title="kacper25711_0-1703871562967.png" alt="kacper25711_0-1703871562967.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I can only create a object-group service.&lt;BR /&gt;&lt;BR /&gt;Could this be a CPT limitation?&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 17:40:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987003#M1107383</guid>
      <dc:creator>kacper25711</dc:creator>
      <dc:date>2023-12-29T17:40:41Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987005#M1107384</link>
      <description>&lt;P&gt;That can be let me check when I retrun home&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 17:42:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987005#M1107384</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-12-29T17:42:45Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987006#M1107385</link>
      <description>&lt;P&gt;what ASA&amp;nbsp; code running&amp;nbsp; here ? (this could be limitation of PT ASA i guess here ?)&lt;/P&gt;
&lt;P&gt;ASA 9.1 code below syntax works :&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="balajibandi_0-1703879727671.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/206045iFBD7FC22D8E47608/image-size/medium?v=v2&amp;amp;px=400" role="button" title="balajibandi_0-1703879727671.png" alt="balajibandi_0-1703879727671.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 19:58:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987006#M1107385</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2023-12-29T19:58:06Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987011#M1107386</link>
      <description>&lt;P&gt;Until that time we can use this workaround for dynamic NAT&lt;/P&gt;
&lt;P&gt;Object&amp;nbsp; network allVLAN&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Subnet 0.0.0.0&lt;/P&gt;
&lt;P&gt;Then use it in NAT' this will include all your vlan subnet.&lt;/P&gt;
&lt;P&gt;Goodluck&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 17:53:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987011#M1107386</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-12-29T17:53:03Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987083#M1107387</link>
      <description>&lt;P&gt;somehow having object network allvlan with subnet 0.0.0.0 doesn't help.&lt;BR /&gt;still the address of the other subnets is not translated. Only the address of the devices in 192.168.2.0 is translated.&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 19:38:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987083#M1107387</guid>
      <dc:creator>kacper25711</dc:creator>
      <dc:date>2023-12-29T19:38:51Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987090#M1107388</link>
      <description>&lt;P&gt;How you know the NAT is not working?&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 19:53:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987090#M1107388</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-12-29T19:53:55Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987106#M1107391</link>
      <description>&lt;P&gt;The source IP isn't changed from the internal IP address to firewall's public IP.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="kacper25711_2-1703881034723.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/206051iEA543288B3905BF2/image-size/medium?v=v2&amp;amp;px=400" role="button" title="kacper25711_2-1703881034723.png" alt="kacper25711_2-1703881034723.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;below as you can see a sent packet from the 192.168.2.0 network and the source address is translated:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="kacper25711_3-1703881118774.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/206052iD62E155E3102D188/image-size/medium?v=v2&amp;amp;px=400" role="button" title="kacper25711_3-1703881118774.png" alt="kacper25711_3-1703881118774.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 20:21:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987106#M1107391</guid>
      <dc:creator>kacper25711</dc:creator>
      <dc:date>2023-12-29T20:21:22Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987108#M1107392</link>
      <description>&lt;P&gt;as you can see below, there is only service option available:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="kacper25711_4-1703881243860.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/206053iA2D174B72E623ACC/image-size/medium?v=v2&amp;amp;px=400" role="button" title="kacper25711_4-1703881243860.png" alt="kacper25711_4-1703881243860.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;but i think this is just CPT limitation.&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 20:20:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987108#M1107392</guid>
      <dc:creator>kacper25711</dc:creator>
      <dc:date>2023-12-29T20:20:58Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987135#M1107393</link>
      <description>&lt;P&gt;same as My PKT it limitation then&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot (637).png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/206061i4B43FFEC4F2499ED/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot (637).png" alt="Screenshot (637).png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 21:12:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987135#M1107393</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-12-29T21:12:29Z</dc:date>
    </item>
    <item>
      <title>Re: NAT for multiple internal subnets</title>
      <link>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987145#M1107394</link>
      <description>&lt;P&gt;thanks a lot for your time&lt;/P&gt;</description>
      <pubDate>Fri, 29 Dec 2023 21:44:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-for-multiple-internal-subnets/m-p/4987145#M1107394</guid>
      <dc:creator>kacper25711</dc:creator>
      <dc:date>2023-12-29T21:44:06Z</dc:date>
    </item>
  </channel>
</rss>

