<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NAT and Access control not Working but everything seems correct in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5110126#M1112785</link>
    <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="A1 Network Diagram.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/218653i925C628FF256C9F2/image-size/large?v=v2&amp;amp;px=999" role="button" title="A1 Network Diagram.png" alt="A1 Network Diagram.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 19 May 2024 00:15:13 GMT</pubDate>
    <dc:creator>MHM Cisco World</dc:creator>
    <dc:date>2024-05-19T00:15:13Z</dc:date>
    <item>
      <title>NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5109097#M1112771</link>
      <description>&lt;P&gt;I have configured NAT and access control on firepower ftd but it doesn't seen to work. I have a draytek router that connects to ISP via PPPOE and my firepower connects to the draytek, on intf1, intf3-8 is a vlan which connects 3 webservers and they all need to be NAT to a public IP address, i can access web pages but none of the servers are accessible via the public ip's on the internet, please i need help to check what is wrong. see screenshot attached&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ACL.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/218633i2B58497E3B80740A/image-size/large?v=v2&amp;amp;px=999" role="button" title="ACL.png" alt="ACL.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="NAT.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/218632i51FDE39C7AD1E12D/image-size/large?v=v2&amp;amp;px=999" role="button" title="NAT.png" alt="NAT.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 17 May 2024 22:24:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5109097#M1112771</guid>
      <dc:creator>david-ibanga</dc:creator>
      <dc:date>2024-05-17T22:24:21Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5109625#M1112779</link>
      <description>&lt;P&gt;Hi Friend&amp;nbsp;&lt;BR /&gt;sorry can you draw the topology&amp;nbsp;&lt;BR /&gt;also PPPoE how you use static public IP?&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Sat, 18 May 2024 11:28:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5109625#M1112779</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-05-18T11:28:43Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5110086#M1112784</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Here is the NW topology" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/218649iCA57B6A5C14EE357/image-size/large?v=v2&amp;amp;px=999" role="button" title="A1 Network Diagram.png" alt="Here is the NW topology" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;Here is the NW topology&lt;/span&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 18 May 2024 18:22:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5110086#M1112784</guid>
      <dc:creator>david-ibanga</dc:creator>
      <dc:date>2024-05-18T18:22:49Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5110126#M1112785</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="A1 Network Diagram.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/218653i925C628FF256C9F2/image-size/large?v=v2&amp;amp;px=999" role="button" title="A1 Network Diagram.png" alt="A1 Network Diagram.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 19 May 2024 00:15:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5110126#M1112785</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-05-19T00:15:13Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5110404#M1112788</link>
      <description>&lt;P&gt;Have you confirmed that port forwarding on the Draytek is correct...and why are you doing NAT on both the Draytek and Firepower? NATing on both the Draytek and Firepower just adds extra complexity.&amp;nbsp; To verify the connectivity though the Firepower device, run packet-tracer and verify that traffic is NATed and allowed through the firewall if all is good there then focus your efforts on the Draytek device.&lt;/P&gt;</description>
      <pubDate>Sun, 19 May 2024 18:59:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5110404#M1112788</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2024-05-19T18:59:52Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5110772#M1112810</link>
      <description>&lt;P&gt;There is a NAT policy already on Draytek router which works without the firepower FTD, I have configured PPPOE on FP Interface with all the settings used in the Draytek but it doesn't seem to allow internet through hence why am using both.&lt;/P&gt;</description>
      <pubDate>Mon, 20 May 2024 09:39:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5110772#M1112810</guid>
      <dc:creator>david-ibanga</dc:creator>
      <dc:date>2024-05-20T09:39:13Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5110805#M1112811</link>
      <description>&lt;P&gt;Thank you for your reply, I will implement this and get back to you. Also are other ACL correct or need changing?&lt;/P&gt;</description>
      <pubDate>Mon, 20 May 2024 10:15:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5110805#M1112811</guid>
      <dc:creator>david-ibanga</dc:creator>
      <dc:date>2024-05-20T10:15:35Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5111182#M1112813</link>
      <description>&lt;P&gt;Why are you configuring the NAT rules using Source Ports? if you want to use those NAT rules you can leave the source port as any since you will filter the access on the ACL.&lt;/P&gt;</description>
      <pubDate>Mon, 20 May 2024 14:46:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5111182#M1112813</guid>
      <dc:creator>adrian_iovita</dc:creator>
      <dc:date>2024-05-20T14:46:31Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5111445#M1112822</link>
      <description>&lt;P&gt;On the Draytek device, is it NATing to the real IP of the server you are having issues with? Or to an intermediary IP which is then again NATed to the real IP of the server?&lt;/P&gt;
&lt;P&gt;Also, source ports are usually random high ports so I suggest removing the source port from the access rules.&lt;/P&gt;</description>
      <pubDate>Mon, 20 May 2024 20:21:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5111445#M1112822</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2024-05-20T20:21:03Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5113654#M1112864</link>
      <description>&lt;P&gt;Any update about this issue&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Wed, 22 May 2024 19:28:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5113654#M1112864</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-05-22T19:28:35Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5113657#M1112866</link>
      <description>&lt;P&gt;Yes so static Nat from 192.168.20.x to 192.168.2.x shows and overlap to 192.168.2.x which is the outside, same with PPOE to outside hence the deployment failed.&lt;/P&gt;</description>
      <pubDate>Wed, 22 May 2024 19:32:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5113657#M1112866</guid>
      <dc:creator>david-ibanga</dc:creator>
      <dc:date>2024-05-22T19:32:50Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5113746#M1112878</link>
      <description>&lt;P&gt;If a post helped you reach your solution or it provided the solution please select it as a correct answer and / or rate the post.&lt;/P&gt;</description>
      <pubDate>Wed, 22 May 2024 21:37:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5113746#M1112878</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2024-05-22T21:37:36Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5113901#M1112884</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="A1 Network Diagram.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/218948i4049FCBC479270AA/image-size/large?v=v2&amp;amp;px=999" role="button" title="A1 Network Diagram.png" alt="A1 Network Diagram.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 23 May 2024 06:39:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5113901#M1112884</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-05-23T06:39:01Z</dc:date>
    </item>
    <item>
      <title>Re: NAT and Access control not Working but everything seems correct</title>
      <link>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5113967#M1112885</link>
      <description>&lt;P&gt;On the Draytek Port redirection is what is implemented, the source IP is the server's and dest IP is the the static from ISP. I have remove the ports from NAT in FP FTD and only use ACL to filter the destination ports&lt;/P&gt;</description>
      <pubDate>Thu, 23 May 2024 08:10:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-and-access-control-not-working-but-everything-seems-correct/m-p/5113967#M1112885</guid>
      <dc:creator>david-ibanga</dc:creator>
      <dc:date>2024-05-23T08:10:13Z</dc:date>
    </item>
  </channel>
</rss>

