<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Source Based Destination NAT in FTD in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/source-based-destination-nat-in-ftd/m-p/5248523#M1118885</link>
    <description>&lt;P&gt;Hello&lt;/P&gt;
&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1146335"&gt;@MSJ1&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;
&lt;P&gt;1. if Source is 199.19.3.63 ( this IP at other side of the Site to Site VPN - A Side ) then at B Side of the VPN DNAT will be 199.19.3.63 to &lt;STRIKE&gt;10.8.55.229&lt;/STRIKE&gt;&amp;nbsp;&lt;STRONG&gt;199.19.3.64&lt;/STRONG&gt;&lt;BR /&gt;2. if Source is 199.19.5.67 ( this IP at other side of the Site to Site VPN - A Side ) then at B Side of the VPN DNAT will be 199.19.5.68 to &lt;STRIKE&gt;10.8.55.229&lt;/STRIKE&gt;&amp;nbsp;&lt;STRONG&gt;199.19.5.67&lt;/STRONG&gt;&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&lt;BR /&gt;The return traffic from B side should not be aware of 10.8.55.x so any return traffic will be to&amp;nbsp;&lt;STRONG&gt;199.19.3.64/67&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1146335"&gt;@MSJ1&lt;/a&gt;&amp;nbsp;wrote:99.19.5.68 to 10.8.55.229
&lt;P&gt;So Original Destination is same for both NAT statement at B Side. So my question is how do I define each Source in each NAT Line ? Is it doable ?&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&lt;U&gt;&lt;STRONG&gt;Edited&lt;/STRONG&gt;&lt;/U&gt;: apologies my question was not clear-&lt;BR /&gt;Do you mean translation &lt;U&gt;based&lt;/U&gt; on source &amp;amp; destination address ?&lt;BR /&gt;&lt;U&gt;&lt;BR /&gt;example below&lt;/U&gt;&lt;STRONG&gt;&lt;BR /&gt;&lt;/STRONG&gt;object network insidehost&lt;BR /&gt;host &lt;SPAN&gt;10.8.55.229&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;object network destinationhost1&lt;BR /&gt;host &lt;SPAN&gt;199.19.3.63&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;object network destinationhost2&lt;BR /&gt;host 199.19.3.68&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;object network natip1&lt;BR /&gt;host &lt;SPAN&gt;199.19.3.64&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;object network natip2&lt;BR /&gt;host 199.19.3.67&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;nat (inside,out) source static insidehost natip1 destination static destinationhost1 destinationhost1&lt;BR /&gt;nat (inside,out) source static insidehost natip2 destination static destinationhost2 destinationhost2&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 17 Jan 2025 09:33:00 GMT</pubDate>
    <dc:creator>paul driver</dc:creator>
    <dc:date>2025-01-17T09:33:00Z</dc:date>
    <item>
      <title>Source Based Destination NAT in FTD</title>
      <link>https://community.cisco.com/t5/network-security/source-based-destination-nat-in-ftd/m-p/5248307#M1118876</link>
      <description>&lt;P&gt;Problem Details:&lt;/P&gt;
&lt;P&gt;Configured 2 Destination NAT as per below&lt;/P&gt;
&lt;P&gt;nat (Inside,Outside) source static 10.8.55.229 199.19.3.64 unidirectional&lt;BR /&gt;nat (Inside,Outside) source static 10.8.55.229 199.19.5.67 unidirectional&lt;/P&gt;
&lt;P&gt;Following plan below configured above 2 lines.&lt;/P&gt;
&lt;P&gt;1. if Source is 199.19.3.63 ( this IP at other side of the Site to Site VPN - A Side ) then at B Side of the VPN DNAT will be 199.19.3.64 to 10.8.55.229&lt;BR /&gt;2. if Source is 199.19.5.67 ( this IP at other side of the Site to Site VPN - A Side ) then at B Side of the VPN DNAT will be 199.19.5.68 to 10.8.55.229&lt;/P&gt;
&lt;P&gt;So Original Destination is same for both NAT statement at B Side. So my question is how do I define each Source in each NAT Line ? Is it doable ?&lt;/P&gt;</description>
      <pubDate>Thu, 16 Jan 2025 20:06:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/source-based-destination-nat-in-ftd/m-p/5248307#M1118876</guid>
      <dc:creator>MSJ1</dc:creator>
      <dc:date>2025-01-16T20:06:05Z</dc:date>
    </item>
    <item>
      <title>Re: Source Based Destination NAT in FTD</title>
      <link>https://community.cisco.com/t5/network-security/source-based-destination-nat-in-ftd/m-p/5248523#M1118885</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;
&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1146335"&gt;@MSJ1&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;
&lt;P&gt;1. if Source is 199.19.3.63 ( this IP at other side of the Site to Site VPN - A Side ) then at B Side of the VPN DNAT will be 199.19.3.63 to &lt;STRIKE&gt;10.8.55.229&lt;/STRIKE&gt;&amp;nbsp;&lt;STRONG&gt;199.19.3.64&lt;/STRONG&gt;&lt;BR /&gt;2. if Source is 199.19.5.67 ( this IP at other side of the Site to Site VPN - A Side ) then at B Side of the VPN DNAT will be 199.19.5.68 to &lt;STRIKE&gt;10.8.55.229&lt;/STRIKE&gt;&amp;nbsp;&lt;STRONG&gt;199.19.5.67&lt;/STRONG&gt;&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&lt;BR /&gt;The return traffic from B side should not be aware of 10.8.55.x so any return traffic will be to&amp;nbsp;&lt;STRONG&gt;199.19.3.64/67&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1146335"&gt;@MSJ1&lt;/a&gt;&amp;nbsp;wrote:99.19.5.68 to 10.8.55.229
&lt;P&gt;So Original Destination is same for both NAT statement at B Side. So my question is how do I define each Source in each NAT Line ? Is it doable ?&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&lt;U&gt;&lt;STRONG&gt;Edited&lt;/STRONG&gt;&lt;/U&gt;: apologies my question was not clear-&lt;BR /&gt;Do you mean translation &lt;U&gt;based&lt;/U&gt; on source &amp;amp; destination address ?&lt;BR /&gt;&lt;U&gt;&lt;BR /&gt;example below&lt;/U&gt;&lt;STRONG&gt;&lt;BR /&gt;&lt;/STRONG&gt;object network insidehost&lt;BR /&gt;host &lt;SPAN&gt;10.8.55.229&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;object network destinationhost1&lt;BR /&gt;host &lt;SPAN&gt;199.19.3.63&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;object network destinationhost2&lt;BR /&gt;host 199.19.3.68&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;object network natip1&lt;BR /&gt;host &lt;SPAN&gt;199.19.3.64&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;object network natip2&lt;BR /&gt;host 199.19.3.67&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;nat (inside,out) source static insidehost natip1 destination static destinationhost1 destinationhost1&lt;BR /&gt;nat (inside,out) source static insidehost natip2 destination static destinationhost2 destinationhost2&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 17 Jan 2025 09:33:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/source-based-destination-nat-in-ftd/m-p/5248523#M1118885</guid>
      <dc:creator>paul driver</dc:creator>
      <dc:date>2025-01-17T09:33:00Z</dc:date>
    </item>
    <item>
      <title>Re: Source Based Destination NAT in FTD</title>
      <link>https://community.cisco.com/t5/network-security/source-based-destination-nat-in-ftd/m-p/5248527#M1118887</link>
      <description>&lt;P&gt;&lt;SPAN&gt;nat (out,in) source static remoteLAN1 remoteLAN1 destination static &amp;lt;mapp server IP1&amp;gt; &amp;lt;real IP&amp;gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;nat (out,in) source static remoteLAN2 remoteLAN2 destination static &amp;lt;mapp server IP2&amp;gt; &amp;lt;real IP&amp;gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;MHM&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 17 Jan 2025 09:13:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/source-based-destination-nat-in-ftd/m-p/5248527#M1118887</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2025-01-17T09:13:19Z</dc:date>
    </item>
  </channel>
</rss>

