<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Asa NAT Configration in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-nat-configration/m-p/3677340#M13161</link>
    <description>&lt;P&gt;Im a bit confused,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have DMZ Server that need access from a company for remote access, but they need to access many ports, i.e SSH. HTTPS, SSDP and FTP.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Object NAT works for one port and one object, but I don't want to have to create many objects for the same DMZ Server IP address,&lt;/P&gt;
&lt;P&gt;I have tried Twice Nat with the same configuration as the object but Twice NAT doesn't work,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;nat (inside,Outside) source static&amp;nbsp;DMZServer interface service https https&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;!&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;object network DMZServer&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt; nat (inside,Outside) static interface service tcp https https&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the firewall blocks the connection for the twice nat. how can i get a working nat so i can list many ports required and use the same object.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 16:02:01 GMT</pubDate>
    <dc:creator>broadleon</dc:creator>
    <dc:date>2020-02-21T16:02:01Z</dc:date>
    <item>
      <title>Asa NAT Configration</title>
      <link>https://community.cisco.com/t5/network-security/asa-nat-configration/m-p/3677340#M13161</link>
      <description>&lt;P&gt;Im a bit confused,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have DMZ Server that need access from a company for remote access, but they need to access many ports, i.e SSH. HTTPS, SSDP and FTP.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Object NAT works for one port and one object, but I don't want to have to create many objects for the same DMZ Server IP address,&lt;/P&gt;
&lt;P&gt;I have tried Twice Nat with the same configuration as the object but Twice NAT doesn't work,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;nat (inside,Outside) source static&amp;nbsp;DMZServer interface service https https&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;!&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;object network DMZServer&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt; nat (inside,Outside) static interface service tcp https https&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the firewall blocks the connection for the twice nat. how can i get a working nat so i can list many ports required and use the same object.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 16:02:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-nat-configration/m-p/3677340#M13161</guid>
      <dc:creator>broadleon</dc:creator>
      <dc:date>2020-02-21T16:02:01Z</dc:date>
    </item>
    <item>
      <title>Re: Asa NAT Configration</title>
      <link>https://community.cisco.com/t5/network-security/asa-nat-configration/m-p/3677414#M13162</link>
      <description>&lt;P&gt;object NAT dmz to outside (bidirectional) any (dont use ports) and let the outside interface ACL permit the ports.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;remember to do a no nat from inside to dmz so you can actually access the server still for management&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 30 Jul 2018 13:12:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-nat-configration/m-p/3677414#M13162</guid>
      <dc:creator>Dennis Mink</dc:creator>
      <dc:date>2018-07-30T13:12:42Z</dc:date>
    </item>
    <item>
      <title>Re: Asa NAT Configration</title>
      <link>https://community.cisco.com/t5/network-security/asa-nat-configration/m-p/3677598#M13163</link>
      <description>&lt;P&gt;I found that removing the service ports makes the nat statement work as you suggested, but why doesn't work when you add the service ports ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any way to add the service ports in the nat ? Ive done this before but can't seam to work it out now, wondering if migrating to 9 to 9.2(4) has made any changes to the may nat works ?&lt;/P&gt;</description>
      <pubDate>Mon, 30 Jul 2018 16:13:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-nat-configration/m-p/3677598#M13163</guid>
      <dc:creator>broadleon</dc:creator>
      <dc:date>2018-07-30T16:13:36Z</dc:date>
    </item>
  </channel>
</rss>

