<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Did you create a rule (on the in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-8-2-static-nat-problem/m-p/2815284#M173845</link>
    <description>&lt;P&gt;Did you create a rule (on the outside interface) allowing traffic into&amp;nbsp;&lt;SPAN&gt;212.126.122.45?&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 21 Dec 2015 19:10:09 GMT</pubDate>
    <dc:creator>Philip D'Ath</dc:creator>
    <dc:date>2015-12-21T19:10:09Z</dc:date>
    <item>
      <title>ASA 8.2 static nat problem?</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-static-nat-problem/m-p/2815283#M173842</link>
      <description>&lt;P&gt;Hi all&lt;/P&gt;
&lt;P&gt;I have two active and standby ASA 5520 V(8.2) when I trying to configure static NAT by&lt;/P&gt;
&lt;P&gt;static (inside,outside) interface 172.16.1.156&lt;/P&gt;
&lt;P&gt;it work properly,&amp;nbsp;but when I use this command instead of first one&lt;/P&gt;
&lt;P&gt;static (inside,outside) 212.126.122.45 172.16.1.156&lt;/P&gt;
&lt;P&gt;it dose not work!! and I need it to use another public IP for another private server because I have many servers inside each server need public ip, so any suggestion please??&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;note :&lt;/P&gt;
&lt;P&gt;1- my inside network (172.16.0.0/16) and outside (212.126.122.40/29)&lt;/P&gt;
&lt;P&gt;2- attachment conftain show run for both my ASA&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;many thanks..&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 07:03:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-static-nat-problem/m-p/2815283#M173842</guid>
      <dc:creator>M.alzubaidy</dc:creator>
      <dc:date>2019-03-12T07:03:49Z</dc:date>
    </item>
    <item>
      <title>Did you create a rule (on the</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-static-nat-problem/m-p/2815284#M173845</link>
      <description>&lt;P&gt;Did you create a rule (on the outside interface) allowing traffic into&amp;nbsp;&lt;SPAN&gt;212.126.122.45?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Dec 2015 19:10:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-static-nat-problem/m-p/2815284#M173845</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2015-12-21T19:10:09Z</dc:date>
    </item>
    <item>
      <title>many thanks for replying, yes</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-static-nat-problem/m-p/2815285#M173848</link>
      <description>&lt;P&gt;many thanks for replying, yes I create that&lt;/P&gt;
&lt;P&gt;access-list outside_access_in extended permit ip any any &lt;BR /&gt;access-list inside_access_in extended permit ip any any&lt;/P&gt;
&lt;P&gt;access-group inside_access_in in interface inside&lt;BR /&gt;access-group outside_access_in in interface outside&lt;/P&gt;</description>
      <pubDate>Mon, 21 Dec 2015 19:28:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-static-nat-problem/m-p/2815285#M173848</guid>
      <dc:creator>M.alzubaidy</dc:creator>
      <dc:date>2015-12-21T19:28:28Z</dc:date>
    </item>
    <item>
      <title>I don't think you have</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-static-nat-problem/m-p/2815286#M173850</link>
      <description>&lt;P&gt;I don't think you have anything wrong. &amp;nbsp;Try the change again, and then maybe something like:&lt;/P&gt;
&lt;P&gt;clear xlate&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Also try waiting 10 minutes. &amp;nbsp;It smells like something has cached something.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;If you do a "show arp | inc&amp;nbsp;&lt;SPAN&gt;212.126.122.45" it&amp;nbsp;definitely&amp;nbsp;comes back with nothing (meaning that the IP&amp;nbsp;address is not in use), correct?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Dec 2015 19:35:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-static-nat-problem/m-p/2815286#M173850</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2015-12-21T19:35:34Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/asa-8-2-static-nat-problem/m-p/2815287#M173855</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;First you can try to take the packet tracer on the ASA to check whether the ASA is allowing the traffic or not.&lt;/P&gt;
&lt;P&gt;packet-tracer input outside&amp;nbsp;tcp&amp;nbsp;&amp;lt;source IP&amp;gt;&amp;nbsp;12345&amp;nbsp;&lt;SPAN&gt;212.126.122.45 80 detail&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;If you do not see any error in this then you can take the capture on the outside and inside interface of the firewall to check whether traffic is passing through the firewall or not. This needs the actual traffic to test.&lt;/P&gt;
&lt;P&gt;cap capin interface outside match tcp host &amp;lt;internet IP&amp;gt; host &lt;SPAN&gt;212.126.122.45 eq 80&lt;/SPAN&gt;&lt;BR /&gt; cap capout interface inside match tcp host &amp;lt;&lt;SPAN&gt;internet IP&lt;/SPAN&gt;&amp;gt; host &lt;SPAN&gt;172.16.1.156 eq 80&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;to view the capture output:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;show cap capin&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;show cap capout&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;BR /&gt;Thanks,&lt;BR /&gt;Shivapramod M&lt;BR /&gt;Please remember to select a correct answer and rate helpful posts&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 22 Dec 2015 04:58:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-8-2-static-nat-problem/m-p/2815287#M173855</guid>
      <dc:creator>Shivapramod M</dc:creator>
      <dc:date>2015-12-22T04:58:39Z</dc:date>
    </item>
  </channel>
</rss>

