<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Thank you. Now based on that in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605897#M205258</link>
    <description>&lt;P&gt;Thank you. Now based on that I want to convert the following&lt;/P&gt;&lt;P&gt;Convert.....&lt;/P&gt;&lt;P&gt;nat (inside) 0 access-list 100&lt;/P&gt;&lt;P&gt;access-list 100 extended permit ip any 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip 10.239.1.0 255.255.255.0 192.168.10.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip 10.239.1.0 255.255.255.0 172.16.40.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;to this.......&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;object network NAT-10.239.126.0-24&lt;BR /&gt;&amp;nbsp;subnet 10.239.126.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network NAT-10.239.1.0-24&lt;BR /&gt;&amp;nbsp;subnet 10.239.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network NAT-192.168.10.0-24&lt;BR /&gt;&amp;nbsp;subnet 192.168.10.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network NAT-172.16.40.0-24&lt;BR /&gt;&amp;nbsp;subnet 172.16.40.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (inside,outside) source dynamic any any destination static NAT-10.239.126.0-24 NAT-10.239.126.0-24&lt;BR /&gt;nat (inside,outside) source dynamic NAT-10.239.1.0-24 NAT-10.239.1.0-24 destination static NAT-192.168.10.0-24 NAT-192.168.10.0-24&lt;BR /&gt;nat (inside,outside) source dynamic NAT-10.239.1.0-24 NAT-10.239.1.0-24 destination static NAT-172.16.40.0-24 NAT-172.16.40.0-24&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Would this be correct?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 14 Nov 2014 21:15:58 GMT</pubDate>
    <dc:creator>burleyman</dc:creator>
    <dc:date>2014-11-14T21:15:58Z</dc:date>
    <item>
      <title>Cleanup and convert from version 8.0(3) to 9.2x</title>
      <link>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605895#M205256</link>
      <description>&lt;P&gt;I have the following config on an ASA ver 8.0.3 and please correct me if I am wrong but the line towards the bottom....&lt;/P&gt;&lt;P&gt;access-list 100 extended permit ip any 10.239.126.0 255.255.255.0&lt;/P&gt;&lt;P&gt;Basically covers everything so all the other lines could be omitted....correct?&lt;/P&gt;&lt;P&gt;nat (inside) 0 access-list 100&lt;/P&gt;&lt;P&gt;access-list 100 extended permit ip host 10.239.14.240 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.10.170 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.17.170 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.13.170 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.1.79 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.23.99 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.19.35 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.19.12 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.19.11 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip 10.239.1.0 255.255.255.0 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.23.11 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip 10.239.19.0 255.255.255.0 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip 10.239.0.0 255.255.0.0 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.23.240 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.23.242 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.23.241 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip any 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip 10.239.23.0 255.255.255.0 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.1.12 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip 10.239.17.0 255.255.255.0 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip host 10.239.1.9 10.239.126.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 05:05:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605895#M205256</guid>
      <dc:creator>burleyman</dc:creator>
      <dc:date>2019-03-12T05:05:05Z</dc:date>
    </item>
    <item>
      <title>That's correct. Looks like</title>
      <link>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605896#M205257</link>
      <description>&lt;P&gt;That's correct. Looks like somebody got tired of adding the more specific entries and just stuck in the "any" rule and neglected to remove the ones that it supercedes.&lt;/P&gt;&lt;P&gt;The only reason I can think of for keeping the more specific ones would be if you're trying to track the number of hits on the access-list entries for them. Otherwise the single line you mentioned can be migrated.&lt;/P&gt;&lt;P&gt;Of course the syntax is a bit different in 8.3+.&lt;/P&gt;</description>
      <pubDate>Fri, 14 Nov 2014 20:41:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605896#M205257</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-11-14T20:41:09Z</dc:date>
    </item>
    <item>
      <title>Thank you. Now based on that</title>
      <link>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605897#M205258</link>
      <description>&lt;P&gt;Thank you. Now based on that I want to convert the following&lt;/P&gt;&lt;P&gt;Convert.....&lt;/P&gt;&lt;P&gt;nat (inside) 0 access-list 100&lt;/P&gt;&lt;P&gt;access-list 100 extended permit ip any 10.239.126.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip 10.239.1.0 255.255.255.0 192.168.10.0 255.255.255.0&lt;BR /&gt;access-list 100 extended permit ip 10.239.1.0 255.255.255.0 172.16.40.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;to this.......&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;object network NAT-10.239.126.0-24&lt;BR /&gt;&amp;nbsp;subnet 10.239.126.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network NAT-10.239.1.0-24&lt;BR /&gt;&amp;nbsp;subnet 10.239.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network NAT-192.168.10.0-24&lt;BR /&gt;&amp;nbsp;subnet 192.168.10.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network NAT-172.16.40.0-24&lt;BR /&gt;&amp;nbsp;subnet 172.16.40.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (inside,outside) source dynamic any any destination static NAT-10.239.126.0-24 NAT-10.239.126.0-24&lt;BR /&gt;nat (inside,outside) source dynamic NAT-10.239.1.0-24 NAT-10.239.1.0-24 destination static NAT-192.168.10.0-24 NAT-192.168.10.0-24&lt;BR /&gt;nat (inside,outside) source dynamic NAT-10.239.1.0-24 NAT-10.239.1.0-24 destination static NAT-172.16.40.0-24 NAT-172.16.40.0-24&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Would this be correct?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Nov 2014 21:15:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605897#M205258</guid>
      <dc:creator>burleyman</dc:creator>
      <dc:date>2014-11-14T21:15:58Z</dc:date>
    </item>
    <item>
      <title>Hello MIke,In 8.0 you've</title>
      <link>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605898#M205259</link>
      <description>&lt;P&gt;Hello MIke,&lt;/P&gt;&lt;P&gt;In 8.0 you've configuration for no-nat this is because in 8.0 we can't disable nat control (nat is mandatory if you are going from inside to any interface) so we have use the mentioned config. But in the latest versions we don't have the concept of nat control.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 15 Nov 2014 14:34:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605898#M205259</guid>
      <dc:creator>Murali</dc:creator>
      <dc:date>2014-11-15T14:34:51Z</dc:date>
    </item>
    <item>
      <title>Thanks.So let me ask this.</title>
      <link>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605899#M205260</link>
      <description>&lt;P&gt;Thanks.&lt;/P&gt;&lt;P&gt;So let me ask this. Based on the above original config and moving to 9.x do I need to carry over the config or should I leave it off and it will work as is?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;</description>
      <pubDate>Mon, 17 Nov 2014 13:39:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605899#M205260</guid>
      <dc:creator>burleyman</dc:creator>
      <dc:date>2014-11-17T13:39:48Z</dc:date>
    </item>
    <item>
      <title>Yes only for the nat 0</title>
      <link>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605900#M205261</link>
      <description>&lt;P&gt;Yes only for the nat 0 configuration , you need not configure anything extra in latest code.&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Mon, 17 Nov 2014 14:10:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605900#M205261</guid>
      <dc:creator>Murali</dc:creator>
      <dc:date>2014-11-17T14:10:08Z</dc:date>
    </item>
    <item>
      <title>Thanks for all your help.</title>
      <link>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605901#M205262</link>
      <description>&lt;P&gt;Thanks for all your help.&lt;/P&gt;</description>
      <pubDate>Mon, 17 Nov 2014 14:31:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cleanup-and-convert-from-version-8-0-3-to-9-2x/m-p/2605901#M205262</guid>
      <dc:creator>burleyman</dc:creator>
      <dc:date>2014-11-17T14:31:54Z</dc:date>
    </item>
  </channel>
</rss>

