<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi ,As far as I know , It is in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nat-acces-to-dmz-host-from-inside-to-both-its-public-and-private/m-p/2502152#M237519</link>
    <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;As far as I know , It is possible and very common use NAT exceptions for that purpose.&lt;/P&gt;&lt;P&gt;Can you please check the following link and compare with you're config:&lt;/P&gt;&lt;P&gt;https://supportforums.cisco.com/document/44566/asa-83-nat-exemption-example-basic-l2l-vpn-and-basic-ra-vpn&lt;/P&gt;&lt;P&gt;Also check the release notes of the software version you're running and see if it's supported.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I hope this hep.&lt;/P&gt;&lt;P&gt;Regards ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 16 Jun 2014 18:10:27 GMT</pubDate>
    <dc:creator>rvarelac</dc:creator>
    <dc:date>2014-06-16T18:10:27Z</dc:date>
    <item>
      <title>NAT. Acces to DMZ host from inside to both its Public and private address</title>
      <link>https://community.cisco.com/t5/network-security/nat-acces-to-dmz-host-from-inside-to-both-its-public-and-private/m-p/2502151#M237518</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a unique requirement I think? We require that inside hosts, can access a host on the DMZ via both its public address and its private address.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So if the Real DMZ address is lets say 10.1.1.1 and its public address is 1.1.1.1 we need any host on the inside to be able to communicate with both its public and private address.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have tried this published the public address to the inside and that works fine inside hosts can ping the public address. We then created a NAT Exempt rule to its real address, this does not work however and we get the following error.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;no Translation group found for icmp.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can this be technically done or are we completely off the track here?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Darren&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:20:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-acces-to-dmz-host-from-inside-to-both-its-public-and-private/m-p/2502151#M237518</guid>
      <dc:creator>darren.frowen</dc:creator>
      <dc:date>2019-03-12T04:20:13Z</dc:date>
    </item>
    <item>
      <title>Hi ,As far as I know , It is</title>
      <link>https://community.cisco.com/t5/network-security/nat-acces-to-dmz-host-from-inside-to-both-its-public-and-private/m-p/2502152#M237519</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;As far as I know , It is possible and very common use NAT exceptions for that purpose.&lt;/P&gt;&lt;P&gt;Can you please check the following link and compare with you're config:&lt;/P&gt;&lt;P&gt;https://supportforums.cisco.com/document/44566/asa-83-nat-exemption-example-basic-l2l-vpn-and-basic-ra-vpn&lt;/P&gt;&lt;P&gt;Also check the release notes of the software version you're running and see if it's supported.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I hope this hep.&lt;/P&gt;&lt;P&gt;Regards ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jun 2014 18:10:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-acces-to-dmz-host-from-inside-to-both-its-public-and-private/m-p/2502152#M237519</guid>
      <dc:creator>rvarelac</dc:creator>
      <dc:date>2014-06-16T18:10:27Z</dc:date>
    </item>
  </channel>
</rss>

