<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Need Assistance with Translating Old NAT 8.2 with new NAT statements in 9.6 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/need-assistance-with-translating-old-nat-8-2-with-new-nat/m-p/3917000#M25201</link>
    <description>Do you have a full tunnel for your vpn users? This means they access internet through the vpn tunnel.&lt;BR /&gt;&lt;BR /&gt;If so you need a nat statement like:&lt;BR /&gt;Let's assume, your vpn pool subnet is 192.168.10.0/24.&lt;BR /&gt;Config will looks like:&lt;BR /&gt;Object network vpn&lt;BR /&gt;  Subnet 192.168.10.0 255.255.255.0&lt;BR /&gt;  nat (outside, outside) dynamic interface&lt;BR /&gt;&lt;BR /&gt;And you need to enable the following command:&lt;BR /&gt;same-security-traffic permit intra-interface&lt;BR /&gt;</description>
    <pubDate>Fri, 30 Aug 2019 23:43:53 GMT</pubDate>
    <dc:creator>Francesco Molino</dc:creator>
    <dc:date>2019-08-30T23:43:53Z</dc:date>
    <item>
      <title>Need Assistance with Translating Old NAT 8.2 with new NAT statements in 9.6</title>
      <link>https://community.cisco.com/t5/network-security/need-assistance-with-translating-old-nat-8-2-with-new-nat/m-p/3892358#M25181</link>
      <description>&lt;P&gt;Hi I need to translate old NAT statements to New statements and wanna verify if my statements are correct and what needs to be done to verify if all good :&lt;/P&gt;&lt;P&gt;Old:&lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;BR /&gt;nat (outside) 0 access-list MGT-NAT-EXEMPT&lt;BR /&gt;nat (inside) 0 access-list WORKER-NAT-EXEMPT&lt;BR /&gt;access-group MGT-ACL-IN in interface outside&lt;BR /&gt;access-group WORKER-ACL-OUT in interface inside&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;no nat (inside) 1 0.0.0.0 0.0.0.0&lt;BR /&gt;nat (inside) 1 192.168.31.0 255.255.254.0 tcp 0 0 udp 0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;provided :&lt;/P&gt;&lt;P&gt;MGT-NAT-EXEMPT &amp;amp; WORKER-NAT-EXEMPT are extended ACLs&amp;nbsp; that permit Host A &amp;amp; Network A for each other&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;how does each statement translate to new ASA versions&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jul 2019 02:02:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-assistance-with-translating-old-nat-8-2-with-new-nat/m-p/3892358#M25181</guid>
      <dc:creator>Abid7897061</dc:creator>
      <dc:date>2019-07-18T02:02:18Z</dc:date>
    </item>
    <item>
      <title>Re: Need Assistance with Translating Old NAT 8.2 with new NAT statements in 9.6</title>
      <link>https://community.cisco.com/t5/network-security/need-assistance-with-translating-old-nat-8-2-with-new-nat/m-p/3892377#M25184</link>
      <description>Hi&lt;BR /&gt;&lt;BR /&gt;You got few tools which can help you:&lt;BR /&gt;- &lt;A href="https://fwm.cisco.com/auth.do;jsessionid=36C436A92196CFA9BDBEFFD5F48B16AF#appstore:1" target="_blank"&gt;https://fwm.cisco.com/auth.do;jsessionid=36C436A92196CFA9BDBEFFD5F48B16AF#appstore:1&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;- &lt;A href="https://www.tunnelsup.com/nat-converter/" target="_blank"&gt;https://www.tunnelsup.com/nat-converter/&lt;/A&gt;</description>
      <pubDate>Thu, 18 Jul 2019 03:05:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-assistance-with-translating-old-nat-8-2-with-new-nat/m-p/3892377#M25184</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2019-07-18T03:05:52Z</dc:date>
    </item>
    <item>
      <title>Re: Need Assistance with Translating Old NAT 8.2 with new NAT statements in 9.6</title>
      <link>https://community.cisco.com/t5/network-security/need-assistance-with-translating-old-nat-8-2-with-new-nat/m-p/3916908#M25193</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;that tunnels up link is very help ful thanks for that .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;currently VPN tunnel is up , i am able to reach internal networks however i cant reach internet .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i think i am missing something&amp;nbsp; here , as per ASDM logs some TCP connections are denied so i suspect below line has not been translated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;nat (inside) 1 10.129.30.0 255.255.254.0&amp;nbsp; tcp 0 0 udp 0 , what would this become in new ASA, tunnels up doesnt conccert this one .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 30 Aug 2019 18:11:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-assistance-with-translating-old-nat-8-2-with-new-nat/m-p/3916908#M25193</guid>
      <dc:creator>Abid7897061</dc:creator>
      <dc:date>2019-08-30T18:11:44Z</dc:date>
    </item>
    <item>
      <title>Re: Need Assistance with Translating Old NAT 8.2 with new NAT statements in 9.6</title>
      <link>https://community.cisco.com/t5/network-security/need-assistance-with-translating-old-nat-8-2-with-new-nat/m-p/3917000#M25201</link>
      <description>Do you have a full tunnel for your vpn users? This means they access internet through the vpn tunnel.&lt;BR /&gt;&lt;BR /&gt;If so you need a nat statement like:&lt;BR /&gt;Let's assume, your vpn pool subnet is 192.168.10.0/24.&lt;BR /&gt;Config will looks like:&lt;BR /&gt;Object network vpn&lt;BR /&gt;  Subnet 192.168.10.0 255.255.255.0&lt;BR /&gt;  nat (outside, outside) dynamic interface&lt;BR /&gt;&lt;BR /&gt;And you need to enable the following command:&lt;BR /&gt;same-security-traffic permit intra-interface&lt;BR /&gt;</description>
      <pubDate>Fri, 30 Aug 2019 23:43:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-assistance-with-translating-old-nat-8-2-with-new-nat/m-p/3917000#M25201</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2019-08-30T23:43:53Z</dc:date>
    </item>
  </channel>
</rss>

