<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Static NAT, Dynamic NAT and PAT in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/static-nat-dynamic-nat-and-pat/m-p/2146480#M358133</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Unless I have missed some Cisco documentation, which certainly is possible, I think Cisco has only given the basic information how their firewalls order the NAT rules.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would first suggest reading the appropriate Configuration Guide for your firewall software level and checking the section that has to do with the ordering of the NAT&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the section in 8.2 software Configuration Guide&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/nat_overview.html#wp1079279"&gt;http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/nat_overview.html#wp1079279&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the section in 8.4 software Configuration Guide (which has totally rewritten NAT format introduced in 8.3(1))&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa84/configuration/guide/nat_overview.html#wp1118157"&gt;http://www.cisco.com/en/US/docs/security/asa/asa84/configuration/guide/nat_overview.html#wp1118157&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you want to further check out the new NAT format I would suggest my own document here on the forums &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-wiki-small" href="https://community.cisco.com/docs/DOC-31116"&gt;https://supportforums.cisco.com/docs/DOC-31116&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Generally the Cisco firewall NAT rule has been decided using both the ordering of the configuration and the type of the NAT. Also when dealing with NAT configurations that all apply to the same source addresses and same NAT type the specific rule has usually been the one chosen. Though I have to say I have gotten a bit distanced from the 8.2 and pre configuration format and operation.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 16 Apr 2013 15:18:59 GMT</pubDate>
    <dc:creator>Jouni Forss</dc:creator>
    <dc:date>2013-04-16T15:18:59Z</dc:date>
    <item>
      <title>Static NAT, Dynamic NAT and PAT</title>
      <link>https://community.cisco.com/t5/network-security/static-nat-dynamic-nat-and-pat/m-p/2146479#M358132</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a question about order of NAtting among Static NAT, Dynamic NAT and PATting. If any IP is natted in ASA configuration with Static, dynamic NAT and PAT, then as we know packet would follow the order as below- &lt;/P&gt;&lt;P&gt;Static NAT--&amp;gt;Dynamic NAT --&amp;gt;PAT &lt;/P&gt;&lt;P&gt;Can anyone help me understand me why? Is it using some principle like "Principle of MAX match in routing"?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards, &lt;BR /&gt;Saurabh&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 01:29:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-nat-dynamic-nat-and-pat/m-p/2146479#M358132</guid>
      <dc:creator>Saurabh Srivastava</dc:creator>
      <dc:date>2019-03-12T01:29:07Z</dc:date>
    </item>
    <item>
      <title>Static NAT, Dynamic NAT and PAT</title>
      <link>https://community.cisco.com/t5/network-security/static-nat-dynamic-nat-and-pat/m-p/2146480#M358133</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Unless I have missed some Cisco documentation, which certainly is possible, I think Cisco has only given the basic information how their firewalls order the NAT rules.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would first suggest reading the appropriate Configuration Guide for your firewall software level and checking the section that has to do with the ordering of the NAT&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the section in 8.2 software Configuration Guide&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/nat_overview.html#wp1079279"&gt;http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/nat_overview.html#wp1079279&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the section in 8.4 software Configuration Guide (which has totally rewritten NAT format introduced in 8.3(1))&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa84/configuration/guide/nat_overview.html#wp1118157"&gt;http://www.cisco.com/en/US/docs/security/asa/asa84/configuration/guide/nat_overview.html#wp1118157&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you want to further check out the new NAT format I would suggest my own document here on the forums &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-wiki-small" href="https://community.cisco.com/docs/DOC-31116"&gt;https://supportforums.cisco.com/docs/DOC-31116&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Generally the Cisco firewall NAT rule has been decided using both the ordering of the configuration and the type of the NAT. Also when dealing with NAT configurations that all apply to the same source addresses and same NAT type the specific rule has usually been the one chosen. Though I have to say I have gotten a bit distanced from the 8.2 and pre configuration format and operation.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Apr 2013 15:18:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-nat-dynamic-nat-and-pat/m-p/2146480#M358133</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2013-04-16T15:18:59Z</dc:date>
    </item>
  </channel>
</rss>

