<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re:IOS Update Problem in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ios-update-problem/m-p/1981122#M401514</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;The versions are different and the configs ar different.&lt;/P&gt;&lt;P&gt;You search google with the keywords cisco 8.3 asa youtube.&lt;/P&gt;&lt;P&gt;You will get a video showing the steps to configure in ver 8.3.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support Android App&lt;/P&gt;&lt;P&gt;Pls rate useful posts.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 27 Jul 2012 16:40:32 GMT</pubDate>
    <dc:creator>Durga Prasad M.S</dc:creator>
    <dc:date>2012-07-27T16:40:32Z</dc:date>
    <item>
      <title>IOS Update Problem</title>
      <link>https://community.cisco.com/t5/network-security/ios-update-problem/m-p/1981121#M401513</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have CISCO 5510 firewall running with IOS ASA821-k8.bin.&lt;/P&gt;&lt;P&gt;My company has purchased another ASA5510 with IOS ASA843-k8.bin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We need to run both firewalls in Active/Standby mode.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I upgrade the IOS of old firewall to ASA843-k8.bin the the running configurations does not work properly&lt;/P&gt;&lt;P&gt;It does not pick the network objects and NAT rules as they are configured with OLD IOS and running.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or if I restore the configurations of old firewall at New ASA the result is worst. Even firewall with new IOS does not show any Access Rule and NAT rule and does not supprt network objects&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help to solve this issue&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:35:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ios-update-problem/m-p/1981121#M401513</guid>
      <dc:creator>mehmoodch</dc:creator>
      <dc:date>2019-03-11T23:35:31Z</dc:date>
    </item>
    <item>
      <title>Re:IOS Update Problem</title>
      <link>https://community.cisco.com/t5/network-security/ios-update-problem/m-p/1981122#M401514</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;The versions are different and the configs ar different.&lt;/P&gt;&lt;P&gt;You search google with the keywords cisco 8.3 asa youtube.&lt;/P&gt;&lt;P&gt;You will get a video showing the steps to configure in ver 8.3.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support Android App&lt;/P&gt;&lt;P&gt;Pls rate useful posts.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 27 Jul 2012 16:40:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ios-update-problem/m-p/1981122#M401514</guid>
      <dc:creator>Durga Prasad M.S</dc:creator>
      <dc:date>2012-07-27T16:40:32Z</dc:date>
    </item>
    <item>
      <title>Re:IOS Update Problem</title>
      <link>https://community.cisco.com/t5/network-security/ios-update-problem/m-p/1981123#M401515</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Mahmood,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Either you can make your bothe ASA's running in ASA 8.25 OS or Upgrade to 8.4.3 OS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you make 8.25 then you will not have much congiguration changes. But if you make it in to 8.4 there are few changes es[ecially with the NAT rules.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&lt;STRONG&gt;Static NAT/PAT&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;TABLE border="1" cellpadding="0" cellspacing="0" style="width: 100.0%; border: solid black 1.0pt; padding: px;" width="100%"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; background: #6690BC; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P align="center" style="margin-bottom: .0001pt; text-align: center; line-height: normal;"&gt;&lt;STRONG&gt;Pre-8.3 NAT&lt;/STRONG&gt;&lt;STRONG&gt; &lt;/STRONG&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; background: #6690BC; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P align="center" style="margin-bottom: .0001pt; text-align: center; line-height: normal;"&gt;&lt;STRONG&gt;8.3 NAT&lt;/STRONG&gt;&lt;STRONG&gt; &lt;/STRONG&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&lt;STRONG&gt;Regular Static NAT&lt;/STRONG&gt;&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;static (inside,outside)&amp;nbsp;&amp;nbsp; 192.168.100.100 10.1.1.6 netmask&amp;nbsp; 255.255.255.255&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network&amp;nbsp;&amp;nbsp; obj-10.1.1.6&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; host 10.1.1.6&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat (inside,outside) static 192.168.100.100&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&lt;STRONG&gt;Regular Static PAT&lt;/STRONG&gt;&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;static (inside,outside) tcp&amp;nbsp;&amp;nbsp; 192.168.100.100 80 10.1.1.16 8080 netmask&amp;nbsp; 255.255.255.255&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network&amp;nbsp;&amp;nbsp; obj-10.1.1.16&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; host 10.1.1.16&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat (inside,outside) static 192.168.100.100 service tcp 8080 www&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&lt;STRONG&gt;Static Policy NAT&lt;/STRONG&gt;&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;access-list NET1 permit ip host&amp;nbsp;&amp;nbsp; 10.1.2.27 10.76.5.0 255.255.255.224&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;static (inside,outside)&amp;nbsp;&amp;nbsp; 192.168.100.100 access-list NET1&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;object network obj-10.1.2.27&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&amp;nbsp;&amp;nbsp; host 10.1.2.27&lt;BR /&gt; object network obj-192.168.100.100&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; host 192.168.100.100&lt;BR /&gt; object network obj-10.76.5.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 10.76.5.0 255.255.255.224&lt;BR /&gt; nat (inside,outside) source static&amp;nbsp;&amp;nbsp; obj-10.1.2.27 obj-192.168.100.100 &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; destination static obj-10.76.5.0 obj-10.76.5.0&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;TABLE border="1" cellpadding="0" cellspacing="0" style="width: 100.0%; border: solid black 1.0pt; padding: px;" width="100%"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; background: #6690BC; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P align="center" style="margin-bottom: .0001pt; text-align: center; line-height: normal;"&gt;&lt;STRONG&gt;Pre-8.3 NAT&lt;/STRONG&gt;&lt;STRONG&gt; &lt;/STRONG&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; background: #6690BC; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P align="center" style="margin-bottom: .0001pt; text-align: center; line-height: normal;"&gt;&lt;STRONG&gt;8.3 NAT&lt;/STRONG&gt;&lt;STRONG&gt; &lt;/STRONG&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&lt;STRONG&gt;Regular Dynamic PAT&lt;/STRONG&gt;&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;nat (inside) 1&amp;nbsp;&amp;nbsp; 192.168.1.0 255.255.255.0&lt;BR /&gt; nat (dmz) 1 10.1.1.0 255.255.255.0&lt;BR /&gt; global (outside) 1 &lt;BR /&gt; 192.168.100.100&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network obj-192.168.1.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 192.168.1.0 255.255.255.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat (inside,outside) dynamic 192.168.100.100&lt;BR /&gt; object network obj-10.1.1.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 10.1.1.0 255.255.255.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat (dmz,outside) dynamic 192.168.100.100&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&lt;STRONG&gt;Regular Dynamic PAT&lt;/STRONG&gt;&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;nat (inside) 1&amp;nbsp;&amp;nbsp; 10.1.2.0 255.255.255.0&lt;BR /&gt; global (outside) 1 192.168.100.100&lt;BR /&gt; global (dmz) 1 192.168.1.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: 12.0pt; line-height: normal;"&gt;&lt;BR /&gt; &lt;BR /&gt; &lt;BR /&gt; &lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network&amp;nbsp;&amp;nbsp; obj-10.1.2.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 10.1.2.0 255.255.255.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat (inside,outside) dynamic 192.168.100.100&lt;BR /&gt; object network obj-10.1.2.0-01&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 10.1.2.0 255.255.255.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat (inside,dmz) dynamic 192.168.1.1&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&lt;STRONG&gt;Regular Dynamic PAT-3&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;nat (inside) 1 0 0 &lt;BR /&gt; global (outside) 1 interface&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network&amp;nbsp;&amp;nbsp; obj_any&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 0.0.0.0 0.0.0.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat (inside,outside) dynamic interface&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&lt;STRONG&gt;Dynamic Policy NAT&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object-group&amp;nbsp;&amp;nbsp; network og-net-src&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; network-object 192.168.1.0 255.255.255.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; network-object 192.168.2.0 255.255.255.0&lt;BR /&gt; object-group network og-net-dst&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; network-object 192.168.200.0 255.255.255.0&lt;BR /&gt; object-group service og-ser-src&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; service-object tcp gt 2000&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; service-object tcp eq 1500&lt;BR /&gt; access-list NET6 extended permit&amp;nbsp;&amp;nbsp; object-group og-ser-src &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; object-group og-net-src object-group og-net-dst&lt;BR /&gt; nat (inside) 10 access-list NET6&lt;BR /&gt; global (outside) 10 192.168.100.100&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network&amp;nbsp;&amp;nbsp; obj-192.168.100.100&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; host 192.168.100.100&lt;BR /&gt; object service&amp;nbsp;&amp;nbsp; obj-tcp-range-2001-65535&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; service tcp destination range 2001 65535&lt;BR /&gt; object service obj-tcp-eq-1500&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; service tcp destination eq 1500&lt;BR /&gt; nat (inside,outside) source dynamic&amp;nbsp;&amp;nbsp; og-net-src &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; obj-192.168.100.100 destination &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; static og-net-dst og-net-dst&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; service obj-tcp-range-2001-65535&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; obj-tcp-range-2001-65535&lt;BR /&gt; nat (inside,outside) source dynamic&amp;nbsp;&amp;nbsp; og-net-src &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; obj-192.168.100.100 destination &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; static og-net-dst og-net-dst &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; service obj-tcp-eq-1500 obj-tcp-eq-1500&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&lt;STRONG&gt;Policy Dynamic NAT (with multiple&amp;nbsp;&amp;nbsp; ACEs)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;access-list ACL_NAT&amp;nbsp;&amp;nbsp; permit ip 172.29.0.0 255.255.0.0 &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.1.0 255.255.255.0&lt;BR /&gt; access-list ACL_NAT permit ip&amp;nbsp;&amp;nbsp; 172.29.0.0 255.255.0.0 &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.2.0 255.255.255.0&lt;BR /&gt; access-list ACL_NAT permit ip&amp;nbsp;&amp;nbsp; 172.29.0.0 255.255.0.0 &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.3.0 255.255.255.0&lt;BR /&gt; access-list ACL_NAT permit ip&amp;nbsp;&amp;nbsp; 172.29.0.0 255.255.0.0 &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.4.0 255.255.255.0&lt;BR /&gt; nat (inside) 1 access-list ACL_NAT&lt;BR /&gt; global (outside) 1 192.168.100.100&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network&amp;nbsp;&amp;nbsp; obj-172.29.0.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 172.29.0.0 255.255.0.0&lt;BR /&gt; object network obj-192.168.100.100&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; host 192.168.100.100&lt;BR /&gt; object network obj-192.168.1.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 192.168.1.0 255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network&amp;nbsp;&amp;nbsp; obj-192.168.2.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 192.168.2.0 255.255.255.0&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network&amp;nbsp;&amp;nbsp; obj-192.168.3.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 192.168.3.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network&amp;nbsp;&amp;nbsp; obj-192.168.4.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 192.168.4.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;nat (inside,outside) source dynamic obj-172.29.0.0&amp;nbsp;&amp;nbsp; obj-192.168.100.100 &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; destination static obj-192.168.1.0 obj-192.168.1.0&lt;BR /&gt; nat (inside,outside) source dynamic obj-172.29.0.0 obj-192.168.100.100 &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; destination static obj-192.168.2.0 obj-192.168.2.0&lt;BR /&gt; nat (inside,outside) source dynamic obj-172.29.0.0 obj-192.168.100.100 &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; destination static obj-192.168.3.0 obj-192.168.3.0&lt;BR /&gt; nat (inside,outside) source dynamic obj-172.29.0.0 obj-192.168.100.100 &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; destination static obj-192.168.4.0 obj-192.168.4.0&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&lt;STRONG&gt;Outside NAT&lt;/STRONG&gt;&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;global (inside) 1&amp;nbsp;&amp;nbsp; 10.1.2.30-1-10.1.2.40&lt;BR /&gt; nat (dmz) 1 10.1.1.0 255.255.255.0&amp;nbsp;&amp;nbsp; outside&lt;BR /&gt; static (inside,dmz) 10.1.1.5 10.1.2.27&amp;nbsp;&amp;nbsp; netmask 255.255.255.255 &lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&lt;STRONG&gt; &lt;/STRONG&gt;object network obj-10.1.2.27&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; host 10.1.2.27&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat (inside,dmz) static 10.1.1.5&lt;BR /&gt; object network obj-10.1.1.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 10.1.1.0 255.255.255.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat (dmz,inside) dynamic obj-10.1.2.30-10.1.2.40&lt;BR /&gt; object network obj-10.1.2.30-10.1.2.40&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; range 10.1.2.30 10.1.2.40&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&lt;STRONG&gt;NAT &amp;amp; Interface PAT together&lt;/STRONG&gt;&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;nat (inside) 1&amp;nbsp;&amp;nbsp; 10.1.2.0 255.255.255.0&lt;BR /&gt; global (outside) 1 interface &lt;BR /&gt; global (outside) 1&amp;nbsp;&amp;nbsp; 192.168.100.100-192.168.100.200&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network&amp;nbsp;&amp;nbsp; obj-192.168.100.100_192.168.100.200&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; range 192.168.100.100 192.168.100.200&lt;BR /&gt; object network obj-10.1.2.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 10.1.2.0 255.255.255.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat (inside,outside) dynamic &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; obj-192.168.100.100_192.168.100.200 interface&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&lt;STRONG&gt;NAT &amp;amp; Interface PAT with&amp;nbsp;&amp;nbsp; additional PAT together &lt;/STRONG&gt;&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;nat (inside) 1&amp;nbsp;&amp;nbsp; 10.0.0.0 255.0.0.0&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&amp;nbsp; global (outside) 1&amp;nbsp;&amp;nbsp; 192.168.100.1-192.168.100.200&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&amp;nbsp; global (outside) 1&amp;nbsp;&amp;nbsp; interface&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&amp;nbsp; global (outside) 1&amp;nbsp;&amp;nbsp; 192.168.100.210&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;object network&amp;nbsp;&amp;nbsp; obj-192.168.100.100_192.168.100.200&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; range 192.168.100.100 192.168.100.200&lt;BR /&gt; object network obj-10.0.0.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; subnet 10.0.0.0 255.0.0.0&lt;BR /&gt; object network second-pat&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; host 192.168.100.210&lt;BR /&gt; object-group network dynamic-nat-pat&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; network-object object obj-192.168.100.100_192.168.100.200&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; network-object object second-pat&lt;BR /&gt; &lt;BR /&gt; nat (inside,outside) dynamic dynamic-nat-pat interface&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&lt;STRONG&gt;Static NAT for a Range of Ports&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;Not Possible - Need to write&amp;nbsp;&amp;nbsp; multiple Statements or perform a Static one-to-one NAT&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border: solid black 1.0pt; padding: 2.25pt 2.25pt 2.25pt 2.25pt;"&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (in)&amp;nbsp;&amp;nbsp;&amp;nbsp; (out)&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;10.1.1.1-------ASA-----&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; --xlate-------&amp;gt; 10.2.2.2&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;Original Ports: 10000 - 10010&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;Translated ports: 20000 - 20010&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&lt;BR /&gt; object service ports&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;service tcp source&amp;nbsp;&amp;nbsp; range 10000 10010&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&lt;BR /&gt; object service ports-xlate&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;service tcp source&amp;nbsp;&amp;nbsp; range 20000 20010&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&lt;BR /&gt; object network server&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;host 10.1.1.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-top: px; margin-bottom: px; line-height: normal;"&gt;object network server-xlate&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;host 10.2.2.2&lt;/P&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;&lt;BR /&gt; &lt;BR /&gt; nat (inside,outside) source static server server-xlate service ports&amp;nbsp;&amp;nbsp; ports-xlate&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P style="margin-bottom: .0001pt; line-height: normal;"&gt;76551 Views &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This you need to take care. So that there will not be any issues.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please do rate for the helpful posts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;By&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Karthik&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 28 Jul 2012 05:22:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ios-update-problem/m-p/1981123#M401515</guid>
      <dc:creator>nkarthikeyan</dc:creator>
      <dc:date>2012-07-28T05:22:31Z</dc:date>
    </item>
  </channel>
</rss>

