<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Dynamic nat outside to inside? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/dynamic-nat-outside-to-inside/m-p/2014769#M402410</link>
    <description>&lt;P&gt;Hi Team.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i am just asked to do dynamic nat from outside to inside, i need little help how to accomplish this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(10.10.10.0/24)My Network-A------FirewallIInside-----&lt;STRONG&gt;ASAFirewall&lt;/STRONG&gt;-------FirewallOutside------Client (172.10.0.0/22)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What we want is when client access my network 10.10.10.0/24 from outside as source 172.10.0.0/&lt;STRONG&gt;22&lt;/STRONG&gt; , the source changes to 10.75.0.0/&lt;STRONG&gt;23&lt;/STRONG&gt; and then hit 10.10.10.0/24) and we want to do it like a dynamic nat.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How can i accomplish this?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;can i do &lt;/P&gt;&lt;P&gt;nat (outside ) 1 172.10.0.0 255.255.252.0&lt;/P&gt;&lt;P&gt;global (inside) 1 10.75.0.0 255.255.254.0 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is it correct way to do this??&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Appreciate any suggestions.&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 00:11:42 GMT</pubDate>
    <dc:creator>ahmad82pkn</dc:creator>
    <dc:date>2019-03-12T00:11:42Z</dc:date>
    <item>
      <title>Dynamic nat outside to inside?</title>
      <link>https://community.cisco.com/t5/network-security/dynamic-nat-outside-to-inside/m-p/2014769#M402410</link>
      <description>&lt;P&gt;Hi Team.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i am just asked to do dynamic nat from outside to inside, i need little help how to accomplish this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(10.10.10.0/24)My Network-A------FirewallIInside-----&lt;STRONG&gt;ASAFirewall&lt;/STRONG&gt;-------FirewallOutside------Client (172.10.0.0/22)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What we want is when client access my network 10.10.10.0/24 from outside as source 172.10.0.0/&lt;STRONG&gt;22&lt;/STRONG&gt; , the source changes to 10.75.0.0/&lt;STRONG&gt;23&lt;/STRONG&gt; and then hit 10.10.10.0/24) and we want to do it like a dynamic nat.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How can i accomplish this?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;can i do &lt;/P&gt;&lt;P&gt;nat (outside ) 1 172.10.0.0 255.255.252.0&lt;/P&gt;&lt;P&gt;global (inside) 1 10.75.0.0 255.255.254.0 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is it correct way to do this??&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Appreciate any suggestions.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 00:11:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dynamic-nat-outside-to-inside/m-p/2014769#M402410</guid>
      <dc:creator>ahmad82pkn</dc:creator>
      <dc:date>2019-03-12T00:11:42Z</dc:date>
    </item>
    <item>
      <title>Re: Dynamic nat outside to inside?</title>
      <link>https://community.cisco.com/t5/network-security/dynamic-nat-outside-to-inside/m-p/2014770#M402411</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think you need to alter you configuration abit&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You would need&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nat (outside ) 10 172.10.0.0 255.255.252.0&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;global (inside) 10 10.75.0.0-10.75.1.253&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;global (inside) 10 10.75.1.254&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The first global statement uses a pool of NAT address.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The second global statement uses PAT address for/if the pool runs out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;EDIT: I edited the NAT IDs. I'm not sure if it would have mattered but just to differentiate it from default NAT configurations (presuming you are using ID 1 for them)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2012 09:45:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dynamic-nat-outside-to-inside/m-p/2014770#M402411</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2012-10-19T09:45:55Z</dc:date>
    </item>
    <item>
      <title>Re: Dynamic nat outside to inside?</title>
      <link>https://community.cisco.com/t5/network-security/dynamic-nat-outside-to-inside/m-p/2014771#M402412</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;On the other hand though,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If the VPN users have to get access to Internet through the VPN connection (VPN Client has been configure as full tunnel) it would ofcourse be nice to use the same NAT ID that you have also configured for your LAN -&amp;gt; Internet PAT translations.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2012 10:03:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dynamic-nat-outside-to-inside/m-p/2014771#M402412</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2012-10-19T10:03:04Z</dc:date>
    </item>
  </channel>
</rss>

