<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco remote VPN NAT issue in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907113#M436550</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;i have attached packet tracer output and the firewall config , kindly look in to that .&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 21 May 2012 14:08:56 GMT</pubDate>
    <dc:creator>jibsoni</dc:creator>
    <dc:date>2012-05-21T14:08:56Z</dc:date>
    <item>
      <title>Cisco remote VPN NAT issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907110#M436534</link>
      <description>&lt;P&gt;Dear all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am facing an issue , which needs your valuable support. &lt;/P&gt;&lt;P&gt;As per the&amp;nbsp; attached diagram , remote users are getting ip address 192.168.2.x , internal IP = 192.168.1.x , DMZ ip = 172.16.1.x and 10.0.0.x network is accessed via router connected on DMZ in which i dont have control.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My issue is that remote users want to access 10.0.0.x network but they can't , at the same time they can access DMZ and internal network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have tried no NAT as below and i removed first line of ACL as well, but the result is same&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list 160 permit ip 10.0.0.0 255.0.0.0 192.168.2.0 255.255.255.0&lt;/P&gt;&lt;P&gt;access-list 160 permit ip 172.16.1.0 255.255.255.0 192.168.2.0 255.255.255.0&lt;SPAN id="mce_marker"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;nat (dmz) 0 access-list 160&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i wish to try NATing 192.168.2.x&amp;nbsp; traffic using a DMZ IP addess when packets are destined to 10.0.0.x.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;can some one suggest me on how to proceed ?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:09:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907110#M436534</guid>
      <dc:creator>jibsoni</dc:creator>
      <dc:date>2019-03-11T23:09:00Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco remote VPN NAT issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907111#M436548</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; You need to look at a dynamic policy NAT and nating the VPN users to either the DMZ interface or an address within DMZ range which is dedicated to that purpose.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 20 May 2012 21:44:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907111#M436548</guid>
      <dc:creator>ju_mobile</dc:creator>
      <dc:date>2012-05-20T21:44:17Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco remote VPN NAT issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907112#M436549</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You could do a :&lt;/P&gt;&lt;P&gt;NAT (outside) 1 192.168.2.0 netmask 255.255.255.0 outside&lt;/P&gt;&lt;P&gt;global (dmz) 1 172.16.1.x&lt;/P&gt;&lt;P&gt;Can you do a packet-tracer and show us the result of that, this will lead us to a nat or something else issue.&lt;/P&gt;&lt;P&gt;The No_Nat configuration is perfect.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; DO rate all the helpful posts&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 20 May 2012 22:25:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907112#M436549</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-05-20T22:25:46Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco remote VPN NAT issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907113#M436550</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;i have attached packet tracer output and the firewall config , kindly look in to that .&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 21 May 2012 14:08:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907113#M436550</guid>
      <dc:creator>jibsoni</dc:creator>
      <dc:date>2012-05-21T14:08:56Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco remote VPN NAT issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907114#M436551</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all , &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As &lt;A _jive_internal="true" href="https://community.cisco.com/people/jcarvaja" id="jive-5895074370082025057416" onmouseout="" onmouseover=""&gt;jcarvaja&lt;/A&gt; sujested i have tried the NAT config but no luck.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please provide me a solution .&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 26 May 2012 14:18:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907114#M436551</guid>
      <dc:creator>jibsoni</dc:creator>
      <dc:date>2012-05-26T14:18:51Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco remote VPN NAT issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907115#M436552</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is what I want you to do now:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list test permit ip 192.168.2.0 255.255.255.0 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (outside) 10 access-list test outside&lt;/P&gt;&lt;P&gt;global (dmz) 10 interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know the result.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Rate all the helpful posts&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 26 May 2012 21:30:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-remote-vpn-nat-issue/m-p/1907115#M436552</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-05-26T21:30:24Z</dc:date>
    </item>
  </channel>
</rss>

