<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Nat 0 alternate command in 8.4 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845633#M489463</link>
    <description>&lt;P&gt;Hello Dears,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I want to bypass vpn traffic from natting as my ASA&amp;nbsp; OS is 8.4 can anybody rotue me to the alternate command in 8.4 that will work as Nat 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 22:09:52 GMT</pubDate>
    <dc:creator>estelamathew</dc:creator>
    <dc:date>2019-03-11T22:09:52Z</dc:date>
    <item>
      <title>Nat 0 alternate command in 8.4</title>
      <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845633#M489463</link>
      <description>&lt;P&gt;Hello Dears,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I want to bypass vpn traffic from natting as my ASA&amp;nbsp; OS is 8.4 can anybody rotue me to the alternate command in 8.4 that will work as Nat 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 22:09:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845633#M489463</guid>
      <dc:creator>estelamathew</dc:creator>
      <dc:date>2019-03-11T22:09:52Z</dc:date>
    </item>
    <item>
      <title>Nat 0 alternate command in 8.4</title>
      <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845634#M489464</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;sure.&lt;/P&gt;&lt;P&gt;Here it is:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check the URL.&amp;nbsp; If you have a question, just let me know...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/security/asa/asa83/upgrading/migrating.html#wp60183"&gt;http://www.cisco.com/en/US/docs/security/asa/asa83/upgrading/migrating.html#wp60183&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Rizwan Rafeek&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jan 2012 14:37:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845634#M489464</guid>
      <dc:creator>rizwanr74</dc:creator>
      <dc:date>2012-01-04T14:37:41Z</dc:date>
    </item>
    <item>
      <title>Nat 0 alternate command in 8.4</title>
      <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845635#M489465</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Estela,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here's a very good doc for that purpose:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-wiki-small" href="https://community.cisco.com/docs/DOC-9129"&gt;https://supportforums.cisco.com/docs/DOC-9129&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jan 2012 14:42:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845635#M489465</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2012-01-04T14:42:41Z</dc:date>
    </item>
    <item>
      <title>Nat 0 alternate command in 8.4</title>
      <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845636#M489466</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you confirm the range what i have added is correct it will work.??????????&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object network nat0&lt;/P&gt;&lt;P&gt;range 192.168.1.0&amp;nbsp; 192.168.10.0 &lt;/P&gt;&lt;P&gt;nat (inside,outside) source static nat0 nat0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Alternate to twice Nat&amp;nbsp; can I do the following please confirm &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object network no-nat&lt;/P&gt;&lt;P&gt;subnet&amp;nbsp; 192.168.1.0&amp;nbsp; 255.255.255.0&lt;/P&gt;&lt;P&gt;nat ( inside,outside) static 192.168.1.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The above commands will be configured for all the subnets for example 192.168.2.0,192.168.3.0,192.168.4.0 ...etc&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tx&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jan 2012 15:06:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845636#M489466</guid>
      <dc:creator>estelamathew</dc:creator>
      <dc:date>2012-01-04T15:06:34Z</dc:date>
    </item>
    <item>
      <title>Nat 0 alternate command in 8.4</title>
      <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845637#M489467</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Try this:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object network nat0&lt;/P&gt;&lt;P&gt;192.168.10.0 255.255.255.0&lt;/P&gt;&lt;P&gt;192.168.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static nat0 nat0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You may use range but I never used it before.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Rizwan Rafeek&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jan 2012 16:06:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845637#M489467</guid>
      <dc:creator>rizwanr74</dc:creator>
      <dc:date>2012-01-04T16:06:10Z</dc:date>
    </item>
    <item>
      <title>Nat 0 alternate command in 8.4</title>
      <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845638#M489468</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Rizwan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The nat statement is not the corrcet nat 0 oin ASA 8.4, 'll explain with an example:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Pre 8.3&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list nonat extended permit ip host 1.1.1.1 host 2.2.2.2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside) 0 access-list nonat&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Post 8.3:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object network network_1.1.1.1&lt;/P&gt;&lt;P&gt;&amp;nbsp; host 1.1.1.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object network network_2.2.2.2&lt;/P&gt;&lt;P&gt;&amp;nbsp; host 2.2.2.2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static network_1.1.1.1 network_1.1.1.1 destination static network_2.2.2.2 network_2.2.2.2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is teh right statement for nonat post 8.3&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jan 2012 16:30:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845638#M489468</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2012-01-04T16:30:22Z</dc:date>
    </item>
    <item>
      <title>Nat 0 alternate command in 8.4</title>
      <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845639#M489469</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;"The nat statement is not the corrcet nat 0 oin ASA 8.4,"&amp;nbsp; Ummm.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;FYI&lt;/P&gt;&lt;P&gt;Here is a piece of config I found from Cisco URL Doc, which I posted first, which is similar to your confirmation request.&lt;/P&gt;&lt;P&gt; &lt;BR /&gt;8.3(2) through 8.4(1): &lt;/P&gt;&lt;P&gt;object network obj-10.1.2.0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; subnet 10.1.2.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-10.1.2.0 obj-10.1.2.0 unidirectional&lt;BR /&gt;nat (dmz,outside) source static obj-10.1.2.0 obj-10.1.2.0 unidirectional #&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;8.4(2) and later: &lt;BR /&gt;object network obj-10.1.2.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp; subnet 10.1.2.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-10.1.2.0 obj-10.1.2.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.1.2.0 obj-10.1.2.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;&lt;BR /&gt; &lt;BR /&gt;But your subsequent request came with different scenario for no-nat includes a source and a destination.&lt;/P&gt;&lt;P&gt;I am glad it worked out for you thumbe !&lt;/P&gt;&lt;P&gt; &lt;BR /&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jan 2012 17:18:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845639#M489469</guid>
      <dc:creator>rizwanr74</dc:creator>
      <dc:date>2012-01-04T17:18:43Z</dc:date>
    </item>
    <item>
      <title>Nat 0 alternate command in 8.4</title>
      <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845640#M489470</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI Rizwan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes the one that you specified also does the nat exemption but in your case the destination is taken to be any, so there is an implicit "destination static any any" at the end of the statement, in case on lan to lan setup, you would mostly like to nat exempt the traffic going from the local site to remote site, so I suggested a more specific one for it, which specifies the destination as well.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jan 2012 17:36:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845640#M489470</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2012-01-04T17:36:10Z</dc:date>
    </item>
    <item>
      <title>Nat 0 alternate command in 8.4</title>
      <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845641#M489471</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; @Varun Rao, "Yes the one that you specified also does the nat exemption but in your case the destination is taken to be any," &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There is no my case, it was only an example found from Cisco Doc.&lt;/P&gt;&lt;P&gt;The case what matters are these given network segments, as per users request.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat ( inside,outside) static&lt;/P&gt;&lt;P&gt;192.168.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;192.168.2.0,&lt;/P&gt;&lt;P&gt;192.168.3.0,&lt;/P&gt;&lt;P&gt;192.168.4.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;@Varun Rao "in case on lan to lan setup, you would mostly like to nat exempt the traffic going from the local site to remote site, so I suggested a more specific one for it, which specifies the destination as well."&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I do not know, where you got the impression that it is nothing but local site to remote site and I believe that I did specified interfaces within the brackets as above. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry thumbee, you are confused.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jan 2012 18:11:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845641#M489471</guid>
      <dc:creator>rizwanr74</dc:creator>
      <dc:date>2012-01-04T18:11:03Z</dc:date>
    </item>
    <item>
      <title>Nat 0 alternate command in 8.4</title>
      <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845642#M489472</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Rizwan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="min-height: 8pt; height: 8pt;"&gt;Try this: &lt;/P&gt;&lt;P&gt;object network nat0&lt;/P&gt;&lt;P&gt;192.168.10.0 255.255.255.0&lt;/P&gt;&lt;P&gt;192.168.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;More than 1 subnet is not accepted in object network if you try to specify 2nd subnet 1st subnet will be replace by the 2nd subnet.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jan 2012 19:14:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845642#M489472</guid>
      <dc:creator>estelamathew</dc:creator>
      <dc:date>2012-01-04T19:14:35Z</dc:date>
    </item>
    <item>
      <title>Nat 0 alternate command in 8.4</title>
      <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845643#M489473</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, you must have individual nat for each network segment on version 8.4&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jan 2012 19:38:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845643#M489473</guid>
      <dc:creator>rizwanr74</dc:creator>
      <dc:date>2012-01-04T19:38:56Z</dc:date>
    </item>
    <item>
      <title>Re: Nat 0 alternate command in 8.4</title>
      <link>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845644#M489474</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rizwan and Varun.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can u tell me what does exactly no-proxy-arp and route lookup&amp;nbsp; are doing in this command&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jan 2012 20:42:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-0-alternate-command-in-8-4/m-p/1845644#M489474</guid>
      <dc:creator>estelamathew</dc:creator>
      <dc:date>2012-01-04T20:42:19Z</dc:date>
    </item>
  </channel>
</rss>

