<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic help with 8.4 natting in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/help-with-8-4-natting/m-p/1741946#M494785</link>
    <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I worked on ASAs previoulsy, many version ago.&amp;nbsp; This new 8.4 IOS is kind of throwing me for a loop.&amp;nbsp; Also I have been out of firewalling for some time and trying to get back into the swing of things.&amp;nbsp; So anyway, basically I am just trying to publish OWA on a specific ip address.&amp;nbsp; this is what I have right now as my nat&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (outside,inside) source dynamic any &amp;lt;real IP&amp;gt; destination static OWA_Server OWA_Server service https https&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is a new box with no real world network behind it, so I cannot test but when I do a packet trace I see:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Dynamic translate &amp;lt;real random IP&amp;gt;/4444 to &amp;lt;real IP&amp;gt;/27953&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What concerns me in the translation is the port numbers.....am I looking at the wrong thing? or am I just doing this completely wrong?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;TIA,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;R&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 21:42:39 GMT</pubDate>
    <dc:creator>rhltechie</dc:creator>
    <dc:date>2019-03-11T21:42:39Z</dc:date>
    <item>
      <title>help with 8.4 natting</title>
      <link>https://community.cisco.com/t5/network-security/help-with-8-4-natting/m-p/1741946#M494785</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I worked on ASAs previoulsy, many version ago.&amp;nbsp; This new 8.4 IOS is kind of throwing me for a loop.&amp;nbsp; Also I have been out of firewalling for some time and trying to get back into the swing of things.&amp;nbsp; So anyway, basically I am just trying to publish OWA on a specific ip address.&amp;nbsp; this is what I have right now as my nat&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (outside,inside) source dynamic any &amp;lt;real IP&amp;gt; destination static OWA_Server OWA_Server service https https&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is a new box with no real world network behind it, so I cannot test but when I do a packet trace I see:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Dynamic translate &amp;lt;real random IP&amp;gt;/4444 to &amp;lt;real IP&amp;gt;/27953&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What concerns me in the translation is the port numbers.....am I looking at the wrong thing? or am I just doing this completely wrong?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;TIA,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;R&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:42:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/help-with-8-4-natting/m-p/1741946#M494785</guid>
      <dc:creator>rhltechie</dc:creator>
      <dc:date>2019-03-11T21:42:39Z</dc:date>
    </item>
    <item>
      <title>help with 8.4 natting</title>
      <link>https://community.cisco.com/t5/network-security/help-with-8-4-natting/m-p/1741947#M494786</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;look at this:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/security/asa/asa84/configuration/guide/nat_objects.html#wp1106703"&gt;http://www.cisco.com/en/US/docs/security/asa/asa84/configuration/guide/nat_objects.html#wp1106703&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Alain.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 26 Oct 2011 17:47:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/help-with-8-4-natting/m-p/1741947#M494786</guid>
      <dc:creator>cadet alain</dc:creator>
      <dc:date>2011-10-26T17:47:49Z</dc:date>
    </item>
    <item>
      <title>help with 8.4 natting</title>
      <link>https://community.cisco.com/t5/network-security/help-with-8-4-natting/m-p/1741948#M494787</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi R,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What i undesrtand is that you are trying to publish your OWA server to the outside world on port 443. The nat that you have is not actually corrcect, let me explain :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Lets say the public ip of OWA server is 1.1.1.1&lt;/P&gt;&lt;P&gt;and private ip is 10.1.1.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;then;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object network OWA_public&lt;/P&gt;&lt;P&gt; host 1.1.1.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object network OWA_real&lt;/P&gt;&lt;P&gt; host 10.1.1.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object service tcp_https&lt;/P&gt;&lt;P&gt;&amp;nbsp; service tcp destination eq 443&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (outside,inside) source static any any destination static OWA_public OWA_real service tcp_https tcp_https&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if you have any questions regarding the above&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 26 Oct 2011 19:19:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/help-with-8-4-natting/m-p/1741948#M494787</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-10-26T19:19:23Z</dc:date>
    </item>
    <item>
      <title>help with 8.4 natting</title>
      <link>https://community.cisco.com/t5/network-security/help-with-8-4-natting/m-p/1741949#M494788</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I see now I should be using a static nat but the usage is still a little confusing to me.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;when I enter the above and then do a packet trace on it I see the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static translate &lt;RANDOM ip=""&gt;/4576 to &lt;SAME random="" ip=""&gt;/4576&lt;/SAME&gt;&lt;/RANDOM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;which doesnt seem to make sense as to what i am after.&amp;nbsp; am i looking at the packet tracer wrong?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks for your help.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 26 Oct 2011 19:56:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/help-with-8-4-natting/m-p/1741949#M494788</guid>
      <dc:creator>rhltechie</dc:creator>
      <dc:date>2011-10-26T19:56:47Z</dc:date>
    </item>
  </channel>
</rss>

