<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic NAT: Where to implement it. in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737721#M531787</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You should implement NAT on the gateway device of your network. So, say, if your ISP connects to the firewall, you will should configure NAT on the firewall. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When you implement NAT, it would be best if you translate all your internal IP addresses to public IP addresses using NAT.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is a guide on how to implement NAT on an ASA:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/nat_control.html"&gt;http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/nat_control.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if you have more queries.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anu&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 04 Sep 2011 17:41:27 GMT</pubDate>
    <dc:creator>Anu M Chacko</dc:creator>
    <dc:date>2011-09-04T17:41:27Z</dc:date>
    <item>
      <title>NAT: Where to implement it.</title>
      <link>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737720#M531786</link>
      <description>&lt;P&gt;Im planning to rollout NAT on our network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are there any best practices when comes to implement NAT?&lt;/P&gt;&lt;P&gt;and where is the best place to implement NAT: on the firewall or on the Internet router?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:20:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737720#M531786</guid>
      <dc:creator>zappo0305</dc:creator>
      <dc:date>2019-03-11T21:20:42Z</dc:date>
    </item>
    <item>
      <title>NAT: Where to implement it.</title>
      <link>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737721#M531787</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You should implement NAT on the gateway device of your network. So, say, if your ISP connects to the firewall, you will should configure NAT on the firewall. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When you implement NAT, it would be best if you translate all your internal IP addresses to public IP addresses using NAT.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is a guide on how to implement NAT on an ASA:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/nat_control.html"&gt;http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/nat_control.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if you have more queries.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anu&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Sep 2011 17:41:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737721#M531787</guid>
      <dc:creator>Anu M Chacko</dc:creator>
      <dc:date>2011-09-04T17:41:27Z</dc:date>
    </item>
    <item>
      <title>NAT: Where to implement it.</title>
      <link>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737722#M531789</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;my gateway is the 4500 , the firewall sitting behind the 4500.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Would it be more secure implement NAT on the firewall?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I know the definition of NAT and how it works.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any recommendations would be greatly appreciated.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Sep 2011 17:49:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737722#M531789</guid>
      <dc:creator>zappo0305</dc:creator>
      <dc:date>2011-09-04T17:49:29Z</dc:date>
    </item>
    <item>
      <title>Re: NAT: Where to implement it.</title>
      <link>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737723#M531791</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;So your ISP connects to the 4500.&amp;nbsp;&amp;nbsp; Is there a specific reason why you have the 4500 outside and the firewall on the inside?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Sep 2011 17:56:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737723#M531791</guid>
      <dc:creator>Anu M Chacko</dc:creator>
      <dc:date>2011-09-04T17:56:05Z</dc:date>
    </item>
    <item>
      <title>NAT: Where to implement it.</title>
      <link>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737724#M531793</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Having an internal firewall to protect the internal network? and the 4500 to do routing?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ANy&amp;nbsp; more tips any 1?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Sep 2011 18:02:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737724#M531793</guid>
      <dc:creator>zappo0305</dc:creator>
      <dc:date>2011-09-04T18:02:53Z</dc:date>
    </item>
    <item>
      <title>NAT: Where to implement it.</title>
      <link>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737725#M531794</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I would suggest you put your firewall outside of the 4500 and configure NAT on the firewall. Or else, you can configure NAT on the 4500 but then, having or not having the firewall does not really make a difference.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Sep 2011 18:09:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737725#M531794</guid>
      <dc:creator>Anu M Chacko</dc:creator>
      <dc:date>2011-09-04T18:09:00Z</dc:date>
    </item>
    <item>
      <title>NAT: Where to implement it.</title>
      <link>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737726#M531795</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is there any reason why you dont want to use the firewall as a router also? e.g. routing performance requirements? Most setups I see do have the router outside the firewall, else just a firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Not sure what Anu means by his last comment as firewalls offer much more protection that just NAT. ACLs, packet inspection to name just two.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Sep 2011 19:39:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nat-where-to-implement-it/m-p/1737726#M531795</guid>
      <dc:creator>sir.vegaskid</dc:creator>
      <dc:date>2011-09-04T19:39:24Z</dc:date>
    </item>
  </channel>
</rss>

