<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic combining dynamic and static nat in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/combining-dynamic-and-static-nat/m-p/1684155#M534960</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can someone please tell me what this statement does in combining dynamic and static nat in this manner? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;nat (outside,outside) source dynamic DM_INLINE_NETWORK interface destination static obj-a.b.c.d obj-a.b.c.d&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 21:03:58 GMT</pubDate>
    <dc:creator>lcaruso</dc:creator>
    <dc:date>2019-03-11T21:03:58Z</dc:date>
    <item>
      <title>combining dynamic and static nat</title>
      <link>https://community.cisco.com/t5/network-security/combining-dynamic-and-static-nat/m-p/1684155#M534960</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can someone please tell me what this statement does in combining dynamic and static nat in this manner? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;nat (outside,outside) source dynamic DM_INLINE_NETWORK interface destination static obj-a.b.c.d obj-a.b.c.d&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:03:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/combining-dynamic-and-static-nat/m-p/1684155#M534960</guid>
      <dc:creator>lcaruso</dc:creator>
      <dc:date>2019-03-11T21:03:58Z</dc:date>
    </item>
    <item>
      <title>combining dynamic and static nat</title>
      <link>https://community.cisco.com/t5/network-security/combining-dynamic-and-static-nat/m-p/1684156#M534961</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Icaruso,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me give it a try &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;, the statement:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (outside,outside) source dynamic DM_INLINE_NETWORK interface destination static obj-a.b.c.d obj-a.b.c.d&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The purpose of this nat is u-turning the traffic on outside interface, if traffic from source &lt;/P&gt;&lt;P&gt;DM_INLINE_NETWORK going to the destination obj-a.b.c.d, should be dynamically patted to your outside interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In this Nat statement, the source is dynamically patted to outside interface and the destination is statically mapped to itself. If any traffic from DM_INLINE_NETWORK hits your outside interface, it would be u-turned and then patted to your outside interface, so the destination woudl see the packets coming from your outside IP.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if this helps, if you ahve any other queries, do post.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Jul 2011 03:12:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/combining-dynamic-and-static-nat/m-p/1684156#M534961</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-27T03:12:25Z</dc:date>
    </item>
    <item>
      <title>combining dynamic and static nat</title>
      <link>https://community.cisco.com/t5/network-security/combining-dynamic-and-static-nat/m-p/1684157#M534962</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Varun,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your reply. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I guess I didn't understand the need for source dynamic. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is that because DM_INLINE_NETWORK is actually an object with a list of several networks, so dynamic makes it possible to put all of them into one nat statement?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Jul 2011 15:18:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/combining-dynamic-and-static-nat/m-p/1684157#M534962</guid>
      <dc:creator>lcaruso</dc:creator>
      <dc:date>2011-07-27T15:18:24Z</dc:date>
    </item>
    <item>
      <title>Re: combining dynamic and static nat</title>
      <link>https://community.cisco.com/t5/network-security/combining-dynamic-and-static-nat/m-p/1684158#M534963</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Icaruso,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes the DM_INLINE_NETWORK is an object which might include a whole network and why we are using source dynamic is because, for all the host in the object, the destination would see the request coming from the inside interface of your firewall, so that is the reason for it. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Jul 2011 15:30:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/combining-dynamic-and-static-nat/m-p/1684158#M534963</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-27T15:30:49Z</dc:date>
    </item>
  </channel>
</rss>

