<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Error 305005: No translation group found in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/error-305005-no-translation-group-found/m-p/1719459#M537225</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;"nat (c_dmz) 0 0.0.0.0 0.0.0.0 0 0" command only works for outbound connection, ie: from high to low security level.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since you would like to pass traffic from c_dmz (security level 0) to inside (security level 100), ie: from low to high security level, then you would need the following command:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,c_dmz) 195.244.192.166 195.244.192.166 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;static (inside,c_dmz) 195.244.192.16 195.244.192.16 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 27 Jun 2011 12:18:02 GMT</pubDate>
    <dc:creator>Jennifer Halim</dc:creator>
    <dc:date>2011-06-27T12:18:02Z</dc:date>
    <item>
      <title>Error 305005: No translation group found</title>
      <link>https://community.cisco.com/t5/network-security/error-305005-no-translation-group-found/m-p/1719458#M537223</link>
      <description>&lt;P&gt;Error message&lt;/P&gt;&lt;P&gt;305005: No translation group found for udp src c_dmz:10.0.176.120/51910 dst inside:195.244.192.16/53&lt;/P&gt;&lt;P&gt;305005: No translation group found for udp src c_dmz:10.0.176.120/51910 dst inside:195.244.192.166/53&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Config&lt;/P&gt;&lt;P&gt;:&lt;/P&gt;&lt;P&gt;PIX Version 6.3(4)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nameif ethernet0 c_dmz security0&lt;/P&gt;&lt;P&gt;nameif ethernet1 g_dmz security25&lt;/P&gt;&lt;P&gt;nameif ethernet2 inside security100&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list acl-c_dmz permit udp host 10.0.176.120 host 195.244.192.166 eq domain&lt;/P&gt;&lt;P&gt;access-list acl-c_dmz permit udp host 10.0.176.120 host 195.244.192.16 eq domain&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip address c_dmz 10.0.176.1 255.255.255.0&lt;/P&gt;&lt;P&gt;ip address g_dmz 10.0.172.1 255.255.255.0&lt;/P&gt;&lt;P&gt;ip address inside 10.0.232.1 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (c_dmz) 0 0.0.0.0 0.0.0.0 0 0&lt;/P&gt;&lt;P&gt;nat (inside) 0 0.0.0.0 0.0.0.0 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,c_dmz) 10.0.232.0 10.0.232.0 netmask 255.255.255.0 0 0&lt;/P&gt;&lt;P&gt;static (inside,_dmz) 10.0.232.0 10.0.232.0 netmask 255.255.255.0 0 0&lt;/P&gt;&lt;P&gt;static (g_dmz,c_dmz) 10.0.172.0 10.0.172 netmask 255.255.255.0 0 0&lt;/P&gt;&lt;P&gt;static (c_dmz,inside) 10.0.176.0 10.0.176.0 netmask 255.255.255.0 0 0&lt;/P&gt;&lt;P&gt;access-group acl-c_dmz in interface c_dmz&lt;/P&gt;&lt;P&gt;access-group acl-g_dmz in interface g_dmz&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Issue&lt;/P&gt;&lt;P&gt;Servers are trying to access 2 DNS servers via the inside interface.&lt;/P&gt;&lt;P&gt;There is no outside interface, default route is via inside interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I thought it needed a nat (c_dmz) command but I got the following error message &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX(config)# nat (c_dmz) 0 0.0.0.0 0.0.0.0 0 0&lt;/P&gt;&lt;P&gt;nat 0 0.0.0.0 will be identity translated for outbound&lt;/P&gt;&lt;P&gt;WARNING:&amp;nbsp; Binding inside nat statement to outermost interface.&lt;/P&gt;&lt;P&gt;WARNING:&amp;nbsp; Keyword "outside" is probably missing.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any idea where I am going wrong?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 20:51:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/error-305005-no-translation-group-found/m-p/1719458#M537223</guid>
      <dc:creator>JIM T</dc:creator>
      <dc:date>2019-03-11T20:51:14Z</dc:date>
    </item>
    <item>
      <title>Error 305005: No translation group found</title>
      <link>https://community.cisco.com/t5/network-security/error-305005-no-translation-group-found/m-p/1719459#M537225</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;"nat (c_dmz) 0 0.0.0.0 0.0.0.0 0 0" command only works for outbound connection, ie: from high to low security level.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since you would like to pass traffic from c_dmz (security level 0) to inside (security level 100), ie: from low to high security level, then you would need the following command:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,c_dmz) 195.244.192.166 195.244.192.166 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;static (inside,c_dmz) 195.244.192.16 195.244.192.16 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Jun 2011 12:18:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/error-305005-no-translation-group-found/m-p/1719459#M537225</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-06-27T12:18:02Z</dc:date>
    </item>
    <item>
      <title>Error 305005: No translation group found</title>
      <link>https://community.cisco.com/t5/network-security/error-305005-no-translation-group-found/m-p/1719460#M537227</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That worked a treat. Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Jul 2011 13:43:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/error-305005-no-translation-group-found/m-p/1719460#M537227</guid>
      <dc:creator>JIM T</dc:creator>
      <dc:date>2011-07-04T13:43:21Z</dc:date>
    </item>
  </channel>
</rss>

