<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX without NAT  in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-without-nat/m-p/109256#M677664</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;you can also static map the internal addresses to external addresses:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;e.g.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) 192.168.1.0 255.255.255.0 192.168.1.0 255.255.255.0 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;otherwise the pix will still do dynamic mapping of inside addresses to outside addresses.  If you want inbound access, though, you should statically map the addresses.  Otherwise whether an address works or not will depend upon whether or not there is an existing translation, which could be somewhat arbitrary.  Some servers which need to be accessible from outside may not generate any outbound traffic so as to create those translations.  &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 01 Jul 2002 17:47:58 GMT</pubDate>
    <dc:creator>jljamison</dc:creator>
    <dc:date>2002-07-01T17:47:58Z</dc:date>
    <item>
      <title>PIX without NAT</title>
      <link>https://community.cisco.com/t5/network-security/pix-without-nat/m-p/109254#M677613</link>
      <description>&lt;P&gt;Can I use a PIX but without using NAT?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 06:07:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-without-nat/m-p/109254#M677613</guid>
      <dc:creator>admin_2</dc:creator>
      <dc:date>2020-02-21T06:07:38Z</dc:date>
    </item>
    <item>
      <title>Re: PIX without NAT</title>
      <link>https://community.cisco.com/t5/network-security/pix-without-nat/m-p/109255#M677636</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;yes, 'nat 0' command will do. However if you want to be selective on which addresses to nat or not use;&lt;/P&gt;&lt;P&gt;'nat [(if_name)] 0 access-list acl_name'&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access list should cover src/dest addresses you do not want to nat &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 27 Jun 2002 21:12:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-without-nat/m-p/109255#M677636</guid>
      <dc:creator />
      <dc:date>2002-06-27T21:12:48Z</dc:date>
    </item>
    <item>
      <title>Re: PIX without NAT</title>
      <link>https://community.cisco.com/t5/network-security/pix-without-nat/m-p/109256#M677664</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;you can also static map the internal addresses to external addresses:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;e.g.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) 192.168.1.0 255.255.255.0 192.168.1.0 255.255.255.0 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;otherwise the pix will still do dynamic mapping of inside addresses to outside addresses.  If you want inbound access, though, you should statically map the addresses.  Otherwise whether an address works or not will depend upon whether or not there is an existing translation, which could be somewhat arbitrary.  Some servers which need to be accessible from outside may not generate any outbound traffic so as to create those translations.  &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Jul 2002 17:47:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-without-nat/m-p/109256#M677664</guid>
      <dc:creator>jljamison</dc:creator>
      <dc:date>2002-07-01T17:47:58Z</dc:date>
    </item>
    <item>
      <title>Re: PIX without NAT</title>
      <link>https://community.cisco.com/t5/network-security/pix-without-nat/m-p/109257#M677676</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;you can also static map the internal addresses to external addresses:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;e.g.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) 192.168.1.0 255.255.255.0 192.168.1.0 255.255.255.0 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;otherwise the pix will still do dynamic mapping of inside addresses to outside addresses.  If you want inbound access, though, you should statically map the addresses.  Otherwise whether an address works or not will depend upon whether or not there is an existing translation, which could be somewhat arbitrary.  Some servers which need to be accessible from outside may not generate any outbound traffic so as to create those translations.  &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Jul 2002 17:49:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-without-nat/m-p/109257#M677676</guid>
      <dc:creator>jljamison</dc:creator>
      <dc:date>2002-07-01T17:49:43Z</dc:date>
    </item>
  </channel>
</rss>

