<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX/ASA static nat command in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-asa-static-nat-command/m-p/896990#M958667</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You are correct.  Many times people will do one to one translations doing exactly the same things but keeping the inside and outside IP's the same.  This is sometimes done on internal firewalls where you do not want to translate any addresses.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 13 Dec 2007 23:00:53 GMT</pubDate>
    <dc:creator>richf</dc:creator>
    <dc:date>2007-12-13T23:00:53Z</dc:date>
    <item>
      <title>PIX/ASA static nat command</title>
      <link>https://community.cisco.com/t5/network-security/pix-asa-static-nat-command/m-p/896989#M958666</link>
      <description>&lt;P&gt;Hello fellow ciscoers,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My question relates to the use of the netmask command within the PIX/ASA.  When used does this only translate the appropriate bits in the original ip address to the desired NAT address?  For example:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If configure as follows:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside,outside) 192.168.100.0 123.123.123.0 netmask 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then i send a packet with a source IP of say 192.168.100.50 through, then will the  NAT address end up as 123.123.123.50. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hence with a netmask of 24 bits will it not translate octect 4, and hence leave my "host bits" alone?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks to all in advance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;cheers nik&lt;/P&gt;</description>
      <pubDate>Wed, 13 Mar 2019 00:50:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-asa-static-nat-command/m-p/896989#M958666</guid>
      <dc:creator>nsheridan</dc:creator>
      <dc:date>2019-03-13T00:50:39Z</dc:date>
    </item>
    <item>
      <title>Re: PIX/ASA static nat command</title>
      <link>https://community.cisco.com/t5/network-security/pix-asa-static-nat-command/m-p/896990#M958667</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You are correct.  Many times people will do one to one translations doing exactly the same things but keeping the inside and outside IP's the same.  This is sometimes done on internal firewalls where you do not want to translate any addresses.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Dec 2007 23:00:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-asa-static-nat-command/m-p/896990#M958667</guid>
      <dc:creator>richf</dc:creator>
      <dc:date>2007-12-13T23:00:53Z</dc:date>
    </item>
  </channel>
</rss>

