cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
844
Views
0
Helpful
1
Replies

NAT to different internal IPs on same external IP/Port

darren.kewley
Level 1
Level 1

Hi,

I'm currently migrating to FTD from WatchGuard for a customer.

The customer currently has port 80 open on a public IP which NATs to 2 different internal hosts as below:
1. If the connection comes in from a set of IPs (object) from a card vendor, the traffic is natted through to a web server

2. If the connection comes from anywhere else (any), they get sent to a seperate internal server


This goes against my understanding of NAT - is it possible to achieve this on FMC/FTD?

Thanks,

Darren

1 Reply 1

Francesco Molino
VIP Alumni
VIP Alumni
Hi

You can use static nat where your 1st rule will use your specific sources with your natted IP forwarded to your real IP. Then your 2nd rule will use any as source and being forwarded to another server.

I don't have any LAB FMC right now to do some screenshots but if you go into static nat creation process and specify source and destination as quickly explained previously, you'll find the way to achieve what you want to do.

Thanks
Francesco
PS: Please don't forget to rate and select as validated answer if this answered your question
Review Cisco Networking products for a $25 gift card