cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
451
Views
0
Helpful
2
Replies

ASA 5500 NAT Egress Interface

battanc
Level 1
Level 1

I have an ASA-5510 with double "outside" connection (two different provider).

The "primary" connection has the default route to outside interface, but I need to NAT some machines on the "secondary" interface.

I configure the NAT, but I do not have response; I can have response only by configuring a static route.

As show by the Cisco documentation, the NAT can automatically solve the EGRESS interface, but here it seems to NOT work

I remember a similar scenario, where I solved the throuble by removing the "IP reverse path verify" command.

But in that case the firmware was an 8.4.x and now it is a 9.1.5

Some suggestion ?

 

Thanks in advance,

Claudio

2 Replies 2

Rishabh Seth
Level 7
Level 7

If policy based routing can help you in achieving your requirement then you may try ASA9.4 which supports PBR.

 

Hope it helps.

 

 

Hi,

Agree with Rishabh and the only workarounds possible are listed in this documents:-

https://supportforums.cisco.com/document/59986/loadbalancing-dual-isp-asa

https://supportforums.cisco.com/document/49756/asapix-load-balancing-between-two-isp-options

Thanks and Regards,

Vibhor Amrodia

Review Cisco Networking products for a $25 gift card