cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
585
Views
0
Helpful
4
Replies

Cisco asa firewall Static nat

rajeshcv49
Level 1
Level 1

Hi,

cisco asa 5510 version 8.4 (2)

object network Inside-server

host 10.10.10.1

nat (inside.outside) static 192.168.1.2 services tcp http http

!

access-list out permit tcp any host 10.10.10.1 eq 80

!

access-group out in interface outside

!

10.10.10.1 is my web server 192.168.1.2 my public ip address.  but i am not access the web server how to troubleshoot it, 

4 Replies 4

Andre Neethling
Level 4
Level 4

Do you have any other nat rules configured? Please post the result of "sh nat"?

Thanks Andre,

problem got resolved, it was hitting other nat rule.

bhavsha2
Cisco Employee
Cisco Employee

Hello,

Kindly verify if there is any other Nat rule configured for the web server 10.10.10.1

Run a packet-tracer and check if the NAT is hitting the correct NAT rule which is configured. 

Is the web server 10.10.10.1 reachable from ASA?

Regards,

Bhavik Shah

Thanks bhavsha,

Problem got resolved, It was hitting the other nat rule

Review Cisco Networking products for a $25 gift card