cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
875
Views
0
Helpful
1
Replies

multiple nat/pat statements - algorithm...

pavlosd
Level 2
Level 2

I was trying to find the logic (algorith) of how NAT / PAT staements are assigned by PIX.....

For example:

nat (inside) 10 10.0.0.0 255.0.0.0

global (outside) 10 1.1.1.1- 1.1.1.10 netmask 255.255.255.255

global (outside) 10 1.1.1.11 netmask 255.255.255.255

global (outside) 10 1.1.1.12 netmask 255.255.255.255

global (outside) 10 1.1.1.13 netmask 255.255.255.255

According to the ardicle below, it should exsaust first all nat address and then pat.

http://www.cisco.com/en/US/docs/security/asa/asa72/command/reference/gh_72.html#wp1688051

but what about when multiple PATs are defined?

1 Reply 1

Panos Kampanakis
Cisco Employee
Cisco Employee

Only when the PAT ports of the first PAT ip are filled is the ASA going to use the second PAT address.

I hope it helps.

PK

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card