cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

Welcome to Cisco Firewalls Community


212
Views
0
Helpful
1
Replies
Highlighted
Beginner

Random applications / websites become inaccessible after disabling interface source-nat

Hi All,

All the internet traffic that egress from the exit point gets source-natted to the public ip on the interface having the ISP link. Now, if the source-nat on the interface is turned off then many applications stop working or being accessible. There is no such specific configuration on the firewall for those applications. I am unable to understand this dependency of internal traffic need of being mapped to public ip for accessing certain applications for example teamviewer etc ? Is there any white-listing that the service provider needs to do on his end ?  

 

Note : When the source-nat is removed the internal private ip's (user vlan) go out without any NAT.

 

The reason of switching off the NAT is to make the individual sites (subnets) visible to the Zscaler, as the user traffic first goes to the Zscaler for policy checks and then gets redirected to their destinations. There is no nat on the Zscaler.

 

Thanks

1 REPLY 1
VIP Advocate

Re: Random applications / websites become inaccessible after disabling interface source-nat

Hi,

Share your running configuration. 

Regards,
Deepak Kumar,
Don't forget to vote and accept the solution If this comment will make help you!
CreatePlease to create content
Content for Community-Ad
FusionCharts will render here