03-03-2020 12:33 PM - edited 03-03-2020 02:18 PM
03-03-2020 12:53 PM
Try this:
interface GigabitEthernet0/0
no ip nat inside
interface GigabitEthernet0/0.10
ip nat inside
!
interface GigabitEthernet0/0.20
ip nat inside
!
interface GigabitEthernet0/0.30
ip nat inside
Regards
03-03-2020 01:06 PM - edited 03-03-2020 02:18 PM
Passwords Line console :
login manager
pass CR0UTER@
privli
login manager
C@mbridge2020.
for some reasons it only increments misses
03-03-2020 01:07 PM
03-03-2020 01:16 PM
Delete this line: ip nat inside source list Deny_Manchester interface GigabitEthernet0/1 overload
Try this:
no ip nat inside source list Deny_Manchester interface GigabitEthernet0/1 overload
Regards
03-03-2020 01:19 PM
thats not really what i want to do as manchester site is not allowed to access the isp thats why i need this ACL. It allows everything aparat from manchester i tried to delete this before and create separate acl for testing but still the same issue
03-03-2020 01:24 PM
The line that I indicate is the one that is related to a NAT, but not the one that associates the ACL with the output interface.
The ACL you have created is being applied with this line:
interface GigabitEthernet0/1
ip address 172.16.10.1 255.255.255.252
ip access-group Deny-Manchester out
ip nat outside
Regards
03-03-2020 01:25 PM
I tried removing it still the same issue looks like ACL is matching the traffic but there is no translation occuring. I attached my packet tracer file
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide