cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
409
Views
10
Helpful
1
Replies

ASA nat commnand

Fotiosmark
Level 1
Level 1

Hello Group! how are you this morning? :)

 

Was wondering if someone can explain to me the below command on ASA

 


nat (inside,outside) source static ***********  destination static ******** no-proxy-arp route-lookup

 

Basically I know what it does, I only need help with the last 2 lines  (no proxy arp and route-lookup)

 

Thanks

1 Accepted Solution

Accepted Solutions

Bogdan Nita
VIP Alumni
VIP Alumni

no-proxy-arp - starting with 8.4 ASA will enable proxy-arp for all static NAT statements, in cases you do not want the ASA to respond to arp requests for other IPs, you can use the no-proxy-arp option


route-lookup - the ASA does use the NAT rules to route the packets as well, I believe it has to do with the order of operation and it trusts the NAT statement has the correct interfaces configured. If you want the ASA to use only the routing table instead of the NAT rule, you can use the route-lookup option.

 

HTH,

Bogdan

View solution in original post

1 Reply 1

Bogdan Nita
VIP Alumni
VIP Alumni

no-proxy-arp - starting with 8.4 ASA will enable proxy-arp for all static NAT statements, in cases you do not want the ASA to respond to arp requests for other IPs, you can use the no-proxy-arp option


route-lookup - the ASA does use the NAT rules to route the packets as well, I believe it has to do with the order of operation and it trusts the NAT statement has the correct interfaces configured. If you want the ASA to use only the routing table instead of the NAT rule, you can use the route-lookup option.

 

HTH,

Bogdan

Review Cisco Networking products for a $25 gift card