nat (inside) 1 10.0.0.1 255.255.255.0
nat ( inside 1 10.0.80.0 255.255.252.0
global (outside) 1 172.31.255.1 ( usually a public )
So this NAT statement is allow anything from the above 10 networks to NAT to global address of 172.31.255.1
i just wanted to confirm this works and i can get internet access i can ping from souring from the svi and ping from the computer in the vlan but i don't understand why the packet trace fails. Can i not test internet access via packet tracer e.g 8.8.8.8? as its says drop within the NAT rule which clearly allow it through.
packet-tracer input inside rawip 10.0.0.10 0 8.8.8.8
( 10.0.0.10 ) is an svi on the L3 switch behind the internal network.