cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
456
Views
0
Helpful
1
Replies

Do the static command needed?

kope
Level 1
Level 1

The firewall is running version 8.2 on ASA 5580. Address translation is not needed on Inside network and Outside network.

But the customer has hundreds of static command as below..

static (inside,outside) 10.10.10.0 10.10.10.0 netmask 255.255.255.0

static (inside,outside) 10.10.11.0 10.10.11.0 netmask 255.255.255.0

static (inside,outside) 10.10.12.0 10.10.12.0 netmask 255.255.255.0

static (inside,outside) 10.10.13.0 10.10.13.0 netmask 255.255.255.0

.

.

.

.

Can they all be removed and replace with one single command as below? 

no nat-control

(i think no nat-control is default setting anyway).

Thanks,

1 Reply 1

If natting is not required between inside network and outside, you can probably remove all the static identity nat but check with the customer  why he has done all these identity nat because if there are any other static/policy nat it could affect the network traffic removing these.

Review Cisco Networking for a $25 gift card