cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
394
Views
0
Helpful
2
Replies

Explanation on NAT Statement

kuldeep.kaur
Level 1
Level 1

Hi Guys,

What does the following statement means on the pix firewall ? For example

global (outside) 2 67.75.236.193-67.75.236.194 netmask 255.255.255.240

Does the above mean that we have got two address 67.75.236.193 and 67.75.236.194 for the firewall to use for natting. (I know about what 2 means in the statement).

Tks

2 Accepted Solutions

Accepted Solutions

That means that the source network that falls under your nat will be able to get translated to those two addresses only. If you have 10 inside hosts trying to go out to the internet only two will be able to do it at the same time since they are all sharing the two global addresses.

Is that clear?

Sent from Cisco Technical Support iPhone App

View solution in original post

Jennifer Halim
Cisco Employee
Cisco Employee

You are absolutely correct.

Only 2 ip addresses can be used for NATing and if you have any subsequent packet that needs to be translated, then it will fail unless if you configure PAT, eg:

global (outside) 2 interface

OR/


global (outside) 2 67.75.236.195

View solution in original post

2 Replies 2

That means that the source network that falls under your nat will be able to get translated to those two addresses only. If you have 10 inside hosts trying to go out to the internet only two will be able to do it at the same time since they are all sharing the two global addresses.

Is that clear?

Sent from Cisco Technical Support iPhone App

Jennifer Halim
Cisco Employee
Cisco Employee

You are absolutely correct.

Only 2 ip addresses can be used for NATing and if you have any subsequent packet that needs to be translated, then it will fail unless if you configure PAT, eg:

global (outside) 2 interface

OR/


global (outside) 2 67.75.236.195

Review Cisco Networking for a $25 gift card