cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1009
Views
5
Helpful
3
Replies

Firesight NAT Table lookup

bwilson
Level 1
Level 1

In Firesight, I'm trying to look up the internal address to NAT address for a specific port, at a specific time.  I have the NAT address and the port, and need the internal IP address.

3 Replies 3

Oliver Kaiser
Level 7
Level 7

What sensor are you using? ASA with Firepower module, FTD or Firepower NG-IPS Appliance?

In case you are using ASA Firepower module / FTD, connect to cli and execute the following command:

> show xlate

I'm not sure the difference between FTD and Firepower NG-IPS appliance.

We're not running any ASA services.  The chassis is a Firepower 9300.  Everything I've seen so far is in the web interface, no command line.

NG-IPS are the dedicated IPS appliances from the sourcefire aquisition like Firepower 7000&8000.

If you want to check your nat table on FTD you have to get on the command line of your security module. In case you are using 6.1 you can directly type show xlate to view your current translations. If you are still running 6.0 you have to switch to diagnostic cli using system support diagnostic-cli, enter enable and then the show xlate command.

Review Cisco Networking for a $25 gift card