cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
9021
Views
10
Helpful
4
Replies

how change nat rule position in ASA without deleting it

Anatoly Fanrus
Level 1
Level 1

Hi,

how change nat rule position in ASA(9.1.2) without deleting it? I tried to reenter nat rule with new position but no success.

 

Thanks in advance

4 Replies 4

Vibhor Amrodia
Cisco Employee
Cisco Employee

Hi,

NAT position can only be changed for Manual(Twice) and After-Auto NAT statements.

Auto NAT is automatically arranged.

You can change the NAT position using the Line number option in the NAT.

nat (inside,dmz) 1 source dynamic myInsideNetwork PATaddress2 destination static DMZnetwork2 DMZnetwork2

After Auto NAT:-

nat (inside,dmz) 1 after-auto source dynamic myInsideNetwork PATaddress2 destination static DMZnetwork2 DMZnetwork2

Thanks and Regards,

Vibhor Amrodia

johnlloyd_13
Level 9
Level 9

hi,

try via ASDM:

To insert a new rule above a specific rule, highlight that rule, and then choose Insert from the Add menu. Likewise, to insert a new rule below a specific rule, highlight that rule, and then choose Insert After from the Add menu.

if I don't have asdm and I need to place entry above then how can I do it all are static nat twice.

I have around 50 entries NAT Twice now with nat (inside,outside) but I have another interface inside_2 so for migration point of view I need to place same 50 NAT entry with nat (inside_2,ouside) above existing 50 entries.

how can I do it with commands 

 

This conversation might be helpful:

https://learningnetwork.cisco.com/thread/88135

Review Cisco Networking products for a $25 gift card