cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
711
Views
5
Helpful
2
Replies

NAT not required to cross ASA interfaces

lcaruso
Level 6
Level 6

Hi,

I"m looking to confirm that NAT is not needed when crossing ASA interfaces; for example, when going from an inside interface (sec 100) to a dmz interface (sec 50) and back.

Back when NAT was required to cross ASA interfaces, I know there were different setups like exemption and hiding, but I thought it was possible now to just let traffic go across the interfaces and all that is needed is ACLs. 

Don't have a test unit at the moment and need to make some changes that will work the first time. 

Thanks for your input.

2 Replies 2

That's exactly how it works. NAT is only done if there is a NAT config between two interfaces. If there are no NAT rules, then the traffic is routed without translation.

Thanks for confirming. Don't always have time to re-read the docs.

Review Cisco Networking for a $25 gift card