cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
896
Views
0
Helpful
1
Replies

NAT overlap - Section 1, rule 0?

Jason M
Level 1
Level 1
I'm trying to set a NAT rule to allow traffic from ports 20000-21000 to a server on the Inside. When I apply the changes in ASDM I receive this warning:
 
[WARNING] nat (Inside,Outside) after-auto 1 source static [host object] interface service PASV-NAT PASV-NAT mapped-address [WAN IP]/20000-21000 overlaps with existing static NAT in Section 1, rule 0.
 
I gather that something in the port range 20000-21000 is in another NAT rule (though I know none of the ones I've created are in this range), but I can't find a rule that conflicts. I checked both in ASDM and reading through the config and I can't figure out what rule it considers to be "rule 0". 
 
Does anyone know what "Section 1, rule 0" really refers to?

 

Thanks

1 Reply 1

Vibhor Amrodia
Cisco Employee
Cisco Employee

Hi,

I think there is a overlapping statement in the Manual NAT section throwing this error.

I think it should be a dynamic NAT statement.

Can you share the NAT configuration from the ASA device ?

Thanks and Regards,

Vibhor Amrodia

Review Cisco Networking for a $25 gift card