cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1332
Views
0
Helpful
1
Replies

Packet flow in 8.4 ios explain

saurabhgoel169
Level 1
Level 1

I think packet flow is changed in 8.3 IOS and above.

We are using private NAT for ouside traffic.

can any body explain me why we are using private IP for outside traffic

1 Reply 1

Julio Carvajal
VIP Alumni
VIP Alumni

Hello Saurabh,

Before the NAT rule was checked after the ACL verification.

Now it backwards. The asa receive the traffic on the outside, performs the Un-Nat and then checks the ACL.

That is why you need to use the private range on the outside ACL.

Do you understand?

Regards

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC
Review Cisco Networking for a $25 gift card