cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
674
Views
0
Helpful
1
Replies

PAT all Internet source address to a specific internal address by PIX

j.piao
Level 1
Level 1

Starting with PIX 6.2, NAT and PAT can be applied to traffic from an outside, or less secure, interface to an inside (more secure) interface. This is sometimes referred to as "bi-directional NAT."

So If all Internet outside addresses are be "bi-directional NAT" to a specific internal address, and because the PIX also used for IPSec VPN connections and VPN clients (internal local address pool), I am just wondering whether it will be impact on the IPSec VPN connections or the VPN client access functions?

Any comments?

Thanks in advance.

Jack

1 Reply 1

gfullage
Cisco Employee
Cisco Employee

Inbound NAT shouldn't have any effect on your VPN clients or LAN-to-LAN tunnel. In fact, for the VPN traffic you would have added commands to specifically bypass the NAT functions within the PIX, so there's no problem with doing both.

Review Cisco Networking for a $25 gift card