cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1133
Views
0
Helpful
1
Replies

PIX NAT

lquin1978
Level 1
Level 1

We have a PIX with 3 interface, 1. Inside, 2. Outside, 3. DMZ.

In the DMZ there is a VPN Concentrator which has a site-to-site VPN with another site. How should I write the nat statements so that all VPN traffic is not natted, but everything else is.

The problem is I have written the ACL, but cannot no nat or NAT0 the ACL because some addresses in it need to be natted.

1 Reply 1

mgaysek
Level 1
Level 1

Base your no-nat acl on source and destination. This way if the traffic does not match that rule it will be nat'd.

Review Cisco Networking for a $25 gift card