cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
543
Views
0
Helpful
2
Replies

Question about static identity nat when migrating ASA from pre-8.3 to 8.3

mat_rouch
Level 1
Level 1

I have looked over the documentation for the ASA 8.3 migration and there is still something I have not been able to determine. 

The page http://www.cisco.com/en/US/docs/security/asa/asa83/upgrading/migrating.pdf states that "Static identity NAT is treated like any other static command, and is converted depending on whether it is regular or policy NAT"

For static identity nats, I assume that means that the auto-migration tool should convert this:

static (inside,outside) 10.1.1.6 10.1.1.6 netmask 255.255.255.255

to this:

object network obj-10.1.1.6
host 10.1.1.6
nat (inside,outside) static 10.1.1.6

***However***, will it also automatically convert this

static (inside,outside) 10.1.1.0 10.1.1.0 netmask 255.255.255.0

to this? :


object network obj-10.1.1.0
network 10.1.1.0 255.255.255.0
nat (inside,outside) static 10.1.1.0 255.255.255.0


and will it work the same way?

Thanks,

-Mathew

1 Accepted Solution

Accepted Solutions

varrao
Level 10
Level 10

Hi Mat,

Yes that's right, you've got the correct nat translations after upgrading.

You can refer to this doc as well:

https://supportforums.cisco.com/docs/DOC-9129#comment-3934

Hope that helps,

Thanks,

Varun

Thanks,
Varun Rao

View solution in original post

2 Replies 2

varrao
Level 10
Level 10

Hi Mat,

Yes that's right, you've got the correct nat translations after upgrading.

You can refer to this doc as well:

https://supportforums.cisco.com/docs/DOC-9129#comment-3934

Hope that helps,

Thanks,

Varun

Thanks,
Varun Rao

Thanks for the answer and the link.

-Mathew

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card