Good day experts.
Could someone assist me with how i can convert configs on a router to ASA firewall running 8.6 code.
I have managed to convert most of the configs but these below seem challenging this NATing and overloading is not making sense but it works on the router currently.
Acess-List 111 is also being called upon on a VPN as intersting traffic. VPN i managed to bring up. Just this below
ip nat pool SERVERS 192.168.10.50 192.168.10.50 prefix-length 24
ip nat inside source static tcp 10.10.10.50 80 interface GigabitEthernet0/1 80
ip nat inside source list 111 pool SERVERS overload
access-list 111 permit ip host 10.10.10.50 host 172.20.1.66
access-list 111 permit ip host 10.10.10.50 host 172.20.1.71
access-list 111 permit ip host 10.10.10.50 host 172.20.1.72
access-list 111 permit ip host 10.10.10.50 host 172.20.1.73
I kind of don't follow whats happening here... and worse converting it to ASA...
Thanks ion advance expert
object-group network Source-Group
network-object host 10.10.10.50
object-group network Source-NAT-Group
network-object host 192.168.10.50
object-group network Destination-Group
network-object host 172.20.1.66
network-object host 172.20.1.71
network-object host 172.20.1.72
network-object host 172.20.1.73
object service obj-http
service tcp destination eq 80
nat (inside,outside) source static Source-Group interface service obj-http obj-http
nat (inside,outside) source static Source-Group Source-NAT-Group destination static Destination-Group Destination-Group
Rate for helpful post
You're right , it seems that overload doesn't make sense here.
Can you post the result of "sh ip nat translation" on the router with traffic established from the server ?