05-31-2011 01:21 AM - edited 03-11-2019 01:40 PM
Hello I want to configure my one private ip of my proxy server with multiple public ips(group of IP'S) on ASA 5550 so that when ever my proxy send request,each request must go with new public ip.
If any one have the idea then let me know.
Regards
Mohit Jain
05-31-2011 10:16 AM
Hi Mohit,
This is tricky since the Traffic is being initiated from the Inside interface , even if you are using asa 8.3 onwards which gives you the ability to NAT on Private ip to multiple Public ip's or you are using asa pre 8.3 , where you can trick the asa by using policy based NAT. In both the cases the public ip's will respond for single private ip but from traffic coming into that NAT , traffic going out will still be using the First available NAT.
I did implemented this ones before , where we were using SQUID proxy server , you can configure multiple alias private IP's on the squid server and then create a different NAT for each of those Private IP's. then configure Squid to rotate IP's as per your Need.
http://wiki.squid-cache.org/ConfigExamples/Strange/RotatingIPs
Manish
05-31-2011 10:20 AM
Hello,
If the ASA is running software version 8.3 or above, you can configure one-to-many static NAT.
http://www.cisco.com/en/US/docs/security/asa/asa83/configuration/guide/nat_overview.html#wp1107407
Hope this helps.
06-01-2011 04:07 AM
Hello Allen,
Kindly let me know currently i am using 8.0 version on asa if i will upgrade my asa would my all old configuration would be same or i have to configure this appliance again.
Regards
Mohit Jain
06-01-2011 03:13 PM
Hello,
When you upgrade the ASA from 8.0 to 8.3, the configuration will be automatically converted to the 8.3 format. There are drastic NAT and ACL changes with software version 8.3. These are detailed here:
http://www.cisco.com/en/US/docs/security/asa/asa83/upgrading/migrating.html
Hope this helps.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide