09-22-2011 02:14 AM - edited 03-09-2019 11:40 PM
Hi forumers'
It's obvious to know how ASA doing NAT 0, how to do the conditional NAT in order the router not translating the IP address.
thank you
Noel
09-22-2011 06:29 AM
Hi,
The better way to exlude some traffic from nat just create acl with sourse and destionatin and specify that acl in nat 0 command.
09-22-2011 07:33 AM
Hello Noel,
Create acl with the source and destination ipu do not want to translate and deny that in acl and permit any other traffic which u want to get translated..create your nat using that ACL.. u r done..
eg: access-list natacl deny ip 192.168.1.0 0.0.0.255 any
access-list natacl permit ip 192.168.2.0 0.0.0.255 any
ip nat inside list natacl
So whatever traffic getting generated from 192.168.1.0 will not get natted but 192.168.2.0 does.
hope it helps
Harish.
03-29-2012 10:26 PM
Hi,
I was also told you could use route-maps. Which way would you recommand?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide