cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
742
Views
0
Helpful
1
Replies

ASA advertise NAT network

david.barroso
Level 1
Level 1

Hello,

I have an ASA 8 firewall running OSPF without any problem and working as a ABR. However I do not know how to solve the next problem.

Soon I will have to configure a new private network on the device and a public network will be assigned to do some static NATs to this network and give public access. How can I advertise this public network to the backbone area if it's not connected to the device?

Thanks.

1 Reply 1

tstanik
Level 5
Level 5

ASA does not advertise NAT addresses or range as routes to neighbors. Looks like you will have to add static routes and advertise these static routes by redistribution.

If the user has a lot of servers with IP all over the map, which he can not classify these addresses into subnets for each interface, one thing you can do, create host static routes. Then redistribute static. If you don't want to advertise a lot of host routes to neighbors, you can add a "summary-address" command.

Below URL helps you for the NAT with firewall configuaration:

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a00800b6e1a.shtml

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Innovations in Cisco Full Stack Observability - A new webinar from Cisco