cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
343
Views
0
Helpful
2
Replies

ASA (NAT Port Forwarding) One Public IP to One Device (A) Behind It

Cisco Rookie
Level 1
Level 1

Public IP = XX

Private IP = Y

I have a weird requirement from cyber that they want double encryption. We currently have a hub and spoke Arch with a specialized equipment that i will call A devices. Cyber wants to put ASA infront of A devices. currently i'm have issues with a Spoke ASA to NAT all inbound traffic to device A. 

  • I have one Public IP XX that I plan on putting on the spoke ASA and forward all tunneling port protocols to Device A. 
  • I want Device A to be on a private network with Y IP on the inside interface of the ASA. 
  • How can I complete this? I'm running into alot of errors about running out of ports on Static NAT. I'm new to ASAs in generally (Using GUI) and WAN networking in general. 
2 Replies 2

Can you more elaborate?

What I get you need to access public server via VPN s2s ?

MHM

Its two inline devices that both form tunnels back to HUB site. ASA will act as the WAN tunnel and then device A will tunnel inside that tunnel.