cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
209
Views
0
Helpful
1
Replies

ASA site to site NAT

Willb3
Level 1
Level 1

Hi All,

 

Going to set up a site to site on my ASA, however I will need to use the public addresses rather than private addresses in the encryption domain. The question I have is that if I already have static NAT configured for the IP's do I need a nat statement for the VPN like so ?

 

nat (any,outside) source static LOCAL LOCAL destination static REMOTE REMOTE no-proxy-arp route-lookup

 

Regards

1 Reply 1

Jon Marshall
Hall of Fame
Hall of Fame

 

You shouldn't need another NAT statement then. 

 

You usually see one simply because for the VPN you are using the private IPs but as you are using the public IPs and you already have NAT setup no need as far as I can see. 

 

Jon

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Innovations in Cisco Full Stack Observability - A new webinar from Cisco