12-06-2019 12:06 AM
Hey Dear Community,
i have a little Problem with NAT. Yes i did use the Forum Search and google but i couldnt figure out my Problem so i hope u can help me to understand what iam doing wrong and what is my problem.
So
We Got an Customer with the Source IP of 77.94.224.1 he wants to Connect to a VM Located in our Company network 10.219.5.11
But iam alway getting "Asymetric NAT rule" error.
To mention is, that the Server 10.219.5.11 is able to Connect to the Internet with the NAT IP 62.157.*.*
I Hope somebody can help me .
Thanks
Solved! Go to Solution.
12-06-2019 02:13 AM
Hello,
most likely there is an overlapping NAT translation somewhere. Post the config if the ASA...
12-06-2019 02:38 AM - edited 12-06-2019 03:27 AM
Hello
Sounds like you dont have a manual nat statement for an outside host to access that specific servers internal ip , Just having dynamic nat (inside/outside) translation shouldnt work.
object network Srv-Public
host 1.1.1.1 <server public ip
object network Internal-Srv
host 10.1.1.1
nat (inside,outside) static Srv-Public service tcp www www
access-list 100 extended permit tcp any object Internal-Srv eq www
access-group 100 in interface outside
12-06-2019 02:13 AM
Hello,
most likely there is an overlapping NAT translation somewhere. Post the config if the ASA...
12-06-2019 02:38 AM - edited 12-06-2019 03:27 AM
Hello
Sounds like you dont have a manual nat statement for an outside host to access that specific servers internal ip , Just having dynamic nat (inside/outside) translation shouldnt work.
object network Srv-Public
host 1.1.1.1 <server public ip
object network Internal-Srv
host 10.1.1.1
nat (inside,outside) static Srv-Public service tcp www www
access-list 100 extended permit tcp any object Internal-Srv eq www
access-group 100 in interface outside
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide