Hello,
Just wanted to mention that in CISCO IOSvL3 packets originated by the outside nat interface are natted too if they match the source ACL although the command used is: ip nat inside source list ACL_SOURCE_NAT pool NAT_POOL. To mitigate this make sure that the ACL doesn't include the ip nat outside interface ip address.