02-20-2023 05:48 AM
How to confugtion Defualt route Amd NAT on ASA firewall 5500 series , ISP device assigend to my LAN using VLAN , I Have not Public Ip address how to confugtion ISP 's VLAN address as Defualt ip And confugtion NAT ?
regards
Habtemariam
02-20-2023 06:00 AM
start from here :
good video :
02-20-2023 01:56 PM
Hello
You can use after-auto section 3 nat on the ASA.
route outside 0 0 x.x.x.x <next hop ip address>
nat (inside,outside) after-auto source dynamic any interface
02-20-2023 01:59 PM
routing
route OUT 0.0.0.0 0.0.0.0 <Router IP>
NAT
NAT(IN,OUT) dynamic interface
02-20-2023 02:48 PM
Hello
@MHM Cisco World wrote:NAT
NAT(IN,OUT) dynamic interface
This will work however it will default to section 1 nat, and with the three nat sections of the ASA, section 1 takes preference, so if the requirement for more specific manual nat statement is added in the future it could become obsolete and not work if preference wasn't given to it within section 1 over the default pat statement, hence its suggested to append a default pat statement at the very end of the ASA nat order (section 3)
02-20-2023 03:07 PM
Yes you are right but I dont thing he use manual NAT for 1:1 NAT or static PAT.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide