cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
557
Views
0
Helpful
1
Replies

Nat reversal with all Cloudflare public address

Jellyman2611
Level 1
Level 1

Hello all, So I host a couple of services on my home network and would like to set up Port forwarding on them. I linked my google domain with Cloudflare to help monitor traffic and for protection. So I only want to answer traffic that has come from Cloudflare first. The problem is Cloudflares has a lot of public IP addresses I would have to add static nats for. Is there a way to make an ACL of all their IP address and then specify that ACL in ip nat inside static command?  

 

 

1 Reply 1

Jon Marshall
Hall of Fame
Hall of Fame

 

You could try using a route map with your static NAT but I am not sure you can use it for port forwarding. 

 

That said you should not rely on NAT for security which is what you are trying to do here. 

 

You should be using acls on the WAN interface to restrict which IPs can connect your services. 

 

Jon

Review Cisco Networking for a $25 gift card