Hello,
I have the following scenario: Router ? ASA ? FTP Servers cluster.
The cluster has 2 servers (192.168.130.1 & 192.168.130.2) with a virtual IP of 192.168.130.4. Communication can be initiated either from customer or from servers. When communications is initiated from customer, the customer will try to reach a fake ip 172.16.1.1 that must be translated to the virtual ip of the cluster 192.168.130.4. The reply traffic comes from the virtual ip 192.168.130.4. So if I configure a static nat at the router (192.168.130.4 172.16.1.1) incoming ftp connection works.
The problem is that when the ftp is initiated manually from the server then it uses the real ip as source (instead of the virtual) so the above static nat can not be used. Also I only have 1 fake ip (172.16.1.1) for translation.
So my question: is it possible to translate 3 inside local IPs to 1 inside global so that traffic can be initiated from both inside and outside?
Any idea will be appreciated.
Thanks,
Evi.