Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello, We recently saw the message "PAT pool exhausted" from one of our firewalls that we manage. Our current set up is a typical PAT on the outside interface.Current Config: object network PAT-objsubnet 0.0.0.0 0.0.0.0nat (any,OUTSIDE) dynamic inter...
Hello All, I have a question regarding NATs on an ASA version 9.1. We have a several servers on the DMZ exposed to the Internet via Static NATs to various ip in the address range X.Y.Z.0/24. We want the users on the INSIDE to access the DMZ server us...
Hi All,I am planning on running a Nessus vulnerability scan against our external IP address space. I wanted to know if we need to make any changes to our firewall configuration to permit an effective scan. We have exempted Nessus traffic from being i...
Thanks Akshay, that is helpful. Had a followup to that, is there a way to include the outside interface as the first IP address used for the PAT. Thanks again, Regards,TJ
Thanks Rizwan, the DMZ host is only assigned the private IP address. And I don't have access to the host to assign multiple IPs.Its only NAT-ed at the firewall.