Hi Arie,
Are you currently having the high CPU with the config in place? U turning can cause high CPU, but that would depend on what type of inspections is the ASA doing.
Let me know,
Carlos
Hello Arie,
A twice NAT, basically speaking would change both the source AND destination of the packet for example:
Original Pkt: Src:10.241.2.2 // Dst:139.254.10.84
NATed Pkt: Src: ASA "inside interface IP" // Dst: 10.241.2.11
The source change ...
Hello Arie,
There is a couple of things you can do and some of them depend on the version and what you want to achieve. You can configure dns inspection so that the ASA would change the dns reply so that when the end host resolves the URL he gets th...
Hello Rolando,
Just as Pradypan stated, in 8.3 and up the flow changed and now NAT takes precedence over ACL look up, hence the need to reference the real IP address. Also it should be noted that when upgrading from 8.2 to 8.4.7 the ASA takes care o...