Hi
we have a firewall that was obviously installed the incorrect way around (security level wise) which is give us nightmares on the NAT.
Would there be a reason what when implementing (inside) to (outside) destination nat, case of just reversing the normal static command it would fail with the error
Feb 27 11:37:48 pix Feb 27 2006 11:37:48 : %PIX-3-305006: portmap translation creation failed for tcp src inside:12.2.2.1/43082 dst Int-G:10.0.1.1/22
To overcome the problem I had to do a normal source nat as well using the firewall Int-G interface.
Anyone know why this would have to be done or have a good nat document that explains the workings of nat, going a little further than the normal stuff int the books.
thanks
Paul