09-25-2015 09:46 AM
All
I have a vpn where the business partner is using a 10.1.21.21 address going to a 10. address on my internal network.
Due to ip conflict, I need to create a nat (policy nat) for the 10.1.21.21 to a 172.18.x.x/29 range to allow for future devices.
I want their 10.1.21/x/24 to be natted to one of the 172.18.x.x/29 addresses when needed.
Please advise on config required. I am currently on ASA5550 825 code.
Solved! Go to Solution.
09-25-2015 02:35 PM
Steve
Sorry, just read the whole post again.
Do you want to do this as dynamic NAT based on a range or static NATs ?
I as because 10.1.21.0/24 is larger than the IP range you are translating to.
Also as before can you clarify why it needs to be a policy NAT.
Jon
09-25-2015 02:35 PM
Steve
Sorry, just read the whole post again.
Do you want to do this as dynamic NAT based on a range or static NATs ?
I as because 10.1.21.0/24 is larger than the IP range you are translating to.
Also as before can you clarify why it needs to be a policy NAT.
Jon
09-28-2015 08:06 AM
John
Thank you for the response.
I thought policy nat because I was wondering if giving them a /29 for any future needs.
The solution we implemented was the peer natted on their ASA and I just allowed that thru.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide