Home > other >  Cisco ASA firewall in two interfaces define Global transformation at the same time?
Cisco ASA firewall in two interfaces define Global transformation at the same time?

Time:11-04


Problem as shown in figure, the relevant configuration is as follows:
Access - the list OUTSIDE - GLOBAL - IS - 58-58-58-58 extended permit IP host 192.168.1.2 instead host 58.58.58.57
Global (outside) 9 interface
NAT (inside) 9 access - the list OUTSIDE - GLOBAL - IS - 58-58-58-58
Access to the list the DMZ - GLOBAL - IS - 172-16-1-1 extended permit IP host 192.168.1.2 instead host 172.16.1.2
Global (DMZ) 10 interface
NAT (inside) 10 access - list the DMZ - GLOBAL - IS - 172-16-1-1

CodePudding user response:

Their top once,,, can solve,,,

CodePudding user response:

Give some advice to go outside but is NAT can be done to the flow of the DMZ NAT bypass is NAT 0 directly bypassed by
DMZ itself and inside belongs to the network routing

CodePudding user response:

Inside the default port is access to the DMZ and outside interface, why do you want to NAT?
Even if do NAT, you said this is also the most simple static NAT, direct check ASA command is not ok,
But it seems that all if I have seen the outside and the DMZ is mapped to the inside, you didn't know now network?
  • Related