NAT - Cisco - Port Translation from inside to inside possible?

We have a customer that we deployed a 1711 Cisco to recently.  They have a fixed IP address from us (ISP).  Internally they have 192.168.2.0/24 subnet

They requested an internal web server be reachable from the outside world so we did a NAT translation for this.. no problem.

Let's say their public IP is 1.2.3.4

From internally, they would like to reach the webserver at 1.2.3.4 instead of the internal address of 192.168.2.10

Is there a way to do this in this setup?

Thanks.
LVL 2
kpmasAsked:
Who is Participating?
 
lrmooreCommented:
No can do, sir. In order for the NAT to happen, packets *must* physically pass through the "nat outside" interface before a packet will be translated to the static internal IP. Since the packet originates on the "nat inside" interface and cannot possibly go outside and back in through the nat outside interface, there is now way for the router to do it.
The PIX has some tricks like "alias" and "dns doctoring", but those are not available on IOS routers.
0
 
kpmasAuthor Commented:
Thanks for the answer... appreciate it... I just wanted to hear confirmation from an expert..:)

Paul
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.