Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 306
  • Last Modified:

Nat command sequence

Current config is following
_________________________________________________________
global (outside) 2 172.21.207.1-172.21.207.30 netmask 255.255.255.224
global (outside) 1 217.207.80.83 netmask 255.255.255.240

nat (inside) 0 access-list NONAT_in_out
nat (inside) 2 access-list WU_Policy_NAT
nat (inside) 1 0.0.0.0 0.0.0.0



____________________________________________________
Is there any problem in sequence like? it should be like following?

global (outside) 1 217.207.80.83 netmask 255.255.255.240
global (outside) 2 172.21.207.1-172.21.207.30 netmask 255.255.255.224

nat (inside) 0 access-list NONAT_in_out
nat (inside) 1 0.0.0.0 0.0.0.0
nat (inside) 2 access-list WU_Policy_NAT

Thanks
Mahendra
0
JFexco
Asked:
JFexco
1 Solution
 
JFrederick29Commented:
The ordering is not significant.

The nat (inside) 0 is evaluated first.
The nat (inside) 2 access-list WU_Policy_NAT is evaluated second.
The nat (inside) 1 0.0.0.0 0.0.0.0 is evaluated last.

This is the NAT order processing on the Firewall.
0

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now