Does anyone know if you can NAT 2 subnets from outside to inside interfaces on ASA 5510?
We have an existing outside public subnet (example: 18.104.22.168/25 through ATT) and are adding a Verizon FIOS connection in order to do PBR. I want all traffic to egress via the ASA's however the outside interface is assigned 22.214.171.124/25 and then 2-127 are available for NAT translations to the inside (say 10.0.0.1/24).
The existing ISP outside the ASA on our border router simply routes the (3) T1 IP's (say 126.96.36.199-3) which are 3 NLB T1's, to the public side of the ASA (via 1 routed port between the 2 devices.) With no additional empty physical interfaces on the ASA and only 1 empty interface on the border router (so I cant get 2 routed interfaces back to the ASA becasue I need the remaining empty one for the FIOS link to come in), can I simply terminate the FIOS link into the border router, then either NAT it to an ATT IP to get it through the ASA or assign a second IP (verizon IP) to the outside of the ASA on the same public interface? You see the challenge. Maybe somethign I haven't though of yet?? Thanks so much folks.