Go Premium for a chance to win a PS4. Enter to Win

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 1640
  • Last Modified:

PAT SYNTAX on ASA 8.3 CODE

Experts,

On ASA 8.2 code I PAT all my outbound IPSEC s2s VPN traffic to one IP address. What is this translation on 8.3 code?

access-list VPNNAT permit ip any 10.61.0.0 255.255.0.0
global (outside) 5 172.21.12.145
nat (inside) 5 access-list VPNNAT 0 0


0
trojan81
Asked:
trojan81
  • 2
1 Solution
 
anoopkmrCommented:

TRY LIKE THIS


object network obj-NAT
host
172.21.12.145


object network obj-SRC
subnet 0.0.0.0 0.0.0.0

object network obj-DEST
subnet 10.61.0.0 255.255.0.0

nat (inside,outside) source dynamic obj-SRC obj-NAT destination static obj-DEST obj-DEST

 
 
 
 
0
 
trojan81Author Commented:
I get this error:

ERROR: Subnet can not be used as mapped source in dynamic NAT policy.
0
 
trojan81Author Commented:
This worked.
Disregard my previous note because I made a typo.
0

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now