Solved

SNAT exemption

Posted on 2011-03-03
3
629 Views
Last Modified: 2012-05-11
Hi guys, I am using SNAT on a cisco router to accommodate HSRP redundancy.

My config is:

ip nat pool SNATp 10.220.128.2 10.220.128.2 netmask 255.255.255.248
ip nat inside source route-map SNAT pool SNATp mapping-id 50 overload

On the standby HSRP router, I cannot communicate with the primary as the primary holds the .2 ip address, and due to the SNAT config, any traffic leaving the standby will also have the .2 address. How can I ensure that SNAT is exempt or ignored when .4 talks to .2 and .3 and .3 talks to .2 and .4

Hope that makes sense.
0
Comment
Question by:xyznetworks
  • 2
3 Comments
 
LVL 22

Accepted Solution

by:
Matt V earned 500 total points
ID: 35036724
You should be able to do a deny in your route map for the IPs you do not want to SNAT.
0
 
LVL 22

Expert Comment

by:Matt V
ID: 35036856
In your access list for the route-map match statement, put a deny statement first to deny the IPs you do NOT want SNATed.
0
 

Author Closing Comment

by:xyznetworks
ID: 35090354
Yep this is what I did and it worked, thanks
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

While it is possible to put two routes in place with the secondary having a higher metric, this may not always work. In the event of a failure that does not bring down the physical interface on the router the primary route is not removed. There is a…
Shadow IT is coming out of the shadows as more businesses are choosing cloud-based applications. It is now a multi-cloud world for most organizations. Simultaneously, most businesses have yet to consolidate with one cloud provider or define an offic…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

785 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question