Posted on 2011-03-18
Last Modified: 2012-08-13
I know how to do a one for one static NAT on a cisco asa...But, how do I do a Nat Pool on a Cisco ASA for a /27 subnet?
Question by:cisco_pro30
  • 4
  • 3
LVL 35

Expert Comment

by:Ernie Beek
ID: 35166382
You mean from the in- to the outside or vice versa? You want outgoing traffic to be natted to multiple publics?
Could you elaborate?

Author Comment

ID: 35166411
I have a inside /27 subnet that I want natted to one ouside address.  so one public natted to mutiple private (inside addresses)
LVL 35

Accepted Solution

Ernie Beek earned 500 total points
ID: 35166546
Well, you can't NAT one public address to multiple private addresses. You can forward ports on a single public address to multiple private addresses though. If that's what you're looking for then use:
static (inside,outside) tcp outside_ip port_number inside_ip port_number netmask

So, for example forward WWW to one host and RDP to another:

static (inside,outside) tcp 80 80 netmask
static (inside,outside) tcp 3389 3389 netmask
Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!


Author Comment

ID: 35166637
This was exactly what I was looking for...Thank you

Author Closing Comment

ID: 35166642
Perfect answer
LVL 35

Expert Comment

by:Ernie Beek
ID: 35166653
You're welcome. Don't forget to open the ports for the public address in the access-list as well :)
LVL 35

Expert Comment

by:Ernie Beek
ID: 35166660
Thx, for the points :)

Featured Post

Free learning courses: Active Directory Deep Dive

Get a firm grasp on your IT environment when you learn Active Directory best practices with Veeam! Watch all, or choose any amount, of this three-part webinar series to improve your skills. From the basics to virtualization and backup, we got you covered.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Cisco 3650 switch 7 65
Cisco SSLVPN webpage is not loading 3 30
Single Number Reach 3 48
Port status messages not appearing in console 11 29
This is about downgrading PIX Version 8.0(4) & ASDM 6.1(5) to PIX 7.2(4) and ASDM 5.2(4) but with only 64MB RAM and 16MB flash. Background: You have a Cisco Pix 515E which was running on PIX 7.2(4) and its supporting ASDM 5.2(4) without any i…
For months I had no idea how to 'discover' the IP address of the other end of a link (without asking someone who knows), and it drove me batty. Think about it. You can't use Cisco Discovery Protocol (CDP) because it's not implemented on the ASAs.…
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

685 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question