Solved

ASA-NAT Order

Posted on 2011-09-23
4
412 Views
Last Modified: 2012-05-12
Hi,

My querie is rleated to Natting order and which one takes first if one PC haivnf multiple NAT rules.

Say my PC 172.16.10.22  is PATTED with Public iP address and at same time
Statically natted with DMZ1 ( security level 90) Ip address 172.17.1.22 and
statically patted with DMZ2 interface (security level is 80) with 172.17.2.22
and also did NAT exemption i.e NAT0 and did static Identity NAT also

So if see the NAT xlate ,which one will take first ?
Pls provide a NAT-order in a undrstable manner to me

Thanks
Ramu
 
0
Comment
Question by:RAMU CH
4 Comments
 
LVL 35

Assisted Solution

by:Ernie Beek
Ernie Beek earned 83 total points
ID: 36586111
There is not really an order because these nat's are between different interfaces (networks). So There is no precedence, all these exist next to each other.
None 'takes first', the will be applied depending on which way the traffic flows.
0
 
LVL 33

Assisted Solution

by:MikeKane
MikeKane earned 83 total points
ID: 36587209
Ernie is correct, butI think the only exception to that rule is the NAT 0 where source and destination are specified.   NAT 0 is used for specific circumstances where you want certain traffic to bypass NAT all together.   NAT 0 is required for VPN connectivity because the NAT commands are evaluated before the crypto map match commands.  

0
 
LVL 12

Accepted Solution

by:
jjmartineziii earned 84 total points
ID: 36590010
0
 
LVL 1

Author Closing Comment

by:RAMU CH
ID: 36946809
Thnaks
0

Featured Post

IT, Stop Being Called Into Every Meeting

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

Join & Write a Comment

Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
Access reports are powerful and flexible. Learn how to create a query and then a grouped report using the wizard. Modify the report design after the wizard is done to make it look better. There will be another video to explain how to put the final p…
Polish reports in Access so they look terrific. Take yourself to another level. Equations, Back Color, Alternate Back Color. Write easy VBA Code. Tighten space to use less pages. Launch report from a menu, considering criteria only when it is filled…

757 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

16 Experts available now in Live!

Get 1:1 Help Now