ASA 9.1 NAT basic understanding
Posted on 2014-11-26
on ios 9.1 - im confused about nat - I have a statement for example that forwards (port forward in a sense) port 80 that hits an "outside" public IP object - forwards to an inside object (inside LAN) Please disregard the poor security design of doing this - the question is for my understanding of nat on 9.1
eg object network insidewebserver
nat (inside,outside) static outsideobject service tcp www www
it works - however my confusion in understanding is the "nat(inside,outside) order. It has inside first and then outside. Why? the traffic would be coming from the outside first - Joe Smith on the internet would hit the "outside on http and then forward to the inside object. I thought the order of (inside,outside) meant that traffic flow means "in" on inside first and then "out" on the outside. Or is that old way pre 8.3 ios thinking. - my question is really to understand the order of nat (inside,outside) and whether it is important for nat on asa 9.1 hardware model 5515 thanks.