i'm migrating my customer existing Cisco ASA5510 (Ver.8) to newer model ASA5516 (ver. 941).
I understand that the new firmware has change the CLI NAT code. I found there is a link from internet that helping to convert the existing code to new version of code.
the site is http://www.tunnelsup.com/nat-converter/
. below are the code that I tried to convert and failed
global (outside) 10 interface
global (VPN_Lease_Line) 20 interface
nat (inside) 10 192.168.70.0 255.255.255.0
nat (inside) 20 access-list policynat_ebs
access-list policynat_ebs extended permit tcp host 192.168.70.28 host 126.96.36.199 eq https
access-list policynat_ebs extended permit tcp 192.168.70.0 255.255.255.0 host 188.8.131.52 eq https
access-list policynat_ebs extended permit tcp 192.168.70.0 255.255.255.0 host 184.108.40.206 eq https
nat (dmz) 10 access-list dmz_nat_outbound
access-list dmz_nat_outbound extended permit ip 192.168.133.0 255.255.255.0 any
other rules seem no issue.
much appreciate if any expert may share their experience...