Created an enclave (192.168.170.0/24) on our office network using a Cisco 2921 and overload NAT to the ISP Firewall (192.168.168.1). The enclave NAT works OK but I can't get the management network (10.10.10.0/27) out to the switch in the enclave. I can't ping 10.10.10.11 even from the CORE switch.
See the attached diagram. MNGT 10.10.10.0/27 OFFICE 192.168.168.0/24 ENCLAVE 192.168.170.0/24