PAT egress/post VPN Traffic

howdy,

could someone please tell me how to configure an ASA (7.08), to PAT "post" VPN traffic? i.e. i have a site to site VPN, traffic terminating on the peer firewall needs to be PAT'ed behind a DMZ interface .....

mgmt host -> FW ..........(vpn).......... FW -> inside network (connectivity works - not PAT'ed) | | V DMZ interface | Want traffic destined to this subnet PAT'ed behind FW DMZ interface

i can't for the life of me find a configuration on Cisco or google :(

Thanks in advance dirk

Reply to
dirk
Loading thread data ...

hi, you want to NAT/PAT the traffic from source right?

ie, 192.168.4.0/24 -> 123.345.678.9 > FW................FW>inside nw?

=A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0|

=A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0|

=A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 V

=A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 DMZ interface

=A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 |

=A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 Want traffic

Reply to
jkdas

Cabling-Design.com Forums website is not affiliated with any of the manufacturers or service providers discussed here. All logos and trade names are the property of their respective owners.