PAT egress/post VPN Traffic

May 22, 2009 1 Replies

howdy,


could someone please tell me how to configure an ASA (7.08), to PAT "post" VPN traffic? i.e. i have a site to site VPN, traffic terminating on the peer firewall needs to be PAT'ed behind a DMZ interface .....


mgmt host -> FW ..........(vpn).......... FW -> inside network (connectivity works - not PAT'ed) | | V DMZ interface | Want traffic destined to this subnet PAT'ed behind FW DMZ interface


i can't for the life of me find a configuration on Cisco or google :(


Thanks in advance dirk


hi, you want to NAT/PAT the traffic from source right?

ie, 192.168.4.0/24 -> 123.345.678.9 > FW................FW>inside nw?

=A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0|

=A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0|

=A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 V

=A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 DMZ interface

=A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 |

=A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 Want traffic

Join the Discussion

Have something to add? Share your thoughts — no account required.

Didn't find your answer?

Ask the community — no account required