I suspect it may not be possible to do what I want with a Cisco router, but here goes anyway:
I have a 2620 router (IOS 12.2(5)) as a default gateway in a LAN (192.168.0.2 on eth0/0). I also have a PIX 515E (ver. 6.1.(2)) on the same LAN (192.168.0.1), with an IPSec tunnel to yet another network (172.20.0.0/24). The PIX is the default gateway for the 2620.
I'd like the 2620 (or the PIX) to NAT all traffic going to a specific address, behind one particular IP address. All packets going to
172.20.0.10 should appear to come from, say, 10.0.0.1. I've given up on the PIX; it doesn't seem to be able to NAT packets based on destination IP.I've turned off ICMP redirects on the 2620 to make sure no packets are sent directly to the PIX. I've experimented with route-maps and sending the packets through a loopback interface, but no matter what I do, no NATed packets are leaving eth0/0 on the 2620.
Can this be done at all?