26-13
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
Chapter26 Network Addres s Translation
Network Address Translation Rules
PPTP Timeout
Enter the number of seconds after which NAT Point-to-Point Tunneling Protocol
(PPTP) flows time out. The default is 86400 seconds (24 hours).
Dynamic NAT Timeout
Enter the maximum number of seconds that dynamic NAT translations should
live.
Max Number of NAT Entries
Enter the maximum number of NAT entries in the translation table.
UDP flow timeouts
Enter the number of seconds that translations for User Datagram Protocol (UDP)
flows should live. The default is 300 seconds (5 minutes).
TCP flow timeouts
Enter the number of seconds that translations for Transmission Control Protoco l
(TCP) flows should live. The default is 86400 seconds (24 hours).
Reset Button
Clicking this button resets translation and timeout parameters to their default
values.
Edit Route Map
When VPNs and NAT are both configured on a router, packets that would
normally meet the criteria for an IPSec rule will not do so if NAT translates their
IP addresses. In this case, NAT translation will cause packets to be sent without
being encrypted. Cisco SDM may create route maps to prevent NAT from
translating IP addresses that you want to be preserved.
Although Cisco SDM only creates route maps to limit the action of NAT, route
maps can be used for other purposes as well. If route maps have been created
using the CLI, they will be visible in this window as well.