Cisco Systems ASA Services Module, ASA 5505, ASA 5580 Guidelines and Limitations Default Settings

Models: ASA Services Module ASA 5555-X ASA 5545-X ASA 5585-X ASA 5580 ASA 5505

1 754
Download 754 pages 55.66 Kb
Page 5
Image 5

Contents

C H A P T E R 4

Configuring Network Object NAT (ASA 8.3 and Later) 4-1

 

Information About Network Object NAT

4-1

 

Licensing Requirements for Network Object NAT 4-2

 

Prerequisites for Network Object NAT

4-2

 

Guidelines and Limitations 4-2

 

 

Default Settings 4-3

 

 

Configuring Network Object NAT

4-4

 

 

 

Configuring Dynamic NAT or Dynamic PAT Using a PAT Pool

4-4

 

Configuring Dynamic PAT (Hide)

4-8

 

 

Configuring Static NAT or Static NAT-with-Port-Translation

4-11

 

Configuring Identity NAT

4-15

 

 

 

Configuring Per-Session PAT Rules

4-18

 

 

Monitoring Network Object NAT

4-19

 

 

 

Configuration Examples for Network Object NAT 4-20

 

 

Providing Access to an Inside Web Server (Static NAT) 4-21

 

 

NAT for Inside Hosts (Dynamic NAT) and NAT for an Outside Web Server (Static NAT) 4-23

 

Inside Load Balancer with Multiple Mapped Addresses (Static NAT, One-to-Many)4-28

 

Single Address for FTP, HTTP, and SMTP (Static NAT-with-Port-Translation)4-32

 

DNS Server on Mapped Interface, Web Server on Real Interface (Static NAT with DNS

 

Modification)

4-35

 

 

 

 

 

 

DNS Server and FTP Server on Mapped Interface, FTP Server is Translated (Static NAT with DNS

 

Modification)

4-38

 

 

 

 

 

 

IPv4 DNS Server and FTP Server on Mapped Interface, IPv6 Host on Real Interface (Static NAT64 with

 

DNS64 Modification)

4-40

 

 

 

 

Feature History for Network Object NAT 4-45

 

 

Configuring Twice NAT (ASA 8.3 and Later) 5-1

 

C H A P T E R 5

 

 

Information About Twice NAT

 

5-1

 

 

 

Licensing Requirements for Twice NAT

5-2

 

 

Prerequisites for Twice NAT

 

5-2

 

 

 

Guidelines and Limitations

5-2

 

 

 

 

Default Settings

5-4

 

 

 

 

 

 

Configuring Twice NAT 5-4

 

 

 

 

 

Configuring Dynamic NAT or Dynamic PAT Using a PAT Pool

5-4

 

Configuring Dynamic PAT (Hide)

5-12

 

 

Configuring Static NAT or Static NAT-with-Port-Translation

5-18

 

Configuring Identity NAT

5-24

 

 

 

Configuring Per-Session PAT Rules

5-29

 

Cisco ASA Series Firewall ASDM Configuration Guide

3

Page 5
Image 5
Cisco Systems ASA Services Module, ASA 5505, ASA 5545-X, ASA 5555-X, ASA 5585-X Guidelines and Limitations Default Settings