PAT egress/post VPN Traffic

Discussion in 'Cisco' started by dirk, May 22, 2009.

  1. dirk

    dirk Guest

    howdy,


    could someone please tell me how to configure an ASA (7.08), to PAT
    "post" VPN traffic? i.e. i have a site to site VPN, traffic
    terminating on the peer firewall needs to be PAT'ed behind a DMZ
    interface .....


    mgmt host -> FW ..........(vpn).......... FW -> inside network
    (connectivity works - not PAT'ed)
    |
    |
    V
    DMZ interface
    |
    Want traffic
    destined to this subnet PAT'ed behind FW DMZ interface


    i can't for the life of me find a configuration on Cisco or google :(


    Thanks in advance
    dirk
    dirk, May 22, 2009
    #1
    1. Advertising

  2. dirk

    jkdas Guest

    hi, you want to NAT/PAT the traffic from source right?

    ie, 192.168.4.0/24 -> 123.345.678.9 > FW................FW>inside nw?




    On May 22, 10:19 am, dirk <> wrote:
    > howdy,
    >
    > could someone please tell me how to configure an ASA (7.08), to PAT
    > "post" VPN traffic? i.e. i have a site to site VPN, traffic
    > terminating on the peer firewall needs to be PAT'ed behind a DMZ
    > interface .....
    >
    > mgmt host -> FW  ..........(vpn).......... FW -> inside network
    > (connectivity works - not PAT'ed)
    >                                                          |
    >                                                          |
    >                                                         V
    >                                                       DMZ interface
    >                                                           |
    >                                                     Want traffic
    > destined to this subnet PAT'ed behind FW DMZ interface
    >
    > i can't for the life of me find a configuration on Cisco or google :(
    >
    > Thanks in advance
    > dirk
    jkdas, May 22, 2009
    #2
    1. Advertising

Want to reply to this thread or ask your own question?

It takes just 2 minutes to sign up (and it's free!). Just click the sign up button to choose a username and then you can ask your own questions on the forum.
Similar Threads
  1. egress queues on 6500

    , Aug 6, 2004, in forum: Cisco
    Replies:
    0
    Views:
    698
  2. Eagle
    Replies:
    0
    Views:
    716
    Eagle
    Dec 3, 2004
  3. Kanagaraj Krishna

    Re: Cisco 3750 egress rate-limit

    Kanagaraj Krishna, Sep 27, 2005, in forum: Cisco
    Replies:
    2
    Views:
    11,058
    schavez
    Feb 14, 2008
  4. BinSur
    Replies:
    4
    Views:
    5,769
    BinSur
    Jan 13, 2006
  5. response3

    QoS - Why use egress queing

    response3, Feb 9, 2007, in forum: Cisco
    Replies:
    1
    Views:
    553
Loading...

Share This Page