Monday, April 8, 2019

How to allow other teams to see NAT information

I control the firewalls for a midsized company that has been growing rapidly. One of the challenges I'm facing is other team's lack of documentation. A lot of times the network on call will get calls just for fact finding regarding what pool members are assigned to a VIP, or more recently, what a public NAT translates to internally. The NATs live on an ASA5585.

For the F5 stuff, we've utilized the BigIP report ( https://devcentral.f5.com/codeshare/bigip-report ) which has made it easy for other teams to find information regarding out f5 configuration. However, I'm struggling to think of a way to allow other teams to see our NAT's.

I have considered simply doing a dump into a spreadsheet for what we have, but that'd require manual additions and more importantly would require the consumer of that information to be able to read NAT tables.

Has anyone encountered this need previously and how did you solve it?



No comments:

Post a Comment