Tuesday, September 10, 2019

NAT on ASA tunnels

Can someone explain this to me? I am failing to understand why there would be NAT applied and exactly what this policy is doing. There are no overlapping subnets at the two locations and they are both owned by the same parent. I have never tried or seen a need to NAT outside of overlapping subnets...I would rather have the actual IP hit all of my monitoring tools.

sh nat

Manual NAT Policies (Section 1)

1 (inside) to (outside) source static site_medical_net site_medical_net destination static admin_server_net admin_server_net no-proxy-arp route-lookup

translate_hits = 590706, untranslate_hits = 722681

2 (inside) to (outside) source static site_medical_wifi_net site_medical_wifi_net destination static admin_server_net admin_server_net no-proxy-arp route-lookup

translate_hits = 1362403, untranslate_hits = 1378776

3 (inside) to (outside) source static site_medical_inet_net site_medical_inet_net destination static admin_server_net admin_server_net no-proxy-arp route-lookup

translate_hits = 2602, untranslate_hits = 2629



No comments:

Post a Comment