Cisco Systems ASA 5580 Network Router User Manual


 
Contents
vi
Cisco ASA Series Firewall CLI Configuration Guide
DNS Server and FTP Server on Mapped Interface, FTP Server is Translated (Static NAT with DNS
Modification)
4-25
IPv4 DNS Server and FTP Server on Mapped Interface, IPv6 Host on Real Interface (Static NAT64 with
DNS64 Modification)
4-26
Feature History for Network Object NAT 4-28
CHAPTER
5 Configuring Twice NAT 5-1
Information About Twice NAT 5-1
Licensing Requirements for Twice NAT 5-2
Prerequisites for Twice NAT 5-2
Guidelines and Limitations 5-2
Default Settings 5-4
Configuring Twice NAT 5-4
Adding Network Objects for Real and Mapped Addresses 5-4
(Optional) Adding Service Objects for Real and Mapped Ports 5-6
Configuring Dynamic NAT 5-7
Configuring Dynamic PAT (Hide) 5-11
Configuring Static NAT or Static NAT-with-Port-Translation 5-18
Configuring Identity NAT 5-21
Configuring Per-Session PAT Rules 5-24
Monitoring Twice NAT 5-24
Configuration Examples for Twice NAT 5-25
Different Translation Depending on the Destination (Dynamic PAT) 5-25
Different Translation Depending on the Destination Address and Port (Dynamic PAT) 5-27
Feature History for Twice NAT 5-29
PART
3 Configuring Access Control
CHAPTER
6 Configuring Access Rules 6-1
Information About Access Rules 6-1
General Information About Rules 6-2
Implicit Permits 6-2
Information About Interface Access Rules and Global Access Rules 6-2
Using Access Rules and EtherType Rules on the Same Interface 6-2
Implicit Deny 6-3
Inbound and Outbound Rules 6-3
Transactional-Commit Model 6-4
Information About Extended Access Rules 6-5