Cisco ASA NAT Port Forwarding

Hello florian

As mentioned in the Cisco quote, the command will function in both directions, however, the appropriate IP addresses and ports must be used in order for the transmission to match the NAT object and to successfully be translated.

As for the (DMZ,OUTSIDE) portion of the command, it must have the following syntax:

**nat** [(real_ifc,mapped_ifc)] …

The real_ifc is the real interface, that is the interface pointing towards the server/device for which you are configuring static NAT. The mapped_ifc is the mapped interface, that is, the interface to which you are implementing the NAT translation.

You can find more information about NAT on an ASA at this Cisco Documentation.

I hope this has been helpful!

Laz

1 Like