Section 9.0: IP Services and Protocol-Independent Features

9.1. Network Address Translation (NAT)

  1. Configure NAT on PIX for VLAN2 to, as demonstrated in the following example:

    access-list nonat permit ip
    nat (inside) 0 access-list nonat
    nat (inside) 2 0 0
    nat (inside) 1 0 0
    global (outside) 1
    global (outside) 2
    ! Ping from R1 to anywhere on the network sourcing from VLAN2 network.
    ! eg
    r1#ping ip
    Target IP address:
    Repeat count [5]:
    Datagram size [100]:
    Timeout in seconds [2]:
    Extended commands [n]: y
    Source address or interface: Type of service [0]: Set DF bit in IP header? [no]: Validate reply ...

Get CCIE Security Practice Labs now with the O’Reilly learning platform.

O’Reilly members experience live online training, plus books, videos, and digital content from nearly 200 publishers.