<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Can I have a static bi-directional NAT rule and a PAT rule working together? in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/can-i-have-a-static-bi-directional-nat-rule-and-a-pat-rule/m-p/533825#M109921</link>
    <description>&lt;P&gt;If traffic comes from External zone it is destined to your firewall public IP.&lt;/P&gt;
&lt;P&gt;Your firewall public IP is located in External zone.&lt;/P&gt;
&lt;P&gt;It means that rule 5 destination zone must be External for this rule to match.&lt;/P&gt;</description>
    <pubDate>Thu, 09 Mar 2023 18:45:34 GMT</pubDate>
    <dc:creator>Raido_Rattameister</dc:creator>
    <dc:date>2023-03-09T18:45:34Z</dc:date>
    <item>
      <title>Can I have a static bi-directional NAT rule and a PAT rule working together?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/can-i-have-a-static-bi-directional-nat-rule-and-a-pat-rule/m-p/533816#M109917</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I currently have a static NAT bi-directional policy, number 6 in the screenshot, that publishes an internal server (LAB-Skype) on Internet using a public IP (LAB-Skype-pub). This works fine.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Now I need to add an exception for port 443 for that public IP, which needs to be redirected to port 4443 towards the same internal server.&lt;/P&gt;
&lt;P&gt;I tried to create a policy translating the original packet arriving at the public server (LAB-Skype-pub tcp/443) to the internal server (LAB-Skype tcp/4443). this is policy number 5 in the screenshot.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Unfortunately, I don't see any hit (0) on the policy. Any idea about what I am doing wrong?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Mar 2023 17:47:04 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/can-i-have-a-static-bi-directional-nat-rule-and-a-pat-rule/m-p/533816#M109917</guid>
      <dc:creator>JoseCortijo</dc:creator>
      <dc:date>2023-03-09T17:47:04Z</dc:date>
    </item>
    <item>
      <title>Re: Can I have a static bi-directional NAT rule and a PAT rule working together?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/can-i-have-a-static-bi-directional-nat-rule-and-a-pat-rule/m-p/533825#M109921</link>
      <description>&lt;P&gt;If traffic comes from External zone it is destined to your firewall public IP.&lt;/P&gt;
&lt;P&gt;Your firewall public IP is located in External zone.&lt;/P&gt;
&lt;P&gt;It means that rule 5 destination zone must be External for this rule to match.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Mar 2023 18:45:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/can-i-have-a-static-bi-directional-nat-rule-and-a-pat-rule/m-p/533825#M109921</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2023-03-09T18:45:34Z</dc:date>
    </item>
    <item>
      <title>Re: Can I have a static bi-directional NAT rule and a PAT rule working together?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/can-i-have-a-static-bi-directional-nat-rule-and-a-pat-rule/m-p/534190#M109951</link>
      <description>&lt;P&gt;thanks a lot, you were so right!&lt;/P&gt;</description>
      <pubDate>Mon, 13 Mar 2023 14:08:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/can-i-have-a-static-bi-directional-nat-rule-and-a-pat-rule/m-p/534190#M109951</guid>
      <dc:creator>JoseCortijo</dc:creator>
      <dc:date>2023-03-13T14:08:15Z</dc:date>
    </item>
  </channel>
</rss>

