Help required to convert Cisco ASA NAT rule onto Palo Alto

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Help required to convert Cisco ASA NAT rule onto Palo Alto

L4 Transporter

Hi Guys,

I am not expert in reading or understanding the Cisco ASA NAT rules and I have just started to feel comfortable with Palo Alto except for NAT rules.  Can someone please guide me through on how to go around configuring the following Cisco ASA NAT rule onto the Palo Alto?

I have just taken a couple of rules to convert.  Based on this, I would get the rest done on my own.

Following are the CISCO ASA NAT RULEs:

Rule 1 # access-list inside_nat0_outbound extended permit ip 10.1.2.0 255.255.255.0 10.1.250.128 255.255.255.128

Rule 2 # access-list inside_nat0_outbound extended permit ip EH_Staff_Network 255.255.255.0 10.1.250.128 255.255.255.128

I know the exact rule cannot be expalined, but an overview on how to re-configure the above rules will be very helpful.

Many Thanks in Advance.

Regards,

Kal

16 REPLIES 16

Prince,

I will be doing it again during this week.  Hopefully it goes well. 

Hello,

We have a very good article that goes over the different types of NAT in detail with screenshots of what the security policy and the NAT policy should look like for each:

If you still have trouble, you could contact your SE or support.

Thanks,

Jason

  • 8132 Views
  • 16 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!