Natting issue with new subnet.

L3 Networker

I am applying destination nat. Natting public ip(untrust zone) to internal ip(trust zone). Public ip subnet is /28.

When access public ip in the monitoring logs it shows me dst zone as Untrust whenit should show dst zone as Trust.

I have policy in place and natting but its not hitting any policy and goes to expicit deny.

