PrepAway - Latest Free Exam Questions & Answers

Which command option/keyword in Cisco ASA 8.3 NAT confi…

Which command option/keyword in Cisco ASA 8.3 NAT configurations makes the NAT policy interface independent?

PrepAway - Latest Free Exam Questions & Answers

A.
interface

B.
all

C.
auto

D.
global

E.
any

Explanation:
http://tunnelsup.com/2011/06/24/nat-for-cisco-asas-version-8-3/
Using the “any” interface in the NAT statement
ASA 8.3 introduces the any interface when configuring NAT. For instance if you have a system on the DMZ that you wish to NAT not only to the outside interface,
but to any interface you can use this command: object network dmz-webserver host 192.168.1.23 nat (dmz,any) static 209.165.201.28
This makes it so users on the inside can web to 209.165.201.28 and if traffic is routed to the firewall it will NAT it to the real IP in the DMZ.


Leave a Reply