Chapter 16
Configuring NAT
NAT Overview
Figure 16-12
DNS Reply Modification
DNS Server
1
DNS Query
Outside
ftp.example.com?
2
DNS Reply
209.165.201.10
FWSM
3
DNS Reply Modification
209.165.201.10
10.1.3.14
Inside
4
DNS Reply
10.1.3.14
ftp.example.com
User
10.1.3.14
Static Translation
on Outside to:
209.165.201.10
5
FTP Request
10.1.3.14
See the following command for this example:
hostname(config)# static (inside,outside) 209.165.201.10 10.1.3.14 netmask 255.255.255.255
dns
If a user on a different network (for example, DMZ) also requests the IP address for ftp.cisco.com from
Note
the outside DNS server, then the IP address in the DNS reply is also modified for this user, even though
the user is not on the Inside interface referenced by the static command.
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide using ASDM
16-17
OL-20748-01