Firepower Auto NAT with interface group and Zone





LAB FTD 7.4

FTD has two outside interface, for LAN network objest, only one Auto-NAT can be created




1. When try to create another Auto-NAT with destination Interface Object Zone-Outside2, got the error:




2. When try to add outside2 interface to the same zone Zone-Outside which interface outside belongs to, got the error:




2 Solutions:

1. Create  NAT Rules Before with Interface Group instead of Auto NAT






2. Instead of Auto NAT, create  NAT Rules Before with Zone-Outside contains both outside interfaces







 

Comments

Popular posts from this blog

Firepower FMC and FTD troubleshooting

ASA IKEv1 VPN troubleshooting Steps and Tips

Firepower 2100/1100 FTD/ASA initial setup, reimage, upgrade.