Firepower Auto NAT with interface group and Zone





LAB FTD 7.4

FTD has two outside interface, for LAN network objest, only one Auto-NAT can be created




1. When try to create another Auto-NAT with destination Interface Object Zone-Outside2, got the error:




2. When try to add outside2 interface to the same zone Zone-Outside which interface outside belongs to, got the error:




2 Solutions:

1. Create  NAT Rules Before or NAT Rules After with Interface Group instead of Auto NAT






2. Instead of Auto NAT, create  NAT Rules Before or NAT Rules After with Zone-Outside contains both outside interfaces







 

Comments