Firepower Auto NAT with interface group and Zone


FTD has two outside interface, for LAN network objest, only one Auto-NAT can be created

1. When try to create another Auto-NAT with destination Interface Object Zone-Outside2, got the error:

2. When try to add outside2 interface to the same zone Zone-Outside which interface outside belongs to, got the error:

2 Solutions:

1. Create  NAT Rules Before or NAT Rules After with Interface Group instead of Auto NAT

2. Instead of Auto NAT, create  NAT Rules Before or NAT Rules After with Zone-Outside contains both outside interfaces

