For inside-to-outside traffic, perform these steps:
- Check input ACL.
- Perform NAT inside to outside.
- Check output ACL.
For outside-to-inside traffic, perform these steps:
- Check input ACL.
- Perform NAT outside to inside.
- Check output ACL.
For filtering inside-to-outside traffic on the inside interface, the inside hosts should be specified by their actual IP addresses.
Similarly, for filtering outside-to-inside traffic on the outside interface, the inside hosts should be specified by their translated addresses (inside global).
No comments:
Post a Comment