Re: [fw-wiz] static nat and tcp limits



On Fri, Feb 29, 2008 at 11:27 AM, Vladislav Antolik <
vladislav.antolik@xxxxxxxxx> wrote:

What is the best solution; disable nat-control and then
disable static record?


Yes.
Creating nat rules for traffic that doesn't need to be natted is (in most
cases) ... useless.
(although some people see this as an additional layer of security)
By default in PIX/ASA v7.0 and later the "no nat-control" is the default
value.

Bye.
Robby
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards