Re: [fw-wiz] static nat and tcp limits
- From: "Robby Cauwerts" <robby@xxxxxxxxxxx>
- Date: Sat, 1 Mar 2008 17:19:08 +0100
On Fri, Feb 29, 2008 at 11:27 AM, Vladislav Antolik <
vladislav.antolik@xxxxxxxxx> wrote:
What is the best solution; disable nat-control and then
disable static record?
Yes.
Creating nat rules for traffic that doesn't need to be natted is (in most
cases) ... useless.
(although some people see this as an additional layer of security)
By default in PIX/ASA v7.0 and later the "no nat-control" is the default
value.
Bye.
Robby
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
- References:
- [fw-wiz] static nat and tcp limits
- From: Vladislav Antolik
- [fw-wiz] static nat and tcp limits
- Prev by Date: Re: [fw-wiz] syslog and network management
- Next by Date: Re: [fw-wiz] static nat and tcp limits
- Previous by thread: Re: [fw-wiz] static nat and tcp limits
- Next by thread: [fw-wiz] watchguard firebox 700 hardware limitation?
- Index(es):