U Turn NAT | Why and how do we configure it | Palo Alto firewall

Sdílet
Vložit
  • čas přidán 13. 08. 2023
  • In this Palo Alto training session, you will learn what is U turn NAT. Why do we configure that. At the end we will set up a lab on EVE NG and see how does its configuration work on Palo Alto firewall.
    For all training videos in this series, please go to below links.

Komentáře • 16

  • @sss-bbb
    @sss-bbb Před 10 měsíci +1

    Man You Explain well

  • @ravikumars764
    @ravikumars764 Před měsícem

    Could you let me know from where did you create the IP address 50.50.50.100 in PA and assign it as public IP for webserver?

  • @pradeepkumarkaraka4966
    @pradeepkumarkaraka4966 Před měsícem

    Also on the same Source NAT you applied destination NAT which is not required because we already have a D-NAT from Untrust to Untrust to NAT from 50.50.50.100 to 10.1.1.100 which takes care of traffic from Untrust to DMZ.

    • @freshdeveloper
      @freshdeveloper  Před měsícem

      That's right, i just demonstrated that we can do both on same policy.

  • @khurshidkhandy6622
    @khurshidkhandy6622 Před 2 měsíci

    Hello Sir, it seems Security policy for inbound ACL is wrong. As per my understanding the destination Zone and IP should pre Nat BUT POST ZONE.
    Please correct me if I'm wrong.

    • @freshdeveloper
      @freshdeveloper  Před 2 měsíci

      Can you be little specific at what time duration of the video you are referring
      May explain better....

  • @devhunjan
    @devhunjan Před 16 dny

    For the destination NAT rules you have setup, shouldn't be the destination zone in security policy be DMZ instead of Untrust ?

  • @pradeepkumarkaraka4966
    @pradeepkumarkaraka4966 Před měsícem

    First security policy cannot be untrust to untrust because as per Packet flow NAT happens first so zone gets changed so it should be Untrust to Trust but IP remains pre-nat IP

    • @freshdeveloper
      @freshdeveloper  Před měsícem

      I don't think NAT happens first. it looks up the NAT if its required or not. But actually security policy checks first and then NAT takes place.

  • @sumanratnalu1717
    @sumanratnalu1717 Před měsícem

    No NAT or Security policy required from Untrust DMZ ? As the server is in DMZ zone right!! please clarify.

    • @freshdeveloper
      @freshdeveloper  Před měsícem +1

      It will be required to allow traffic from Untrust to DMZ.

    • @sumanratnalu1717
      @sumanratnalu1717 Před měsícem

      @@freshdeveloper Thanks for the response but in the video you created only from trust to untrust. And it started working.

  • @titus4415
    @titus4415 Před 11 měsíci

    Promo sm

    • @freshdeveloper
      @freshdeveloper  Před 11 měsíci

      Keep it up mate, let me know if needed any help