U Turn NAT | Why and how do we configure it | Palo Alto firewall

แชร์
ฝัง
  • เผยแพร่เมื่อ 13 ส.ค. 2023
  • In this Palo Alto training session, you will learn what is U turn NAT. Why do we configure that. At the end we will set up a lab on EVE NG and see how does its configuration work on Palo Alto firewall.
    For all training videos in this series, please go to below links.

ความคิดเห็น • 10

  • @sss-bbb
    @sss-bbb 9 หลายเดือนก่อน +1

    Man You Explain well

    • @freshdeveloper
      @freshdeveloper  9 หลายเดือนก่อน

      Thank you, i am improving

  • @pradeepkumarkaraka4966
    @pradeepkumarkaraka4966 10 วันที่ผ่านมา

    Also on the same Source NAT you applied destination NAT which is not required because we already have a D-NAT from Untrust to Untrust to NAT from 50.50.50.100 to 10.1.1.100 which takes care of traffic from Untrust to DMZ.

    • @freshdeveloper
      @freshdeveloper  2 วันที่ผ่านมา

      That's right, i just demonstrated that we can do both on same policy.

  • @khurshidkhandy6622
    @khurshidkhandy6622 17 วันที่ผ่านมา

    Hello Sir, it seems Security policy for inbound ACL is wrong. As per my understanding the destination Zone and IP should pre Nat BUT POST ZONE.
    Please correct me if I'm wrong.

    • @freshdeveloper
      @freshdeveloper  16 วันที่ผ่านมา

      Can you be little specific at what time duration of the video you are referring
      May explain better....

  • @pradeepkumarkaraka4966
    @pradeepkumarkaraka4966 10 วันที่ผ่านมา

    First security policy cannot be untrust to untrust because as per Packet flow NAT happens first so zone gets changed so it should be Untrust to Trust but IP remains pre-nat IP

    • @freshdeveloper
      @freshdeveloper  10 วันที่ผ่านมา

      I don't think NAT happens first. it looks up the NAT if its required or not. But actually security policy checks first and then NAT takes place.

  • @titus4415
    @titus4415 9 หลายเดือนก่อน

    Promo sm

    • @freshdeveloper
      @freshdeveloper  9 หลายเดือนก่อน

      Keep it up mate, let me know if needed any help