# Source NAT pool and virtual ethernet address

**URL:** <https://community.a10networks.com/t/source-nat-pool-and-virtual-ethernet-address/358>\
**Category:** ADC - Application Delivery\
**Created:** [November 27, 2015, 5:14pm UTC](https://community.a10networks.com/t/source-nat-pool-and-virtual-ethernet-address/358 "2015-11-27T17:14:24Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![rwilliams](https://avatars.discourse-cdn.com/v4/letter/r/74df32/32.png) [@rwilliams](https://community.a10networks.com/u/rwilliams)\
**Post date:** [November 27, 2015, 5:14pm UTC](https://community.a10networks.com/t/source-nat-pool-and-virtual-ethernet-address/358/1 "2015-11-27T17:14:24Z")

</div>

Hi All,

Currently setting up some new 3030S devices which I have recently upgraded to 4.0.1.  
We are setting up source NAT and the idea was to use the ve IP addresses for the associated vlan as the source NAT address in the pool.

I swear we had it setup like this in version 2.7.2P6. but since the upgrade it says we can not use the ve interface IP address as the source nat address in a pool.

Is there anyway of using the interface address as the source NAT now? Just trying to keep the number of IP addresses used down.  
Thanks  
Ryan

---

<div class="post-metadata">

**Author:** ![salman210](https://avatars.discourse-cdn.com/v4/letter/s/a698b9/32.png) [@salman210](https://community.a10networks.com/u/salman210)\
**Post date:** [January 27, 2020, 6:20pm UTC](https://community.a10networks.com/t/source-nat-pool-and-virtual-ethernet-address/358/2 "2020-01-27T18:20:33Z")

</div>

Hi

---

<div class="post-metadata">

**Author:** ![mdunn](https://avatars.discourse-cdn.com/v4/letter/m/87869e/32.png) [@mdunn](https://community.a10networks.com/u/mdunn)\
**Post date:** [January 27, 2020, 8:14pm UTC](https://community.a10networks.com/t/source-nat-pool-and-virtual-ethernet-address/358/3 "2020-01-27T20:14:08Z")

</div>

Hi Ryan,  
This should be possible with “Smart NAT” which will use the interface IP or VRRP Floating IP. Per admin guide:  
Smart NAT provides source NAT for virtual ports. The IP addresses that Smart NAT uses to create the mappings depend on whether VRRP-A high availability is enabled and floating-IP addresses are configured:  
• With VRRP-A high availability – If VRRP-A high availability is configured, Smart NAT uses configured floating IP addresses as NAT addresses.  
• Without VRRP-A high availability – If VRRP-A high availability is not configured, then Smart NAT uses IP address(es) on the ACOS interface connected to the real server.  
The configuration is applied to the VPORT with “source nat auto” command.

Mike

---

<div class="post-metadata">

**Author:** ![salman210](https://avatars.discourse-cdn.com/v4/letter/s/a698b9/32.png) [@salman210](https://community.a10networks.com/u/salman210)\
**Post date:** [January 28, 2020, 5:25am UTC](https://community.a10networks.com/t/source-nat-pool-and-virtual-ethernet-address/358/4 "2020-01-28T05:25:23Z")

</div>

my configuration is as below, kindly let me know what i am missing.  
!  
access-list 111 permit ip 10.0.0.0 0.255.255.255 any&nbsp;  
!  
access-list 111 permit ip 192.168.0.0 0.0.255.255 any&nbsp;  
!  
interface ethernet 2&nbsp;  
&nbsp;name “ISP 1”  
&nbsp;enable&nbsp;  
&nbsp;ip address 100.100.101.1 255.255.255.224&nbsp;  
&nbsp;ip nat outside&nbsp;  
&nbsp;exit-module  
!  
interface ethernet 3&nbsp;  
&nbsp;name “ISP 2”&nbsp;  
&nbsp;enable&nbsp;  
&nbsp;ip address 100.100.102.1 255.255.255.224&nbsp;  
&nbsp;ip nat outside&nbsp;  
&nbsp;exit-module  
!  
interface ethernet 4&nbsp;  
&nbsp;name “ISP 3”&nbsp;  
&nbsp;enable&nbsp;  
&nbsp;&nbsp;ip address 100.100.103.1 255.255.255.224&nbsp;  
&nbsp;ip nat outside&nbsp;  
&nbsp;exit-module  
!  
!  
ip nat pool SNAT\_ISP1 100.100.101.2 100.100.101.2 netmask /29 gateway 100.100.100.254&nbsp;  
!  
ip nat pool SNAT\_ISP2 100.100.102.2 100.100.102.2 netmask /29 gateway 100.100.100.253&nbsp;  
!  
ip nat pool SNAT\_ISP3 100.100.103.2 100.100.103.2 netmask /29 gateway 100.100.100.252&nbsp;  
!  
ip nat pool-group LLB2&nbsp;  
&nbsp;member SNAT\_ISP1&nbsp;SNAT\_ISP2 SNAT\_ISP3  
&nbsp;exit-module

!  
slb virtual-server INTERNET 0.0.0.0 acl 111&nbsp;  
&nbsp;extended-stats&nbsp;  
&nbsp;port 0 tcp&nbsp;  
&nbsp;&nbsp;clientip-sticky-nat&nbsp;  
&nbsp;&nbsp;source-nat pool LLB2&nbsp;  
&nbsp;&nbsp;service-group IPV4\_0&nbsp;  
&nbsp;&nbsp;use-rcv-hop-for-resp&nbsp;  
&nbsp;&nbsp;template persist destination-ip dstpersist&nbsp;  
&nbsp;&nbsp;no-dest-nat&nbsp;  
&nbsp;&nbsp;exit-module  
&nbsp;port 0 udp&nbsp;  
&nbsp;&nbsp;clientip-sticky-nat&nbsp;  
&nbsp;&nbsp;source-nat pool LLB2&nbsp;  
&nbsp;&nbsp;service-group IPV4\_1&nbsp;  
&nbsp;&nbsp;use-rcv-hop-for-resp&nbsp;  
&nbsp;&nbsp;template persist destination-ip dstpersist&nbsp;  
&nbsp;&nbsp;no-dest-nat&nbsp;  
&nbsp;&nbsp;exit-module  
&nbsp;port 0 others&nbsp;  
&nbsp;&nbsp;clientip-sticky-nat&nbsp;  
&nbsp;&nbsp;source-nat pool LLB2&nbsp;  
&nbsp;&nbsp;service-group IPV4\_0&nbsp;  
&nbsp;&nbsp;use-rcv-hop-for-resp&nbsp;  
&nbsp;&nbsp;template persist destination-ip dstpersist&nbsp;  
&nbsp;&nbsp;no-dest-nat&nbsp;  
&nbsp;&nbsp;exit-module  
&nbsp;exit-module  
in the CLI when i ping 8.8.8.8 using source interface ethernet 2,3 and 4 i can ping 8.8.8.8  
but when i use source snap ip  
ping source 100.100.101.2 8.8.8.8 (no response)  
ping source 100.100.102.2 8.8.8.8 (no response)  
ping source 100.100.103.2 8.8.8.8 (no response)

Thanks,
