Hi Everyone!
The show ip nat translation total command is a handy way to get a running total of how many NAT translations the router currently has in its NAT table:
SDWAN-ROUTER#show ip nat trans total
Total number of translations: 12032
SDWAN-ROUTER#show ip nat trans filter time last-use older-than 04/02/2025 18:00:00 totalTotal number of translations: 9492SDWAN-ROUTER#show ip nat trans filter time last-use older-than 04/02/2025 12:00:00 totalTotal number of translations: 4904
SDWAN-ROUTER#show platform software nat F0 timeoutDump NAT timeout configType: generic, Timeout (sec): 86400, Enabled: YesType: tcp, Timeout (sec): 86400, Enabled: YesType: tcp-pptp, Timeout (sec): 86400, Enabled: YesType: udp, Timeout (sec): 300, Enabled: YesType: tcp-fin-reset, Timeout (sec): 60, Enabled: YesType: tcp-syn, Timeout (sec): 60, Enabled: YesType: dns, Timeout (sec): 60, Enabled: YesType: icmp, Timeout (sec): 60, Enabled: YesType: skinny, Timeout (sec): 60, Enabled: YesType: icmp-error, Timeout (sec): 60, Enabled: YesType: esp, Timeout (sec): 300, Enabled: YesType: rtmap, Timeout (sec): 3600, Enabled: Yes
SDWAN-ROUTER#show platform hardware qfp active feature nat datapath limit
ip nat translation tcp-timeout 3600