Hi
In "show security flow session", you will see all addresses (pre- and post- translated):
In: sip/sport pre-tr -> dip/dport pre-tr
Out: dip/dport post-tr -> sip/sport post-tr
Here, sip=source ip, etc. Also a mnemonyc rule:
“\” don’t match => S-NAT is done
“/” don’t match => D-NAT is done