Chapter 5
Setup and Configuration
Section 5.17.12
Managing Network Address Translation Settings
Network address translation entries can be used to set up a one-to-one correspondence between an external
address on the firewall and the RFC1918 address of a host behind the firewall. This is often set up to allow
connections to an internal server from outside the network.
NOTE
Destination Network Address Translation (DNAT) can be setup by configuring the destination zone in a
rule. For more information on rules, refer to
The following sections describe how to configure and manage network address translation settings for a firewall:
•
Section 5.17.12.1, "Viewing a List of NAT Settings"
•
Section 5.17.12.2, "Adding a NAT Setting"
•
Section 5.17.12.3, "Deleting a NAT Setting"
Section 5.17.12.1
Viewing a List of NAT Settings
To view a list of NAT settings, type:
show running-config security firewall firewall fwnat
Where:
• firewall is the name of the firewall
If NAT settings have been configured, a table or list similar to the following example appears:
ruggedcom# show running-config security firewall fwconfig firewall1 fwnat
security
firewall
fwconfig firewall1
fwnat n1
external-addr 172.30.150.10
interface
internal-addr 192.168.1.100
no description
!
fwnat fwmasq
external-addr 172.30.159.5
interface
internal-addr 193.168.1.1
no description
!
!
!
!
If no NAT settings have been configured, add NAT settings as needed. For more information, refer to
Section 5.17.12.2, "Adding a NAT
286
fe-cm-1
fe-cm-1
Setting".
Section 5.17.14, "Managing
Managing Network Address Translation Settings
RUGGEDCOM ROX II
CLI User Guide
Rules".