All-To-One Mappings (N:1) - D-Link NetDefend DFL-210 User Manual

Network security firewall ver. 1.05
Hide thumbs Also See for NetDefend DFL-210:
Table of Contents

Advertisement

7.2.3. All-to-One Mappings (N:1)

1.
Go to Interfaces > ARP > Add > ARP
2.
Now enter:
Mode: Publish
Interface: wan
IP Address: 195.55.66.77
3.
Click OK and repeat for all the five public IP addresses.
Create a SAT rule for the translation:
1.
Go to Rules > IP Rules > Add > IPRule
2.
Specify a suitable name for the rule, for instance SAT_HTTP_To_DMZ.
3.
Now enter:
Action: SAT
Servce: http
Source Interface:any
Source Network: all-nets
Destination Interface: core
Destination Network: wwwsrv_pub
4.
Switch to the SAT tab.
5.
Make sure that the Destination IP Address option is selected.
6.
In the New IP Address dropdown list, select wwwsrv_priv.
7.
Click OK.
Finally, create a corresponding Allow Rule:
1.
Go to Rules > IP Rules > Add > IPRule
2.
Specify a suitable name for the rule, for instance Allow_HTTP_To_DMZ.
3.
Now enter:
Action: Allow
Service: http
Source Interface:any
Source Network: all-nets
Destination Interface: core
Destination Network: wwwsrv_pub
4.
Click OK.
7.2.3. All-to-One Mappings (N:1)
NetDefendOS can be used to translate ranges and/or groups into just one IP address.
#
Action Src Iface
1
SAT
any
This rule produces a N:1 translation of all addresses in the group (the range 194.1.2.16 - 194.1.2.20
Src Net
Dest Iface
Dest Net
all-nets
core
194.1.2.16-194.1.2.20,
194.1.2.30
169
Chapter 7. Address Translation
Parameters
http
SETDEST
all-to-one
192.168.0.50 80

Advertisement

Table of Contents
loading

Table of Contents