Nat Configuration Task List; Nat Configuration Restrictions And Guidelines; Configuring Static Nat; Configuration Prerequisites - HPE FlexNetwork HSR6800 Configuration Manual

Comware 7 layer 3, ip services
Hide thumbs Also See for FlexNetwork HSR6800:
Table of Contents

Advertisement

NAT configuration task list

Tasks at a glance
Perform one or more of the following tasks:

Configuring static NAT

Configuring dynamic NAT
Configuring NAT Server
Configuring NAT444
Configuring DS-Lite NAT444
(Optional.)
Configuring NAT with DNS mapping
(Optional.)
Configuring NAT hairpin
(Optional.)
Configuring NAT with ALG
(Optional.)
Configuring NAT logging
(Optional.)
Enabling sending ICMP error messages for
NAT failures
(Optional.)
Enabling NAT reply redirection
(Optional.)
Enabling the deletion of timestamps in TCP
SYN and SYN ACK packets

NAT configuration restrictions and guidelines

If NAT is configured on an aggregate interface, you must specify a traffic processing slot for the
interface. For more information about Ethernet link aggregation, see Layer 2—LAN Switching
Configuration Guide.
If fast forwarding load sharing is enabled, response packets sent or received on a different interface
than request packets are NATed according to fast forwarding entries. If fast forwarding load sharing
is disabled, these packets cannot be NATed. For more information about fast forwarding load sharing,
see "Configuring fast forwarding."
Configuring static NAT
Static NAT includes one-to-one static NAT and net-to-net static NAT for outbound and inbound
translation. Do not configure inbound static NAT alone. Typically, inbound static NAT functions with
outbound dynamic NAT, NAT Server, or outbound static NAT to implement bidirectional NAT.

Configuration prerequisites

Perform the following tasks before configuring static NAT:
Configure an ACL to identify the IP addresses to be translated. The match criteria include the
source IP address, source port number, destination IP address, destination port number,
Remarks
If you perform all the tasks on an interface, the
NAT rules are sorted in the following order:
NAT Server.
Static NAT.
Static NAT444.
Dynamic NAT, dynamic NAT444, and
DS-Lite NAT444.
Dynamic NAT, dynamic NAT444, and
DS-Lite NAT444 have the same priority.
Dynamic NAT rules and dynamic NAT444
rules are sorted in descending order of ACL
numbers and are effective for IPv4 packets.
DS-Lite NAT444 rules are effective for IPv6
packets.
N/A
N/A
N/A
N/A
N/A
N/A
N/A
120

Advertisement

Table of Contents
loading

Table of Contents