Radware Alteon Application Manual page 387

Application switch operating system
Hide thumbs Also See for Alteon:
Table of Contents

Advertisement

This example requires a NAT filter to be configured on the port that is connected to the internal
clients. When the NAT filter is triggered by outbound client traffic, the internal private IP address
information on the outbound packets is translated to a valid, publicly advertised IP address on
Alteon. In addition, the public IP address must be configured as a proxy IP address on the Alteon
port that is connected to the internal clients. The proxy performs the reverse translation, restoring
the private network addresses on inbound packets.
To configure dynamic NAT
>> # /cfg/slb/filt 14
>> Filter 14# invert ena
>> Filter 14# dip 10.10.10.0
>> Filter 14# dmask 255.255.255.0
>> Filter 14# sip any
>> Filter 14# action nat
>> Filter 14# nat source
>> Filter 14# ena
>> Filter 14# adv/proxyadv/proxy enable
>> Filter 14 Proxy Advanced# proxyip
205.178.17.12
>> Filter 14 Advanced# /cfg/slb/port 1
>> SLB port 1# add 14
>> SLB port 1# filt enable
>> SLB port 1# proxy ena
>> SLB port 1# apply
>> SLB port 1# save
For more information on proxy IP address, see
page
190.
Notes
The invert option in this example filter makes this specific configuration easier, but is not a
requirement for dynamic NAT.
Filters for dynamic NAT should be given a higher numbers than any static NAT filters (see
NAT, page 384
).
After port filtering is enabled or disabled and you apply the change, session entries are deleted
immediately.
Document ID: RDWR-ALOS-V2900_AG1302
Alteon Application Switch Operating System Application Guide
(Select the menu for client filter)
(Invert the filter logic)
(If the destination is not private)
(For the entire private subnet range)
(From any source IP address)
(Perform NAT on matching traffic)
(Translate source information)
(Enable the filter)
(Enable client proxy on this filter)
(Set the filter's proxy IP address)
(Select SLB port 1)
(Add the filter 14 to port 1)
(Enable filtering on port 1)
(Enable proxies on this port)
(Apply configuration changes)
(Save configuration changes)
Client Network Address Translation (Proxy IP),
Filtering and Traffic Manipulation
Static
387

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents