1820
C
96: NAT C
HAPTER
Configuring
Connection-limit
Introduction to
Connection-limit
ONFIGURATION
n
Exporting NAT logs to the information center occupies storage space. This
■
approach is recommended when the volume of NAT logs is small.
NAT logs exporting to the information center are prioritized as informational,
■
meaning that they are ordinary information.
For detailed information about data priority, refer to
■
Configuration" on page
Exporting NAT logs to log server
When exporting NAT logs to the log server in UDP packets, you can configure the
following three parameters:
IP address and UDP port number of the NAT log server. NAT logs cannot be
■
exported successfully without configuring the information center export
direction and specifying the log server address.
Source IP address of NAT logs. This address allows the log server to identify the
■
log source. You are recommended to use the loopback interface address as the
source IP address of NAT logs.
Version number of NAT logs. NAT logs may come in several versions, each with
■
different packet formats. However, the device supports only version 1 currently.
Follow these steps to configure a NAT log server:
To do...
Enter system view
Specify the IP address and UDP
port number of the NAT log
server
Specify the source IP address of
the UDP packet that carries NAT
logs
Specify the version number of
NAT logs
n
The IP address of the NAT log server must be a valid unicast address.
■
As for the UDP port number of the log server, you are recommended to use a
■
port number greater than 1024 to avoid conflicts with the system-defined port
numbers.
The connection-limit function allows you to limit user connections in only one
way: connection number. This can avoid the situation where a single user
establishes too many connections in a short time as to affect other users in using
the network.
2137.
Use the command...
system-view
userlog nat export host
ip-address udp-port
userlog nat export
source-ip ip-address
userlog nat export
version version-number
"Information Center
Remarks
-
Required
Optional
By default, the source IP
address is the interface IP
address through which the
packet is sent.
Optional
Version 1 is used by default
Need help?
Do you have a question about the MSR 50 Series and is the answer not in the manual?