Adding A Rule To A Source Nat Rule Set - Juniper NETWORK AND SECURITY MANAGER 2010.4 - ADMININISTRATION GUIDE REV1 Administration Manual

Table of Contents

Advertisement

Adding a Rule to a Source NAT Rule Set

Copyright © 2010, Juniper Networks, Inc.
Other routing instances, if you have added them previously. To add a new
routing instance, use
Zone
—Select the zone from the list.
In general, the list displays the zones configured within a specific device or just
the shared zones depending on whether the
selected (default) or not and can have the following values:
The default zone (
zone, if you do not wish to configure anything new.
Other zones, if you have added them previously. To add a new zone, use
Manager
>
Zone Objects
—Select the interface(s) from the list. The interfaces are listed only if
Interface
you have imported the device to NSM. Hence, for modeled devices, no interfaces
are listed.
Click
.
c.
OK
A rule set with the specified name gets created and is displayed in the
window.
The next step is to add rules to the rule set. For more information, see "Adding a Rule to
a Source NAT Rule Set" on page 541.
To add a new rule to a rule set:
From the
tab, select the rule set to which you want to add the rule.
Source NAT
1.
Click (
+
) at the upper left corner of the
2.
Select
to add a new rule to the selected rule set. The
Add Rule
3.
appears.
Here, you must specify a unique name for the rule and set the conditions and the
action to be performed when the traffic matches these conditions, as follows:
Enter a name, which uniquely identifies the rule within the rule set.
a.
Select the source address from the list. This address represents the public IP
b.
address through which the traffic leaves the private network.
Select the destination address from the list. The addresses listed here represent
c.
the hosts, which are in the public network.
If using Port Address Translation (PAT), specify a port range (between 1024 and
d.
65535) in the
and
Low
same IP address. For more information on PAT, see
http://www.juniper.net/techpubs/software/junos-security/junos-security10.0/
junos-security-swconfig-security/id-11012.html#id-11012
Chapter 11: Configuring Junos NAT Policies
>
Object Manager
Routing Instance Objects
Select From Device
junos-global
), which ships with the device. You can use this
.
Source NAT
tab.
fields. When PAT is used, multiple hosts can share the
High
.
check box is
Object
Security Policy
dialog box
New Rule
.
541

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the NETWORK AND SECURITY MANAGER 2010.4 - ADMININISTRATION GUIDE REV1 and is the answer not in the manual?

Questions and answers

Subscribe to Our Youtube Channel

This manual is also suitable for:

Network and security manager 2010.4

Table of Contents