ZyXEL Communications ZyWALL USG100-Plus User Manual page 109

Unified security gateway
Hide thumbs Also See for ZyWALL USG100-Plus:
Table of Contents

Advertisement

Figure 43 Configuration > Network > ALG
5.6.1.2 Set Up a NAT Policy For H.323
In this example, you need a NAT policy to forward H.323 (TCP port 1720) traffic received on the
ZyWALL's 10.0.0.8 WAN IP address to LAN IP address 192.168.1.56.
Click Configuration > Network > NAT > Add > Create New Object > Address and create an
1
IPv4 host address object for the public WAN IP address (called WAN_IP-for-H323 here). Repeat to
create an address object for the H.323 device's private LAN IP address (called LAN_H323 here).
Configure a name for the rule (WAN-LAN_H323 here).
You want the LAN H.323 device to receive peer-to-peer calls from the WAN and also be able to
initiate calls to the WAN so you set the Classification to NAT 1:1.
Set the Incoming Interface to the WAN interface.
Set the Original IP to the WAN address object (WAN_IP-for-H323).
Set the Mapped IP to the H.323 device's LAN IP address object (LAN_H323).
Set the Port Mapping Type to Port, the Protocol Type to TCP and the original and mapped ports
to 1720.
Click OK.
5.6.1.3 Set Up a Firewall Rule For H.323
Configure a firewall rule to allow H.323 (TCP port 1720) traffic received on the WAN_IP-for-H323 IP
address to go to LAN IP address 192.168.1.56.
ZyWALL USG100-PLUS User's Guide
Chapter 5 Managing Traffic
109

Advertisement

Table of Contents
loading

Table of Contents