Defining a Network Address Translation Policy

 


Procedure

Follow the steps below to create the NAT policy you want to apply to your new firewall:

 

Step

Action

From the Managed Firewall PRN screen, click the ID of the Open firewall for which you want to define network configuration.

 

Result:  The system takes you to the Modify Managed Firewall Details screen.

From the Functions section on the left-hand side of the screen, click Initial Setup.

 

Result:  The system takes you to the Initial Setup screen.

From the Form Name list at the bottom of the screen, click Network Address Translation Policy.

 

Result:  The system takes you to the Initial Network Translation Policy screen.

In the Source - Start field, type the IP address of the first originating host outside the firewall to which the rule you are creating should apply.

In the Source - End field, type the IP address of the last originating host outside the firewall to which the rule you are creating should apply.

In the Destination - Start field, type the IP address of the first terminating host outside the firewall to which the rule you are creating should apply.

In the Destination - End field, type the IP address of the last terminating host outside the firewall to which the rule you are creating should apply.

In the first Service field, type the kind of service outside the firewall to which the rule should apply.

In the Source field, type the IP address of the originating host inside the firewall to which the rule you are creating should apply.

In the Destination field, type the IP address of the terminating host inside the firewall to which the rule you are creating should apply.

In the second Service field, type the kind of service inside the firewall to which the rule should apply.

Click btn_newaddarrows.gif.

 

Result:  The system adds the rule you just defined to the NAT Rules box.

Repeat Steps 4 through 12 for all the rules you want to create for the policy.

 

Note:  You can remove rules from the NAT Rules box by highlighting the offending rule and clicking btn_newremove.gif.

Click btn_newsubmit.gif.

 

Result:  The system attempts to save the NAT policy information and associate it with the firewall before returning you to the Initial Setup screen.  The Network Address Translation Policy option at the bottom of the screen should now have a status of Completed.