R3721-F3210-F3171-HP High-End Firewalls NAT and ALG Configuration Guide-6PW101
52
# Create an ACL rule:
a.
Click the icon for ACL 2001 and then click Add.
b.
Crate an ACL rule as shown in Figure 44:
Select Permit as the operation.
Select Source IP Address, and enter 192.168.1.0 as the source IP address, and 0.0.0.255 as
the source wildcard.
c.
Click Apply.
Figure 44 Configuring an ACL rule to permit packets sourced from 192.168.1.0/24
d.
Click Add.
e.
Select Deny as the operation, as shown in Figure 45.
f.
Click Apply.
Figure 45 Configuring an ACL rule to deny packets
3.
Configure dynamic NAT:
# Configure the address pool:
a.
Select Firewall > NAT Policy > Dynamic NAT from the navigation tree, and then click Add in the
Address Pool area.
b.
Add a NAT address pool as shown in Figure 46:
Enter 1 in the Index field.
Enter 5.5.5.9 as the start IP address.
Enter 5.5.5.11 as the end IP address.
c.
Click Apply.