3Com Switch 8800 Advanced Software V5 Configuration Guide

1002 CHAPTER 76: NAT CONFIGURATION
Exporting NAT logs to
Log Server
Network requirements
A PC in the private network accesses Device B on the public network through
Device A, which is enabled with NAT.
Device A sends NAT logs to the information center in UDP packets;
Network diagram
Figure 301 Export NAT log to log server
Configuration procedure
n
The following only lists configurations pertinent to NAT logs. Configurations
regarding the IP addresses of the devices and NAT function are omitted here.
# Specify to export the NAT logs of Device A to the NAT log server.
<Sysname> system-view
[Sysname] userlog nat export host 3.3.3.7 9021
# Set the source IP address of NAT log packets for Device A to 9.9.9.9
[Sysname] userlog nat export source-ip 9.9.9.9
# Enable the NAT log function on Device A.
Operator Reasons for generating NAT logs come from:
Aged for reset or config-change" refers to logs
generated due to configuration change or
manual session deletion;
Aged for no-pat of NAT" refers to logs generated
when the no-pat session ages;
Active data flow timeout" refers to logs
generated when the duration of NAT session
exceeds the active data flow time;
Data flow created" refers to logs generated
when a NAT session is established;
Normal over" refers to logs generated when the
session is aged out.
Field Description
Host
192.168.1.6/24
Vlan-int1
192.168 .1.5/24
Ethernet1 /1/2
Ethernet1/1/1
1.1 .1.1/24 1.1.1.4/24
Device A Device B
Loop1
2.2.2.2/24
NAT log server/system log server
3.3.3.7/24
Ethernet1/1/3