HP VPN Firewall Appliances NAT and ALG Configuration Guide
27
Ste
p
Command
Remarks
1. Enter system view.
system-view N/A
2. Enter interface view.
interface interface-type interface-number N/A
3. Configure a common
internal server.
• nat server [ index | acl-number ] protocol pro-type global
{ global-address | current-interface | interface
interface-type interface-number } [ global-port ] inside
local-address [ local-port ] [ vpn-instance local-name ]
• nat server [ index | acl-number ] protocol pro-type global
{ global-address | current-interface | interface
interface-type interface-number } global-port1 global-port2
inside local-address1 local-address2 local-port
[ vpn-instance local-name ]
Use either
command.
To configure a common internal server (2):
Ste
p
Command
Remarks
1. Enter system view.
system-view N/A
2. Enter interface view.
interface interface-type interface-number N/A
3. Configure a common
internal server.
• nat server [ index | acl-number ] protocol pro-type
global { global-address | current-interface |
interface interface-type interface-number }
[ global-port ] [ vpn-instance global-name ] inside
local-address [ local-port ] [ vpn-instance
local-name ] [ track vrrp virtual-router-id ]
• nat server [ index | acl-number ] protocol pro-type
global { global-address | current-interface |
interface interface-type interface-number }
global-port1 global-port2 [ vpn-instance
global-name ] inside local-address1 local-address2
local-port [ vpn-instance local-name ] [ track vrrp
virtual-router-id ]
Use either
command.
To configure a common internal server (3):
Ste
p
Command
1. Enter system view.
system-view
2. Enter interface view.
interface interface-type interface-number
3. Configure a common
internal server.
nat server [ index | acl-number ] protocol pro-type global { global-address
global-port1 global-port2 inside local-address1 local-address2 local-port
[ vpn-instance local-name ] [ track vrrp virtual-router-id ] | current-interface
[ global-port ] inside local-address [ local-port ] [ vpn-instance local-name ] }
Configuring ACL-based NAT on an internal server
This feature maps the destination address of an ACL-permitted packet to the internal server address or the
internal server IP address/port number.
To configure ACL-based NAT on an internal server: