HP VPN Firewall Appliances NAT and ALG Configuration Guide

59
4. Exchanging data.
The host and the FTP server exchange data through the established data connection.
Configuring ALG in the Web interface
By default, ALG is enabled only for FTP.
Configuration procedure
To enable ALG for protocols:
1. From the navigation tree, select Firewall > ALG.
Figure 40 ALG configuration page
2. Add target application protocols to the Selected Application Protocols list to enable ALG for them.
By default, ALG is enabled for all protocols.
3. Click Apply.
FTP ALG configuration example
Network requirements
As shown in Figure 41, a company uses the private network segment 192.168.1.0/24. The company
wants to provide FTP services using public IP address 5.5.5.10.
Configure NAT and ALG on the firewall so that hosts on the external network can access the FTP server
on the internal network.