HP VPN Firewall Appliances NAT and ALG Configuration Guide

60
Figure 41 Network diagram
Configuration procedure
This section describes ALG configuration only, assuming that other required configurations on the server
and client have been done.
1. Enable ALG for FTP. (By default, ALG is enabled for FTP, and this step can be skipped.)
a. Select Firewall > ALG from the navigation tree.
b. Add ftp to the Selected Application Protocols list.
c. Click Apply.
Figure 42 Enabling ALG for FTP
2. Configure an internal FTP server:
a. Select Firewall > NAT > Internal Server from the navigation tree.
b. In the Internal Server area, click Add.
c. Select GigabitEthernet0/1.
d. Enter 5.5.5.10 as the external IP address.
e. Enter 21 as the global port.
f. Enter 192.168.1.2 as the internal IP address.
g. Click Apply.
HostFTP server
Local: 192.168.1.2
Global: 5.5.5.10
Firewall
Internet
GE0/1
5.5.5.1/24
192.168.1.1/24