5.1

Table Of Contents
3 Click the Network Virtualization tab.
4 Click the Edges link.
5 Double-click the vShield Edge for which you want to delete a rule.
6 Click the Firewall tab.
7 Select the rule to delete.
NOTE You cannot delete an auto-generated rule or the default rule.
8
Click the Delete (
) icon.
Managing NAT Rules
vShield Edge provides network address translation (NAT) service to assign a public address to a computer or
group of computers in a private network. Using this technology limits the number of public IP addresses that
an organization or company must use, for economy and security purposes. You must configure NAT rules to
provide access to services running on privately addressed virtual machines.
The NAT service configuration is separated into source NAT (SNAT) and destination NAT (DNAT) rules.
Add a SNAT Rule
You create a source NAT (SNAT) rule to translate a private internal IP address into a public IP address for
outbound traffic.
Prerequisites
The translated (public) IP address must have been added to the vShield Edge interface on which you want to
add the rule.
Procedure
1 In the vSphere Client, select Inventory > Hosts & Clusters.
2 Select a datacenter resource from the inventory panel.
3 Click the Network Virtualization tab.
4 Click the Edges link.
5 Double-click the vShield Edge for which you want to add a rule.
6 Click the NAT tab.
7
Click the Add ( ) icon and select Add SNAT Rule.
8 Select the interface on which to add the rule.
9 Type the original source IP address in one of the following formats.
Format Example
IP address
192.168.10.1
IP address range
192.168.10.1-192.168.10.10
IP address/subnet
192.168.10.1/24
any
Chapter 9 vShield Edge Management
VMware, Inc. 75