No relevant resource is found in the selected language.
Your browser version is too early. Some functions of the website may be unavailable. To obtain better user experience, upgrade the browser to the latest version.
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document.
Note: Even the most advanced machine translation cannot match the quality of professional translators.
Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Configuring the Function of Discarding Packets That Do Not Match NAT Rules
Configuring the Function of Discarding Packets That Do Not Match NAT Rules
Context
After an ACL is associated with an NAT address pool, the device translates the source address of a data packet matching the ACL into an IP address in the NAT address pool. You can run the nat miss forward deny command to enable the function of discarding the packets that do not match the ACL rules bound to NAT.
Procedure
Run system-view
The system view is displayed.
Run nat miss forward deny
The function of discarding packets that do not match ACL rules bound to NAT is enabled.
By default, the function of discarding the packets that do not match the ACL rules bound to NAT is disabled on a device.