Configuration Roadmap
The understanding of NAT configurationroadmap will help you complete configuration tasks quickly and accurately.
NAT can be configured to translate IP addresses between private and public networks and hide private IP addresses from external networks.
Configure basic NAT functions, involving binding a service board to a NAT instance and an address pool and setting a port allocation mode.
After basic NAT functions are configured, a NAT traffic distribution policy and NAT translation policy are applied to the inbound or outbound direction. Configure centralized NAT translation.
To allow public network users to access servers inside a private network, configure a NAT device so that public IP addresses can be used to access internal servers.
To enable transparent translation for some application layer protocols, configure NAT ALG.
To enable NAT reliability, configure single-device inter-board NAT backup.
To improve NAT translation security, configure security.
To strengthen the device administrator's capability to monitor NAT services in real time, configure NAT maintainability.
To improve NAT operation performance, set the aging time for the NAT session table and adjust the MSS.
- NAT cannot be used together with GRE or IPsec.
- In NAT VPN scenarios, VPN NAT users cannot access a NAT devices using Telnet or FTP.