H3C Technologies H3C WX3000E Series Wireless Switches User Manual

Page 290

Advertising
background image

269

Figure 242 Adding dynamic NAT

3.

Configure dynamic NAT on an interface, as described in

Table 99

.

4.

Click Apply.

Table 99 Configuration items

Item Description

Interface

Specify an interface on which dynamic NAT is to be enabled.

ACL

Specify an ACL for dynamic NAT.
You cannot associate an ACL with multiple NAT address pools, or associate an ACL
with both Easy IP and an address pool.

IMPORTANT:

On some devices, the rules of an ACL applied on an interface cannot conflict with one

another, that is, rules with the same source IP address, destination IP address, and VPN

instance are considered as a conflict. In a basic ACL (numbering 2000 to 2999), rules

with the same source IP address and VPN instance are considered as a conflict.

Address Transfer

Select an address translation mode:

PAT—Refers to NAPT. In this mode, associating an ACL with an address pool
translates both IP addresses and port numbers.

No-PAT—Refers to many-to-many NAT. In this mode, associating an ACL with an
address pool translates only IP addresses.

Easy IP—In this mode, the NAT gateway directly uses an interface's public IP
address as the translated IP address, and uses an ACL to match IP packets.

Only one mode can be selected for an address pool.

Address Pool Index

Specify the index of a NAT address pool for dynamic NAT.
The NAT address pool must have been configured through NAT address

configuration.
If Easy IP is selected for Address Transfer, you do not need to enter an address pool
index.

Advertising