Configuration Roadmap

Understanding NAT configuration roadmap helps you complete configuration tasks quickly and accurately.

NAT can be configured to translate IP addresses between private and public networks and shield private IP addresses from external networks.

NetEngine 8000 Fs process NAT services on interface boards and the process of configuring NAT is as follows:
  1. Configure basic NAT functions. This configuration involves binding a NAT instance and an address pool to a service board, and setting a port allocation mode.

  2. Configure centralized NAT for traffic. Specifically, after basic NAT functions are configured, a NAT traffic diversion policy and a NAT traffic conversion policy can be applied to the inbound or outbound direction to implement centralized NAT translation.

  3. Configure internal server access through public IP addresses. Specifically, to allow public network users to access internal servers, .

  4. Configure NAT ALG. Specifically, to enable transparent translation for some application layer protocols, configure NAT ALG.

  5. Configure NAT security. Specifically, to improve NAT translation security, configure NAT security.

  6. Configure NAT maintainability. Specifically, to strengthen the device administrator's capability to monitor NAT services in real time, configure NAT maintainability.

  7. Adjust NAT performance. Specifically, to improve NAT operation performance, set an aging time for NAT sessions and set an MSS value for NAT services.

  • NAT cannot be used together with GRE or IPsec.
  • In NAT VPN scenarios, VPN NAT users cannot access a NAT device using Telnet or FTP.
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >