Dual NAT Deployment for Finance Network

Financial users include banks. A bank system consists of the head office, tier-1 sub-branches, tier-2 sub-branches, and out-lets, which are connected through leased lines provided by carriers.

Financial data transmission requires high security. Therefore, an egress gateway of each sub-branch network must encrypt data and perform NAT for both the source and destination IP addresses to secure data transmission.

In Figure 1, the short message service (SMS) network needs to communicate with the SMS platform network. In addition, the two networks must be isolated to protect data transmitted on the networks, and private IP addresses of financial users must be masked. In this case, dual NAT can be used.

Figure 1 Dual NAT networking
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >