L3 NAT
Network Address Translation(NAT) implement
ConfigXML
<configSet reboot="no">
<log>
<netflow>
<inactive_timeout>900</inactive_timeout>
</netflow>
</log>
</configSet>NAT
<run>
<action>
<port>P6</port>
<ip>10.10.1.1</ip>
<arp_reply_default_mac/>
<icmp_reply/>
</action>
<action>
<port>P7</port>
<ip>192.168.1.151</ip>
<arp_reply_default_mac/>
<icmp_reply/>
</action>
<filter id="1" sessionBase="no">
<or>
<find name="ip.src" relation="==" content="10.10.1.0/24"/>
</or>
</filter>
<filter id="2" sessionBase="no">
<or>
<find name="ip.dst" relation="==" content="192.168.1.151"/>
</or>
</filter>
<output id="6" arp_srcip="10.10.1.1" arp_dstip_mac="yes">
<port>P6</port>
<modify_src_default_mac/>
<modify_dstip2nat/>
</output>
<output id="7">
<port>P7</port>
<modify_src_default_mac/>
<modify_srcip nat="yes">192.168.1.151</modify_srcip>
<gateway>192.168.1.1</gateway>
</output>
<chain>
<in>P6</in>
<fid>F1</fid>
<out>O7</out>
</chain>
<chain>
<in>P7</in>
<fid>F2</fid>
<out>O6</out>
</chain>
</run>NAT and set mtu 1480
NAT breakout dns traffic
Last updated