Avaya BCM 4.0 Networking Guide de configuration Page 613

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 758
  • Table des matières
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 612
613
BCM 4.0 Networking Configuration Guide
Chapter 66
Configuring NAT (Network Address Translation)
BCM provides security and firewall features to protect your private data resources from outsiders.
The following links provide information about the different types of NAT:
“Enabling and disabling NAT” on page 614
“Configuring an Interface with NAT” on page 614
The Network Address Translation feature is a network security feature. NAT translates the IP
addresses used within your private network to different IP addresses known to Internet users
outside your private network. NAT helps ensure network security because each outgoing or
incoming request must go through a translation process that also provides the opportunity to
qualify or authenticate the request or match it to a previous request. NAT also translates port
numbers.
NAT is defined by creating a set of rules and then defining the order in which these rules are
evaluated.
BCM supports both static and dynamic NAT for a number of packet types and protocols:
Static NAT
Static NAT is the one-to-one mapping of an IP address on your private network to an IP address
from outside your network. Inbound rules must have external IP addresses mapped to specific
internal IP addresses.
Dynamic NAT
Dynamic NAT is the mapping between a private network and the outside network, of one address
to a pool of addresses, a pool of addresses to one address or a pool of addresses to another pool of
addresses. The mappings are made in a translation table and remain there until the table is cleared
or until an entry times out.
NAT and IP Policy filters
When you use NAT and IP Policy filters, there are two interactions you need to be aware of:
NAT Support for: Type
Packets (static and
dynamic)
IP, TCP, UDP, TCP/UDP
Protocols ALL, FTP, Telnet, SMTP, SNMP-TRAP, DNS, TFTP, Gopher, Finger, H.323, SIP, HTTP, HTTPS,
POP3, NNTP, SUNRPC, SUNNFS, UNISTIM, CUSTOM
Note: When using an inbound translation, be sure that all private addresses belong to the
existing systems.
Vue de la page 612
1 2 ... 608 609 610 611 612 613 614 615 616 617 618 ... 757 758

Commentaires sur ces manuels

Pas de commentaire