System information

System Administration Guide
5.3 Network Mode: NAT/Firewall
When the network mode is set to NAT/Firewall, the logical network capability is as shown in the diagram
below:
Allworx server
IP Based
Network Router
WAN Side
Server Network Services
LAN Side
Server Network Services
WAN
LAN
NAT Firewall
This mode’s default setting permits only outbound connections from the LAN to the WAN; all WAN initiated
connections are denied. In addition, all packets are subject to network address translation (NAT) such that
no LAN addresses are visible on the WAN, yet have access to the WAN. These features reduce the ability of
WAN hosts to attack LAN hosts.
WAN access to specific LAN network services can be allowed by exposing those specific LAN ports through
the firewall. This configuration is made in the Firewall section of the Network / Configuration / Modify page.
300 Main Street • East Rochester, NY 14445 • Toll Free 1-866-ALLWORX • 585-421-3850 • www.allworx.com
© 2007 InSciTek Microsystems, Inc. All rights reserved. Allworx is a registered trademark of InSciTek Microsystems.
Revised: March 28, 2007
Page 11