Manual

Table Of Contents
Software User Guide 70
Network Tab
OriginalDestinationAddressEnd(Required):ThisfieldholdstheendingaddressrangebeingtransformedbyNAT,the
IPsseenbyaremotehost.
Thisaddressmaybeownedbyaninterfaceonthisdevice,oranunowned/fakerangewithacorrespondingroute
(staticordefault).OnetooneNATRangewill
performacompleteforwardingofallportsfortherangeofstarting/
endingOriginalDestinationIP’stoarangeofstarting/endingNewDestinationIPaddressesenteredinNewDestina
tionAddressStartandNewDestinationAddressEndfields.BothfieldscanbeanyvalidIP.Neitherneedtobealready
present/configured/owned
onalocalinterfaceofthisdevice.Ports119areexcluded.
Note:HostRedirectandServiceAccessruleswillapplyfirst,andmaypreventcertainportsfromreachingtheNewDestination.
NewDestinationAddressStart(Required):ThisfieldisusedtoholdthestartingrangeofrealLANIPofthedestina
tiondevicebehindthisrouter.
OnetoOneNATRangewillperformthesameoperationasasingleOnetoOneRule,butoverarangeofmatchedIP
Addresses.
ThepooldefinedbytheOriginalIPStart>End,willbematchedtothepooldefinedbyNewIPStart>End
(thefirstOriginalIPwillalwaystranslatetothefirstNewIP,thesecondtothesecond,etc.).Thenumberofentriesin
eachpoolmustmatch.Bothfields
canbeanyvalidIP.Neitherneedtobealreadypresent/configured/ownedonalocal
interfaceofthisdevice.Ports119areexcluded.
Note:HostRedirectandServiceAccessruleswillapplyfirst,andmaypreventcertainportsfromreachingtheNewDestination.
NewDestinationAddressEnd(Required):ThisfieldisusedtoholdtheendingrangeofrealLANIP ofthedestination
devicebehindthisrouter.
OnetoOneNATRangewillperformthesameoperationasasingleOnetoOnerule,butoverarangeofmatchedIP
Addresses.The
pooldefinedbytheOriginalIPStart>End,willbematchedtothepooldefinedbyNewIPStart>End
(thefirstOriginalIPwillalwaystranslatetothefirstNewIP,thesecondtothesecond,etc.).Thenumberofentriesin
eachpoolmustmatch.Bothfieldscanbe
anyvalidIP.Neitherneedtobealreadypresent/configured/ownedonalocal
interfaceofthisdevice.Ports119areexcluded.
Note:HostRedirectandServiceAccessruleswillapplyfirst,andmaypreventcertainportsfromreachingtheNewDestination.
SelectProtocol:Choosetheprotocoltypeforthisportsdata.OptionsareTCP,UDP,All.
SourceNetworkviaWhitelist:Selectawhitelistnameforthelistofnamesavailableinthedropdownlist.Whitelists
maybeviewed/definedviatheNetwork/Firewall/ACLRulesscreen.
ClickontheFinishbutton.Youwillbe
returnedtotheMasquerade/NAT/DMZRulesdialogwindowandtheNAT
Rulestablewillnowbepopulatedwiththerecentlyentereddata.
Todeleteanexistingrule,selectitinthetableandclickontheDeletebutton.Toeditanexistingrule,selectitin
thetableandclickon
theEditbutton.
DMZRules:DMZrulesareusedtoconfigureroutesthroughaDemilitarizedZone(DMZ).
ToaddaDMZhostrule: