User Guide

Page 84 SonicWALL Internet Security Appliance User’s Guide
192.168.1.11; and the FTP server has an IP address of 192.168.1.12. To enable the
servers, click Access on the left side of the Management interface, and then the Services
tab.
1. Type in the IP address of the web server in the Public LAN Server field on the Web
(HTTP) line.
2. Type in the IP address of the FTP server in the Public LAN Server field on the File
Transfer (FTP) line.
3. Type in the IP address of the e-mail server in the Public LAN Server field on the Send
Email (POP3) line.
4. Click Update and Restart the unit.
All three servers are visible from the outside using the public IP address 208.1.2.3, and any
associated domain names that translate to that address. From the LAN, the servers can
only be accessed using the private IP addresses, 192.168.1.x of the servers, not the public
IP addresses or domain names.
The public LAN server configuration method described above does not allow a server to be
visible at public IP addresses other than the NAT Public IP address of the firewall. Nor does
it allow the server to be visible only from certain parts of the Internet. You cannot have two
servers using the same port numbers configured in this manner. For more flexible
configurations of servers in a NAT environment, you must to use a One-to-One NAT
configuration.
This “Public LAN Server” method works because the SonicWALL sees a request for a
particular service as a request for a particular port, and routes the request to the host
associated with the service.
Note: An IP address on the LAN (e.g. 192.168.1.x) cannot be used in both Public LAN
Server configurations and in One-to-One NAT configurations.
Creating a Public LAN Server
A Public LAN Server is a server on your LAN that is accessible to users on the Internet.
Creating a Public LAN Server in the Services window is the easiest way to set up a
mail server, Web server or other public server, on your LAN.
To create a Public LAN Server, complete the following instructions.
1. Determine what type of service your server uses, such as FTP, Web, or Mail. Locate
this service in the Services window. If the service does not appear in the Services
window, you must define it in the Add Service window.
2. Enter the server's IP address in the Public LAN Server field for the appropriate
service.
Note: If NAT is enabled, this IP address should be a private LAN address. Users on the
Internet access the Public LAN Server at the SonicWALL WAN IP (NAT Public) Address.
integrated_manual.book Page 84 Friday, October 12, 2001 2:56 PM