5.5

Table Of Contents
Enable IP Masquerading for a vApp Network
You can configure certain vApp networks to provide IP masquerade services. Enable IP masquerading on a
vApp network to hide the internal IP addresses of virtual machines from the organization virtual datacenter
network.
When you enable IP masquerade, vCloud Director translates a virtual machine's private, internal IP address
to a public IP address for outbound traffic.
Prerequisites
Verify that a routed vApp network exists.
Procedure
1 Click the My Cloud tab and click vApps in the left pane.
2 Right-click a vApp and select Open.
3 On the Networking tab, select Show networking details.
4 Right-click the vApp network and select Configure Services.
5 Click the NAT tab and select Port Forwarding.
6 Select Enable IP Masquerade and click OK.
7 Click Apply.
Add a Port Forwarding Rule to a vApp Network
You can configure certain vApp networks to provide port forwarding by adding a NAT mapping rule. Port
forwarding provides external access to services running on virtual machines on the vApp network.
When you configure port forwarding, vCloud Director maps an external port to a service running on a port
on a virtual machine for inbound traffic.
When you add a new port forwarding rule to a vApp network, it appears at the bottom of the NAT
mapping rule list. For information about how to set the order in which port forwarding rules are enforced,
see “Reorder Port Forwarding Rules for a vApp Network,” on page 78.
Prerequisites
A routed vApp network.
Procedure
1 Click the My Cloud tab and click vApps in the left pane.
2 Right-click a vApp and select Open.
3 On the Networking tab, select Show networking details.
4 Right-click the vApp network and select Configure Services.
5 Click the NAT tab, select Port Forwarding, and click Add.
6 Configure the port forwarding rule.
a Select an external port.
b Select an internal port.
c Select a protocol for the type of traffic to forward.
Chapter 7 Working with vApps
VMware, Inc. 77