data:image/s3,"s3://crabby-images/02991/02991ddba1a35f87321e6aa7fca9c62a95d19a89" alt="Extreme Networks ExtremeWare 7.0.0 Command Reference Manual Download Page 329"
config nat add vlan map
ExtremeWare Software 7.0.0 Command Reference Guide
329
The addition of the
l4-port
optional keyword allows the NAT rule to be applied to only packets with a
specific layer 4 source or destination port. If you use the layer 4-port command after the source
IP/mask, the rule will only match if the port(s) specified are the source layer 4-ports. If you use the
l4-port
command after the destination IP/mask, the rule will only match if the port(s) specified are the
destination layer 4 ports. Both options may be used together to further limit the rule. If you specify
layer 4 ports, ICMP traffic will not translated and allowed to pass.
Rules are processed in order, usually in the order in which they were added. When a single rule is
matched, no other rules are processed. You can view the rule order using the
show nat rules
command.
Example
The following command defines a static translation rule that specifies that traffic coming from
192.168.1.12 be mapped to 216.52.8.32 on outside VLAN
out_vlan_1
:
config nat add out_vlan_1 map source 192.168.1.12/32 to 216.52.8.32/32
The following command defines a dynamic translation rule that specifies that traffic coming from
subnet 192.168.1.0 should be mapped to IP addresses in the range of 216.52.8.1 to 216.52.8.31 on outside
VLAN
out_vlan_1
:
config nat add out_vlan_1 map source 192.168.1.0/24 to 216.52.8.1 - 216.52.8.31
The following command defines a translation rule that specifies that TCP/UDP packets coming from
192.168.1.12 and destined for 192.168.5.20 be mapped to 216.52.8.32 on outside VLAN
out_vlan_1
:
config nat add out_vlan_1 map source 192.168.1.12/32 destination 192.168.5.20 to
216.52.8.32/32
The following command defines a portmap translation rule that specifies that both TCP and UDP traffic
from subnet 102.168.2.0/25 be mapped to available layer 4 ports on the IP addresses in the subnet
216.52.8.32/28:
config nat add out_vlan_2 map source 192.168.2.0/25 to 216.52.8.32 /28 both portmap
The following command defines a portmap translation rule that specifies that only TCP traffic from
subnet 102.168.2.0/25 be mapped to layer 4 ports in the range of 1024-8192 on the IP addresses in the
subnet 216.52.8.32/28:
config nat add out_vlan_2 map source 192.168.2.128/25 to 216.52.8.64/28 tcp portmap
1024 - 8192
The following command specifies an autoconstrain NAT translation rule that applies to both TCP and
UDP traffic:
config nat add out_vlan_3 map source 192.168.3.0/24 to 216.52.8.64/32 both
auto-constrain
History
This command was first available in ExtremeWare 6.2.
Platform Availability
This command is available on the “i” series platforms.
Summary of Contents for ExtremeWare 7.0.0
Page 88: ...88 ExtremeWare Software 7 0 0 Command Reference Guide Commands for Accessing the Switch ...
Page 276: ...276 ExtremeWare Software 7 0 0 Command Reference Guide FDB Commands ...
Page 324: ...324 ExtremeWare Software 7 0 0 Command Reference Guide QoS Commands ...
Page 342: ...342 ExtremeWare Software 7 0 0 Command Reference Guide NAT Commands ...
Page 502: ...502 ExtremeWare Software 7 0 0 Command Reference Guide SLB Commands ...
Page 680: ...680 ExtremeWare Software 7 0 0 Command Reference Guide Security Commands ...
Page 734: ...734 ExtremeWare Software 7 0 0 Command Reference Guide STP Commands ...
Page 772: ...772 ExtremeWare Software 7 0 0 Command Reference Guide ESRP Commands ...
Page 1226: ...1226 ExtremeWare Software 7 0 0 Command Reference Guide IPX Commands ...
Page 1242: ...1242 ExtremeWare Software 7 0 0 Command Reference Guide ARM Commands ...
Page 1320: ...1320 ExtremeWare Software 7 0 0 Command Reference Guide PoS Commands ...
Page 1430: ...1430 ExtremeWare Software 7 0 0 Command Reference Guide MPLS Commands ...