Firewall
Configuring the NAT Rules to Securely Access a Remote Network
Cisco ISA500 Series Integrated Security Appliance Administrator Guide
197
6
NOTE
Port triggering is not appropriate for servers on the LAN, since the LAN device must
make an outgoing connection before an incoming port is opened. In this case, you
can create port forwarding rules for this purpose.
STEP 1
Click
Firewall
-> NAT -> Port Trigger
.
The Port Trigger window opens. All existing port triggering rules are listed in the
table.
STEP 2
To enable a port triggering rule, check the box in the
Enable
column.
STEP 3
To add a new port triggering rule, click
Add
.
Other options:
To edit an entry, click
Edit
. To delete an entry, click
Delete
. To
select multiple entries, check the boxes of multiple entries and click
Delete
Selection
.
After you click Add or Edit, the Port Triggering - Add/Edit window opens.
STEP 4
Enter the following information:
•
Description:
Enter the name for the port triggering rule.
•
Trigger Service:
Choose an outgoing TCP or UDP service.
•
Opened Service:
Choose an incoming TCP or UDP service.
If the service you want is not in the list, choose
Create a Service
to create a
new service object. To maintain the service objects, go to the
Networking -
> Service Management
page. See
.
STEP 5
Click
OK
to save your settings.
STEP 6
Click
Save
to apply your settings.
Configuring Advanced NAT Rules
Advanced NAT allows you to identify real addresses and real ports for address
translation by specifying the source and destination addresses.