Selecting NAT Destination
The following procedures provides various methods that you can use to choose an endpoint as a NAT destination:
Adding an Endpoint as NAT Destination
View and select the destination endpoint from the complete list of addresses, interfaces, services, zones, routing instances, or ports.
- Click the Destination field. A list of relevant endpoints are displayed.
- Click the View more results link provided at the bottom of the destination endpoints. The complete list of addresses, interfaces, services, zones, and routing instances, is displayed in the End Points panel on the right.
- (Optional) Click the edit icon to edit the address, service, or port endpoint.
- Click check mark icon (√) to select the endpoint as a destination.
Selecting Interfaces when GWR Resides Inside an NFX Box
The physical interfaces of an NFX box are mapped to the virtual interfaces of the Gateway Router (GWR) (vSRX Virtual Firewall) as given in Table 1. These are the default mappings provided by CSO. You may change these interface mappings based on your requirements.
NFX Physical Interface |
GWR Virtual Interface |
---|---|
WAN 0 (ge-0/0/10) |
ge-0/0/2 |
WAN 1 (ge-0/0/11) |
ge-0/0/3 |
WAN 2 (xe-0/0/12) |
ge-0/0/7 |
WAN 3 (xe-0/0/13) |
ge-0/0/8 |
LAN-X (ge-0/0/X) |
Ge-0/0/06.<vlan-id-for-X> |
When you create a new NAT rule and an NFX physical interface is intended as the destination endpoint, select the respective mapped GWR interface.
Selecting NAT Destination Using Abbreviations
Enter an abbreviation in the Destination field to select the destination endpoint from a filtered list of destination endpoints.
To view a filtered list of addresses, enter ADDR or addr.
To view a filtered list of interfaces, enter INTR or intr.
To view a filtered list of services, enter SVCS or svcs.
To view a filtered list of zones, enter ZONE or zone.
To view a filtered list of routing instances, enter ROUT or rout.
Click the endpoints in the filtered list to select them.
You can add a port number as a destination endpoint. To do so:
The entered port value is selected as a destination endpoint.
You can also select the endpoint from the complete list of addresses, interfaces, services, zones, and routing instances. See Adding an Endpoint as NAT Destination.
Selecting a NAT Destination from the End Points Panel
You can select a NAT destination endpoint from the End Points panel. Alternately, you can create a new NAT destination endpoint from the End Points panel, see Creating and Selecting a NAT Destination from the End Points Panel.
To select a NAT destination endpoint from the End Points panel:
Creating and Selecting a NAT Destination from the End Points Panel
To create a new destination endpoint from the End Points panel:
Creating Addresses from Destination Field
You can use one of the following ways to create a new address from the Destination and use the newly created address as a destination endpoint:
Type the address directly in the Destination field. If the address is valid, it is created immediately and added as a destination endpoint.
Create an address from the Destination field, using the following steps:
In the Destination field, type addr. The Add new address link appears at the bottom of the list of addresses.
Click Add new address to create a new address.
The Create Addresses page appears.
Configure the new address. See Creating Addresses or Address Groups.
Click Save to save the new address.
The new address is created, and will be listed as an option for the destination. Select the new address to add it to the destination.
Creating Services from Destination Field
To create a new service from the Destination field and use the newly created service as a destination endpoint: