Configure NAT server on S series switches to allow public network users to access servers on the private network

2

S7700, S9700, and S9300 series modular switches use SPUs to support the NAT server function.

Other related questions:
Configure NAT outbound on S series switches to allow private network users to access public networks
S7700, S9700, and S9300 series modular switches use SPUs to support the NAT outbound function.

Private network user and server are in the same VLAN. After NAT server is configured on the VLANIF interface, why cannot the user access the server using public address
The private network user and server are connected to the same VLANIF interface and the same subcard. After the nat server command is executed in the VLANIF interface view to map the server IP address to a public network address, the response packet sent by the server to the user cannot be sent to the CPU, so the packet address cannot be translated. As a result, the user cannot connect to the server. To solve this problem, run the nat outbound command on the VLANIF interface so that the server's response packet can be sent to the router and the packet address can be translated. The router then forwards the packet to the user. The user can connect to the server.

Function of allowing a server to access the Internet using the public IP address in NAT server mode
When this function is used, the device can translate the private IP address of an intranet server to a public IP address, so that the server can use the public IP address to access the Internet. When this function is not used, the device cannot translate the private IP address to the public IP address, so that the server is prohibited to positively initiate a connection to the Internet. Considering the security, this function should be disabled if there is no requirement for positive server access to the Internet.

How the terminal is configured in a private network during private and public networking
To configure the terminal in a private network, start the NAT and configure the NAT address. The procedure for configuring the NAT is as follows: On the screen controlled by the remote control, choose Settings > Network > IP > Firewall, start the NAT, and set NAT address parameters. Configure the NAT address mapping on the router. For details, contact the router vendor. NOTE: The parameter NAT address is the IP address of the terminal in the public network. By using the network address translation (NAT) technology, a device within the LAN can use a dedicated internal IP address and an external IP address that can be used for the communications with external devices. If the NAT technology is used, set the IP address in the WAN for the terminal.

Configure NAT server on S series switches
S7700, S9700, and S9300 series modular switches use SPUs to support the NAT server function.

If you have more questions, you can seek help from following ways:
To iKnow To Live Chat
Scroll to top