Forum Discussion
Piotr_Lewandows
Feb 16, 2018Altostratus
AFM Firewall and NAT policies - how to implement
Hi,
I need to implement policies for few hundreds src IP, dst IP SNAT and NAT combinations. Something like that, all related to 13.1.0.1:
For given dst IP:
Allow traffic from given se...
dragonflymr
Feb 16, 2018Cirrostratus
Maybe example will help.
Let's say we have two dst IP:
- 192.168.177.20
- 192.168.177.21
Rules necessary to be implemented:
- Traffic to 192.168.177.20:80; SNAT Dynamic PAT 192.168.173.10:any; Static NAT 192.168.173.50:80
- Traffic to 192.168.177.20:88, 1234, 1300-1370, 5698; SNAT Dynamic PAT 192.168.173.11:any; Static NAT 192.168.173.51:same ports
- Traffic to 192.168.177.20:168; SNAT Dynamic PAT 192.168.173.10:any; Static PAT 192.168.173.51:3168
- Traffic to 192.168.177.21:80 allowed only from 192.168.100.1, .10-23, 192.168.101.20; SNAT Dynamic PAT 192.168.173.10:any; Static NAT 192.168.173.60:80 and so on
Piotr
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects