How to configure NAT on USG FLEX H on Nebula?






Here is an example of allowing access to the internal server behind USGFLEX H device with network address translation (NAT). Internet users can access the server directly by it's public IP address and a NAT rule will forward traffic from the internet to the local server in the intranet.
Here is an example that the internet users would like to access the HTTP File Server behind the USG FLEX H
Configuration
Go to “Site-wide > Configure > Firewall > NAT”, and click "Add" to create a NAT rule.
- Input the rule name : Web_Server
- select Virtual Server
- Incoming Interface: ge1
- Configure the Source IP to limit the access by the Source IP. You may select Any
- Configure the External IP. Select Custom and type IP 10.214.48.46, which is the IP address of the wan interface valid IP.
- Configure the internal IP. Select Custom and type IP192.168.168.33, which is the IP address of the internal server.
- Port Mapping Type: Select HTTP for both external and internal service.
Go to “Site-wide > Configure > Firewall > Security policy” to create a policy to allow http tcp 80 port access from Wan to Lan.
Verification
Type http://10.214.48.46 into the browser, and it display the HTTP service page.
Categories
- All Categories
- 428 Beta Program
- 2.6K Nebula
- 163 Nebula Ideas
- 112 Nebula Status and Incidents
- 6K Security
- 348 USG FLEX H Series
- 291 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.2K Wireless
- 42 Wireless Ideas
- 6.6K Consumer Product
- 261 Service & License
- 404 News and Release
- 87 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.8K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 82 Security Highlight