Nokia MW1122, T66520 user manual Network Address Port Translation

Page 28

interface and each ATM VCC interface. Optionally, the bridging between the VCCs can be disabled.

4.4Network Address Port Translation

MW1122 supports Network Address Port Translation (NAPT) for TCP/IP, UDP/IP and ICMP/IP protocols. When NAPT is used, a single IP address is allocated to a VCC which leads to the public IP network. The Ethernet subnet has private IP addressing and is not visible to the VCC. NAPT translates the IP source address and source port number dynamically to the VCC IP address and port number. Similarly, packets coming from the VCC are mapped back to the original destination addresses. NAPT allows up to hundreds of hosts to share a single VCC IP address to the public network. The principle of Network Address Port Translation is presented in Figure 19.

Home network (LAN)

 

 

 

Internet (WAN)

src:192.168.1.112:1228

192.168.1.254

 

195.112.12.161

src:195.112.12.161:50001

dst:194.112.11.111:80

NAPT router

dst:194.112.11.111:80

 

 

src:194.112.11.111:80

 

src:194.112.11.111:80

dst:192.168.1.112:1228

 

dst:195.112.12.161:50001

 

 

 

Figure 19 Principle of Network Address Port Translation

NAPT may restrict the operation of some IP applications. NAPT also operates as a simple IP firewall because translation is only allowed when the first packet is transmitted from the LAN. This means that the NAPT table entry is created only when a packet is sent from the home network to the Internet. With server support capability, the user can add static entries to the NAPT table allowing the translation always in both directions. This capability is used to add servers (HTTP, NNTP, and FTP), which are visible to the public IP network via the VCC, on the LAN subnet.

NAPT supports most IP-based protocols. Because NAPT operates on the IP and transport layer, the application that includes IP address and port within the payload will not work properly through NAPT. In many cases, these applications can be passed through the NAPT using

C33902002SE_00

E Copyright Nokia Networks Oy

27

Image 28
Contents Nokia MW1122 MW1122 Indicator lights InterfacesMW1122 front panel indicators Step-by-step installation procedure Configuring MW1122 Browser management Opening a connectionMain Wireless LAN Wireless LANC33902002SE00 Enabling access control Wlan ClientsEncrypting wireless connection C33902002SE00 Wlan Clients page and default key encryption Wlan Clients page and station-specific key encryption Service Providers pages Service Provider page with PPP configurationService Providers page with Pptp configuration Local Network pages Local portsDhcp Local Network Dhcp Napt Routing Local Network RoutingStatistics Restart Features Save ConfigSlaved Wlan operation LAN and Wlan interfacesInternal host/gateway interface Bridging RoutingData VCC operation Network Address Port Translation Dynamic Host Configuration Protocol ATM and AdslPoint-to-Point Tunneling Protocol Pptp Point-to-Point Protocol over Ethernet PPPoE Access list authorisationPayload encapsulations Wired Encryption Privacy WEP Wireless LAN and radio interfaceWeighted Fair Queueing Class of Service Technical specifications Bridging Connectors and pin numbering ETH connectorSafety Ambient conditions, EMC and safetyAmbient conditions C33902002SE00