Using Device tabs to configure the security gateway
Issue 4 May 2005 95
3. From the Translation Type list, select a translation type.
4. From the Translation will be applied on list, select which interface needs the NA T rule.
5. In the Original Address and Original Mask text boxes, type in the original address and
mask.
6. Do one of the following.
In the Translated Address and Translated Mask text boxes, type in the translated
address and mask.
If the Translation Type is port, type in the Port Range in the enabled boxes.
7. From the Locate This Translation Rule options, do one of the following.
Select Beginning of List to put the new rule at the beginning of the NAT Rule list shown
in the Policy Manager for NAT window.
Select End of List to put the new rule at the end of the NAT Rul e list shown i n the Policy
Manager for NAT window.
Select After Selected Item to put the new rule af ter a speci fic rule that was selected from
the NAT Rule list shown in the Policy Manager for NAT window.
8. If you want, in the Memo text box type in a comment about this rule.
9. If you want to create this rule without making it active, select the Add this translation rule
without enabling it check box.
10. Click OK to return to the Policy Manager for NAT window.
11. If you configured a dynamic NAT rule, do the following.
From the NAT Rule list, select your new rule to highlight it.
In the Translated Address will age out in text box, type in the number of minutes of
undetected traffic that must pass before the assigned translation address is returned to
the pool of available addresses.
12. If necessary, use the Move Down and Move Up buttons to rearrange the position of the
new rule in the NAT list.
13. Click Save.
14. Close the Policy Manager dialog box.
15. From the Configuration Console, click Update Devices to end configured information to
the security gateway.
Tunnel NAT rules
Tunnel NAT rules are applied to VPN traffic before encapsulation and encryption. During VPN
setup, tunnel NAT rules are applied.