Chapter 12 Virtual Servers

The following table lists the virtual server commands.

Table 60 ip virtual-server Commands

COMMAND

DESCRIPTION

show ip virtual-server [profile_name]

Displays information about the specified virtual server or about all the virtual

 

servers.

 

 

no ip virtual-server profile_name

Deletes the specified virtual server.

ip virtual-server profile_name

Creates or modifies the specified virtual server and maps the specified

interface interface_name original-ip

destination IP address (for all destination ports) to the specified destination

{any ip address_object} map-to

address object or IP address. The original destination IP is defined by the

{address_object ip} map-typeany

specified interface (any), the specified IP address (IP), or the specified

[nat-loopback [nat-1-1-map]

address object (address-object). NAT loopback allows local users to use a

[deactivate] nat-1-1-map

domain name to access this virtual server.

[deactivate] deactivate]

Select what kind of NAT this rule is to perform.

 

 

nat-1-1-map: means the NAT type is either 1:1 NAT or many 1:1 NAT. See

 

Section 12.1.1 on page 119 for more information.

 

Using this command without nat-1-1-mapmeans the NAT type is Virtual

 

Server. This makes computers on a private network behind the ZyWALL

 

available to a public network outside the ZyWALL (like the Internet).

 

The deactivate command disables the virtual server rule.

ip virtual-server profile_name

Creates or modifies the specified virtual server and maps the specified

interface interface_name original-ip

(destination IP address, protocol, and destination port) to the specified

{any IP address_object} map-to

(destination IP address and destination port). The original destination IP is

{address_object ip} map-typeport

defined by the specified interface (any), the specified IP address (IP), or the

protocol {any tcp udp} original-

specified address object (address-object). NAT loopback allows local users

port <1..65535> mapped-port

to use a domain name to access this virtual server.

<1..65535> [nat-loopback [nat-1-1-

nat-1-1-map: means the NAT type is either 1:1 NAT or many 1:1 NAT. See

map] [deactivate] nat-1-1-map

[deactivate] deactivate]

Section 12.1.1 on page 119 for more information.

 

 

Using this command without nat-1-1-mapmeans the NAT type is Virtual

 

Server. This makes computers on a private network behind the ZyWALL

 

available to a public network outside the ZyWALL (like the Internet).

 

The deactivate command disables the virtual server rule.

ip virtual-server profile_name

Creates or modifies the specified virtual server and maps the specified

interface interface_name original-ip

(destination IP address, protocol, and range of destination ports) to the

{any IP address_object} map-to

specified (destination IP address and range of destination ports). The original

{address_object ip} map-typeports

destination IP is defined by the specified interface (any), the specified IP

protocol {any tcp udp} original-

address (IP), or the specified address object (address-object). NAT

port-begin <1..65535> original-port-

loopback allows local users to use a domain name to access this virtual

end <1..65535> mapped-port-begin

server.

<1..65535> [nat-loopback [nat-1-1-

nat-1-1-map: means the NAT type is either 1:1 NAT or many 1:1 NAT. See

map] [deactivate] nat-1-1-map

[deactivate] deactivate]

Section 12.1.1 on page 119 for more information.

 

 

Using this command without nat-1-1-mapmeans the NAT type is Virtual

 

Server. This makes computers on a private network behind the ZyWALL

 

available to a public network outside the ZyWALL (like the Internet).

 

The deactivate command disables the virtual server rule.

120

 

ZyWALL (ZLD) CLI Reference Guide