ZyWALL 10 Internet Security Gateway
6.3.1 Multiple Servers behind NAT
If you wish, you can make inside servers for different services, e.g., web or FTP, visible to the outside users, even though NAT makes your whole inside network appear as a single machine to the outside world. A service is identified by the port number, e.g., web service is on port 80 and FTP on port 21.
As an example (see the following figure), if you have a web server at 192.168.1.36 and an FTP server at 192.168.1.33, then you need to specify for port 80 (web) the server at IP address 192.168.1.36 and for port 21 (FTP) another at IP address 192.168.1.33.
Please note that a server can support more than one service, e.g., a server can provide both FTP and DNS service, while another provides only web service.
In addition to the servers for specified services, SUA supports a default server. A service request that does not have a server explicitly designated for it is forwarded to the default server. If the default is not defined, the service request is simply discarded.
To make a server visible to the outside world, specify the port number of the service and the insice IP address of the Server in Menu 15 SUA Server Setup.
Figure 6-10 Multiple Servers Behind NAT
6.3.2 Configuring a Server behind NAT
Follow the steps below to configure a server behind NAT:
Step 1. Enter 15 in the main menu to go to Menu 15 - NAT Setup. Step 2. Enter 2 to go to Menu 15.2 - NAT Server Setup.
Step 3. Enter the service port number in the Port # field and the inside IP address of the server in the IP Address field.
NAT |