To configure a NAT policy

Purpose

Perform this procedure to configure a NAT policy for a large-scale or L2-aware NAT implementation.

Steps
 

Choose Policies→ISA Policies→NAT from the NFM-P main menu. The NAT Policies form opens.


Click Create or select an existing NAT policy and click Properties. The NAT Policy (Create|Edit) form opens.


Configure the parameters as required.


In the IPFIX Export Policy panel, select an IPFIX export policy, if required.


In the DNAT panel, select a NAT classifier, if required.


Click Apply. The NAT Policy (Create|Edit) form refreshes with additional tabs.


Assign a NAT pool to a local definition of the policy, as required.

Note: The policy must be distributed to the NE on which the NAT pool is configured before the local definition of the policy can be configured. See To release and distribute a policy to release and distribute the policy to NEs.

Perform the following steps:

  1. Click on the Local Definitions tab and click Search. A list of NEs to which the policy has been distributed appears.

  2. Click on an item in the list and click Properties. The NAT Policy, Local Policy form appears.

  3. Ensure that the Distribution Mode field of the local policy is set to Local Edit Only. Click Switch Mode to change the distribution mode if required.

  4. Select a NAT pool.


If the policy is part of a DNAT-only configuration, associate a local definitions of the policy with a routing instance and an NAT-ISA group, as required.

Note: The policy must be distributed to an NE before the local definition of the policy can be configured. See To release and distribute a policy to release and distribute the policy to NEs.

Perform the following steps:

  1. Click on the Local Definitions tab and click Search. A list of NEs to which the policy has been distributed appears.

  2. Click on an item in the list and click Properties. The NAT Policy, Local Policy form appears.

  3. Ensure that the Distribution Mode field of the local policy is set to Local Edit Only. Click Switch Mode to change the distribution mode if required.

  4. In the DNAT-only panel, select a routing instance and NAT-ISA group.


Save your changes and close the forms.

End of steps