DMZ Static NAT
From Wiki of WFilter NG Firewall
(Difference between revisions)
(Created page with "{{DISPLAYTITLE:DMZ and Static NAT}} = Introduction = Though "DMZ" and "Static NAT" both can publish local network services, they have differences: * "DMZ" equals "port forwar...") |
|||
| Line 1: | Line 1: | ||
| − | {{DISPLAYTITLE:DMZ and Static NAT}} | + | {{DISPLAYTITLE:Forwarding, DMZ and Static NAT}} |
= Introduction = | = Introduction = | ||
| − | |||
| − | |||
| − | |||
| − | + | "Port Forwarding", "DMZ" and "Static NAT" are all redirecting firewall rules. | |
| − | * | + | * "Port Forwarding" : forword packets on certain port(s). |
| − | * | + | * "DMZ" equals "port forwarding on all ports". Visits to WAN interfaces will be redirected to the DMZ host(except of the excepted ports). |
| + | * "Static NAT" provides one-to-one NAT for local hosts. | ||
| − | = Forwarding | + | = Port Forwarding = |
* Forwarding: map a WAN port to local host. | * Forwarding: map a WAN port to local host. | ||
[[File:port_forward01.png|900px]] | [[File:port_forward01.png|900px]] | ||
| + | ** WAN: target WAN IP address. | ||
| + | ** Source Port: target port to the WAN interface. | ||
| + | ** Target IP: "redirected to" local host IP. | ||
| + | ** Target Port: "redirected to" port, leave it blank for same as the source port. | ||
| + | |||
| + | = DMZ = | ||
* DMZ: port forwarding on all ports. | * DMZ: port forwarding on all ports. | ||
| Line 22: | Line 26: | ||
[[File:nat01.png|900px]] | [[File:nat01.png|900px]] | ||
| + | ** Single: a single IP(192.168.10.100) or subnet(192.168.10.0/24). | ||
| + | ** Range: an IP range. | ||
[[Category:Firewall]] | [[Category:Firewall]] | ||
Revision as of 23:10, 24 May 2017
Contents |
1 Introduction
"Port Forwarding", "DMZ" and "Static NAT" are all redirecting firewall rules.
- "Port Forwarding" : forword packets on certain port(s).
- "DMZ" equals "port forwarding on all ports". Visits to WAN interfaces will be redirected to the DMZ host(except of the excepted ports).
- "Static NAT" provides one-to-one NAT for local hosts.
2 Port Forwarding
- Forwarding: map a WAN port to local host.
- WAN: target WAN IP address.
- Source Port: target port to the WAN interface.
- Target IP: "redirected to" local host IP.
- Target Port: "redirected to" port, leave it blank for same as the source port.
3 DMZ
- DMZ: port forwarding on all ports.
4 Static NAT
You need to define "Local IP" and choose a public IP.
- Single: a single IP(192.168.10.100) or subnet(192.168.10.0/24).
- Range: an IP range.