Optional Services NAT
E : Enable 1-to-1 NAT rule or not.
When : Select the time when to apply the 1-to-1 NAT rule, including three options: Busy, Idle and
All-Time (See "Busyhour Settings").
Internal Address : Select the internal IP address where the 1-to-1 NAT rule shoule be applied to, including IP
Range and Subnet (See "Using the web UI"). (Note: Internal IP Address must be an IP
address of the internal network or DMZ port.)
Service : Select a service port where the 1-to-1 NAT rule should be applied to, such as TCP, UDP,
ICMP or any of the predefined network service group (See "Using the web UI")s.
External Address : Select the external IP address where the 1-to-1 NAT rule shoule be applied to, including IP
Range and Subnet (See "Using the web UI"). (Note: External IP Address must be an IP
address obtained upon WAN link connection.)
L : Check to enable logging. Whenever the rule is matched, the system will record the event
to the log file.
NAT Rules
Customized rules for IPv4-to-IPv4 NAT.
E : Enable NAT rule or not.
When : The predefined time periods during which the rules will apply. Options are Busy, Idle, All-
Times (See "Busyhour Settings").
Source : The packets sent from the source will be matched. Note: The source IPv4 to be translated
must be the IPv4 address assigned to the LAN or DMZ (See "Using the web UI").
Destination :
The packets sent to the destination will be matched (See "Using the web UI").
Service : The packets with the service port number to which users would like NAT to apply. It can be
the TCP/UDP port, or Predefined service groups from [System]->[Service Grouping] (See
"Using the web UI").
Translated : The public IPv4 address or a range of public IPv4 addresses that users would like the
private addresses to be translated to, or No NAT if no translation is needed. The option
[Dynamic IP] will be available while a Dynamic WAN link (Bridge Mode: PPPoE and Bridge
Mode: DHCP) is applied.
L : Check to enable logging. Whenever the rule is matched, the system will record the event
to the log file.
IPv6 NAT Rules
Customized rules for IPv6-to-IPv6 NAT.
E : Enable NAT rule or not.
123 FortiWAN Handbook
Fortinet Technologies Inc.