Routing and WAN connections
BAT54-Rail/F..
Release
7.54
06/08
11.9
N:N mapping
431
U Additional configuration hints
By setting up address translation in the NAT table, the networks and work-
stations become only visible under another address at first in the higher net-
work compound. But for a seamless routing of data between the networks
some further settings are still necessary:
D Entries in the routing tables for packets with new addresses to find the
way to their destination.
D DNS forwarding entries, in order that inquiries about certain devices in the
respective other networks can be resolved into mapped IP addresses
(’DNS forwarding’ → page 474).
D The firewall rules of the gateways must be adjusted such that (if neces-
sary) authorized stations resp. networks from the outside are permitted to
set up connections.
D VPN rules for loopback addresses in order to transmit the newly assigned
IP addresses through an according VPN tunnel.
Note: The IP address translation takes place in the BAT between firewall and
IP router on one hand, and the VPN module on the other hand. All rules
related to the own network use therefore the “unmapped” original ad-
dresses. The entries of the remote network use the “mapped” addresses
of the remote side, valid on the VPN connection.