Chapter 11 NAT
WAH7608 User’s Guide
84
The following table summarizes how these NAT types handle outgoing and incoming packets.
11.2 The Configure Screen
Use this screen to enable NAT and enable/disable he ALGs (Application Layer Gateways) in the
WAH7608. Click Configuration > Security > NAT to open the Configure screen.
Figure 47 Configuration > Security > NAT > Configure
The following table describes the labels in this screen.
Table 24 NAT Types
FULL CONE
ADDRESS
RESTRICTED
PORT RESTRICTED SYMMETRIC
Incoming
Packets
Any external host
can send packets to
the mapped
external IP address
and port.
Only external hosts
with an IP address to
which the internal
host has already
sent a packet can
send packets to the
mapped external IP
address and port.
Only external hosts
with an IP address
and port to which the
internal host has
already sent a packet
can send packets to
the mapped external
IP address and port.
A host on the external
network can only send
packets to the specific
mapped external IP
address and port that the
NAT router used in sending
a packet to the external
host’s IP address and port.
Outgoing
Packets
The NAT router maps the internal IP address and port of all outgoing
packets to a single IP address and port on the external network.
The NAT router maps the
internal IP address and
port of each outgoing
packet to a different
external IP address and
port for each different
destination IP address and
port.
Table 25 Configuration > Security > NAT > General
LABEL DESCRIPTION
NAT Type Select the NAT type for the WAH7608. For more information see Table 24 on page 84.
IPSEC VPN Pass
Through
Enable this to turn on the IPsec ALG (Application Layer Gateway) on the WAH7608 to detect
IPsec traffic and help build IPsec sessions through the WAH7608’s NAT.
PPTP VPN Pass
Through
Enable this to turn on the PPTP ALG on the WAH7608 to detect PPTP traffic and help build
PPTP sessions through the WAH7608’s NAT.
L2TP VPN Pass
Through
Enable this to turn on the L2TP ALG on the WAH7608 to detect L2TP traffic and help build
L2TP sessions through the WAH7608’s NAT.