Join the Conversation

To sign in, use your existing MySonicWall account. To create a free MySonicWall account click "Register".

Please anyone with good practices about One-to-many NAT Polices

Hi

I have searching a few day about NAT police One-to-many, but i havent encounter about so much.

My scenario is the following, we have two webserver, they are responding for a VIP, so my firewall will have to do to LB between them.

I have seaching in many documentations and dont have encouter somenthing precise.

Just for information i'm running my firmware version on my firewall on 6.5.4.7.

Category: High End Firewalls
Reply
Tagged:

Best Answer

  • CORRECT ANSWER
    prestonpreston All-Knowing Sage ✭✭✭✭
    edited August 29 Answer ✓

    you need to make sure that you are using a group with more than one address object in for the translated destination otherwise the option is greyed out, basically instead of using the Virtual IP use both of the real IP addresses add them as objects and then put in a address object group,

    so Public address(orig destination) translate to the translated destination (address object group) then choose the load balancing method, make sure that the probes are set to use a valid TCP port that the servers are listening on in the Network monitor section after the NAT policy is added,

    Also the in the firewall rule the destination is the public IP address

Answers

Sign In or Register to comment.