Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Create and Manage NAT Pools

Create NAT Pools

  1. Select SRX > NAT > NAT Pools.

    The NAT Pools page appears.

  2. Click the plus icon (Blue plus symbol suggesting an action like adding or expanding content.).

    The Create NAT Pool page is displayed.

  3. Complete the configuration according to the following guidelines:
    Table 1: Fields on the Create NAT Pool Page

    Field

    Description

    General Information

    Name

    Enter a unique string of alphanumeric characters, dashes, spaces, and underscores. Colons and periods are not allowed. The maximum length is 31 characters.

    Description

    Enter a description string excluding '&', '<', '>' and '\n' characters. The maximum length is 900 characters.

    Pool Type

    Select a NAT pool type to configure:

    • Source

    • Destination

    Pool Address

    Select a NAT pool address or click Add new address to create a NAT pool address.

    Routing Instance

    Devices

    Select the devices to which the NAT pool is applicable.

    Routing Instance

    Select the required routing instance from the list of available routing instances for the selected device.

    Port

    Enter the destination port number that is used for port forwarding. The value of the port can be any value between 1024 to 65535.

    Advanced

    Pool Translation

    Select the translation type for the incoming traffic:

    • No Translation—No translation required for the incoming traffic.

    • Port/Range—Set the global default single port range for source NAT pools with port translation.

    • Overload—Multiple source addresses are translated to pool addresses. If you set Overload as the translation type, the value of the Pool Address field cannot be an IP range or subnet, but it will be a single address.

    Host Address Base

    Enter the base address of the original source IP address range. The Host Address Base is used for IP address shifting.

    Address Pooling

    Select a NAT address pooling behavior:

    • Paired—Use this option for applications that require all sessions associated with one internal IP address to be translated to the same external IP address for multiple sessions.

    • Non-Paired—Use this option for applications that can be assigned IP addresses in a round-robin fashion.

    Port overloading factor

    Enter the port overloading capacity in source NAT. The value can be any value between 2 to 32. If the port-overloading-factor is set to x, each translated IP address will have x number of ports available.

    Address Sharing

    Enable address sharing so that multiple internal IP addresses can be mapped to the same external IP address. Select this option only when the source NAT pool is configured with no port translation. When a source NAT pool has only one or a few external IP addresses available, the address sharing option with a many-to-one address mapping increases NAT resources and improves traffic.

    Port

    Enter the port number for the NAT pools. The value of the port can be any value between 1024 to 65535.

    Start

    Enter the start port value for the source NAT pools. The value of the port range can be any value between 1024 to 65535.

    End

    Enter the end port value for the source NAT pools. The value of the port range can be any value between 1024 to 65535.

    Overflow Pool Type

    Select a source pool to use when the current address pool is exhausted.

    • Interface—Allow the egress interface IP address to support overflow.

    • Pool—Name of the source address pool.

    • Overflow Pool—When addresses from the original source NAT pool are exhausted, IP addresses and port numbers are allocated from the overflow pool. A user-defined source NAT pool or an egress interface can be used as the overflow pool. When the overflow pool is used, the pool ID is returned with the address.

  4. Click OK to save the changes. A NAT pool is available with the configuration you provided.

Manage NAT Pools

  • Edit—Select the pool, and then click the pencil icon (Blue pencil icon indicating edit functionality.).

  • Clone—Select the pool, and then click More > Clone.

  • Delete—Select the pool, and then click the trash can icon (Blue trash can icon representing delete or remove function.).