Firewall
Port forwarding rules
LR54 User Guide
856
(config firewall dnat 0)> port
port
(config firewall dnat 0)>
7. Set the type of internet protocol .
(config firewall dnat 0)> protocol
value
(config firewall dnat 0)>
Network connections will only be forwarded if they match the selected protocol. Allowed
values are
custom
,
tcp
,
tcpudp
, or
upd
. The default is
tcp
.
8. Set the IP address of the server to which traffic should be forwarded:
n
For IPv4 addresses:
(config firewall dnat 0)> to_address
ip-address
(config firewall dnat 0)>
n
For IPv6 addresses:
(config firewall dnat 0)> to_address6
ip-address
(config firewall dnat 0)>
9. Set the public-facing port number(s) that network connections must use for their traffic to be
forwarded.
(config firewall dnat 0)> to_port
value
(config firewall dnat 0)>
where
value
is the port number, comma-separated list of port numbers, or range of port
numbers on the server to which traffic should be forwarded. For example, to forward traffic to
ports one, three, and five through ten, enter
1, 3, 5-10
.
10. (Optional) To create a white list of devices that are authorized to leverage this forwarding rule,
based on either the IP address or firewall zone, change to the acl node:
(config firewall dnat 0)> acl
(config firewall dnat 0 acl)>
n
To white list an IP address:
l
For IPv4 addresses:
(config firewall dnat 0 acl> add address end
ip-address
(config firewall dnat 0 acl)>
l
For IPv6 addresses:
(config firewall dnat 0 acl> add address6 end
ip-address
(config firewall dnat 0 acl)>
Repeat for each appropriate IP address.
n
To specify the firewall zone for white listing:
(config firewall dnat 0 acl)> add zone end
zone