Nat and Pat: MM Clements

You might also like

Download as ppt, pdf, or txt
Download as ppt, pdf, or txt
You are on page 1of 15

NAT and PAT

MM Clements

This week.....
RFC

1918 Network Address Translation


Static and Dynamic
Port

Address Translation Configuration and testing Issues with NAT/PAT

1 January 2012

Private Addressing

1 January 2012

NAT
A

NAT-enabled device typically operates at the border of a stub network.

1 January 2012

NAT Terms
Inside Local Addresses An IP address assigned to a host inside a network. This address is likely to be a RFC 1918 private address. Inside Global Address A legitimate IP address assigned by the NIC or service provider that represents one or more inside local IP address to the outside world. Outside Local Address - The IP address of an outside host as it known to the hosts in the inside network. Outside Global Address - The IP address assigned to a host on the outside network. The owner of the host assigns this address.

1 January 2012

NAT Features
Static NAT is designed to allow one-to-one mapping of local and global addresses. Dynamic NAT is designed to map a private IP address to a public address.

1 January 2012

PAT Features

PAT uses unique source port numbers on the inside global IP address to distinguish between translations.

1 January 2012

NAT Benefits
Eliminates

re-assigning each host a new IP address when changing to a new ISP Eliminates the need to re-address all hosts that require external access, saving time and money Conserves addresses through application portlevel multiplexing Protects network security
8

1 January 2012

Configuring NAT and PAT

1 January 2012

Configuring NAT

10

1 January 2012

Configuring PAT

11

1 January 2012

Verifying NAT and PAT Configuration

12

1 January 2012

Troubleshooting NAT and PAT

13

1 January 2012

Issues With NAT

14

1 January 2012

Conclusion
NAT

can be static or dynamic Uses a set of predefined private addresses Conserves legal IPv4 addresses NAT plus PAT often used PAT uses unique source port numbers on the inside
global IP address to distinguish between translations
Provides

a level of security

15

1 January 2012

You might also like