14-44
User
Guide

for

the

Cisco

Application

Networking

Manager

5.2
OL-26572-01
Chapter
14






Configuring

Traffic

Policies
Configuring
Rules

and

Actions

for

Policy

Maps
NAT
Network
address

translation

(NAT)

that

the

ACE

is

to

use

for

this

rule.
Do
the

following:
a.
In
the

NAT

Mode

field,

choose

the
type
of

NAT

to

be
used:


Dynamic

NAT—NAT

is

to

translate

local

addresses

to

a

pool

of

global

addresses.
Continue
with

Step

c.


Static

NAT—NAT

is

to

translate

each

local

address

to

a

fixed

global

address.

Continue
with
Step

b.
b.
If
you

chose

Static

NAT,
do
the

following:
1.
In

the

IP

Address

Type

field,

choose

either

IPv4

or

IPv6.

This

field

appears

only

for
ACE
module

and

ACE

appliance

software

Version

A5(1.0)

or

later,

which

supports

IPv4
and
IPv6.
2.
In

the

Static

Mapped

Address

field,

enter

the

IP

address

to

use

for

static

NAT
translation.
This

entry

establishes

the

globally

unique

IP

ad

dress

of

a


host

as

it

appears
to
the

outside

world.

The

policy

map

performs

the

global

IP

address

translation

for

the
source
IP

address

specified

in

the

ACL

(as

part

of

the

class-map

traffic

classification).
3.
Depending

on

the

IP

address

type

that

you

chose,

do

one

of

the

following:
-
For

IPv4,

in

the

Static

Mapped

Netmask

field,

choose

the

subnet

mask

to

apply

to

t

he
static
mapped

address.
-
For

IPv6,

in

the

Static

Mapped

Prefix-length

field,

enter

the

prefix

length

for

the

static
mapped
address.
4.
In

the

NAT

Protocol

field,

choose

the

protocol

to

use

for

NAT.

Choices

are

as

follows:
-
N/A—This

attribute

is

not

set.
-
TCP—The

ACE

is

to

use

TCP

for

NAT.
-
UDP—The

ACE

is

to

use

UDP

for

NAT.
5.
In

the

Static

Port

field,

enter

the

TCP

or

UDP

port

to

use

for

static

port

redirection.
Valid
entries

ar

e

fr

om

0

to

65535.
6.
In

the

VLAN

Id

field,

choose

the

VLAN

to

use

for

NAT.
c.
If
you

chose

Dynamic

NAT,

do

the
following:
1.
In

the

NAT

Pool

Id

field,

enter

the

number

of

the

pool

of

IP

addresses

that

exist

under
the
VLAN

specified

in

the

VLAN

Id

field.

Valid

entries

are

from

1

to

2147483647.

See
the
“Configuring

Virtual

Context

BVI

Interfaces”

section

on

page

12-19 .
2.
In

the

VLAN

Id

field,

choose

the

VLAN

to

use

for

NAT.
Note
For
dynamic
NAT,

ACE

allows

you

to

associate

a

non-configured

NAT

pool

ID

to

the
dynamic
NAT

action.

However,

the

ANM

will

not

discover

the

dynamic

NAT

action

when
the
NAT

pool

ID

is

not

configured.

You

must

associate

the

configured

NAT

pool

ID

to

the
dynamic
NAT

action

for

ANM

discovery

to

complete

successfully.
Policymap
Layer
7

server

load-balancing

policy

map

that

the

ACE

is

to

associate

with

this

Layer

3/Layer

4
policy
map.
In
t

he

Policy

Map

field,

choose

the

Layer

7

pol

icy

map.
Table
14-18
Layer
3/Layer

4

Network

Traffic

Policy

Map

Actions

(continued)
Action
Description/Steps