D-Link DWC-1000 User Manual - Page 183

Transparent routing - vpn lic

Page 183 highlights

Wireless Controller User Manual y o u r ISP h as as s ig n ed an IP ad d res s fo r each o f t h e co mp u t ers t h at y o u u s e, s elect Clas s ic Routing.  NA T is a t ech n iq u e wh ich allo ws s ev eral co mp u t ers o n a LA N t o s h are an In t ern et co n n ect io n . Th e co mp u t ers o n t h e LA N u s e a " p riv at e" IP ad d res s range while the Option port on the controller is configured with a s ingle " p u b lic" IP ad d ress. A lo n g wit h co n nect ion s haring , NA T als o h id es in t ern al IP ad d res ses fro m t h e co mp u t ers o n t h e In tern et . NA T is req u ired if y o u r ISP h as as s ig ned o n ly o ne IP ad d ress t o y ou . Th e co mp u t ers t h at co n n ect t h ro u g h t h e controller will need to be as s igned IP addres s es from a private s ubnet .  Tra nsp a rent ro ut i ng b et ween t h e LA N an d Op t io n d o es n o t p erfo rm NA T. Bro ad cas t an d mu lt icast p ackets t h at arriv e o n t h e LA N in t erface are s wit ch ed t o t h e Op t io n an d v ice v ers a, if t h ey d o n o t g et filt ered b y firewall o r VPN p o licies . To main t ain t h e LA N an d Op t io n in t h e s ame b ro adcast d o main s elect Tran s p aren t mo d e, wh ich allo ws b rid g in g o f t raffic fro m LA N t o Op t io n an d v ice v ers a, excep t fo r co n t ro ller -t ermin at ed t raffic an d o t h er man ag emen t t raffic . A ll DW C feat u res are s up port ed in t ran sparen t mo d e as sumin g t h e LAN an d Op t io n are co n fig u red t o b e in t h e s ame b ro ad cas t d o main .  NAT routing has a feature called "NAT Hair-pinning" that allows internal n et wo rk u s ers o n t h e LA N an d DM Z t o acces s in t ern al s erv ers (eg . an in t ern al FTP s erv er) u s in g t h eir ext ern ally -kn o wn d o main n ame. Th is is als o referred t o as "NA T lo o p b ack" s in ce LA N g en erat ed t raffi c is red irect ed t h ro u g h t h e firewall t o reach LA N s erv ers b y t h eir ext ern al n ame. 181

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324

Wireless Controller
User Manual
181
your ISP has assigned an IP address for each of the computers that you use,
select Classic Routing.
NAT
is a technique which allows several computers on a LAN to share an
Internet connection. The computers on the LAN use a "private" IP address
range while the Option port on the controller is configured with a single
"public" IP address. Along with connection sharing, NAT also hides internal IP
addresses from the computers on the Internet. NAT is required if your ISP has
assigned only one IP address to you. The computers that connect through the
controller will need to be assigned IP addresses from a private subnet.
Transparent routing
between the LAN and Option does not perform NAT.
Broadcast and multicast packets that arrive on the LAN interface are switched
to the Option and vice versa, if they do not get filtered by firewall or VPN
policies. To maintain the LAN and Option in the same broadcast domain select
Transparent mode, which allows bridging of traffic from LAN to Option and
vice versa, except for controller -terminated traffic and other management
traffic. All DWC features are supported in transparent mode assuming the LAN
and Option are configured to be in the same broadcast domain.
NAT routing has a
feature called “NAT Hair
-
pinning” that allows internal
network users on the LAN and DMZ to access internal servers (eg. an
internal FTP server) using their externally-known domain name. This is
also referred to as “NAT loopback” since LAN generated traffi
c is
redirected through the firewall to reach LAN servers by their external
name.