![background image](/i/zyxel/144611/zyxel-zywall-usg-1000/h/zyxel-zywall-usg-1000-115.png)
Chapter 5 Managing Traffic
ZyWALL USG 20-2000 User’s Guide
115
Figure 47
Configuration > Network > ALG
5.7.1.2 Set Up a NAT Policy For H.323
In this example, you need a NAT policy to forward H.323 (TCP port 1720) traffic received on the
ZyWALL’s 10.0.0.8 WAN IP address to LAN IP address 192.168.1.56.
1
Click
Configuration > Network > NAT >
Add > Create New Object > Address
and create an
IPv4 host address object for the public WAN IP address (called WAN_IP-for-H323 here). Repeat to
create an address object for the H.323 device’s private LAN IP address (called LAN_H323 here).
Configure a name for the rule (WAN-LAN_H323 here).
You want the LAN H.323 device to receive peer-to-peer calls from the WAN and also be able to
initiate calls to the WAN so you set the
Classification
to
NAT 1:1
.
Set the
Incoming Interface
to the WAN interface.
Set the
Original IP
to the WAN address object (
WAN_IP-for-H323
).
Set the
Mapped IP
to the H.323 device’s LAN IP address object (
LAN_H323
).
Set the
Port Mapping Type
to
Port
, the
Protocol Type
to
TCP
and the original and mapped ports
to 1720.
Click
OK
.