forked from docs/doc-exports
NATGW UMN 20230922 version
Reviewed-by: Sarda, Priya <prsarda@noreply.gitea.eco.tsi-dev.otc-service.com> Co-authored-by: Qin Ying, Fan <fanqinying@huawei.com> Co-committed-by: Qin Ying, Fan <fanqinying@huawei.com>
This commit is contained in:
parent
4b82dd4dc7
commit
fde3473737
File diff suppressed because it is too large
Load Diff
File diff suppressed because it is too large
Load Diff
Binary file not shown.
Before Width: | Height: | Size: 39 KiB |
BIN
docs/natgw/umn/en-us_image_0000001688885996.png
Normal file
BIN
docs/natgw/umn/en-us_image_0000001688885996.png
Normal file
Binary file not shown.
After Width: | Height: | Size: 44 KiB |
BIN
docs/natgw/umn/en-us_image_0201532839.jpg
Normal file
BIN
docs/natgw/umn/en-us_image_0201532839.jpg
Normal file
Binary file not shown.
After Width: | Height: | Size: 15 KiB |
@ -1,34 +1,41 @@
|
||||
<a name="en-us_topic_0086739763"></a><a name="en-us_topic_0086739763"></a>
|
||||
|
||||
<h1 class="topictitle1">NAT Gateway Specifications</h1>
|
||||
<div id="body53775824"><p id="en-us_topic_0086739763__p1863217173361">NAT gateway specifications determines the maximum number of SNAT connections supported by a NAT gateway.</p>
|
||||
<div id="body53775824"><p id="en-us_topic_0086739763__p1863217173361">NAT gateway specifications determine the maximum number of SNAT connections supported by a NAT gateway.</p>
|
||||
<p id="en-us_topic_0086739763__p8060118">An SNAT connection consists of the source IP address, source port, destination IP address, destination port, and a transport layer protocol. The source IP address is the EIP, and the source port is the EIP port. An SNAT connection uniquely identifies a session.</p>
|
||||
<p id="en-us_topic_0086739763__p3355543392418">The data throughput of a NAT gateway is determined by the sum of the EIP bandwidths used by its DNAT rules. For example, if a NAT gateway has two DNAT rules, and their EIP bandwidths are 10 Mbit/s and 5 Mbit/s, respectively, the throughput of the NAT gateway is 15 Mbit/s.</p>
|
||||
<p id="en-us_topic_0086739763__p1437356122912">The timeout period of an SNAT connection over TCP is 900 seconds.</p>
|
||||
<p id="en-us_topic_0086739763__p18575155432814">The timeout period of an SNAT connection over UDP is 300 seconds.</p>
|
||||
<div class="p" id="en-us_topic_0086739763__p289201164020">When creating a NAT gateway, select the specifications based on your service requirements. <a href="#en-us_topic_0086739763__table39923257151849">Table 1</a> lists the NAT gateway specifications.
|
||||
<div class="tablenoborder"><a name="en-us_topic_0086739763__table39923257151849"></a><a name="table39923257151849"></a><table cellpadding="4" cellspacing="0" summary="" id="en-us_topic_0086739763__table39923257151849" frame="border" border="1" rules="all"><caption><b>Table 1 </b>NAT gateway specifications</caption><thead align="left"><tr id="en-us_topic_0086739763__row26507130151849"><th align="left" class="cellrowborder" valign="top" width="48.96065968046727%" id="mcps1.3.4.2.2.3.1.1"><p id="en-us_topic_0086739763__p10919583151849"><strong id="en-us_topic_0086739763__b49779767">Specifications</strong></p>
|
||||
<div class="tablenoborder"><a name="en-us_topic_0086739763__table39923257151849"></a><a name="table39923257151849"></a><table cellpadding="4" cellspacing="0" summary="" id="en-us_topic_0086739763__table39923257151849" frame="border" border="1" rules="all"><caption><b>Table 1 </b>NAT gateway specifications</caption><thead align="left"><tr id="en-us_topic_0086739763__row26507130151849"><th align="left" class="cellrowborder" valign="top" width="48.96065968046727%" id="mcps1.3.6.2.2.3.1.1"><p id="en-us_topic_0086739763__p10919583151849"><strong id="en-us_topic_0086739763__b49779767">Specifications</strong></p>
|
||||
</th>
|
||||
<th align="left" class="cellrowborder" valign="top" width="51.03934031953272%" id="mcps1.3.4.2.2.3.1.2"><p id="en-us_topic_0086739763__p38230083151849"><strong id="en-us_topic_0086739763__b842352706135953">Maximum Number of SNAT Connections</strong></p>
|
||||
<th align="left" class="cellrowborder" valign="top" width="51.03934031953272%" id="mcps1.3.6.2.2.3.1.2"><p id="en-us_topic_0086739763__p38230083151849"><strong id="en-us_topic_0086739763__b842352706135953">Maximum Number of SNAT Connections</strong></p>
|
||||
</th>
|
||||
</tr>
|
||||
</thead>
|
||||
<tbody><tr id="en-us_topic_0086739763__row32100542151849"><td class="cellrowborder" valign="top" width="48.96065968046727%" headers="mcps1.3.4.2.2.3.1.1 "><p id="en-us_topic_0086739763__p66702817151849">Small</p>
|
||||
<tbody><tr id="en-us_topic_0086739763__row949641075117"><td class="cellrowborder" valign="top" width="48.96065968046727%" headers="mcps1.3.6.2.2.3.1.1 "><p id="en-us_topic_0086739763__p34971010155115">Micro</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="51.03934031953272%" headers="mcps1.3.4.2.2.3.1.2 "><p id="en-us_topic_0086739763__p34219059151849">10,000</p>
|
||||
<td class="cellrowborder" valign="top" width="51.03934031953272%" headers="mcps1.3.6.2.2.3.1.2 "><p id="en-us_topic_0086739763__p24971110165111">1000</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="en-us_topic_0086739763__row12752392151849"><td class="cellrowborder" valign="top" width="48.96065968046727%" headers="mcps1.3.4.2.2.3.1.1 "><p id="en-us_topic_0086739763__p20469426151849">Medium</p>
|
||||
<tr id="en-us_topic_0086739763__row32100542151849"><td class="cellrowborder" valign="top" width="48.96065968046727%" headers="mcps1.3.6.2.2.3.1.1 "><p id="en-us_topic_0086739763__p66702817151849">Small</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="51.03934031953272%" headers="mcps1.3.4.2.2.3.1.2 "><p id="en-us_topic_0086739763__p47410811151849">50,000</p>
|
||||
<td class="cellrowborder" valign="top" width="51.03934031953272%" headers="mcps1.3.6.2.2.3.1.2 "><p id="en-us_topic_0086739763__p34219059151849">10,000</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="en-us_topic_0086739763__row56885558151849"><td class="cellrowborder" valign="top" width="48.96065968046727%" headers="mcps1.3.4.2.2.3.1.1 "><p id="en-us_topic_0086739763__p47662666151849">Large</p>
|
||||
<tr id="en-us_topic_0086739763__row12752392151849"><td class="cellrowborder" valign="top" width="48.96065968046727%" headers="mcps1.3.6.2.2.3.1.1 "><p id="en-us_topic_0086739763__p20469426151849">Medium</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="51.03934031953272%" headers="mcps1.3.4.2.2.3.1.2 "><p id="en-us_topic_0086739763__p35470708151849">200,000</p>
|
||||
<td class="cellrowborder" valign="top" width="51.03934031953272%" headers="mcps1.3.6.2.2.3.1.2 "><p id="en-us_topic_0086739763__p47410811151849">50,000</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="en-us_topic_0086739763__row44794007151849"><td class="cellrowborder" valign="top" width="48.96065968046727%" headers="mcps1.3.4.2.2.3.1.1 "><p id="en-us_topic_0086739763__p42207974151849">Extra-large</p>
|
||||
<tr id="en-us_topic_0086739763__row56885558151849"><td class="cellrowborder" valign="top" width="48.96065968046727%" headers="mcps1.3.6.2.2.3.1.1 "><p id="en-us_topic_0086739763__p47662666151849">Large</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="51.03934031953272%" headers="mcps1.3.4.2.2.3.1.2 "><p id="en-us_topic_0086739763__p63402763151849">1,000,000</p>
|
||||
<td class="cellrowborder" valign="top" width="51.03934031953272%" headers="mcps1.3.6.2.2.3.1.2 "><p id="en-us_topic_0086739763__p35470708151849">200,000</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="en-us_topic_0086739763__row44794007151849"><td class="cellrowborder" valign="top" width="48.96065968046727%" headers="mcps1.3.6.2.2.3.1.1 "><p id="en-us_topic_0086739763__p42207974151849">Extra-large</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="51.03934031953272%" headers="mcps1.3.6.2.2.3.1.2 "><p id="en-us_topic_0086739763__p63402763151849">1,000,000</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
|
@ -6,7 +6,7 @@
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0001.html">Using SNAT to Access the Internet</a></div>
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0001.html">Allowing a Private Network to Access the Internet Using SNAT</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
|
@ -39,14 +39,14 @@
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="51.080000000000005%" headers="mcps1.3.3.2.6.2.2.4.1.3 "><p id="en-us_topic_0127489529__en-us_topic_0127293981_p94462428451">The EIP used for accessing the Internet.</p>
|
||||
<p id="en-us_topic_0127489529__en-us_topic_0127293981_p578114194614">You can select an EIP that either is not bound to any resource, has been bound to a DNAT rule with <strong id="en-us_topic_0127489529__b187051038301">Port Type</strong> set to <strong id="en-us_topic_0127489529__b1870518381020">Specific port</strong> of the current NAT gateway, or has been bound to an SNAT rule of the current NAT gateway.</p>
|
||||
<p id="en-us_topic_0127489529__p1270810226152">You can select multiple EIPs at once. Up to 20 EIPs can be selected for each SNAT rule. The EIP used for the SNAT rule is randomly chosen from the ones you select when you add the rule.</p>
|
||||
<p id="en-us_topic_0127489529__p1270810226152">You can select multiple EIPs at once. Up to 20 EIPs can be selected for each SNAT rule. If you have selected multiple EIPs for an SNAT rule, one EIP will be chosen randomly.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="en-us_topic_0127489529__row153111641748"><td class="cellrowborder" valign="top" width="18.01%" headers="mcps1.3.3.2.6.2.2.4.1.1 "><p id="en-us_topic_0127489529__p5274235692544">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="30.91%" headers="mcps1.3.3.2.6.2.2.4.1.2 "><p id="en-us_topic_0127489529__p164312400527">N/A</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="51.080000000000005%" headers="mcps1.3.3.2.6.2.2.4.1.3 "><p id="en-us_topic_0127489529__p4427248192544">Supplementary information about the NAT gateway. The description can contain up to 255 characters.</p>
|
||||
<td class="cellrowborder" valign="top" width="51.080000000000005%" headers="mcps1.3.3.2.6.2.2.4.1.3 "><p id="en-us_topic_0127489529__p4427248192544">Supplementary information about the SNAT rule. Enter up to 255 characters. Angle brackets (<>) are not allowed.</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
|
@ -20,7 +20,7 @@
|
||||
<tbody><tr id="en-us_topic_0127489530__en-us_topic_0127293986_row20452749101411"><td class="cellrowborder" valign="top" width="23.189999999999998%" headers="mcps1.3.3.2.7.2.2.3.1.1 "><p id="en-us_topic_0127489530__en-us_topic_0127293986_p930811171516">Scenario</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="76.81%" headers="mcps1.3.3.2.7.2.2.3.1.2 "><p id="en-us_topic_0127489530__en-us_topic_0127293986_p82551491578"><strong id="en-us_topic_0127489530__b1866114817401">VPC</strong>: Servers in the VPC can share an EIP to provide services accessible from the Internet through the DNAT rule.</p>
|
||||
<p id="en-us_topic_0127489530__p191738561313"><strong id="en-us_topic_0127489530__b11989191519286">Direct Connect</strong>: Servers in your data center that are connected to a VPC using Direct Connect or VPN can provide services accessible from the Internet through the DNAT rule.</p>
|
||||
<p id="en-us_topic_0127489530__p191738561313"><strong id="en-us_topic_0127489530__b11989191519286">Direct Connect</strong>: Servers via Direct Connect or VPN can provide services accessible from the Internet through the DNAT rule.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="en-us_topic_0127489530__en-us_topic_0127293986_row1895714384610"><td class="cellrowborder" valign="top" width="23.189999999999998%" headers="mcps1.3.3.2.7.2.2.3.1.1 "><p id="en-us_topic_0127489530__en-us_topic_0127293986_p11008481568">Port Type</p>
|
||||
@ -70,7 +70,7 @@
|
||||
</tr>
|
||||
<tr id="en-us_topic_0127489530__row1629375132119"><td class="cellrowborder" valign="top" width="23.189999999999998%" headers="mcps1.3.3.2.7.2.2.3.1.1 "><p id="en-us_topic_0127489530__p12211135512110">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="76.81%" headers="mcps1.3.3.2.7.2.2.3.1.2 "><p id="en-us_topic_0127489530__p921111551214">Supplementary information about the DNAT rule. The description can contain up to 255 characters.</p>
|
||||
<td class="cellrowborder" valign="top" width="76.81%" headers="mcps1.3.3.2.7.2.2.3.1.2 "><p id="en-us_topic_0127489530__p921111551214">Supplementary information about the DNAT rule. Enter up to 255 characters. Angle brackets (<>) are not allowed.</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
|
@ -3,9 +3,9 @@
|
||||
<h1 class="topictitle1">Creating a Public NAT Gateway</h1>
|
||||
<div id="body8662426"><div class="section" id="en-us_topic_0150270259__nat_qs_0003_section141051954102215"><h4 class="sectiontitle">Scenarios</h4><p id="en-us_topic_0150270259__nat_qs_0003_p10333111152318">This section guides you on how to create a <span id="en-us_topic_0150270259__nat_qs_0003_ph8941752122618">public NAT gateway</span> to enable your servers to access the Internet or to provide services available from the Internet.</p>
|
||||
</div>
|
||||
<div class="section" id="en-us_topic_0150270259__nat_qs_0003_section1825861973713"><h4 class="sectiontitle">Prerequisites</h4><ul id="en-us_topic_0150270259__nat_qs_0003_ul636110619419"><li id="en-us_topic_0150270259__nat_qs_0003_li1254158594232">When creating a public NAT gateway, you must specify its VPC and subnet.</li><li id="en-us_topic_0150270259__nat_qs_0003_li5452164124220">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="en-us_topic_0150270259__nat_qs_0003_ph128345147562">buy</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="en-us_topic_0150270259__nat_qs_0003_ph864111188566">buy</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</li></ul>
|
||||
<div class="section" id="en-us_topic_0150270259__nat_qs_0003_section1825861973713"><h4 class="sectiontitle">Prerequisites</h4><ul id="en-us_topic_0150270259__nat_qs_0003_ul636110619419"><li id="en-us_topic_0150270259__nat_qs_0003_li1254158594232">When creating a public NAT gateway, you must specify its VPC and subnet.</li><li id="en-us_topic_0150270259__nat_qs_0003_li5452164124220">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="en-us_topic_0150270259__nat_qs_0003_ph128345147562">create</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="en-us_topic_0150270259__nat_qs_0003_ph864111188566">create</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</li></ul>
|
||||
</div>
|
||||
<div class="section" id="en-us_topic_0150270259__nat_qs_0003_section82633199366"><h4 class="sectiontitle">Procedure</h4><ol id="en-us_topic_0150270259__nat_qs_0003_ol2070251494311"><li id="en-us_topic_0150270259__nat_qs_0003_li53188416141933">Log in to the management console.</li><li id="en-us_topic_0150270259__nat_qs_0003_li840318282158">Click <span><img id="en-us_topic_0150270259__nat_qs_0003_en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="en-us_topic_0150270259__nat_qs_0003_li1049617094325">Under <strong id="en-us_topic_0150270259__nat_qs_0003_b103494306165">Network</strong>, select <strong id="en-us_topic_0150270259__nat_qs_0003_b3356930191617">NAT Gateway</strong>.</li><li id="en-us_topic_0150270259__nat_qs_0003_li28802123174347">On the displayed page, click <strong id="en-us_topic_0150270259__nat_qs_0003_b84071953191717">Create Public NAT Gateway</strong>.<div class="fignone" id="en-us_topic_0150270259__nat_qs_0003_fig962115511086"><span class="figcap"><b>Figure 1 </b>Create NAT Gateway</span><br><span><img id="en-us_topic_0150270259__nat_qs_0003_image13495511775" src="en-us_image_0000001575387178.png"></span></div>
|
||||
<div class="section" id="en-us_topic_0150270259__nat_qs_0003_section82633199366"><h4 class="sectiontitle">Procedure</h4><ol id="en-us_topic_0150270259__nat_qs_0003_ol2070251494311"><li id="en-us_topic_0150270259__nat_qs_0003_li53188416141933">Log in to the management console.</li><li id="en-us_topic_0150270259__nat_qs_0003_li840318282158">Click <span><img id="en-us_topic_0150270259__nat_qs_0003_en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="en-us_topic_0150270259__nat_qs_0003_li1049617094325">Under <strong id="en-us_topic_0150270259__nat_qs_0003_b103494306165">Network</strong>, select <strong id="en-us_topic_0150270259__nat_qs_0003_b3356930191617">NAT Gateway</strong>.</li><li id="en-us_topic_0150270259__nat_qs_0003_li28802123174347">On the displayed page, click On the displayed page, click <strong id="en-us_topic_0150270259__nat_qs_0003_b16542192242">Create Public NAT Gateway</strong>.<div class="fignone" id="en-us_topic_0150270259__nat_qs_0003_fig962115511086"><span class="figcap"><b>Figure 1 </b>Create Public NAT Gateway</span><br><span><img id="en-us_topic_0150270259__nat_qs_0003_image20387154511242" src="en-us_image_0000001688885996.png"></span></div>
|
||||
</li><li id="en-us_topic_0150270259__nat_qs_0003_li1053628121954">Configure the parameters as prompted. For details, see <a href="#en-us_topic_0150270259__nat_qs_0003_table27487005195751">Table 1</a>.
|
||||
<div class="tablenoborder"><a name="en-us_topic_0150270259__nat_qs_0003_table27487005195751"></a><a name="nat_qs_0003_table27487005195751"></a><table cellpadding="4" cellspacing="0" summary="" id="en-us_topic_0150270259__nat_qs_0003_table27487005195751" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Parameter descriptions of a public NAT gateway</caption><thead align="left"><tr id="en-us_topic_0150270259__nat_qs_0003_row9940336195751"><th align="left" class="cellrowborder" valign="top" width="25%" id="mcps1.3.3.2.5.2.2.3.1.1"><p id="en-us_topic_0150270259__nat_qs_0003_p5995559819588"><strong id="en-us_topic_0150270259__nat_qs_0003_b24725868162658">Parameter</strong></p>
|
||||
</th>
|
||||
@ -20,14 +20,14 @@
|
||||
</tr>
|
||||
<tr id="en-us_topic_0150270259__nat_qs_0003_row32613315195751"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="en-us_topic_0150270259__nat_qs_0003_p2832836319588">Name</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="en-us_topic_0150270259__nat_qs_0003_p1289605119588">The name of the NAT gateway. The name can contain a maximum of 64 characters and only digits, letters, underscores (_), and hyphens (-) are allowed.</p>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="en-us_topic_0150270259__nat_qs_0003_p1289605119588">The name of the NAT gateway. Enter up to 64 characters including only digits, letters, underscores (_), and hyphens (-).</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="en-us_topic_0150270259__nat_qs_0003_row27553870195751"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="en-us_topic_0150270259__nat_qs_0003_p1464780019588">VPC</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="en-us_topic_0150270259__nat_qs_0003_p4562116519588">The VPC that the NAT gateway belongs to. Select a VPC which is not used by any other NAT gateways and has no default route. </p>
|
||||
<p id="en-us_topic_0150270259__nat_qs_0003_p13668174021018">You can change the VPC only when you are creating the NAT gateway. After the NAT gateway is created, you cannot modify the VPC.</p>
|
||||
<div class="note" id="en-us_topic_0150270259__nat_qs_0003_note1378963764012"><span class="notetitle"> NOTE: </span><div class="notebody"><p id="en-us_topic_0150270259__nat_qs_0003_p279033714015">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="en-us_topic_0150270259__nat_qs_0003_ph195554115432">buy</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="en-us_topic_0150270259__nat_qs_0003_ph455541164313">buy</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</p>
|
||||
<div class="note" id="en-us_topic_0150270259__nat_qs_0003_note1378963764012"><span class="notetitle"> NOTE: </span><div class="notebody"><p id="en-us_topic_0150270259__nat_qs_0003_p279033714015">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="en-us_topic_0150270259__nat_qs_0003_ph195554115432">create</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="en-us_topic_0150270259__nat_qs_0003_ph455541164313">create</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</p>
|
||||
</div></div>
|
||||
</td>
|
||||
</tr>
|
||||
@ -41,12 +41,12 @@
|
||||
<tr id="en-us_topic_0150270259__nat_qs_0003_row3011590195751"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="en-us_topic_0150270259__nat_qs_0003_p1770884719588">Specifications</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="en-us_topic_0150270259__nat_qs_0003_p156313256519">The specifications of the NAT gateway.</p>
|
||||
<p id="en-us_topic_0150270259__nat_qs_0003_p03201316191210">The option can be <strong id="en-us_topic_0150270259__nat_qs_0003_b842352706152120">Small</strong>, <strong id="en-us_topic_0150270259__nat_qs_0003_b842352706152124">Medium</strong>, <strong id="en-us_topic_0150270259__nat_qs_0003_b842352706152128">Large</strong>, and <strong id="en-us_topic_0150270259__nat_qs_0003_b842352706152132">Extra-large</strong>. You can click <strong id="en-us_topic_0150270259__nat_qs_0003_b842352706152252">Learn more</strong> on the page to view details about each specifications.</p>
|
||||
<p id="en-us_topic_0150270259__nat_qs_0003_p03201316191210">The option can be <strong id="en-us_topic_0150270259__nat_qs_0003_b32021426401">Micro</strong>, <strong id="en-us_topic_0150270259__nat_qs_0003_b842352706152120">Small</strong>, <strong id="en-us_topic_0150270259__nat_qs_0003_b842352706152124">Medium</strong>, <strong id="en-us_topic_0150270259__nat_qs_0003_b842352706152128">Large</strong>, and <strong id="en-us_topic_0150270259__nat_qs_0003_b842352706152132">Extra-large</strong>. You can click <strong id="en-us_topic_0150270259__nat_qs_0003_b842352706152252">Learn more</strong> on the page to view details about each specification.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="en-us_topic_0150270259__nat_qs_0003_row2219225792544"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="en-us_topic_0150270259__nat_qs_0003_p5274235692544">Description</p>
|
||||
<tr id="en-us_topic_0150270259__nat_qs_0003_row98721653013"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="en-us_topic_0150270259__nat_qs_0003_p58721651500">Enterprise Project</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="en-us_topic_0150270259__nat_qs_0003_p4427248192544">Supplementary information about the NAT gateway. The description can contain up to 255 characters.</p>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="en-us_topic_0150270259__nat_qs_0003_p187218519019">The enterprise project that the NAT gateway belongs to. If an enterprise project is configured for a NAT gateway, the NAT gateway belongs to this enterprise project. If you do not specify an enterprise project, enterprise project <strong id="en-us_topic_0150270259__nat_qs_0003_b842352706182723">default</strong> will be used.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="en-us_topic_0150270259__nat_qs_0003_row29995813516"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="en-us_topic_0150270259__nat_qs_0003_p119916585518">Tag</p>
|
||||
@ -55,6 +55,11 @@
|
||||
<p id="en-us_topic_0150270259__nat_qs_0003_en-us_topic_0030971658_en-us_topic_0013935842_p39052702211138">The tag key and value must meet the requirements listed in <a href="#en-us_topic_0150270259__nat_qs_0003_en-us_topic_0030971658_en-us_topic_0013935842_table248245914136">Table 2</a>.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="en-us_topic_0150270259__nat_qs_0003_row3901010961"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="en-us_topic_0150270259__nat_qs_0003_p5274235692544">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="en-us_topic_0150270259__nat_qs_0003_p4427248192544">Supplementary information about the NAT gateway. Enter up to 255 characters. Angle brackets (<>) are not allowed.</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
</table>
|
||||
</div>
|
||||
|
@ -2,13 +2,12 @@
|
||||
|
||||
<h1 class="topictitle1">Modifying a Public NAT Gateway</h1>
|
||||
<div id="body1516611239704"><div class="section" id="nat_01_0001__section5439700611149"><h4 class="sectiontitle">Scenarios</h4><p id="nat_01_0001__p4055678211159">This section describes how to modify the name, specifications, or description of a NAT gateway.</p>
|
||||
<p id="nat_01_0001__p19964155117218">Using a public NAT gateway of more robust specifications does not affect services, but if you switch to a public NAT gateway of less robust specifications, make sure the reduced capacity will still be enough to meet your service requirements. </p>
|
||||
<p id="nat_01_0001__p11993153883912">Using a NAT gateway of more robust specifications does not affect services, but if you switch to a NAT gateway of less robust specifications, make sure the reduced capacity will still be enough to meet your service requirements.</p>
|
||||
<p id="nat_01_0001__p19964155117218">Upgrading a public NAT gateway does not affect services, but if you downgrade a public NAT gateway, make sure the reduced capacity will still be enough to meet your service requirements. </p>
|
||||
<p id="nat_01_0001__p11993153883912">Upgrading a NAT gateway does not affect services, but if you downgrade a NAT gateway, make sure the reduced capacity will still be enough to meet your service requirements.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_01_0001__section24081145174428"><h4 class="sectiontitle">Prerequisites</h4><p id="nat_01_0001__p58721079174435">A NAT gateway has been created.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_01_0001__section25378358174522"><h4 class="sectiontitle">Procedure</h4><ol id="nat_01_0001__ol37874592165515"><li id="nat_01_0001__li7332756163236">Log in to the management console.</li><li id="nat_01_0001__li840318282158">Click <span><img id="nat_01_0001__en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_01_0001__li1049617094325">Under <strong id="nat_01_0001__b6538202603012">Network</strong>, select <strong id="nat_01_0001__b2539112619308">NAT Gateway</strong>.</li><li id="nat_01_0001__li8610102724918">On the displayed page, locate the row that contains the target NAT gateway and click <strong id="nat_01_0001__b2807143213502">Modify</strong> in the <strong id="nat_01_0001__b11242836195014">Operation</strong> column.</li><li id="nat_01_0001__li5535256111148">Modify the name, specifications, or description of the NAT gateway as prompted.<p id="nat_01_0001__p42090456113428"><a name="nat_01_0001__li5535256111148"></a><a name="li5535256111148"></a></p>
|
||||
</li><li id="nat_01_0001__li1596314397533">Click <strong id="nat_01_0001__b5682170205316">Next</strong>.</li><li id="nat_01_0001__li166843965418">Click <strong id="nat_01_0001__b1081197616">Submit</strong>.</li></ol>
|
||||
<div class="section" id="nat_01_0001__section25378358174522"><h4 class="sectiontitle">Procedure</h4><ol id="nat_01_0001__ol37874592165515"><li id="nat_01_0001__li7332756163236">Log in to the management console.</li><li id="nat_01_0001__li840318282158">Click <span><img id="nat_01_0001__en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_01_0001__li1049617094325">Under <strong id="nat_01_0001__b6538202603012">Network</strong>, select <strong id="nat_01_0001__b2539112619308">NAT Gateway</strong>.</li><li id="nat_01_0001__li8610102724918">On the displayed page, locate the row that contains the target NAT gateway and click <strong id="nat_01_0001__b2807143213502">Modify</strong> in the <strong id="nat_01_0001__b11242836195014">Operation</strong> column.</li><li id="nat_01_0001__li5535256111148">Modify the name, specifications, or description of the NAT gateway as prompted.</li><li id="nat_01_0001__li1596314397533">Click <strong id="nat_01_0001__b5682170205316">Next</strong>.</li><li id="nat_01_0001__li166843965418">Click <strong id="nat_01_0001__b674499391">Submit</strong>.</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -1,7 +1,7 @@
|
||||
<a name="nat_ces_0003"></a><a name="nat_ces_0003"></a>
|
||||
|
||||
<h1 class="topictitle1">Viewing Metrics</h1>
|
||||
<div id="body1527071529095"><div class="section" id="nat_ces_0003__en-us_topic_0027371530_section8439794224022"><h4 class="sectiontitle">Prerequisites</h4><ul id="nat_ces_0003__en-us_topic_0027371530_ul3164004322451"><li id="nat_ces_0003__li14876037123711">The NAT gateway is running properly and SNAT rules have been created.</li><li id="nat_ces_0003__en-us_topic_0027371530_li6253115215042">It can take a period of time to obtain and transfer the monitoring data. Wait for a while and then check the data.</li></ul>
|
||||
<div id="body1527071529095"><div class="section" id="nat_ces_0003__en-us_topic_0027371530_section8439794224022"><h4 class="sectiontitle">Prerequisites</h4><ul id="nat_ces_0003__en-us_topic_0027371530_ul3164004322451"><li id="nat_ces_0003__li14876037123711">The NAT gateway is running properly and SNAT rules have been created.</li><li id="nat_ces_0003__en-us_topic_0027371530_li6253115215042">It takes some time to obtain and transfer the monitoring data. Wait for a while and then check the data.</li></ul>
|
||||
</div>
|
||||
<div class="section" id="nat_ces_0003__section53841197455"><h4 class="sectiontitle">Scenarios</h4><p id="nat_ces_0003__p964131413450">This section describes how to view NAT Gateway metrics.</p>
|
||||
</div>
|
||||
|
@ -5,7 +5,7 @@
|
||||
</div>
|
||||
<div class="section" id="nat_dnat_0002__section45365749152921"><h4 class="sectiontitle">Prerequisites</h4><p id="nat_dnat_0002__p55701220152933">A DNAT rule has been added for the NAT gateway.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_dnat_0002__section30069985153038"><h4 class="sectiontitle">Procedure</h4><ol id="nat_dnat_0002__ol58162347153051"><li id="nat_dnat_0002__li7332756163236">Log in to the management console.</li><li id="nat_dnat_0002__li840318282158">Click <span><img id="nat_dnat_0002__en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_dnat_0002__li1049617094325">Under <strong id="nat_dnat_0002__b11508102620191">Network</strong>, choose <strong id="nat_dnat_0002__b195082026141914">NAT Gateway</strong>.</li><li id="nat_dnat_0002__li8610102724918">On the displayed page, click the name of the target NAT gateway.</li><li id="nat_dnat_0002__li17425138164911">On the NAT gateway details page, click the <strong id="nat_dnat_0002__b8560183019191">DNAT Rules</strong> tab.</li><li id="nat_dnat_0002__li190116535015">Locate the row that contains the DNAT rule you want to modify and click <strong id="nat_dnat_0002__b5123123417194">Modify</strong> in the <strong id="nat_dnat_0002__b3125203441919">Operation</strong> column.</li><li id="nat_dnat_0002__li17673104019579">In the displayed dialog box, modify the required parameters. <div class="fignone" id="nat_dnat_0002__fig423204217614"><span class="figcap"><b>Figure 1 </b>Modify DNAT Rule</span><br><span><img id="nat_dnat_0002__image19226231967" src="en-us_image_0000001626339129.png"></span></div>
|
||||
<div class="section" id="nat_dnat_0002__section30069985153038"><h4 class="sectiontitle">Procedure</h4><ol id="nat_dnat_0002__ol58162347153051"><li id="nat_dnat_0002__li7332756163236">Log in to the management console.</li><li id="nat_dnat_0002__li840318282158">Click <span><img id="nat_dnat_0002__en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_dnat_0002__li1049617094325">Under <strong id="nat_dnat_0002__b11508102620191">Network</strong>, choose <strong id="nat_dnat_0002__b195082026141914">NAT Gateway</strong>.</li><li id="nat_dnat_0002__li8610102724918">On the displayed page, click the name of the target NAT gateway.</li><li id="nat_dnat_0002__li17425138164911">On the NAT gateway details page, click the <strong id="nat_dnat_0002__b8560183019191">DNAT Rules</strong> tab.</li><li id="nat_dnat_0002__li190116535015">Locate the DNAT rule you want to modify and click <strong id="nat_dnat_0002__b5123123417194">Modify</strong> in the <strong id="nat_dnat_0002__b3125203441919">Operation</strong> column.</li><li id="nat_dnat_0002__li17673104019579">In the displayed dialog box, modify the required parameters. <div class="fignone" id="nat_dnat_0002__fig423204217614"><span class="figcap"><b>Figure 1 </b>Modify DNAT Rule</span><br><span><img id="nat_dnat_0002__image19226231967" src="en-us_image_0000001626339129.png"></span></div>
|
||||
</li><li id="nat_dnat_0002__li8835108115112">Click <strong id="nat_dnat_0002__b7600422204">OK</strong>.</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
|
@ -5,7 +5,7 @@
|
||||
</div>
|
||||
<div class="section" id="nat_dnat_0003__section45365749152921"><h4 class="sectiontitle">Prerequisites</h4><p id="nat_dnat_0003__p55701220152933">A DNAT rule has been added for the NAT gateway.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_dnat_0003__section30069985153038"><h4 class="sectiontitle">Procedure</h4><ol id="nat_dnat_0003__ol58162347153051"><li id="nat_dnat_0003__li7332756163236">Log in to the management console.</li><li id="nat_dnat_0003__li840318282158">Click <span><img id="nat_dnat_0003__en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_dnat_0003__li1049617094325">Under <strong id="nat_dnat_0003__b108754173200">Network</strong>, choose <strong id="nat_dnat_0003__b1875517172020">NAT Gateway</strong>.</li><li id="nat_dnat_0003__li8610102724918">On the displayed page, click the name of the target NAT gateway.</li><li id="nat_dnat_0003__li17425138164911">On the NAT gateway details page, click the <strong id="nat_dnat_0003__b8170142416100">DNAT Rules</strong> tab.</li><li id="nat_dnat_0003__li190116535015">In the DNAT rule list, locate the row that contains the DNAT rule you want to delete and click <strong id="nat_dnat_0003__b842352706131525">Delete</strong> in the <strong id="nat_dnat_0003__b842352706131528">Operation</strong> column.</li><li id="nat_dnat_0003__li8835108115112">In the displayed dialog box, click <strong id="nat_dnat_0003__b131796444489">Yes</strong>.</li></ol>
|
||||
<div class="section" id="nat_dnat_0003__section30069985153038"><h4 class="sectiontitle">Procedure</h4><ol id="nat_dnat_0003__ol58162347153051"><li id="nat_dnat_0003__li7332756163236">Log in to the management console.</li><li id="nat_dnat_0003__li840318282158">Click <span><img id="nat_dnat_0003__en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_dnat_0003__li1049617094325">Under <strong id="nat_dnat_0003__b108754173200">Network</strong>, choose <strong id="nat_dnat_0003__b1875517172020">NAT Gateway</strong>.</li><li id="nat_dnat_0003__li8610102724918">On the displayed page, click the name of the target NAT gateway.</li><li id="nat_dnat_0003__li17425138164911">On the NAT gateway details page, click the <strong id="nat_dnat_0003__b8170142416100">DNAT Rules</strong> tab.</li><li id="nat_dnat_0003__li190116535015">Locate the DNAT rule you want to delete and click <strong id="nat_dnat_0003__b842352706131525">Delete</strong> in the <strong id="nat_dnat_0003__b842352706131528">Operation</strong> column.</li><li id="nat_dnat_0003__li8835108115112">In the displayed dialog box, click <strong id="nat_dnat_0003__b131796444489">Yes</strong>.</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -1,6 +1,6 @@
|
||||
<a name="nat_faq_0006"></a><a name="nat_faq_0006"></a>
|
||||
|
||||
<h1 class="topictitle1">Why Is DNAT Used?</h1>
|
||||
<h1 class="topictitle1">Why Do I Need DNAT?</h1>
|
||||
<div id="body1557818061702"><p id="nat_faq_0006__p1054811712154">DNAT enables servers in a VPC to share an EIP to provide services accessible from the Internet. For details, see <a href="en-us_topic_0127489530.html">Adding a DNAT Rule</a>.</p>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -1,6 +1,6 @@
|
||||
<a name="nat_faq_001"></a><a name="nat_faq_001"></a>
|
||||
|
||||
<h1 class="topictitle1">Why Is SNAT Used?</h1>
|
||||
<h1 class="topictitle1">Why Do I Need SNAT?</h1>
|
||||
<div id="body1531445921401"><p id="nat_faq_001__p1380619353919">Besides requiring services provided by the system, some <span id="nat_faq_001__text20171168152416">ECS</span>s also need to access the Internet to obtain information or download software. However, assigning a public IP address to each <span id="nat_faq_001__text18348153519265">ECS</span> consumes already-limited IPv4 addresses, incurs additional costs, and may increase the attack surface in a virtual environment. Enabling multiple <span id="nat_faq_001__text2054712580264">ECS</span>s to share a single public IP address is preferable and more practical. This can be done using SNAT.</p>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -82,7 +82,7 @@
|
||||
<tr id="nat_faq_0021__en-us_topic_0000001108614418_row5259657194116"><td class="cellrowborder" valign="top" width="31.740000000000002%" headers="mcps1.3.3.2.6.2.1.2.1.2.2.3.1.1 "><p id="nat_faq_0021__en-us_topic_0000001108614418_p325925794112">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="68.26%" headers="mcps1.3.3.2.6.2.1.2.1.2.2.3.1.2 "><p id="nat_faq_0021__en-us_topic_0000001108614418_p1018611346120">(Optional) Supplementary information about the route</p>
|
||||
<p id="nat_faq_0021__en-us_topic_0000001108614418_p218683416111">Enter up to 255 characters. Angle brackets (< or >) are not allowed.</p>
|
||||
<p id="nat_faq_0021__en-us_topic_0000001108614418_p218683416111">Enter up to 255 characters. Angle brackets (< or >) are not allowed. </p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
@ -114,7 +114,7 @@
|
||||
<tr id="nat_faq_0021__en-us_topic_0000001108614418_row61031813121617"><td class="cellrowborder" valign="top" width="31.740000000000002%" headers="mcps1.3.3.2.6.2.2.4.1.2.1.2.2.3.1.1 "><p id="nat_faq_0021__en-us_topic_0000001108614418_p21039131168">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="68.26%" headers="mcps1.3.3.2.6.2.2.4.1.2.1.2.2.3.1.2 "><p id="nat_faq_0021__en-us_topic_0000001108614418_p9103181311162">(Optional) Supplementary information about the route</p>
|
||||
<p id="nat_faq_0021__en-us_topic_0000001108614418_p01031813161615">Enter up to 255 characters. Angle brackets (< or >) are not allowed.</p>
|
||||
<p id="nat_faq_0021__en-us_topic_0000001108614418_p01031813161615">Enter up to 255 characters. Angle brackets (< or >) are not allowed. </p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
@ -148,7 +148,7 @@
|
||||
<tr id="nat_faq_0021__en-us_topic_0000001108614418_row59893598447"><td class="cellrowborder" valign="top" width="19.36%" headers="mcps1.3.3.2.6.2.2.4.2.2.1.3.2.4.1.1 "><p id="nat_faq_0021__en-us_topic_0000001108614418_p2989165914419">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="55.58%" headers="mcps1.3.3.2.6.2.2.4.2.2.1.3.2.4.1.2 "><p id="nat_faq_0021__en-us_topic_0000001108614418_p1998914594446">(Optional) Supplementary information about the route table</p>
|
||||
<p id="nat_faq_0021__en-us_topic_0000001108614418_p1198995917447">Enter up to 255 characters. Angle brackets (< or >) are not allowed.</p>
|
||||
<p id="nat_faq_0021__en-us_topic_0000001108614418_p1198995917447">Enter up to 255 characters. Angle brackets (< or >) are not allowed. </p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="25.06%" headers="mcps1.3.3.2.6.2.2.4.2.2.1.3.2.4.1.3 "><p id="nat_faq_0021__en-us_topic_0000001108614418_p1598975914412">N/A</p>
|
||||
</td>
|
||||
@ -241,14 +241,14 @@
|
||||
</tr>
|
||||
<tr id="nat_faq_0021__en-us_topic_0000001108614418_en-us_topic_0167240183_row25541235195510"><td class="cellrowborder" valign="top" width="14.441444144414442%" headers="mcps1.3.10.4.2.4.1.1 "><p id="nat_faq_0021__en-us_topic_0000001108614418_en-us_topic_0167240183_p65541351551">TIME-WAIT</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="42.22422242224223%" headers="mcps1.3.10.4.2.4.1.2 "><p id="nat_faq_0021__en-us_topic_0000001108614418_en-us_topic_0167240183_p555418351551">Waits until the remote TCP server receives the acknowledgement after sending a disconnection request.</p>
|
||||
<td class="cellrowborder" valign="top" width="42.22422242224223%" headers="mcps1.3.10.4.2.4.1.2 "><p id="nat_faq_0021__en-us_topic_0000001108614418_en-us_topic_0167240183_p555418351551">Waits until the remote TCP server receives the acknowledgement of the connection termination request.</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="43.33433343334334%" headers="mcps1.3.10.4.2.4.1.3 "><p id="nat_faq_0021__en-us_topic_0000001108614418_en-us_topic_0167240183_p16554193575512">The TCP connection is disconnected, and this state is cleared in 1 minute.</p>
|
||||
<td class="cellrowborder" valign="top" width="43.33433343334334%" headers="mcps1.3.10.4.2.4.1.3 "><p id="nat_faq_0021__en-us_topic_0000001108614418_en-us_topic_0167240183_p16554193575512">The TCP connection is terminated, and the session is closed in 1 minute.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_faq_0021__en-us_topic_0000001108614418_en-us_topic_0167240183_row10554143513558"><td class="cellrowborder" valign="top" width="14.441444144414442%" headers="mcps1.3.10.4.2.4.1.1 "><p id="nat_faq_0021__en-us_topic_0000001108614418_en-us_topic_0167240183_p755419353553">CLOSE-WAIT</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="42.22422242224223%" headers="mcps1.3.10.4.2.4.1.2 "><p id="nat_faq_0021__en-us_topic_0000001108614418_en-us_topic_0167240183_p17554635175517">Waits for a disconnection request sent by a local user.</p>
|
||||
<td class="cellrowborder" valign="top" width="42.22422242224223%" headers="mcps1.3.10.4.2.4.1.2 "><p id="nat_faq_0021__en-us_topic_0000001108614418_en-us_topic_0167240183_p17554635175517">Waits for a connection termination request sent by a local user.</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="43.33433343334334%" headers="mcps1.3.10.4.2.4.1.3 "><p id="nat_faq_0021__en-us_topic_0000001108614418_en-us_topic_0167240183_p1055414354553">A program fault resulted in an open socket. This state is displayed after the network is disconnected, indicating that a process is in an infinite loop or waiting for certain requirements to be met. To resolve this issue, restart the affected process.</p>
|
||||
</td>
|
||||
|
@ -8,7 +8,7 @@
|
||||
|
||||
<div>
|
||||
<ul class="ullinks">
|
||||
<li class="ulchildlink"><strong><a href="nat_faq_001.html">Why Is SNAT Used?</a></strong><br>
|
||||
<li class="ulchildlink"><strong><a href="nat_faq_001.html">Why Do I Need SNAT?</a></strong><br>
|
||||
</li>
|
||||
<li class="ulchildlink"><strong><a href="nat_faq_0002.html">What Are SNAT Connections?</a></strong><br>
|
||||
</li>
|
||||
|
@ -4,7 +4,7 @@
|
||||
<div id="body1595469556317"></div>
|
||||
<div>
|
||||
<ul class="ullinks">
|
||||
<li class="ulchildlink"><strong><a href="nat_faq_0006.html">Why Is DNAT Used?</a></strong><br>
|
||||
<li class="ulchildlink"><strong><a href="nat_faq_0006.html">Why Do I Need DNAT?</a></strong><br>
|
||||
</li>
|
||||
<li class="ulchildlink"><strong><a href="nat_faq_0007.html">Can I Modify DNAT Rules?</a></strong><br>
|
||||
</li>
|
||||
|
@ -8,10 +8,22 @@
|
||||
</th>
|
||||
</tr>
|
||||
</thead>
|
||||
<tbody><tr id="nat_his_0001__row526813461515"><td class="cellrowborder" valign="top" width="19%" headers="mcps1.3.1.1.3.1.1 "><p id="nat_his_0001__p8647338151516">2023-07-26</p>
|
||||
<tbody><tr id="nat_his_0001__row12105172873914"><td class="cellrowborder" valign="top" width="19%" headers="mcps1.3.1.1.3.1.1 "><p id="nat_his_0001__p9106228193911">2024-01-15</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="81%" headers="mcps1.3.1.1.3.1.2 "><p id="nat_his_0001__p593565914392">This release incorporates the following changes:</p>
|
||||
<ul id="nat_his_0001__ul1513019266408"><li id="nat_his_0001__li16131142634010">Added the micro NAT gateway specifications.</li><li id="nat_his_0001__li13393713194212">Added the description that public NAT gateways support enterprise projects.</li></ul>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_his_0001__row19223164419294"><td class="cellrowborder" valign="top" width="19%" headers="mcps1.3.1.1.3.1.1 "><p id="nat_his_0001__p10691353112915">2023-08-20</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="81%" headers="mcps1.3.1.1.3.1.2 "><p id="nat_his_0001__p19224114422914">This release incorporates the following changes:</p>
|
||||
<ul id="nat_his_0001__ul1324793310309"><li id="nat_his_0001__li62471633113019">Added <a href="nat_permission_0000.html">Permissions</a>.</li><li id="nat_his_0001__li132317610312">Added <a href="nat_permission_0001.html">Permissions Management</a>.</li></ul>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_his_0001__row526813461515"><td class="cellrowborder" valign="top" width="19%" headers="mcps1.3.1.1.3.1.1 "><p id="nat_his_0001__p8647338151516">2023-07-26</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="81%" headers="mcps1.3.1.1.3.1.2 "><p id="nat_his_0001__p9648163812158">This release incorporates the following changes:</p>
|
||||
<ul id="nat_his_0001__ul106480382157"><li id="nat_his_0001__li166487380159">Updated <a href="en-us_topic_0086739763.html">NAT Gateway Specifications</a>.</li><li id="nat_his_0001__li18648538151518">Updated <a href="nat_qs_0017.html">Step 4: Add an SNAT Rule</a>.</li><li id="nat_his_0001__li1964843891510">Updated <a href="en-us_topic_0127489529.html#en-us_topic_0127489529__en-us_topic_0127293981_table4272024117597">Table 1</a>.</li><li id="nat_his_0001__li10858351181616">Updated <a href="nat_faq_0020.html">What Security Policies Can I Configure to Implement Access Control If I Use the NAT Gateway Service?</a>.</li></ul>
|
||||
<ul id="nat_his_0001__ul106480382157"><li id="nat_his_0001__li166487380159">Updated <a href="en-us_topic_0086739763.html">NAT Gateway Specifications</a>.</li><li id="nat_his_0001__li18648538151518">Updated <a href="nat_qs_0017.html">Step 4: Add an SNAT Rule</a>.</li><li id="nat_his_0001__li1964843891510">Updated <a href="en-us_topic_0127489529.html#en-us_topic_0127489529__en-us_topic_0127293981_table4272024117597">Table 1</a>.</li><li id="nat_his_0001__li10858351181616">Updated <a href="nat_faq_0020.html">What Security Policies Can I Configure to Implement Access Control If I Use the NAT Gateway Service?</a></li></ul>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_his_0001__row13194205494117"><td class="cellrowborder" valign="top" width="19%" headers="mcps1.3.1.1.3.1.1 "><p id="nat_his_0001__p370755914411">2023-07-19</p>
|
||||
@ -29,7 +41,7 @@
|
||||
<tr id="nat_his_0001__row20586165618288"><td class="cellrowborder" valign="top" width="19%" headers="mcps1.3.1.1.3.1.1 "><p id="nat_his_0001__p102871944293">2023-06-20</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="81%" headers="mcps1.3.1.1.3.1.2 "><p id="nat_his_0001__p1658735616285">This release incorporates the following changes:</p>
|
||||
<ul id="nat_his_0001__ul16811181915298"><li id="nat_his_0001__li158112196299">Updated <a href="nat_faq_0021.html">What Can I Do If Connection Between My Servers and the Internet Fails After I Add SNAT and DNAT Rules?</a>.</li><li id="nat_his_0001__li84816398309">Added <a href="nat_faq_0010.html">What Is the Quota of the NAT Gateway?</a>.</li><li id="nat_his_0001__li4325456173713">Updated <a href="nat_ces_0002.html#nat_ces_0002__table6740854112515">Table 1</a>.</li><li id="nat_his_0001__li199681668315">Updated the screenshot for creating a public NAT gateway.</li><li id="nat_his_0001__li182181836103214">Updated the screenshot for modifying an SNAT rule.</li><li id="nat_his_0001__li1544153203312">Updated the screenshot for modifying a DNAT rule.</li></ul>
|
||||
<ul id="nat_his_0001__ul16811181915298"><li id="nat_his_0001__li158112196299">Updated <a href="nat_faq_0021.html">What Can I Do If Connection Between My Servers and the Internet Fails After I Add SNAT and DNAT Rules?</a></li><li id="nat_his_0001__li84816398309">Added <a href="nat_faq_0010.html">What Is the Quota of the NAT Gateway?</a></li><li id="nat_his_0001__li4325456173713">Updated <a href="nat_ces_0002.html#nat_ces_0002__table6740854112515">Table 1</a>.</li><li id="nat_his_0001__li199681668315">Updated the screenshot for creating a public NAT gateway.</li><li id="nat_his_0001__li182181836103214">Updated the screenshot for modifying an SNAT rule.</li><li id="nat_his_0001__li1544153203312">Updated the screenshot for modifying a DNAT rule.</li></ul>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_his_0001__row15836115983912"><td class="cellrowborder" valign="top" width="19%" headers="mcps1.3.1.1.3.1.1 "><p id="nat_his_0001__p1883615913915">2023-06-05</p>
|
||||
@ -58,7 +70,7 @@
|
||||
</tr>
|
||||
<tr id="nat_his_0001__row0237145519309"><td class="cellrowborder" valign="top" width="19%" headers="mcps1.3.1.1.3.1.1 "><p id="nat_his_0001__p584165683019">2022-07-27</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="81%" headers="mcps1.3.1.1.3.1.2 "><p id="nat_his_0001__p1184175683017">This release incorporates the following changes:</p>
|
||||
<td class="cellrowborder" valign="top" width="81%" headers="mcps1.3.1.1.3.1.2 "><p id="nat_his_0001__p1184175683017">This release incorporates the following change:</p>
|
||||
<p id="nat_his_0001__p6841115618307">Deleted FAQ "What Is the Quota of NAT Gateways ?" The numbers of DNAT rules and the number of SNAT rules supported by a NAT gateway are not quotas.</p>
|
||||
</td>
|
||||
</tr>
|
||||
@ -83,7 +95,7 @@
|
||||
<tr id="nat_his_0001__row2472112223418"><td class="cellrowborder" valign="top" width="19%" headers="mcps1.3.1.1.3.1.1 "><p id="nat_his_0001__p1449493117343">2019-09-18</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="81%" headers="mcps1.3.1.1.3.1.2 "><p id="nat_his_0001__p0494631103414">This release incorporates the following changes:</p>
|
||||
<ul id="nat_his_0001__ul8494133116348"><li id="nat_his_0001__li1149414316340">Added the description about DNAT rules in <a href="en-us_topic_0086739762.html">What Is NAT Gateway?</a></li><li id="nat_his_0001__li44954316348">Optimized the networking diagram and added the scenario of providing services accessible from the Internet in <a href="nat_pro_0002.html">Application Scenarios</a>.</li><li id="nat_his_0001__li249553123418">Added constraints on DNAT rules in <a href="en-us_topic_0086739750.html">Notes and Constraints</a>.</li><li id="nat_his_0001__li184951931113420">Added <a href="nat_qs_0006.html">Using DNAT to Provide Services Accessible from the Internet</a>.</li><li id="nat_his_0001__li10543833183516">Added <a href="nat_qs_0005.html">Step 4: Verify the Result</a>.</li><li id="nat_his_0001__li174951031113410">Added <a href="nat_qs_0018.html">Step 5: Add a DNAT Rule</a>.</li><li id="nat_his_0001__li4495431143417">Updated <a href="en-us_topic_0150270259.html">Creating a Public NAT Gateway</a>.</li><li id="nat_his_0001__li9495193114345">Added <a href="nat_dnat_0000.html">Managing DNAT Rules</a>.</li><li id="nat_his_0001__li105436335355">Updated the screenshots of adding an SNAT rule and adding a DNAT rule.</li><li id="nat_his_0001__li10543173393510">Modified the description about EIP parameters.</li><li id="nat_his_0001__li1154313343511">Modified the description about <strong id="nat_his_0001__b132207215194">Outside Port</strong>.</li><li id="nat_his_0001__li654319333356">Integrated basic concepts.</li></ul>
|
||||
<ul id="nat_his_0001__ul8494133116348"><li id="nat_his_0001__li1149414316340">Added the description about DNAT rules in <a href="en-us_topic_0086739762.html">What Is NAT Gateway?</a></li><li id="nat_his_0001__li44954316348">Optimized the networking diagram and added the scenario of providing services accessible from the Internet in <a href="nat_pro_0002.html">Application Scenarios</a>.</li><li id="nat_his_0001__li249553123418">Added constraints on DNAT rules in <a href="en-us_topic_0086739750.html">Notes and Constraints</a>.</li><li id="nat_his_0001__li184951931113420">Added <a href="nat_qs_0006.html">Allowing Internet Users to Access a Service in a Private Network Using DNAT</a>.</li><li id="nat_his_0001__li10543833183516">Added <a href="nat_qs_0005.html">Step 4: Verify the Result</a>.</li><li id="nat_his_0001__li174951031113410">Added <a href="nat_qs_0018.html">Step 5: Add a DNAT Rule</a>.</li><li id="nat_his_0001__li4495431143417">Updated <a href="en-us_topic_0150270259.html">Creating a Public NAT Gateway</a>.</li><li id="nat_his_0001__li9495193114345">Added <a href="nat_dnat_0000.html">Managing DNAT Rules</a>.</li><li id="nat_his_0001__li105436335355">Updated the screenshots of adding an SNAT rule and adding a DNAT rule.</li><li id="nat_his_0001__li10543173393510">Modified the description about EIP parameters.</li><li id="nat_his_0001__li1154313343511">Modified the description about <strong id="nat_his_0001__b132207215194">Outside Port</strong>.</li><li id="nat_his_0001__li654319333356">Integrated basic concepts.</li></ul>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_his_0001__row9657185611187"><td class="cellrowborder" valign="top" width="19%" headers="mcps1.3.1.1.3.1.1 "><p id="nat_his_0001__p397342141918">2019-03-19</p>
|
||||
|
193
docs/natgw/umn/nat_permission_0000.html
Normal file
193
docs/natgw/umn/nat_permission_0000.html
Normal file
File diff suppressed because it is too large
Load Diff
13
docs/natgw/umn/nat_permission_0001.html
Normal file
13
docs/natgw/umn/nat_permission_0001.html
Normal file
@ -0,0 +1,13 @@
|
||||
<a name="nat_permission_0001"></a><a name="nat_permission_0001"></a>
|
||||
|
||||
<h1 class="topictitle1">Permissions Management</h1>
|
||||
<div id="body8662426"></div>
|
||||
<div>
|
||||
<ul class="ullinks">
|
||||
<li class="ulchildlink"><strong><a href="nat_permission_0002.html">Creating a User and Granting NAT Gateway Permissions</a></strong><br>
|
||||
</li>
|
||||
<li class="ulchildlink"><strong><a href="nat_permission_0003.html">NAT Gateway Custom Policies</a></strong><br>
|
||||
</li>
|
||||
</ul>
|
||||
</div>
|
||||
|
24
docs/natgw/umn/nat_permission_0002.html
Normal file
24
docs/natgw/umn/nat_permission_0002.html
Normal file
@ -0,0 +1,24 @@
|
||||
<a name="nat_permission_0002"></a><a name="nat_permission_0002"></a>
|
||||
|
||||
<h1 class="topictitle1">Creating a User and Granting NAT Gateway Permissions</h1>
|
||||
<div id="body8662426"><p id="nat_permission_0002__en-us_topic_0171158979_p9744230121216">This section describes how to use <a href="https://docs.otc.t-systems.com/identity-access-management/umn/index.html" target="_blank" rel="noopener noreferrer">IAM</a> to implement fine-grained permissions control for your NAT Gateway resources. With IAM, you can:</p>
|
||||
<ul id="nat_permission_0002__en-us_topic_0171158979_ul14745193010122"><li id="nat_permission_0002__en-us_topic_0171158979_li774523020123">Create IAM users for employees based on your enterprise's organizational structure. Each IAM user will have their own security credentials for accessing NAT Gateway resources.</li><li id="nat_permission_0002__en-us_topic_0171158979_li4745130101219">Grant only the permissions required for users to perform a specific task.</li><li id="nat_permission_0002__en-us_topic_0171158979_li574517303124">Entrust an account or cloud service to perform efficient O&M on your NAT Gateway resources.</li></ul>
|
||||
<p id="nat_permission_0002__en-us_topic_0171158979_p47452309125">If your account does not require individual IAM users, skip this section.</p>
|
||||
<p id="nat_permission_0002__p3691105232318">This section describes the procedure for granting permissions (see <a href="#nat_permission_0002__en-us_topic_0171158980_fig111743404535">Figure 1</a>).</p>
|
||||
<div class="section" id="nat_permission_0002__section61001726122520"><h4 class="sectiontitle">Prerequisites</h4><p id="nat_permission_0002__p1340717109316">Learn about the permissions supported by NAT Gateway and choose policies or roles according to your requirements. For details, see <a href="nat_permission_0000.html">Permissions</a>. For the permissions of other services, see <a href="https://docs.otc.t-systems.com/additional/permissions.html" target="_blank" rel="noopener noreferrer">Permissions</a>.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_permission_0002__en-us_topic_0171158980_section203711514125317"><h4 class="sectiontitle">Process Flow</h4><div class="fignone" id="nat_permission_0002__en-us_topic_0171158980_fig111743404535"><a name="nat_permission_0002__en-us_topic_0171158980_fig111743404535"></a><a name="en-us_topic_0171158980_fig111743404535"></a><span class="figcap"><b>Figure 1 </b>Process for granting NAT Gateway permissions</span><br><span><img id="nat_permission_0002__en-us_topic_0171158980_image3885631155319" src="en-us_image_0201532839.jpg"></span></div>
|
||||
<p id="nat_permission_0002__en-us_topic_0171158980_p1518144017536"></p>
|
||||
<ol id="nat_permission_0002__en-us_topic_0171158980_ol102751734125416"><li id="nat_permission_0002__en-us_topic_0171158980_li527593485415"><a name="nat_permission_0002__en-us_topic_0171158980_li527593485415"></a><a name="en-us_topic_0171158980_li527593485415"></a><a href="https://docs.otc.t-systems.com/identity-access-management/umn/getting_started/creating_a_user_group_and_assigning_permissions.html" target="_blank" rel="noopener noreferrer">Create a user group and assign permissions</a>.<p id="nat_permission_0002__en-us_topic_0171158980_p532014413567">Create a user group on the IAM console, and attach the policy to the group.</p>
|
||||
</li><li id="nat_permission_0002__en-us_topic_0171158980_li122751534175417"><a href="https://docs.otc.t-systems.com/identity-access-management/umn/getting_started/creating_a_user_and_adding_the_user_to_a_user_group.html" target="_blank" rel="noopener noreferrer">Create an IAM user and add it to a user group.</a><p id="nat_permission_0002__en-us_topic_0171158980_p12757347540">Create a user on the IAM console and add the user to the group created in <a href="#nat_permission_0002__en-us_topic_0171158980_li527593485415">1</a>.</p>
|
||||
</li><li id="nat_permission_0002__en-us_topic_0171158980_li227543410541"><a href="https://docs.otc.t-systems.com/identity-access-management/umn/getting_started/logging_in_as_a_user.html" target="_blank" rel="noopener noreferrer">Log in</a> and verify permissions. <p id="nat_permission_0002__en-us_topic_0171158980_p15275234135418">Log in to the management console as the created user. Switch to the authorized region and verify the permissions.</p>
|
||||
<ul id="nat_permission_0002__ul0221541101419"><li id="nat_permission_0002__li1522741121412">Choose <strong id="nat_permission_0002__b136820298375">Service List</strong> > <strong id="nat_permission_0002__b1719012307387">NAT Gateway</strong>. Then click <strong id="nat_permission_0002__b419103941216"><span id="nat_permission_0002__ph34977345260">Create</span></strong> <strong id="nat_permission_0002__b79216411518">NAT Gateway</strong>. If a message appears indicating that you have insufficient permissions to perform the operation, the <strong id="nat_permission_0002__b13303125664711">ReadOnlyAccess</strong> policy has already taken effect.</li><li id="nat_permission_0002__li12221641131415">Choose any other service in <strong id="nat_permission_0002__b207090292392">Service List</strong>. If a message appears indicating that you have insufficient permissions to access the service, the <strong id="nat_permission_0002__b1451710218489">NAT ReadOnlyAccess</strong> policy has already taken effect.</li></ul>
|
||||
</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_permission_0001.html">Permissions Management</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
61
docs/natgw/umn/nat_permission_0003.html
Normal file
61
docs/natgw/umn/nat_permission_0003.html
Normal file
@ -0,0 +1,61 @@
|
||||
<a name="nat_permission_0003"></a><a name="nat_permission_0003"></a>
|
||||
|
||||
<h1 class="topictitle1">NAT Gateway Custom Policies</h1>
|
||||
<div id="body8662426"><p id="nat_permission_0003__p16767103712216">Custom policies can be created to supplement the system-defined policies of NAT Gateway. For the actions that can be added to custom policies, see section "Permissions Policies and Supported Actions" in the <em id="nat_permission_0003__i388321114920">NAT Gateway API Reference</em>.</p>
|
||||
<p id="nat_permission_0003__p05559511579">You can create custom policies in either of the following ways:</p>
|
||||
<ul id="nat_permission_0003__ul7608134252211"><li id="nat_permission_0003__li131893469221">Visual editor: Select cloud services, actions, resources, and request conditions. This does not require knowledge of policy syntax.</li><li id="nat_permission_0003__li186081242142216">JSON: Edit JSON policies from scratch or based on an existing policy.<p id="nat_permission_0003__p16675111816315"><a name="nat_permission_0003__li186081242142216"></a><a name="li186081242142216"></a>For details, see <a href="https://docs.otc.t-systems.com/identity-access-management/umn/user_guide/fine-grained_policy_management/creating_a_custom_policy.html" target="_blank" rel="noopener noreferrer">Creating a Custom Policy</a> The following section contains examples of common NAT Gateway custom policies.</p>
|
||||
</li></ul>
|
||||
<div class="section" id="nat_permission_0003__en-us_topic_0171158981_section14211748585"><h4 class="sectiontitle">Example Policies</h4><ul id="nat_permission_0003__en-us_topic_0171158981_ul3541174820819"><li id="nat_permission_0003__en-us_topic_0171158981_li954174811818">Example 1: Allowing users to create and delete NAT gateways<pre class="screen" id="nat_permission_0003__en-us_topic_0171158981_screen1984581351618">{
|
||||
"Version": "1.1",
|
||||
"Statement": [
|
||||
{
|
||||
"Effect": "Allow",
|
||||
"Action": [
|
||||
"nat:natGateways:create",
|
||||
"nat:natGateways:delete"
|
||||
]
|
||||
}
|
||||
]
|
||||
}</pre>
|
||||
</li><li id="nat_permission_0003__en-us_topic_0171158981_li054154812819">Example 2: Denying NAT gateway deletion<p id="nat_permission_0003__en-us_topic_0171158981_p9541164816811"><a name="nat_permission_0003__en-us_topic_0171158981_li054154812819"></a><a name="en-us_topic_0171158981_li054154812819"></a>A deny policy must be used in conjunction with other policies to take effect. If the permissions assigned to a user contain both "Allow" and "Deny", the "Deny" permissions take precedence over the "Allow" permissions.</p>
|
||||
<p id="nat_permission_0003__en-us_topic_0171158981_p54631559214">The following method can be used if you need to assign permissions of the NAT Gateway <strong id="nat_permission_0003__b6938115411491">FullAccess</strong> policy to a user but also forbid the user from deleting NAT gateways. Create a custom policy for denying NAT gateway deletion, and attach both policies to the group to which the user belongs. Then the user can perform all operations on NAT gateways except deleting NAT gateways. The following is an example of a deny policy:</p>
|
||||
<pre class="screen" id="nat_permission_0003__en-us_topic_0171158981_screen15930122720235">{
|
||||
"Version": "1.1",
|
||||
"Statement": [
|
||||
{
|
||||
"Action": [
|
||||
"nat:natGateways:delete"
|
||||
],
|
||||
"Effect": "Deny"
|
||||
}
|
||||
]
|
||||
}</pre>
|
||||
</li><li id="nat_permission_0003__li53625446377">Example 3: Defining permissions for multiple services in a policy<p id="nat_permission_0003__p2610194519379"><a name="nat_permission_0003__li53625446377"></a><a name="li53625446377"></a>A custom policy can contain actions of multiple services that are of the global or project-level type. The following is an example policy containing actions of multiple services:</p>
|
||||
<pre class="screen" id="nat_permission_0003__screen198174024711">{
|
||||
"Version": "1.1",
|
||||
"Statement": [
|
||||
{
|
||||
"Action": [
|
||||
"nat:natGateways:update",
|
||||
"nat:natGateways:create"
|
||||
],
|
||||
"Effect": "Allow"
|
||||
},
|
||||
{
|
||||
"Action": [
|
||||
"vpc:vpcs:update"
|
||||
],
|
||||
"Effect": "Allow"
|
||||
}
|
||||
]
|
||||
}</pre>
|
||||
<p id="nat_permission_0003__p869325211462"></p>
|
||||
</li></ul>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_permission_0001.html">Permissions Management</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
@ -16,6 +16,8 @@
|
||||
</li>
|
||||
<li class="ulchildlink"><strong><a href="nat_pro_0003.html">Using NAT Gateway with Other Services</a></strong><br>
|
||||
</li>
|
||||
<li class="ulchildlink"><strong><a href="nat_permission_0000.html">Permissions</a></strong><br>
|
||||
</li>
|
||||
<li class="ulchildlink"><strong><a href="nat_az_0000.html">Region and AZ</a></strong><br>
|
||||
</li>
|
||||
<li class="ulchildlink"><strong><a href="nat_pro_0004.html">Basic Concepts</a></strong><br>
|
||||
|
@ -1,19 +1,19 @@
|
||||
<a name="nat_pro_0002"></a><a name="nat_pro_0002"></a>
|
||||
|
||||
<h1 class="topictitle1">Application Scenarios</h1>
|
||||
<div id="body1513132833791"><div class="section" id="nat_pro_0002__section83441539155816"><h4 class="sectiontitle">Using SNAT to Enable Servers to Access the Internet</h4><p id="nat_pro_0002__p181611298598">If your servers in a VPC require Internet access, you can use SNAT to let the servers share one or more EIPs to access the Internet without exposing their IP addresses. In a VPC, each subnet corresponds to an SNAT rule, and each SNAT rule is configured with an EIP. NAT Gateway provides different specifications to support different numbers of connections. You can create multiple SNAT rules to meet your service requirements.</p>
|
||||
<div id="body1513132833791"><div class="section" id="nat_pro_0002__section83441539155816"><h4 class="sectiontitle">Allowing a Private Network to Access the Internet Using SNAT</h4><p id="nat_pro_0002__p181611298598">If your servers in a VPC need to access the Internet, you can configure SNAT rules to let these servers use EIPs to access the Internet without exposing their private IP addresses. You can configure only one SNAT rule for each subnet in a VPC, and select one or more EIPs for each SNAT rule. NAT Gateway provides different numbers of connections, and you can create multiple SNAT rules to meet your service requirements.</p>
|
||||
<p id="nat_pro_0002__p124004391619"><a href="#nat_pro_0002__fig1463533919456">Figure 1</a> shows how servers in a VPC access the Internet using SNAT.</p>
|
||||
<div class="fignone" id="nat_pro_0002__fig1463533919456"><a name="nat_pro_0002__fig1463533919456"></a><a name="fig1463533919456"></a><span class="figcap"><b>Figure 1 </b>Using SNAT to enable servers to access the Internet</span><br><span><img class="vsd" id="nat_pro_0002__image105675583128" src="en-us_image_0201532867.png"></span></div>
|
||||
<div class="fignone" id="nat_pro_0002__fig1463533919456"><a name="nat_pro_0002__fig1463533919456"></a><a name="fig1463533919456"></a><span class="figcap"><b>Figure 1 </b>Allowing a private network to access the Internet using SNAT</span><br><span><img class="vsd" id="nat_pro_0002__image105675583128" src="en-us_image_0201532867.png"></span></div>
|
||||
</div>
|
||||
<div class="section" id="nat_pro_0002__section1572710181617"><h4 class="sectiontitle">Using DNAT to Allow Servers to Provide Services Accessible from the Internet</h4><p id="nat_pro_0002__p12949184510533">To allow your servers in a VPC to provide services accessible from the Internet, you can use DNAT.</p>
|
||||
<p id="nat_pro_0002__p92531021542">You can associate an EIP with a DNAT rule. As requests with a specific protocol and port access the EIP, NAT Gateway only forwards requests to the port of the target server through the mapping between the ports. NAT Gateway can also forward requests on the EIP to your servers based on IP address mapping. NAT Gateway allows multiple servers to share an EIP, saving costs on bandwidth.</p>
|
||||
<p id="nat_pro_0002__p13728639104812">A DNAT rule is configured for one server. If there are multiple servers, you can create several DNAT rules to make the servers share one or more EIPs.</p>
|
||||
<p id="nat_pro_0002__p85761933121618"><a href="#nat_pro_0002__fig1553173645114">Figure 2</a> shows how servers in a VPC use DNAT to provide services accessible from the Internet. Servers in the following figure can be an <span id="nat_pro_0002__text36481119463">ECS</span> or a <span id="nat_pro_0002__text08439115456">BMS</span>. </p>
|
||||
<div class="fignone" id="nat_pro_0002__fig1553173645114"><a name="nat_pro_0002__fig1553173645114"></a><a name="fig1553173645114"></a><span class="figcap"><b>Figure 2 </b>Using DNAT to allow servers to provide services accessible from the Internet</span><br><span><img class="vsd" id="nat_pro_0002__image1339710270133" src="en-us_image_0201532856.png"></span></div>
|
||||
<div class="section" id="nat_pro_0002__section1572710181617"><h4 class="sectiontitle">Allowing Internet Users to Access a Service in a Private Network Using DNAT</h4><p id="nat_pro_0002__p12949184510533">DNAT rules enable servers in a VPC to provide services accessible from the Internet.</p>
|
||||
<p id="nat_pro_0002__p92531021542">After receiving requests from a specific port over a specific protocol, the public NAT gateway can forward the requests to a specific port of a server through port mapping. The NAT gateway can also forward all requests destined for an EIP to a specific server through IP address mapping.</p>
|
||||
<p id="nat_pro_0002__p13728639104812">One DNAT rule can be configured for each server. If there are multiple servers, you can create multiple DNAT rules to map one or more EIPs to the private IP addresses of these servers.</p>
|
||||
<p id="nat_pro_0002__p85761933121618"><a href="#nat_pro_0002__fig1553173645114">Figure 2</a> shows how servers in a VPC provide services accessible from the Internet using DNAT. Servers in the following figure can be an <span id="nat_pro_0002__text36481119463">ECS</span> or a <span id="nat_pro_0002__text08439115456">BMS</span>. </p>
|
||||
<div class="fignone" id="nat_pro_0002__fig1553173645114"><a name="nat_pro_0002__fig1553173645114"></a><a name="fig1553173645114"></a><span class="figcap"><b>Figure 2 </b>Allowing Internet users to access a service in a private network using DNAT</span><br><span><img class="vsd" id="nat_pro_0002__image1339710270133" src="en-us_image_0201532856.png"></span></div>
|
||||
</div>
|
||||
<div class="section" id="nat_pro_0002__section11821553320"><h4 class="sectiontitle">Using SNAT or DNAT to Communicate with the Internet at a High Speed</h4><p id="nat_pro_0002__p1922316143551">If a large number of servers in a private cloud or those connect to a VPC through Direct Connect or VPN need secure, high-speed Internet access or need to provide services accessible from the Internet, SNAT and DNAT provide this access. Typical scenarios include Internet, games, e-commerce, and finance across clouds.</p>
|
||||
<div class="section" id="nat_pro_0002__section11821553320"><h4 class="sectiontitle">Allowing On-premises Servers to Communicate with the Internet</h4><p id="nat_pro_0002__p1922316143551">In certain Internet, gaming, e-commerce, and financial scenarios, a large number of servers in a private cloud are connected to a VPC through Direct Connect or VPN. If such servers need secure, high-speed Internet access or need to provide services accessible from the Internet, you can deploy a NAT gateway and configure SNAT and DNAT rules to meet their requirements. Typical scenarios include Internet, games, e-commerce, and finance across clouds.</p>
|
||||
<p id="nat_pro_0002__p920416358294"><a href="#nat_pro_0002__fig19180043184010">Figure 3</a> shows how to communicate with the Internet at a high speed.</p>
|
||||
<div class="fignone" id="nat_pro_0002__fig19180043184010"><a name="nat_pro_0002__fig19180043184010"></a><a name="fig19180043184010"></a><span class="figcap"><b>Figure 3 </b>Using SNAT or DNAT to communicate with the Internet at a high speed</span><br><span><img class="vsd" id="nat_pro_0002__image1619975119132" src="en-us_image_0201532887.png"></span></div>
|
||||
<div class="fignone" id="nat_pro_0002__fig19180043184010"><a name="nat_pro_0002__fig19180043184010"></a><a name="fig19180043184010"></a><span class="figcap"><b>Figure 3 </b>Allowing on-premises servers to communicate with the Internet</span><br><span><img class="vsd" id="nat_pro_0002__image1619975119132" src="en-us_image_0201532887.png"></span></div>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -15,22 +15,22 @@
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="37.75377537753775%" headers="mcps1.3.2.2.4.1.2 "><p id="nat_pro_0003__p17276133693816">Direct Connect</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="27.902790279027904%" headers="mcps1.3.2.2.4.1.3 "><p id="nat_pro_0003__p1176195135314"><a href="nat_qs_0012.html">Using SNAT and DNAT Rules to Allow On-premises Servers to Communicate Over the Internet</a></p>
|
||||
<td class="cellrowborder" valign="top" width="27.902790279027904%" headers="mcps1.3.2.2.4.1.3 "><p id="nat_pro_0003__p1176195135314"><a href="nat_qs_0012.html">Allowing On-Premises Servers to Communicate with the Internet</a></p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_pro_0003__row32761236163818"><td class="cellrowborder" valign="top" width="34.34343434343434%" headers="mcps1.3.2.2.4.1.1 "><p id="nat_pro_0003__p12984510420">Local servers that need to communicate with the Internet using a NAT gateway can connect to a VPC through a VPN connection.</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="37.75377537753775%" headers="mcps1.3.2.2.4.1.2 "><p id="nat_pro_0003__p162991751441">Virtual Private Network (VPN)</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="27.902790279027904%" headers="mcps1.3.2.2.4.1.3 "><p id="nat_pro_0003__p187406591532"><a href="nat_qs_0012.html">Using SNAT and DNAT Rules to Allow On-premises Servers to Communicate Over the Internet</a></p>
|
||||
<td class="cellrowborder" valign="top" width="27.902790279027904%" headers="mcps1.3.2.2.4.1.3 "><p id="nat_pro_0003__p187406591532"><a href="nat_qs_0012.html">Allowing On-Premises Servers to Communicate with the Internet</a></p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_pro_0003__row114681019113020"><td class="cellrowborder" valign="top" width="34.34343434343434%" headers="mcps1.3.2.2.4.1.1 "><p id="nat_pro_0003__p34681419163012">Cloud servers can communicate with the Internet through NAT gateways.</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="37.75377537753775%" headers="mcps1.3.2.2.4.1.2 "><p id="nat_pro_0003__p9468181943015">Elastic Cloud Server (ECS), Bare Metal Server (BMS)</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="27.902790279027904%" headers="mcps1.3.2.2.4.1.3 "><p id="nat_pro_0003__p89181814105517"><a href="nat_qs_0001.html">Using SNAT to Access the Internet</a></p>
|
||||
<p id="nat_pro_0003__p1791851417558"><a href="nat_qs_0006.html">Using DNAT to Provide Services Accessible from the Internet</a></p>
|
||||
<td class="cellrowborder" valign="top" width="27.902790279027904%" headers="mcps1.3.2.2.4.1.3 "><p id="nat_pro_0003__p89181814105517"><a href="nat_qs_0001.html">Allowing a Private Network to Access the Internet Using SNAT</a></p>
|
||||
<p id="nat_pro_0003__p1791851417558"><a href="nat_qs_0006.html">Allowing Internet Users to Access a Service in a Private Network Using DNAT</a></p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
|
@ -6,7 +6,7 @@
|
||||
<p id="nat_pro_0004__p52017306256">You can bind an <span id="nat_pro_0004__text391655612346"></span><span id="nat_pro_0004__text3916155663418">EIP</span> to an <span id="nat_pro_0004__text17277106192119">ECS</span> in your subnet so that the <span id="nat_pro_0004__text1035717174216">ECS</span> will be able to communicate with the Internet through a fixed public IP address.</p>
|
||||
<p id="nat_pro_0004__p43949339459">Each <span id="nat_pro_0004__text167211443123414"></span><span id="nat_pro_0004__text19721543153416">EIP</span> can be used by only one <span id="nat_pro_0004__text1075016261214">ECS</span> at a time. If you want multiple ECSs in the same VPC to share an EIP, you have to use a NAT gateway. For more information, see the <a href="en-us_topic_0086739762.html">NAT Gateway User Guide</a>.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_pro_0004__section157601921152812"><h4 class="sectiontitle">SNAT Connections</h4><p id="nat_pro_0004__p8060118">An SNAT connection consists of the source IP address, source port, destination IP address, destination port, and a transport-layer protocol. The source IP address is the EIP, and the source port is the EIP port. An SNAT connection uniquely identifies a session.</p>
|
||||
<div class="section" id="nat_pro_0004__section157601921152812"><h4 class="sectiontitle">SNAT Connections</h4><p id="nat_pro_0004__p8060118">An SNAT connection consists of the source IP address, source port, destination IP address, destination port, and a transport layer protocol. The source IP address is the EIP, and the source port is the EIP port. An SNAT connection uniquely identifies a session.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_pro_0004__section17561592911"><h4 class="sectiontitle">DNAT Connections</h4><p id="nat_pro_0004__p235862583114">A DNAT connection enables servers in a VPC to share an EIP to provide services accessible from the Internet.</p>
|
||||
</div>
|
||||
|
@ -4,9 +4,9 @@
|
||||
<div id="body36197125"></div>
|
||||
<div>
|
||||
<ul class="ullinks">
|
||||
<li class="ulchildlink"><strong><a href="nat_qs_0001.html">Using SNAT to Access the Internet</a></strong><br>
|
||||
<li class="ulchildlink"><strong><a href="nat_qs_0001.html">Allowing a Private Network to Access the Internet Using SNAT</a></strong><br>
|
||||
</li>
|
||||
<li class="ulchildlink"><strong><a href="nat_qs_0006.html">Using DNAT to Provide Services Accessible from the Internet</a></strong><br>
|
||||
<li class="ulchildlink"><strong><a href="nat_qs_0006.html">Allowing Internet Users to Access a Service in a Private Network Using DNAT</a></strong><br>
|
||||
</li>
|
||||
<li class="ulchildlink"><strong><a href="nat_qs_0012.html">Allowing On-Premises Servers to Communicate with the Internet</a></strong><br>
|
||||
</li>
|
||||
|
@ -1,6 +1,6 @@
|
||||
<a name="nat_qs_0001"></a><a name="nat_qs_0001"></a>
|
||||
|
||||
<h1 class="topictitle1">Using SNAT to Access the Internet</h1>
|
||||
<h1 class="topictitle1">Allowing a Private Network to Access the Internet Using SNAT</h1>
|
||||
<div id="body1534986380053"></div>
|
||||
<div>
|
||||
<ul class="ullinks">
|
||||
|
@ -8,7 +8,7 @@
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0001.html">Using SNAT to Access the Internet</a></div>
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0001.html">Allowing a Private Network to Access the Internet Using SNAT</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
|
@ -3,9 +3,9 @@
|
||||
<h1 class="topictitle1">Step 2: Create a Public NAT Gateway</h1>
|
||||
<div id="body1534986796066"><div class="section" id="nat_qs_0003__section141051954102215"><h4 class="sectiontitle">Scenarios</h4><p id="nat_qs_0003__p10333111152318">This section guides you on how to create a <span id="nat_qs_0003__ph8941752122618">public NAT gateway</span> to enable your servers to access the Internet or to provide services available from the Internet.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_qs_0003__section1825861973713"><h4 class="sectiontitle">Prerequisites</h4><ul id="nat_qs_0003__ul636110619419"><li id="nat_qs_0003__li1254158594232">When creating a public NAT gateway, you must specify its VPC and subnet.</li><li id="nat_qs_0003__li5452164124220">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="nat_qs_0003__ph128345147562">buy</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="nat_qs_0003__ph864111188566">buy</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</li></ul>
|
||||
<div class="section" id="nat_qs_0003__section1825861973713"><h4 class="sectiontitle">Prerequisites</h4><ul id="nat_qs_0003__ul636110619419"><li id="nat_qs_0003__li1254158594232">When creating a public NAT gateway, you must specify its VPC and subnet.</li><li id="nat_qs_0003__li5452164124220">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="nat_qs_0003__ph128345147562">create</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="nat_qs_0003__ph864111188566">create</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</li></ul>
|
||||
</div>
|
||||
<div class="section" id="nat_qs_0003__section82633199366"><h4 class="sectiontitle">Procedure</h4><ol id="nat_qs_0003__ol2070251494311"><li id="nat_qs_0003__li53188416141933">Log in to the management console.</li><li id="nat_qs_0003__li840318282158">Click <span><img id="nat_qs_0003__en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_qs_0003__li1049617094325">Under <strong id="nat_qs_0003__b103494306165">Network</strong>, select <strong id="nat_qs_0003__b3356930191617">NAT Gateway</strong>.</li><li id="nat_qs_0003__li28802123174347">On the displayed page, click <strong id="nat_qs_0003__b84071953191717">Create Public NAT Gateway</strong>.<div class="fignone" id="nat_qs_0003__fig962115511086"><span class="figcap"><b>Figure 1 </b>Create NAT Gateway</span><br><span><img id="nat_qs_0003__image13495511775" src="en-us_image_0000001575387178.png"></span></div>
|
||||
<div class="section" id="nat_qs_0003__section82633199366"><h4 class="sectiontitle">Procedure</h4><ol id="nat_qs_0003__ol2070251494311"><li id="nat_qs_0003__li53188416141933">Log in to the management console.</li><li id="nat_qs_0003__li840318282158">Click <span><img id="nat_qs_0003__en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_qs_0003__li1049617094325">Under <strong id="nat_qs_0003__b103494306165">Network</strong>, select <strong id="nat_qs_0003__b3356930191617">NAT Gateway</strong>.</li><li id="nat_qs_0003__li28802123174347">On the displayed page, click On the displayed page, click <strong id="nat_qs_0003__b16542192242">Create Public NAT Gateway</strong>.<div class="fignone" id="nat_qs_0003__fig962115511086"><span class="figcap"><b>Figure 1 </b>Create Public NAT Gateway</span><br><span><img id="nat_qs_0003__image20387154511242" src="en-us_image_0000001688885996.png"></span></div>
|
||||
</li><li id="nat_qs_0003__li1053628121954">Configure the parameters as prompted. For details, see <a href="#nat_qs_0003__table27487005195751">Table 1</a>.
|
||||
<div class="tablenoborder"><a name="nat_qs_0003__table27487005195751"></a><a name="table27487005195751"></a><table cellpadding="4" cellspacing="0" summary="" id="nat_qs_0003__table27487005195751" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Parameter descriptions of a public NAT gateway</caption><thead align="left"><tr id="nat_qs_0003__row9940336195751"><th align="left" class="cellrowborder" valign="top" width="25%" id="mcps1.3.3.2.5.2.2.3.1.1"><p id="nat_qs_0003__p5995559819588"><strong id="nat_qs_0003__b24725868162658">Parameter</strong></p>
|
||||
</th>
|
||||
@ -20,14 +20,14 @@
|
||||
</tr>
|
||||
<tr id="nat_qs_0003__row32613315195751"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0003__p2832836319588">Name</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0003__p1289605119588">The name of the NAT gateway. The name can contain a maximum of 64 characters and only digits, letters, underscores (_), and hyphens (-) are allowed.</p>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0003__p1289605119588">The name of the NAT gateway. Enter up to 64 characters including only digits, letters, underscores (_), and hyphens (-).</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_qs_0003__row27553870195751"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0003__p1464780019588">VPC</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0003__p4562116519588">The VPC that the NAT gateway belongs to. Select a VPC which is not used by any other NAT gateways and has no default route. </p>
|
||||
<p id="nat_qs_0003__p13668174021018">You can change the VPC only when you are creating the NAT gateway. After the NAT gateway is created, you cannot modify the VPC.</p>
|
||||
<div class="note" id="nat_qs_0003__note1378963764012"><span class="notetitle"> NOTE: </span><div class="notebody"><p id="nat_qs_0003__p279033714015">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="nat_qs_0003__ph195554115432">buy</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="nat_qs_0003__ph455541164313">buy</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</p>
|
||||
<div class="note" id="nat_qs_0003__note1378963764012"><span class="notetitle"> NOTE: </span><div class="notebody"><p id="nat_qs_0003__p279033714015">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="nat_qs_0003__ph195554115432">create</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="nat_qs_0003__ph455541164313">create</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</p>
|
||||
</div></div>
|
||||
</td>
|
||||
</tr>
|
||||
@ -41,12 +41,12 @@
|
||||
<tr id="nat_qs_0003__row3011590195751"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0003__p1770884719588">Specifications</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0003__p156313256519">The specifications of the NAT gateway.</p>
|
||||
<p id="nat_qs_0003__p03201316191210">The option can be <strong id="nat_qs_0003__b842352706152120">Small</strong>, <strong id="nat_qs_0003__b842352706152124">Medium</strong>, <strong id="nat_qs_0003__b842352706152128">Large</strong>, and <strong id="nat_qs_0003__b842352706152132">Extra-large</strong>. You can click <strong id="nat_qs_0003__b842352706152252">Learn more</strong> on the page to view details about each specifications.</p>
|
||||
<p id="nat_qs_0003__p03201316191210">The option can be <strong id="nat_qs_0003__b32021426401">Micro</strong>, <strong id="nat_qs_0003__b842352706152120">Small</strong>, <strong id="nat_qs_0003__b842352706152124">Medium</strong>, <strong id="nat_qs_0003__b842352706152128">Large</strong>, and <strong id="nat_qs_0003__b842352706152132">Extra-large</strong>. You can click <strong id="nat_qs_0003__b842352706152252">Learn more</strong> on the page to view details about each specification.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_qs_0003__row2219225792544"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0003__p5274235692544">Description</p>
|
||||
<tr id="nat_qs_0003__row98721653013"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0003__p58721651500">Enterprise Project</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0003__p4427248192544">Supplementary information about the NAT gateway. The description can contain up to 255 characters.</p>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0003__p187218519019">The enterprise project that the NAT gateway belongs to. If an enterprise project is configured for a NAT gateway, the NAT gateway belongs to this enterprise project. If you do not specify an enterprise project, enterprise project <strong id="nat_qs_0003__b842352706182723">default</strong> will be used.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_qs_0003__row29995813516"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0003__p119916585518">Tag</p>
|
||||
@ -55,6 +55,11 @@
|
||||
<p id="nat_qs_0003__en-us_topic_0030971658_en-us_topic_0013935842_p39052702211138">The tag key and value must meet the requirements listed in <a href="#nat_qs_0003__en-us_topic_0030971658_en-us_topic_0013935842_table248245914136">Table 2</a>.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_qs_0003__row3901010961"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0003__p5274235692544">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0003__p4427248192544">Supplementary information about the NAT gateway. Enter up to 255 characters. Angle brackets (<>) are not allowed.</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
</table>
|
||||
</div>
|
||||
@ -132,7 +137,7 @@
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0001.html">Using SNAT to Access the Internet</a></div>
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0001.html">Allowing a Private Network to Access the Internet Using SNAT</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
|
@ -46,7 +46,7 @@
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="27.529999999999998%" headers="mcps1.3.3.2.6.2.2.4.1.2 "><p id="nat_qs_0004__p164312400527">N/A</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="56.410000000000004%" headers="mcps1.3.3.2.6.2.2.4.1.3 "><p id="nat_qs_0004__p4427248192544">Supplementary information about the SNAT rule. The description can contain up to 255 characters.</p>
|
||||
<td class="cellrowborder" valign="top" width="56.410000000000004%" headers="mcps1.3.3.2.6.2.2.4.1.3 "><p id="nat_qs_0004__p4427248192544">Supplementary information about the SNAT rule. Enter up to 255 characters. Angle brackets (<>) are not allowed.</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
@ -59,7 +59,7 @@
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0001.html">Using SNAT to Access the Internet</a></div>
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0001.html">Allowing a Private Network to Access the Internet Using SNAT</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
|
@ -12,7 +12,7 @@
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0001.html">Using SNAT to Access the Internet</a></div>
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0001.html">Allowing a Private Network to Access the Internet Using SNAT</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
|
@ -1,6 +1,6 @@
|
||||
<a name="nat_qs_0006"></a><a name="nat_qs_0006"></a>
|
||||
|
||||
<h1 class="topictitle1">Using DNAT to Provide Services Accessible from the Internet</h1>
|
||||
<h1 class="topictitle1">Allowing Internet Users to Access a Service in a Private Network Using DNAT</h1>
|
||||
<div id="body1534986380053"></div>
|
||||
<div>
|
||||
<ul class="ullinks">
|
||||
|
@ -7,7 +7,7 @@
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0006.html">Using DNAT to Provide Services Accessible from the Internet</a></div>
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0006.html">Allowing Internet Users to Access a Service in a Private Network Using DNAT</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
|
@ -8,7 +8,7 @@
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0006.html">Using DNAT to Provide Services Accessible from the Internet</a></div>
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0006.html">Allowing Internet Users to Access a Service in a Private Network Using DNAT</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
|
@ -3,9 +3,9 @@
|
||||
<h1 class="topictitle1">Step 2: Create a Public NAT Gateway</h1>
|
||||
<div id="body1534986796067"><div class="section" id="nat_qs_0009__nat_qs_0003_section141051954102215"><h4 class="sectiontitle">Scenarios</h4><p id="nat_qs_0009__nat_qs_0003_p10333111152318">This section guides you on how to create a <span id="nat_qs_0009__nat_qs_0003_ph8941752122618">public NAT gateway</span> to enable your servers to access the Internet or to provide services available from the Internet.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_qs_0009__nat_qs_0003_section1825861973713"><h4 class="sectiontitle">Prerequisites</h4><ul id="nat_qs_0009__nat_qs_0003_ul636110619419"><li id="nat_qs_0009__nat_qs_0003_li1254158594232">When creating a public NAT gateway, you must specify its VPC and subnet.</li><li id="nat_qs_0009__nat_qs_0003_li5452164124220">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="nat_qs_0009__nat_qs_0003_ph128345147562">buy</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="nat_qs_0009__nat_qs_0003_ph864111188566">buy</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</li></ul>
|
||||
<div class="section" id="nat_qs_0009__nat_qs_0003_section1825861973713"><h4 class="sectiontitle">Prerequisites</h4><ul id="nat_qs_0009__nat_qs_0003_ul636110619419"><li id="nat_qs_0009__nat_qs_0003_li1254158594232">When creating a public NAT gateway, you must specify its VPC and subnet.</li><li id="nat_qs_0009__nat_qs_0003_li5452164124220">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="nat_qs_0009__nat_qs_0003_ph128345147562">create</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="nat_qs_0009__nat_qs_0003_ph864111188566">create</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</li></ul>
|
||||
</div>
|
||||
<div class="section" id="nat_qs_0009__nat_qs_0003_section82633199366"><h4 class="sectiontitle">Procedure</h4><ol id="nat_qs_0009__nat_qs_0003_ol2070251494311"><li id="nat_qs_0009__nat_qs_0003_li53188416141933">Log in to the management console.</li><li id="nat_qs_0009__nat_qs_0003_li840318282158">Click <span><img id="nat_qs_0009__nat_qs_0003_en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_qs_0009__nat_qs_0003_li1049617094325">Under <strong id="nat_qs_0009__nat_qs_0003_b103494306165">Network</strong>, select <strong id="nat_qs_0009__nat_qs_0003_b3356930191617">NAT Gateway</strong>.</li><li id="nat_qs_0009__nat_qs_0003_li28802123174347">On the displayed page, click <strong id="nat_qs_0009__nat_qs_0003_b84071953191717">Create Public NAT Gateway</strong>.<div class="fignone" id="nat_qs_0009__nat_qs_0003_fig962115511086"><span class="figcap"><b>Figure 1 </b>Create NAT Gateway</span><br><span><img id="nat_qs_0009__nat_qs_0003_image13495511775" src="en-us_image_0000001575387178.png"></span></div>
|
||||
<div class="section" id="nat_qs_0009__nat_qs_0003_section82633199366"><h4 class="sectiontitle">Procedure</h4><ol id="nat_qs_0009__nat_qs_0003_ol2070251494311"><li id="nat_qs_0009__nat_qs_0003_li53188416141933">Log in to the management console.</li><li id="nat_qs_0009__nat_qs_0003_li840318282158">Click <span><img id="nat_qs_0009__nat_qs_0003_en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_qs_0009__nat_qs_0003_li1049617094325">Under <strong id="nat_qs_0009__nat_qs_0003_b103494306165">Network</strong>, select <strong id="nat_qs_0009__nat_qs_0003_b3356930191617">NAT Gateway</strong>.</li><li id="nat_qs_0009__nat_qs_0003_li28802123174347">On the displayed page, click On the displayed page, click <strong id="nat_qs_0009__nat_qs_0003_b16542192242">Create Public NAT Gateway</strong>.<div class="fignone" id="nat_qs_0009__nat_qs_0003_fig962115511086"><span class="figcap"><b>Figure 1 </b>Create Public NAT Gateway</span><br><span><img id="nat_qs_0009__nat_qs_0003_image20387154511242" src="en-us_image_0000001688885996.png"></span></div>
|
||||
</li><li id="nat_qs_0009__nat_qs_0003_li1053628121954">Configure the parameters as prompted. For details, see <a href="#nat_qs_0009__nat_qs_0003_table27487005195751">Table 1</a>.
|
||||
<div class="tablenoborder"><a name="nat_qs_0009__nat_qs_0003_table27487005195751"></a><a name="nat_qs_0003_table27487005195751"></a><table cellpadding="4" cellspacing="0" summary="" id="nat_qs_0009__nat_qs_0003_table27487005195751" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Parameter descriptions of a public NAT gateway</caption><thead align="left"><tr id="nat_qs_0009__nat_qs_0003_row9940336195751"><th align="left" class="cellrowborder" valign="top" width="25%" id="mcps1.3.3.2.5.2.2.3.1.1"><p id="nat_qs_0009__nat_qs_0003_p5995559819588"><strong id="nat_qs_0009__nat_qs_0003_b24725868162658">Parameter</strong></p>
|
||||
</th>
|
||||
@ -20,14 +20,14 @@
|
||||
</tr>
|
||||
<tr id="nat_qs_0009__nat_qs_0003_row32613315195751"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0009__nat_qs_0003_p2832836319588">Name</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0009__nat_qs_0003_p1289605119588">The name of the NAT gateway. The name can contain a maximum of 64 characters and only digits, letters, underscores (_), and hyphens (-) are allowed.</p>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0009__nat_qs_0003_p1289605119588">The name of the NAT gateway. Enter up to 64 characters including only digits, letters, underscores (_), and hyphens (-).</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_qs_0009__nat_qs_0003_row27553870195751"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0009__nat_qs_0003_p1464780019588">VPC</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0009__nat_qs_0003_p4562116519588">The VPC that the NAT gateway belongs to. Select a VPC which is not used by any other NAT gateways and has no default route. </p>
|
||||
<p id="nat_qs_0009__nat_qs_0003_p13668174021018">You can change the VPC only when you are creating the NAT gateway. After the NAT gateway is created, you cannot modify the VPC.</p>
|
||||
<div class="note" id="nat_qs_0009__nat_qs_0003_note1378963764012"><span class="notetitle"> NOTE: </span><div class="notebody"><p id="nat_qs_0009__nat_qs_0003_p279033714015">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="nat_qs_0009__nat_qs_0003_ph195554115432">buy</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="nat_qs_0009__nat_qs_0003_ph455541164313">buy</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</p>
|
||||
<div class="note" id="nat_qs_0009__nat_qs_0003_note1378963764012"><span class="notetitle"> NOTE: </span><div class="notebody"><p id="nat_qs_0009__nat_qs_0003_p279033714015">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="nat_qs_0009__nat_qs_0003_ph195554115432">create</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="nat_qs_0009__nat_qs_0003_ph455541164313">create</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</p>
|
||||
</div></div>
|
||||
</td>
|
||||
</tr>
|
||||
@ -41,12 +41,12 @@
|
||||
<tr id="nat_qs_0009__nat_qs_0003_row3011590195751"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0009__nat_qs_0003_p1770884719588">Specifications</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0009__nat_qs_0003_p156313256519">The specifications of the NAT gateway.</p>
|
||||
<p id="nat_qs_0009__nat_qs_0003_p03201316191210">The option can be <strong id="nat_qs_0009__nat_qs_0003_b842352706152120">Small</strong>, <strong id="nat_qs_0009__nat_qs_0003_b842352706152124">Medium</strong>, <strong id="nat_qs_0009__nat_qs_0003_b842352706152128">Large</strong>, and <strong id="nat_qs_0009__nat_qs_0003_b842352706152132">Extra-large</strong>. You can click <strong id="nat_qs_0009__nat_qs_0003_b842352706152252">Learn more</strong> on the page to view details about each specifications.</p>
|
||||
<p id="nat_qs_0009__nat_qs_0003_p03201316191210">The option can be <strong id="nat_qs_0009__nat_qs_0003_b32021426401">Micro</strong>, <strong id="nat_qs_0009__nat_qs_0003_b842352706152120">Small</strong>, <strong id="nat_qs_0009__nat_qs_0003_b842352706152124">Medium</strong>, <strong id="nat_qs_0009__nat_qs_0003_b842352706152128">Large</strong>, and <strong id="nat_qs_0009__nat_qs_0003_b842352706152132">Extra-large</strong>. You can click <strong id="nat_qs_0009__nat_qs_0003_b842352706152252">Learn more</strong> on the page to view details about each specification.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_qs_0009__nat_qs_0003_row2219225792544"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0009__nat_qs_0003_p5274235692544">Description</p>
|
||||
<tr id="nat_qs_0009__nat_qs_0003_row98721653013"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0009__nat_qs_0003_p58721651500">Enterprise Project</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0009__nat_qs_0003_p4427248192544">Supplementary information about the NAT gateway. The description can contain up to 255 characters.</p>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0009__nat_qs_0003_p187218519019">The enterprise project that the NAT gateway belongs to. If an enterprise project is configured for a NAT gateway, the NAT gateway belongs to this enterprise project. If you do not specify an enterprise project, enterprise project <strong id="nat_qs_0009__nat_qs_0003_b842352706182723">default</strong> will be used.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_qs_0009__nat_qs_0003_row29995813516"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0009__nat_qs_0003_p119916585518">Tag</p>
|
||||
@ -55,6 +55,11 @@
|
||||
<p id="nat_qs_0009__nat_qs_0003_en-us_topic_0030971658_en-us_topic_0013935842_p39052702211138">The tag key and value must meet the requirements listed in <a href="#nat_qs_0009__nat_qs_0003_en-us_topic_0030971658_en-us_topic_0013935842_table248245914136">Table 2</a>.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_qs_0009__nat_qs_0003_row3901010961"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0009__nat_qs_0003_p5274235692544">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0009__nat_qs_0003_p4427248192544">Supplementary information about the NAT gateway. Enter up to 255 characters. Angle brackets (<>) are not allowed.</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
</table>
|
||||
</div>
|
||||
@ -132,7 +137,7 @@
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0006.html">Using DNAT to Provide Services Accessible from the Internet</a></div>
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0006.html">Allowing Internet Users to Access a Service in a Private Network Using DNAT</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
|
@ -68,7 +68,7 @@
|
||||
</tr>
|
||||
<tr id="nat_qs_0010__row125944237172"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.7.2.2.3.1.1 "><p id="nat_qs_0010__p143001256183">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.7.2.2.3.1.2 "><p id="nat_qs_0010__p530016551816">Supplementary information about the DNAT rule. The description can contain up to 255 characters.</p>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.7.2.2.3.1.2 "><p id="nat_qs_0010__p530016551816">Supplementary information about the DNAT rule. Enter up to 255 characters. Angle brackets (<>) are not allowed.</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
@ -79,7 +79,7 @@
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0006.html">Using DNAT to Provide Services Accessible from the Internet</a></div>
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0006.html">Allowing Internet Users to Access a Service in a Private Network Using DNAT</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
|
@ -15,7 +15,7 @@
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0006.html">Using DNAT to Provide Services Accessible from the Internet</a></div>
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="nat_qs_0006.html">Allowing Internet Users to Access a Service in a Private Network Using DNAT</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
|
@ -3,7 +3,7 @@
|
||||
<h1 class="topictitle1">Step 1: Create a Direct Connect Connection</h1>
|
||||
<div id="body1545100417210"><div class="section" id="nat_qs_0014__section1567411341994"><h4 class="sectiontitle">Scenarios</h4><p id="nat_qs_0014__p1122611391292">Create a Direct Connect connection for connecting a VPC to your data center before enabling your servers in the data center to access the Internet or to provide services accessible from the Internet through NAT gateways.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_qs_0014__section0336142622014"><h4 class="sectiontitle">Procedure</h4><p id="nat_qs_0014__p2507165211207">For details on how to enable Direct Connect, see the <a href="https://docs.otc.t-systems.com/direct-connect/umn/" target="_blank" rel="noopener noreferrer">Enabling Direct Connect</a> in the <em id="nat_qs_0014__i520165818349">Direct Connect User Guide</em>. If you enable Direct Connect in self-service mode, you are advised to set the VPC CIDR block to <strong id="nat_qs_0014__b4103115415357">0.0.0.0/0</strong>.</p>
|
||||
<div class="section" id="nat_qs_0014__section0336142622014"><h4 class="sectiontitle">Procedure</h4><p id="nat_qs_0014__p2507165211207">For details on how to enable Direct Connect, see the <a href="https://docs.otc.t-systems.com/direct-connect/umn/" target="_blank" rel="noopener noreferrer">Enabling Direct Connect</a> in the <em id="nat_qs_0014__i520165818349">Direct Connect User Guide</em>. If you enable Direct Connect in self-service mode, set the VPC CIDR block to <strong id="nat_qs_0014__b4103115415357">0.0.0.0/0</strong>.</p>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -3,9 +3,9 @@
|
||||
<h1 class="topictitle1">Step 3: Create a Public NAT Gateway</h1>
|
||||
<div id="body0000001178109069"><div class="section" id="nat_qs_0016__section141051954102215"><h4 class="sectiontitle">Scenarios</h4><p id="nat_qs_0016__nat_qs_0003_p10333111152318">This section guides you on how to create a <span id="nat_qs_0016__nat_qs_0003_ph8941752122618">public NAT gateway</span> to enable your servers to access the Internet or to provide services available from the Internet.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_qs_0016__section1825861973713"><h4 class="sectiontitle">Prerequisites</h4><ul id="nat_qs_0016__nat_qs_0003_ul636110619419"><li id="nat_qs_0016__nat_qs_0003_li1254158594232">When creating a public NAT gateway, you must specify its VPC and subnet.</li><li id="nat_qs_0016__nat_qs_0003_li5452164124220">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="nat_qs_0016__nat_qs_0003_ph128345147562">buy</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="nat_qs_0016__nat_qs_0003_ph864111188566">buy</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</li></ul>
|
||||
<div class="section" id="nat_qs_0016__section1825861973713"><h4 class="sectiontitle">Prerequisites</h4><ul id="nat_qs_0016__nat_qs_0003_ul636110619419"><li id="nat_qs_0016__nat_qs_0003_li1254158594232">When creating a public NAT gateway, you must specify its VPC and subnet.</li><li id="nat_qs_0016__nat_qs_0003_li5452164124220">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="nat_qs_0016__nat_qs_0003_ph128345147562">create</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="nat_qs_0016__nat_qs_0003_ph864111188566">create</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</li></ul>
|
||||
</div>
|
||||
<div class="section" id="nat_qs_0016__section82633199366"><h4 class="sectiontitle">Procedure</h4><ol id="nat_qs_0016__nat_qs_0003_ol2070251494311"><li id="nat_qs_0016__nat_qs_0003_li53188416141933">Log in to the management console.</li><li id="nat_qs_0016__nat_qs_0003_li840318282158">Click <span><img id="nat_qs_0016__nat_qs_0003_en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_qs_0016__nat_qs_0003_li1049617094325">Under <strong id="nat_qs_0016__nat_qs_0003_b103494306165">Network</strong>, select <strong id="nat_qs_0016__nat_qs_0003_b3356930191617">NAT Gateway</strong>.</li><li id="nat_qs_0016__nat_qs_0003_li28802123174347">On the displayed page, click <strong id="nat_qs_0016__nat_qs_0003_b84071953191717">Create Public NAT Gateway</strong>.<div class="fignone" id="nat_qs_0016__nat_qs_0003_fig962115511086"><span class="figcap"><b>Figure 1 </b>Create NAT Gateway</span><br><span><img id="nat_qs_0016__nat_qs_0003_image13495511775" src="en-us_image_0000001575387178.png"></span></div>
|
||||
<div class="section" id="nat_qs_0016__section82633199366"><h4 class="sectiontitle">Procedure</h4><ol id="nat_qs_0016__nat_qs_0003_ol2070251494311"><li id="nat_qs_0016__nat_qs_0003_li53188416141933">Log in to the management console.</li><li id="nat_qs_0016__nat_qs_0003_li840318282158">Click <span><img id="nat_qs_0016__nat_qs_0003_en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_qs_0016__nat_qs_0003_li1049617094325">Under <strong id="nat_qs_0016__nat_qs_0003_b103494306165">Network</strong>, select <strong id="nat_qs_0016__nat_qs_0003_b3356930191617">NAT Gateway</strong>.</li><li id="nat_qs_0016__nat_qs_0003_li28802123174347">On the displayed page, click On the displayed page, click <strong id="nat_qs_0016__nat_qs_0003_b16542192242">Create Public NAT Gateway</strong>.<div class="fignone" id="nat_qs_0016__nat_qs_0003_fig962115511086"><span class="figcap"><b>Figure 1 </b>Create Public NAT Gateway</span><br><span><img id="nat_qs_0016__nat_qs_0003_image20387154511242" src="en-us_image_0000001688885996.png"></span></div>
|
||||
</li><li id="nat_qs_0016__nat_qs_0003_li1053628121954">Configure the parameters as prompted. For details, see <a href="#nat_qs_0016__nat_qs_0003_table27487005195751">Table 1</a>.
|
||||
<div class="tablenoborder"><a name="nat_qs_0016__nat_qs_0003_table27487005195751"></a><a name="nat_qs_0003_table27487005195751"></a><table cellpadding="4" cellspacing="0" summary="" id="nat_qs_0016__nat_qs_0003_table27487005195751" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Parameter descriptions of a public NAT gateway</caption><thead align="left"><tr id="nat_qs_0016__nat_qs_0003_row9940336195751"><th align="left" class="cellrowborder" valign="top" width="25%" id="mcps1.3.3.2.5.2.2.3.1.1"><p id="nat_qs_0016__nat_qs_0003_p5995559819588"><strong id="nat_qs_0016__nat_qs_0003_b24725868162658">Parameter</strong></p>
|
||||
</th>
|
||||
@ -20,14 +20,14 @@
|
||||
</tr>
|
||||
<tr id="nat_qs_0016__nat_qs_0003_row32613315195751"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0016__nat_qs_0003_p2832836319588">Name</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0016__nat_qs_0003_p1289605119588">The name of the NAT gateway. The name can contain a maximum of 64 characters and only digits, letters, underscores (_), and hyphens (-) are allowed.</p>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0016__nat_qs_0003_p1289605119588">The name of the NAT gateway. Enter up to 64 characters including only digits, letters, underscores (_), and hyphens (-).</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_qs_0016__nat_qs_0003_row27553870195751"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0016__nat_qs_0003_p1464780019588">VPC</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0016__nat_qs_0003_p4562116519588">The VPC that the NAT gateway belongs to. Select a VPC which is not used by any other NAT gateways and has no default route. </p>
|
||||
<p id="nat_qs_0016__nat_qs_0003_p13668174021018">You can change the VPC only when you are creating the NAT gateway. After the NAT gateway is created, you cannot modify the VPC.</p>
|
||||
<div class="note" id="nat_qs_0016__nat_qs_0003_note1378963764012"><span class="notetitle"> NOTE: </span><div class="notebody"><p id="nat_qs_0016__nat_qs_0003_p279033714015">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="nat_qs_0016__nat_qs_0003_ph195554115432">buy</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="nat_qs_0016__nat_qs_0003_ph455541164313">buy</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</p>
|
||||
<div class="note" id="nat_qs_0016__nat_qs_0003_note1378963764012"><span class="notetitle"> NOTE: </span><div class="notebody"><p id="nat_qs_0016__nat_qs_0003_p279033714015">To allow traffic to pass through the public NAT gateway, a route to the public NAT gateway in the VPC is required. When you <span id="nat_qs_0016__nat_qs_0003_ph195554115432">create</span> a public NAT gateway, a default route 0.0.0.0/0 to the public NAT gateway is automatically added to the default route table of the VPC. If the default route 0.0.0.0/0 already exists in the default route table of the VPC before you <span id="nat_qs_0016__nat_qs_0003_ph455541164313">create</span> the public NAT gateway, the default route that points to the public NAT gateway will fail to be added automatically. In this case, perform the following operations after the public NAT gateway is successfully created: Manually add a different route that points to the gateway or create a default route 0.0.0.0/0 pointing to the gateway in the new routing table.</p>
|
||||
</div></div>
|
||||
</td>
|
||||
</tr>
|
||||
@ -41,12 +41,12 @@
|
||||
<tr id="nat_qs_0016__nat_qs_0003_row3011590195751"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0016__nat_qs_0003_p1770884719588">Specifications</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0016__nat_qs_0003_p156313256519">The specifications of the NAT gateway.</p>
|
||||
<p id="nat_qs_0016__nat_qs_0003_p03201316191210">The option can be <strong id="nat_qs_0016__nat_qs_0003_b842352706152120">Small</strong>, <strong id="nat_qs_0016__nat_qs_0003_b842352706152124">Medium</strong>, <strong id="nat_qs_0016__nat_qs_0003_b842352706152128">Large</strong>, and <strong id="nat_qs_0016__nat_qs_0003_b842352706152132">Extra-large</strong>. You can click <strong id="nat_qs_0016__nat_qs_0003_b842352706152252">Learn more</strong> on the page to view details about each specifications.</p>
|
||||
<p id="nat_qs_0016__nat_qs_0003_p03201316191210">The option can be <strong id="nat_qs_0016__nat_qs_0003_b32021426401">Micro</strong>, <strong id="nat_qs_0016__nat_qs_0003_b842352706152120">Small</strong>, <strong id="nat_qs_0016__nat_qs_0003_b842352706152124">Medium</strong>, <strong id="nat_qs_0016__nat_qs_0003_b842352706152128">Large</strong>, and <strong id="nat_qs_0016__nat_qs_0003_b842352706152132">Extra-large</strong>. You can click <strong id="nat_qs_0016__nat_qs_0003_b842352706152252">Learn more</strong> on the page to view details about each specification.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_qs_0016__nat_qs_0003_row2219225792544"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0016__nat_qs_0003_p5274235692544">Description</p>
|
||||
<tr id="nat_qs_0016__nat_qs_0003_row98721653013"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0016__nat_qs_0003_p58721651500">Enterprise Project</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0016__nat_qs_0003_p4427248192544">Supplementary information about the NAT gateway. The description can contain up to 255 characters.</p>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0016__nat_qs_0003_p187218519019">The enterprise project that the NAT gateway belongs to. If an enterprise project is configured for a NAT gateway, the NAT gateway belongs to this enterprise project. If you do not specify an enterprise project, enterprise project <strong id="nat_qs_0016__nat_qs_0003_b842352706182723">default</strong> will be used.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_qs_0016__nat_qs_0003_row29995813516"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0016__nat_qs_0003_p119916585518">Tag</p>
|
||||
@ -55,6 +55,11 @@
|
||||
<p id="nat_qs_0016__nat_qs_0003_en-us_topic_0030971658_en-us_topic_0013935842_p39052702211138">The tag key and value must meet the requirements listed in <a href="#nat_qs_0016__nat_qs_0003_en-us_topic_0030971658_en-us_topic_0013935842_table248245914136">Table 2</a>.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="nat_qs_0016__nat_qs_0003_row3901010961"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.5.2.2.3.1.1 "><p id="nat_qs_0016__nat_qs_0003_p5274235692544">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.5.2.2.3.1.2 "><p id="nat_qs_0016__nat_qs_0003_p4427248192544">Supplementary information about the NAT gateway. Enter up to 255 characters. Angle brackets (<>) are not allowed.</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
</table>
|
||||
</div>
|
||||
|
@ -33,7 +33,7 @@
|
||||
</tr>
|
||||
<tr id="nat_qs_0017__row1753821075512"><td class="cellrowborder" valign="top" width="34.36%" headers="mcps1.3.3.3.5.2.2.3.1.1 "><p id="nat_qs_0017__p5274235692544">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="65.64%" headers="mcps1.3.3.3.5.2.2.3.1.2 "><p id="nat_qs_0017__p4427248192544">Supplementary information about the SNAT rule. The description can contain up to 255 characters.</p>
|
||||
<td class="cellrowborder" valign="top" width="65.64%" headers="mcps1.3.3.3.5.2.2.3.1.2 "><p id="nat_qs_0017__p4427248192544">Supplementary information about the SNAT rule. Enter up to 255 characters. Angle brackets (<>) are not allowed.</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
|
@ -7,7 +7,6 @@
|
||||
<div class="section" id="nat_qs_0018__section36544171152448"><h4 class="sectiontitle">Prerequisites</h4><p id="nat_qs_0018__p2560058615252">A NAT gateway has been created.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_qs_0018__section61166376152513"><h4 class="sectiontitle">Procedure</h4><ol id="nat_qs_0018__ol59255157152617"><li id="nat_qs_0018__li25980584101236">Log in to the management console.</li><li id="nat_qs_0018__li840318282158">Click <span><img id="nat_qs_0018__en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_qs_0018__li1049617094325">Under <strong id="nat_qs_0018__b169137235189">Network</strong>, select <strong id="nat_qs_0018__b10913132317182">NAT Gateway</strong>.</li><li id="nat_qs_0018__li8610102724918">On the displayed page, click the name of the NAT gateway for which you want to add the DNAT rule.</li><li id="nat_qs_0018__li188821748185212">On the NAT gateway details page, click the <strong id="nat_qs_0018__b137434457388">DNAT Rules</strong> tab.</li><li id="nat_qs_0018__li7563844165416">Click <strong id="nat_qs_0018__b5133848124118">Add DNAT Rule</strong>.<div class="fignone" id="nat_qs_0018__fig1728320514312"><span class="figcap"><b>Figure 1 </b>Add DNAT Rule</span><br><span><img id="nat_qs_0018__nat_qs_0010_image173284386186" src="en-us_image_0000001576425382.png"></span></div>
|
||||
<p id="nat_qs_0018__p575717274335"></p>
|
||||
</li><li id="nat_qs_0018__li54168351144127">Configure the parameters as prompted. For details, see <a href="#nat_qs_0018__table30787259144637">Table 1</a>.
|
||||
<div class="tablenoborder"><a name="nat_qs_0018__table30787259144637"></a><a name="table30787259144637"></a><table cellpadding="4" cellspacing="0" summary="" id="nat_qs_0018__table30787259144637" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Parameter descriptions</caption><thead align="left"><tr id="nat_qs_0018__row1287982144637"><th align="left" class="cellrowborder" valign="top" width="25%" id="mcps1.3.3.2.7.2.2.3.1.1"><p id="nat_qs_0018__p66523784144637"><strong id="nat_qs_0018__b954171111396">Parameter</strong></p>
|
||||
</th>
|
||||
@ -68,7 +67,7 @@
|
||||
</tr>
|
||||
<tr id="nat_qs_0018__row56439570195"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.3.2.7.2.2.3.1.1 "><p id="nat_qs_0018__p1845991152012">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.7.2.2.3.1.2 "><p id="nat_qs_0018__p16459121182014">Supplementary information about the DNAT rule. The description can contain up to 255 characters.</p>
|
||||
<td class="cellrowborder" valign="top" width="75%" headers="mcps1.3.3.2.7.2.2.3.1.2 "><p id="nat_qs_0018__p16459121182014">Supplementary information about the DNAT rule. Enter up to 255 characters. Angle brackets (<>) are not allowed.</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
|
@ -5,7 +5,8 @@
|
||||
</div>
|
||||
<div class="section" id="nat_snat_0003__section1470008017545"><h4 class="sectiontitle">Prerequisites</h4><p id="nat_snat_0003__p4780206175413">An SNAT rule has been added for the NAT gateway.</p>
|
||||
</div>
|
||||
<div class="section" id="nat_snat_0003__section2184556175519"><h4 class="sectiontitle">Procedure</h4><ol id="nat_snat_0003__ol197671938162712"><li id="nat_snat_0003__li7332756163236">Log in to the management console.</li><li id="nat_snat_0003__li840318282158">Click <span><img id="nat_snat_0003__en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_snat_0003__li1049617094325">Under <strong id="nat_snat_0003__b845714262538">Network</strong>, select <strong id="nat_snat_0003__b124571926205310">NAT Gateway</strong>.</li><li id="nat_snat_0003__li8610102724918">On the displayed page, click the name of the target NAT gateway.</li><li id="nat_snat_0003__li190116535015">In the SNAT rule list, locate the row that contains the target SNAT rule and click <strong id="nat_snat_0003__b1463551132517">Delete</strong> in the <strong id="nat_snat_0003__b964361132510">Operation</strong> column.</li><li id="nat_snat_0003__li8835108115112">In the displayed dialog box, click <strong id="nat_snat_0003__b5359172984814">Yes</strong>.</li></ol>
|
||||
<div class="section" id="nat_snat_0003__section2184556175519"><h4 class="sectiontitle">Procedure</h4><ol id="nat_snat_0003__ol197671938162712"><li id="nat_snat_0003__li7332756163236">Log in to the management console.</li><li id="nat_snat_0003__li840318282158">Click <span><img id="nat_snat_0003__en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="nat_snat_0003__li1049617094325">Under <strong id="nat_snat_0003__b845714262538">Network</strong>, select <strong id="nat_snat_0003__b124571926205310">NAT Gateway</strong>.</li><li id="nat_snat_0003__li8610102724918">On the displayed page, click the name of the target NAT gateway.</li><li id="nat_snat_0003__li190116535015">In the SNAT rule list, locate the row that contains the target SNAT rule and click <strong id="nat_snat_0003__b1463551132517">Delete</strong> in the <strong id="nat_snat_0003__b964361132510">Operation</strong> column.<p id="nat_snat_0003__p5166356924"></p>
|
||||
</li><li id="nat_snat_0003__li8835108115112">In the displayed dialog box, click <strong id="nat_snat_0003__b5359172984814">Yes</strong>.</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -1,7 +1,7 @@
|
||||
<a name="nat_tag_0000"></a><a name="nat_tag_0000"></a>
|
||||
|
||||
<h1 class="topictitle1">Managing NAT Gateway Tags</h1>
|
||||
<div id="body1532335723275"><div class="section" id="nat_tag_0000__section51463883214456"><h4 class="sectiontitle">Application Scenarios</h4><p id="nat_tag_0000__aeda2eb773cd04f2da9a3e771f96a7591">A NAT gateway tag identifies the NAT gateway. Tags can be added to NAT gateways to facilitate NAT gateway identification and administration. You can add a tag to a NAT gateway when creating the NAT gateway. Alternatively, you can add a tag to a created NAT gateway on the NAT gateway details page. A maximum of 20 tags can be added to each NAT gateway.</p>
|
||||
<div id="body1532335723275"><div class="section" id="nat_tag_0000__section51463883214456"><h4 class="sectiontitle">Application Scenarios</h4><p id="nat_tag_0000__aeda2eb773cd04f2da9a3e771f96a7591">A NAT gateway tag identifies the NAT gateway. Tags can be added to NAT gateways to ease NAT gateway identification and administration. You can add a tag to a NAT gateway when creating the NAT gateway. Alternatively, you can add a tag to a created NAT gateway on the NAT gateway details page. A maximum of 20 tags can be added to each NAT gateway.</p>
|
||||
<div class="p" id="nat_tag_0000__ac8bebc90feba481aad26d28fa689e62b">A tag consists of a key and value pair. <a href="#nat_tag_0000__ted9687ca14074ef785241145365a6175">Table 1</a> lists the tag key and value requirements.
|
||||
<div class="tablenoborder"><a name="nat_tag_0000__ted9687ca14074ef785241145365a6175"></a><a name="ted9687ca14074ef785241145365a6175"></a><table cellpadding="4" cellspacing="0" summary="" id="nat_tag_0000__ted9687ca14074ef785241145365a6175" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Tag requirements</caption><thead align="left"><tr id="nat_tag_0000__nat_qs_0003_en-us_topic_0030971658_en-us_topic_0013935842_en-us_topic_0067805752_en-us_topic_0013859511_row2997812223119"><th align="left" class="cellrowborder" valign="top" width="12.049999999999999%" id="mcps1.3.1.3.2.2.3.1.1"><p id="nat_tag_0000__nat_qs_0003_en-us_topic_0030971658_en-us_topic_0013935842_en-us_topic_0067805752_en-us_topic_0013859511_p4367076523119"><strong id="nat_tag_0000__nat_qs_0003_b204864913135">Parameter</strong></p>
|
||||
</th>
|
||||
|
Loading…
x
Reference in New Issue
Block a user