Question on Destination NAT and Firewall Rule

Hi,

We are testing V18 in my LAB and I am confused with Firewall rule and Destination NAT policy. My configuration as like:

In the Firewall Rule, Why I need Destination HOST as "ANY". If I will choose a host IP in destination Host as my SSH server then this rule is not working. Is it a bug or some specific reason for the required "ANY" in the Destination HOST field?

Parents Reply
  • Hi Paul,

    The new NAT-ing solution is far more in line with the industry however when you take the XGs previous method which was extremely clean in small to medium organisations it wasn't scalable to large ones. But the new NAT-ing method, although standardised, I feel it needs polishing a lot before it is no longer criticised.

    I am not looking forward to migrating a few of my Customers whom have 200+ firewall rules.

    Emile

Children