F5 BIG-IP does not use Virtual Servers for NAT mapping (one-way) mapping (method 1)
I mainly do configuration backup.
Background note:
F5 is used as a network load. There are two links, Unicom and Telecom.
The internal service is forwarded and provided by NGINX service. The address is 192.168.1.100 and the port is 20000.
The mapped public network address is 10.10.10.1 (the actual address is not this), and the port is 20000
It is required to print out the source IP address of the access record in the NGINX access log for analysis.
In the F5 firewall, configure the NAT List list
Note: this method does full port mapping and requires security settings for the mapping server.
Steps
1. Open the firewall to enter the configuration page
Find Local Traffic-address Translation----NAT List
Select Create in the upper right corner to open a new window
Fill in the relevant information and click Finished to complete the creation work.
In the following figure, you can see that the newly created mapping entry indicates that it can be accessed normally after it has been successfully created.