Description

This article provides a step-by-step guide on configuring static NAT on an SRX device using the MIST UI.

Solution

Follow these steps to configure static NAT from MIST UI:

1 Navigate to Organisations > WAN > Networks:

  • Create a network with the name "internet" and configure static NAT under the same network. As shown below: (Network name should be internet otherwise MIST will not push application policy from WAN to LAN)
    • Set the Subnet IP address to 0.0.0.0 with prefix 0.

Screenshot 2024-05-24 at 7.23.14 AM.png

2. Create LAN Network under Organisations > WAN > Networks:

  • Create LAN Network (if not already created) and configure static NAT in LAN network as well. As shown below:

Screenshot 2024-05-24 at 7.23.29 AM.png

3. Create Application for external IP for static NAT. (Organisations > WAN > Applications)

Screenshot 2024-05-24 at 12.21.21 AM.png

4. Create Application Policies:

  • Two policies are required for LAN to WAN and WAN to LAN traffic.

Screenshot 2024-05-24 at 12.25.47 AM.png

 

Modification History

2024-05-13 : Article Created