- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
Enhanced Security Measures in Place: To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.
04-14-2012 04:44 PM
I am interested in adding all of the IPs from a range like x.y.z.40/28 to the external interface of the PAN.
The verbiage on the GUI makes it sound as if I need to add each IP individually.
Can I add a range as listed above by entering it as x.y.z.40/28 and if so, can I then NAT inbound by individual IPs in the range by referencing the individual IP?
Thanks,
Bob
04-14-2012 05:56 PM
I don't believe you need to add the IPs to the firewall interface in order to use them in NAT policies. For example, inbound server connection with a policy that translates from a public address to a private address does not require that the public address is bound to the external firewall interface.
There's a thread that discusses this here: https://live.paloaltonetworks.com/message/5774
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!