检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
Under Networking, select NAT Gateway. In the public NAT gateway list, locate the NAT gateway and check whether its status is Running. If yes, check the next item. If no, the possible causes are as follows: The public NAT gateway is not renewed in time. Renew the subscription.
Scenarios This section describes how to view NAT Gateway metrics. Procedure Log in to the management console. In the upper left corner, select the target region. Under Management & Governance, select Cloud Eye.
Procedure Go to the public NAT gateway list page. Click the name of the public NAT gateway. In the SNAT rule list, locate the row that contains the SNAT rule you want to delete and click Delete in the Operation column. Enter DELETE in the displayed dialog box and click OK.
Adding an SNAT Rule Go to the public NAT gateway list page. On the displayed page, click the name of the public NAT gateway on which you need to add an SNAT rule. On the SNAT Rules tab, click Add SNAT Rule. Figure 1 Add SNAT Rule Configure required parameters.
Constraints You can update the EIP ID only when status of the SNAT rule is set to ACTIVE and admin_state_up of the NAT gateway administrator to True.
Viewing Traces Scenarios CTS records the operations performed on NAT Gateway and allows you to view the operation records of the last seven days on the CTS console. This topic describes how to query these records. Procedure Log in to the management console.
Procedure Go to the private NAT gateway list page. On the Private NAT Gateways page, click the name of the private NAT gateway. On the private NAT gateway details page, click the DNAT Rules tab.
A maximum of 200 DNAT rules can be added on a public NAT gateway. Procedure Go to the public NAT gateway list page. On the displayed page, click the name of the public NAT gateway on which you need to add a DNAT rule.
Supported range: 0 to 65535 nat_gateway_id String Specifies the public NAT gateway ID. global_eip_id String Specifies the global EIP ID.
Step 1: Create a Public NAT Gateway Go to the NAT Gateway console. Click Buy Public NAT Gateway and set the parameters by referring to Table 1. For details, see Buying a Public NAT Gateway.
Prerequisites A private NAT gateway is available. A transit IP address is available. A Direct Connect connection has been created with the VPC CIDR block set to 0.0.0.0/0. For details, see Create a Virtual Gateway. Procedure Go to the private NAT gateway list page.
Prerequisites A private NAT gateway is available. A transit IP address is available. Procedure Go to the private NAT gateway list page. On the Private NAT Gateways page, click the name of the private NAT gateway on which you need to add a DNAT rule.
Return to the Public NAT Gateway page and check whether Billing Mode of the Public NAT gateway has changed to Yearly/Monthly. Parent topic: Billing Mode Changes
Procedure Go to the private NAT gateway list page. In the Transit IP Addresses tab, locate the transit IP address you want to release and click Release in the Operation column. Click OK.
Table 2 Common operations supported by each system-defined policy or role of NAT Gateway Operation NAT FullAccess NAT ReadOnlyAccess NAT Gateway Administrator Creating a NAT gateway √ x √ Querying NAT gateways √ √ √ Querying NAT gateway details √ √ √ Updating a NAT gateway √ x √ Deleting
Procedure Go to the private NAT gateway list page. On the Private NAT Gateways page, click the name of the private NAT gateway. In the SNAT rule list, locate the row that contains the SNAT rule you want to delete and click Delete in the Operation column.
Step 4: Create a Route Table Scenarios Each public NAT gateway requires its unique route table. Create the second route table for the VPC. If the custom route table quota is insufficient, create a service ticket to increase the route table quota.
If you change the billing mode of a public NAT gateway from pay-per-use to yearly/monthly, the new billing mode will take effect immediately. Private NAT gateway supports only the pay-per-use billing mode (hourly) and the billing mode cannot be changed.
NAT Gateway does not provide access control and can only forward traffic based on rules. To restrict access to some websites, you can configure security groups and ACL rules. For details, see Security Group Configuration Examples and Network ACL Configuration Examples.
For details, see NAT Gateway Pricing Details.