Watchguard X700 Firewall - Configure Static NAT or Complete DMZ

Hi, I've got a voip application which needs either a Static NAT or a complete DMZ. Firewall is an old Watchguard X700 Firewall.

Can someone post a step by step to get the box to do DMZ to an internal machine. Statically map an external address to an internal for example.

We've done this as many times but it's just not working.

Who is Participating?
dpk_walConnect With a Mentor Commented:
If you have a public IP which you would like to dedicate for the VoIP device so that WG would not do any
PAT, then configure 1-1 NAT as below:

Also, ensure that the public IP you have selected for 1-1 NAT was not previously added for static NAT forwarding by adding under external aliases:

Finally create a service to allow traffic from external host/subnet to this 1-1 NAT public IP [or use ANY for testing purposes and then narrow down the service to fewer ports/protocols]; explained in the first article.

Please update.

Thank you.
bineleAuthor Commented:
Thank you. This was spot on.
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.