Athena NGFW (previously known as Network Secure) provides comprehensive protection for every network perimeter, ensuring the safety of your valuable assets, data, and users from emerging threats.
DNS mapping enables LAN users to access LAN servers through the domain names of the public network. This achieves the same effect as the bidirectional NAT policy. After DNS mapping is set, when a LAN user sends the DNS request, the Network Secure device actively resolves the domain name into the LAN IP address of the server and returns it to the client. The client directly accesses the LAN IP address of the server without policy-based translation.
DNS mapping differs from bidirectional NAT in the following aspects:
After DNS mapping is set, data generated when users access the LAN server does not pass through the Network Secure device, whereas the device directly accesses the LAN IP address of the server. While for bidirectional NAT, all access data will pass through the Network Secure device. Thus, DNS mapping can reduce the firewall load.
The setting method of DNS mapping is simpler than bidirectional NAT. You do not need to set the zone, IP group, or port.