V\
Size: a a a
V\
VL
FW
VL
VL
A
sk
sk
DS
puppet resource firewall
firewall { '101 DNAT xx.xx.xx.xx - portx':
ensure => 'present',
chain => 'PREROUTING',
destination => 'yy.yy.yy.yy',
dport => ['porty'],
jump => 'DNAT',
proto => 'tcp',
table => 'nat',
todest => 'xx.xx.xx.xx:portx',
}
VM
VM
VM
VM
DK
DK
DS
VM
DK
VM