NAT技术是为了解决IPv4网络地址空间的不够而提出的一种过渡技术,并由于其简单、高效的特性而得到了广泛的应用。该文介绍了NAT技术及在Linux 2.4内核中基于Netfilter框架的NAT实现原理,并结合实验室的网络建设,给出其在实验室网络建设中应用实例。 关键词:网络地址译码器;Netfilter;Iptables NAT Technology and Its Application Based on Netfilter LE Deguang , GUO Donghui, WU Boxi (Institute of Technical Physics, Xiamen University, Xiamen 361005) 【Abstract】NAT is one of the most important technologies to resolve the lack of IPv4 addresses, and has been widely applied in the extension of LAN for Internet. This paper details on the NAT technology and its implementation principle based on Netfilter in Linux 2.4 kernel. With the Netfilter technology, it builds up a LAN in the laboratory accessed to Internet, and the outline of the LAN is also presented. 【Key words】Network address translator(NAT); Netfilter; Iptables