The first step, basic configuration (address of the interface region, routing)
The second step, the security policy (put through the appropriate address)
The third step is to do source address translation
A fourth step of creating an address pool (nat address-group 1 123.126.109.1 123.126.109.1 public network address)
The fifth step, port mapping
The sixth step, do NAT domain
Note the difference between SNAT and the policy direction is not the same
NAT-Zone Policy Trust
Policy 1
Action Source-NAT
Policy mask Source 192.168.1.0 24-match required by all network hosts to access the public network ip
destination policy 192.168.100.100 mask 32 matching server address
address-group 1 after matching, converting the source address into the address of the address pool