You can create source and destination network address translation rules for your VMs.
Create a DNAT rule
To enable VMs outside your VDC to connect to a VM with a private IP address, after you obtain a NAT IP, create a destination NAT rule, which is also called a DNAT rule.
To create a DNAT rule:
Go to Virtual datacenters → Virtual appliances → edit VM
If your VM does not yet have an IP, go to Network → NICs and add a private IP
Go to Network → DNAT
Click the + add button on the top right-hand side of the tab
Enter the details of the DNAT rule
For the Original (NAT IP), select the IP address to receive external connections
Select the Protocol for the connection, which can include TCP, UDP, any, and ICMP
For the Translated IP, select the private IP that is attached to the VM
Optionally, select the checkbox to Use all ports OR
Enter the Original port for external connections. You cannot use an Original port for a NAT IP in more than one NAT rule.
The platform will display the ports that are already used in other rules for the selected NAT IP.
AND for the Translated port, enter the port on the VM
Click Add
Save the VM
Create an SNAT rule
To send outgoing traffic through a NAT IP that is not the default one, add an additional SNAT rule with these steps:
To create an SNAT rule:
Go to Virtual datacenters → Virtual appliances → edit VM
If your VM does not yet have an IP, go to Network → NICs and add a private IP
Go to Network → SNAT
Click the + add button on the top right-hand side of the tab
Enter the addresses of the SNAT rule
For the Original IP, select the IP that is attached to the VM
For the Translated (NAT IP), select the IP address to display for outgoing connections
Click Add
Save the VM