【NBR】公网模式加入NAT模式的配置

发布时间: 2013-09-16 点击量:1175 打印 字体:

access-list 10 permit any

相关配置:interface GigabitEthernet 0/0

ip nat inside(内网口配置为ip nat inside)

ip access-group 3198 in

no ip redirects

no ip mask-reply

no ip proxy-arp

ip address 60.195.126.129 255.255.255.0

ip address 192.168.1.1 255.255.255.0 secondary (配置secondary地址作为私网网段的网关)

arp gratuitous-send interval 1 1

arp trust-monitor enable

 

interface GigabitEthernet 0/1

ip nat outside (外网口配置为ip nat outside)

no ip redirects

no ip mask-reply

no ip proxy-arp

ip address 172.29.1.46 255.255.255.252

no arp trust-monitor enable

duplex auto

speed auto

media-type baset

bandwidth 30000

 

ip nat pool nat_add prefix-length 24 (配置NAT地址池,用公网地址中的其中一个或一些地址作为NAT地址池)

address 60.195.126.129 60.195.126.129 match interface GigabitEthernet 0/1(match的接口为外网口)

ip nat inside source list 10 pool nat_add 配置NAT地址池与ACL的映射!

00 分享 纠错
相关条目