[Router-GigabitEthernet3/0/0]nat outbound 2000 address-group 1 no-pat [Router-GigabitEthernet3/0/0]quit 4.在Router上配置带端口转换的NATOutbound [Router] nataddress-group 2 2.2.2.80 2.2.2.83 [Router] acl 2001 [Router-acl-basic-2001]rule 5 permit source 10.0.0.0 0.0.0.255 [Router-acl-ba...
rule permit source 10.1.1.1 0 acl basic 2001 rule permit source 10.1.1.0 0.0.0.255 --- 在接口调用 nat outbound 2001 address-group 2 port-preserved nat outbound 2000 address-group 1 port-preserved --- 我想问一下,2个ACL都包含10.1.1.1这个地址,会匹配那个地址NAT地址出去呢?NAT匹配顺序是怎么...
[Router-GigabitEthernet3/0/0] nat outbound 2000 address-group 1 no-pat [Router-GigabitEthernet3/0/0] quit 4. 在Router上配置带端口转换的NAT Outbound [Router] nat address-group 2 2.2.2.80 2.2.2.83 [Router] acl 2001 [Router-acl-basic-2001] rule 5 permit source 10.0.0.0 0.0.0.255 [Route...
意思是:对访问控制列表2001上的进行地址转换(outbound),转换的地址组是address-group 1
nat outbound [ ipv4-acl-number | name ipv4-acl-name ] [ address-group group-id ] [ vpn-instance vpn-instance-name ] [ port-preserved ]一个接口下可配置多个出方向的动态地址转换。参数 功能 address-group 不指定该参数时,则直接使用该接口的IP地址作为转换后的地址,即实现Easy IP功能 no-pat ...
[SPU-Eth-Trunk1.2] nat outbound 2000 address-group 1 no-pat [SPU-Eth-Trunk1.2] nat outbound 2001 [SPU-Eth-Trunk1.2] quit 3. 检查配置结果 在SPU上执行命令display nat outbound interface eth-trunk 1.2,查看NAT Outbound的配置信息。 [SPU] display nat outbound interface eth-trunk 1.2 NAT Outb...
interface Ethernet2/0/0 ip address 202.169.10.1 255.255.255.0 nat outbound 2000 address-group 1 no-pat nat outbound 2001 address-group 2 # nat address-group 1 202.169.10.100 202.169.10.200 nat address-group 2 202.169.10.80 202.169.10.83 # ip route-static 0.0.0.0 0.0.0.0 Ethernet 2/0/0 #...
域间NAT(Network Address Translation)是指在网络中进行地址转换的一种方式,其中源地址和目的地址属于不同的安全区域。根据报文的传输方向,域间NAT可以分为两类:NAT Inbound(外网访问内网)和NAT Outbound(内网访问外网)。 NAT Inbound NAT Inbound发生在报文由低安全级别的安全区域向高安全级别的安全区域传输时,基于...
[Sysname-GigabitEthernet1/0/1] nat outbound 2001 address-group 1[Sysname-GigabitEthernet1/0/1] quit# 如果在接口GigabitEthernet1/0/1上不使用TCP/UDP的端口信息进行地址转换,可以使用如下配置。[Sysname] interface gigabitethernet 1/0/1[Sysname-GigabitEthernet1/0/1] nat outbound 2001 address-group 1...
<HUAWEI>system-view[HUAWEI]acl number 2001[HUAWEI-acl-basic-2001]rule permit source 10.110.10.0 0.0.0.255[HUAWEI-acl-basic-2001]quit[HUAWEI]nat address-group 1 1.1.1.1 1.1.1.3[]interface vlanif 10[HUAWEI-Vlanif10]nat outbound 2001 address-group 1 ...