#NAT-server 端口映射 [AR1200]interface g0/0/1 [AR1200-GigabitEthernet0/0/1]nat server protocol tcp global current-interface 80 inside 192.168.255.6 80 Warning:The port 80 is well-known port. If you continue it may cause function failure. Are you sure to continue?[Y/N]:Y //提示这个是...
[R1-GigabitEthernet0/0/1] nat server protocol tcp global 125.171.0.10 8080 inside 192.168.30.100 80 2、NAT Server外网接口IP复用 [R1-GigabitEthernet0/0/1] interface GigabitEthernet0/0/1 [R1-GigabitEthernet0/0/1] nat server protocol tcp global current-interface 8080 inside 192.168.30.100 80 ...
运营商仅为该单位分配了一个公网IP,此地址既作为AR出接口的IP地址,也作为NAT Outbound和NAT Server的公网映射地址。 NAT的配置如下: # interface GigabitEthernet3/0/0 ip address 202.12.111.1 255.255.252.0 nat server protocol tcp global current-interface www inside 192.168.1.100 www nat outbound 2000 # a...
[AR-GigabitEthernet0/0/1] nat server protocol tcp global current-interface 2000 inside 10.10.10.77 1025 Info: The port is already in use, please use the other free ports 处理过程 使用端口1999或者2001都可以配置下去,只有端口2000不可以配置,可以知道这个端口号肯定是被其它业务给占用了。
interface GigabitEthernet0/0/1 ip address 12.1.1.1 255.255.255.248 nat server protocol tcp global 12.1.1.2 ftp inside 192.168.1.30 ftp(将内网192.168.1.30的ftp21端口映射成公网12.1.1.2的ftp21端口) nat server protocol tcp global current-interface(这里是基于接口地址映射)www inside 192.168.1.30 www(将...
nat server protocol tcp global current-interface 8081 inside 10.0.0.94 8081 nat server global 200.1.1.2 inside 10.0.0.8 nat outbound 2001 zone untrust 原因分析 通过配置文件可以看出,设备Eth0/0/4连接内网服务器,GE0/0/1连接Internet,且做了防火墙业务。
nat server protocol tcp global current-interface 85 inside 10.7.168.14 55555 rule ServerRule_12 nat server protocol tcp global current-interface 86 inside 10.7.168.12 22 rule ServerRule_13 nat server protocol tcp global current-interface 123 inside 10.7.168.14 123 rule ServerRule_14 nat server pro...
interface GigabitEthernet0/0/1 ip address 2.2.2.1 255.255.255.0 nat static protocol tcp global current-interface ftp inside 2.2.2.2 ftp netmask 255.255.255.255 nat static global current-interface inside 2.2.2.2 //配置NAT Static,对外网用户隐藏FTP服务器的真实IP地址,以接口GE2/0/0...
nat server protocol tcp global current-interface 80 inside 192.168.1.10 80 region member CN 步骤 •在路由器上进入配置模式,输入以下指令: ip route-static 0.0.0.0 0.0.0.0 10.0.0.254 ip route-static 0.0.0.0 0.0.0.0 20.0.0.254 preference 10 route-policy Wan1 permit node 10 route-policy Wan2 ...
nat server命令用来配置NAT内部服务器,即定义内部服务器的外网地址和端口与内网地址和端口的映射表项。 undo nat server命令用来删除指定的内部服务器配置。 【命令】 (1) 普通内部服务器 · 外网地址单一,未使用外网端口或外网端口单一 nat server protocol pro-type global { global-address | current-interface |...