基本NAT:实现内部网络实现通信外网
LSW1:配置如下
interface Vlanif1 #
ip address 192.168.1.253 255.255.255.0
interface Vlanif10 #
ip address 192.168.10.254 255.255.255.0 #10段的网关
interface Vlanif20 #
ip address 192.168.20.254 255.255.255.0 #20段的网关
ip route-static 0.0.0.0 0.0.0.0 192.168.1.254 #添加默认路由,下一条只想本地的网关
AR1的配置
ACL的配置
acl number 3000
rule 5 permit ip source 192.168.10.0 0.0.0.255 #这里使用反掩码
interface GigabitEthernet0/0/0
ip address 192.168.1.254 255.255.255.0
interface GigabitEthernet0/0/1
ip address 10.1.1.1 255.0.0.0
nat outbound 3000 #将此接口绑定acl 3000
interface GigabitEthernet0/0/2
ip address 30.1.1.1 255.0.0.0
nat outbound 3000 #同上
rip 1
version 2
network 10.0.0.0
network 30.0.0.0
ip route-static 192.168.0.0 255.255.0.0 192.168.1.253 #往回指静态路由