2022.2.10 眼里总是充满了自信和掠夺一切的野心
1、配置接口IP,划为安全域
2、配置路由OSPF
3、配置NAT
4、策略
1、配置接口IP,划为安全域
2、配置路由OSPF
[FW3]ospf router-id 3.3.3.3
[FW3-ospf-1]dis this
2022-02-10 14:40:23.470
#
ospf 1 router-id 3.3.3.3
area 0.0.0.0
network 10.0.0.0 0.0.0.255
area 0.0.0.2
network 10.1.2.0 0.0.0.255
stub no-summary--设置为stub区域
Router#show run | s ospf
router ospf 100
router-id 7.7.7.7
area 2 stub--两边都要配置stub
network 10.1.2.0 0.0.0.255 area 2
3、配置NAT
[FW1-policy-nat]dis th
2022-02-10 14:46:00.350
#
nat-policy
rule name permit
source-zone trust
destination-zone untrust
action source-nat easy-ip