access-list 110 deny ip 172.16.0.0 0.0.255.255 192.168.2.0 0.0.0.255
access-list 110 permit ip any any//为VPN配置做准备deny需要互通的两段网络,如不需要可以配置其他ACL
ip nat pool ck 192.1.2.3 192.1.2.5 netmask 255.255.255.0//设置nat地址池 192.1.2.3 192.1.2.5为公网地址
ip nat inside source list 110 interface FastEthernet0/1 overload//配置动态NAT:source list 1表明内网地址列表;interface serial0/0:传输所经由的外网接口(地址);overload:表明复用外网接口地址.
int f1/0
ip nat outside //外网接口
int f0/0
ip nat inside //内网接口
简单的Cisco Packet Tracer nat 配置
最新推荐文章于 2023-07-23 18:53:57 发布