谢谢大大的帮助。
我按照你给的配置方法,还原了出厂设置,代入输入了
如下:
1. 配置Router上的接口地址
[Huawei] interface GigabitEthernet0/0/0
[Huawei-Ethernet0/0/0] ip address 192.168.1.1 24
[Huawei-Ethernet0/0/0] quit
[Huawei] interface GigabitEthernet0/0/2
[Huawei-GigabitEthernet2/0/0] ip address 61.234.37.94 24
[Huawei-GigabitEthernet2/0/0] quit
2. 配置缺省路由,指定下一跳地址为61.234.37.1
[Huawei] ip route-static 0.0.0.0 0.0.0.0 61.234.37.1
3. 在出接口GE2/0/0上配置NAT Server和Easy IP方式NAT Outbound
[Huawei] acl number 2000
[Huawei-acl-basic-2000] rule 5 permit source 192.168.1.0 0.0.0.255
[Huawei-acl-basic-2000] quit
[Huawei] interface GigabitEthernet0/0/2
[Huawei-GigabitEthernet2/0/0] nat server protocol tcp global 61.234.37.94 www inside 192.168.1.23 8088
[Huawei-GigabitEthernet2/0/0] nat outbound 2000
[Huawei-GigabitEthernet2/0/0] quit
4. 在Router上使能DNS协议的NAT ALG和DNS Mapping功能
[Huawei] nat alg dns enable
[Huawei] nat dns-map www.gxtlgs.net 61.234.37.94 80 tcp
[Huawei] quit
出现了以下问题:
1.直接用域名登陆,出现 no find .
2.直接用公网IP登陆,跳转路由登陆界面。
3.内网用户用与域名登陆,无法显示。
我的路由配置如下:
[Huawei]dis cu
[V200R005C20SPC200]
#
drop illegal-mac alarm
#
ipv6
#
dns resolve
dns proxy enable
#
wlan ac-global carrier id other ac id 0
#
dhcp enable
#
pki realm default
enrollment self-signed
#
ssl policy default_policy type server
pki-realm default
#
acl number 2000
rule 5 permit source 192.168.1.0 0.0.0.255
#
aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user admin password cipher %@%@2)_4%7Y@`;M3YsHC=G3P+g2]%@%@
local-user admin privilege level 15
local-user admin service-type telnet http
#
firewall zone Local
priority 64
#
nat alg dns enable
#
nat dns-map www.testnat.com 61.234.37.94 80 tcp
nat dns-map www.gxtlgs.net 61.234.37.94 80 tcp
#
interface GigabitEthernet0/0/0
ip address 192.168.1.1 255.255.255.0
nat static protocol tcp global current-interface www inside 192.168.1.23 8088 netmask 255.255.255.255
dhcp select interface
dhcp server dns-list 192.168.1.1
#
interface GigabitEthernet0/0/1
#
interface GigabitEthernet0/0/2
tcp adjust-mss 1460
ip address 61.234.37.94 255.255.255.128
nat outbound 2000
#
interface Cellular0/0/0
#
interface Cellular0/0/1
#
interface NULL0
#
snmp-agent local-engineid 800007DB03BC9C31B9C5E6
#
http secure-server ssl-policy default_policy
http server enable
http secure-server enable
#
ip route-static 0.0.0.0 0.0.0.0 61.234.37.1
#
user-interface con 0
authentication-mode password
set authentication password cipher %@%@9+W45[O]s+&$JF*dM)+N,.Ia;L4u-yLFr8MB]3JB]SM1.Id,%@%@
user-interface vty 0
authentication-mode aaa
user privilege level 15
user-interface vty 1 4
#
wlan ac
#
voice
#
diagnose
#
return