NAT实验报告
基础配置
[r1]int g0/0/0
[r1-GigabitEthernet0/0/0]ip add 192.168.1.1 24
[r1-GigabitEthernet0/0/0]int g0/0/1
[r1-GigabitEthernet0/0/1]ip add 12.1.1.1 24
[r2]int g0/0/0
[r2-GigabitEthernet0/0/0]ip add 12.1.1.2 24
[r2-GigabitEthernet0/0/0]int g0/0/1
[r2-GigabitEthernet0/0/1]ip add 1.1.1.1 24
PC1 192.168.1.2
SERVER1 192.168.10
SERVER2 192.168.20
CLIENT1 1.1.1.3
PC2 1.1.1.2
SERVER3 1.1.1.10
1、R2为isp设备不做过多配置
[r2]int g0/0/0
[r2-GigabitEthernet0/0/0]ip add 12.1.1.2 24
[r2-GigabitEthernet0/0/0]int g0/0/1
[r2-GigabitEthernet0/0/1]ip add 1.1.1.1 24
2、1.1.1.0/24代表整个互联网所有网段
3、pc1可以正常pingpc2
4、R1仅拥有一个公有ip
[r1]ip route-static 0.0.0.0 0 12.1.1.2
[r1]acl 2000
[r1-acl-basic-2000]rule permit source 192.168.1.0 0.255.255.255
[r1-acl-basic-2000]q
[r1-GigabitEthernet0/0/2]int g0/0/1
[r1-GigabitEthernet0/0/1]nat outbound 2000
5、client可以通过http访问到两台server
6、client可以通过域名访问一台server
[r1]int g0/0/1
[r1-GigabitEthernet0/0/1]nat server protocol tcp global current-interface 80 inside 192.168.1.10 80
Warning:The port 80 is well-known port. If you continue it may cause function failure.
Are you sure to continue?[Y/N]:y
[r1-GigabitEthernet0/0/1]nat server protocol tcp global current-interface 9999 inside 192.168.1.20 80