您好,登錄后才能下訂單哦!
一.測試拓撲:
二.基本思路和筆試題目:
A.基本思路:
通過使用NAT extendable參數,使得內部一個地址能在不同接口以不同地址NAT出去,否則內部一個地址只能配靜態NAT一次。
B.筆試題目:
An internal DNS server requires a NAT on a Cisco IOS router that is dual-homed to separate ISPs using distinct CIDR blocks. Which NAT capability is required to allow hosts in each CIDR block to contact the DNS server via one translated address?
答案:NAT extendable
三.基本配置:
A.R1路由器:
interface Ethernet0/0
ip address 202.100.1.2 255.255.255.0
no shut
B.R2路由器:
interface Ethernet0/0
ip address 61.1.1.2 255.255.255.0
no shut
C.R3路由器:
interface Ethernet0/0
ip address 10.1.1.1 255.255.255.0
ip nat inside
no shut
interface Ethernet0/1
ip address 202.100.1.1 255.255.255.0
ip nat outside
no shut
interface Ethernet0/2
ip address 61.128.1.1 255.255.255.0
ip nat outside
no shut
D.R4路由器
interface Ethernet0/0
ip address 10.1.1.2 255.255.255.0
sno shut
ip route 0.0.0.0 0.0.0.0 10.1.1.1
line vty 0 5
password cisco
login
四.NAT extendable配置:
A.R3路由器:
ip nat inside source static 10.1.1.2 61.128.1.8 extendable
ip nat inside source static 10.1.1.2 202.100.1.8 extendable
B.測試:
R1#telnet 202.100.1.8
Trying 202.100.1.8 ... Open
User Access Verification
Password:
R4>show users
Line User Host(s) Idle Location
0 con 0 idle 06:08:16
*130 vty 0 idle 00:00:00 202.100.1.2
Interface User Mode Idle Peer Address
R2#telnet 61.128.1.8
Trying 61.128.1.8 ... Open
User Access Verification
Password:
R4>show users
Line User Host(s) Idle Location
0 con 0 idle 06:09:06
130 vty 0 idle 00:00:49 202.100.1.2
*131 vty 1 idle 00:00:00 61.128.1.2
Interface User Mode Idle Peer Address
免責聲明:本站發布的內容(圖片、視頻和文字)以原創、轉載和分享為主,文章觀點不代表本網站立場,如果涉及侵權請聯系站長郵箱:is@yisu.com進行舉報,并提供相關證據,一經查實,將立刻刪除涉嫌侵權內容。