jxwjq 发表于 2018-7-19 08:18:47

cisco3825路由配置

  特权模式下# ip default-gateway 192.168.15.254 //配置网关,允许他人从别的网段telnet该终端服务器
  interface GigabitEthernet0/0------------------------------------进入0/0接口
  description $ETH-LAN$$ETH-SW-LAUNCH$$INTF-INFO-GE 0/0$$ES_LAN$
  ip address 192.168.0.1 255.255.240.0---------------------------给0/0接口配置IP地址
  ip nat inside----------------------------------------------NAT转换,定义该口为内部网络口
  ip virtual-reassembly
  duplex auto
  speed auto
  media-type rj45
  !
  interface GigabitEthernet0/1----------------------------------进入0/1接口
  description $ETH-WAN$
  ip address 121.34.255.242 255.255.255.240---------------------给0/1配置IP地址
  ip nat outside------------------------------------------------定义该端口为NAT转换的外部口
  ip virtual-reassembly
  duplex auto
  speed auto
  media-type rj45
  !
  ip forward-protocol nd
  ip route 0.0.0.0 0.0.0.0 121.34.255.254------------------------设置默认路由
  !
  ip http server-------------------------------------------------开启WEB操作功能
  ip http access-class 1-----------------------------------------允许用户登陆数量
  ip http authentication local
  ip http secure-server------------------------------------------开启安全WEB操作功能

  ip http timeout-policy>  ip nat pool nurenxin 121.34.255.242 121.34.255.250 netmask 255.255.255.240-----把所有内部网段NAT转换成该IP的端口
  ip nat inside source list 9 interface GigabitEthernet0/1 overload--------------把需要NAT内部转换的列表定义到0/1外部口上
  !
  access-list 9 permit 192.168.0.0 0.0.0.255-----------------允许192.168.0.0网段上网,且被定义为将要NAT转换的网段
  telnet 配置如下:
  特权模式下#conf t
  特权模式下#int g0/1
  特权模式下#ip add 192.168.2.1 255.255.255.0
  特权模式下#no shutdown
  特权模式下#exit
  特权模式下#line vty 0 4
  特权模式下#password *****
  特权模式下#login authentication default
  特权模式下#exit
  特权模式下#enable password *****
  特权模式下#access-list 2 permit host 192.168.2.1
  特权模式下#line vty 0 4
  特权模式下#access-list 2 in
  特权模式下#password ******
  特权模式下#login authentication default
  特权模式下#end
  #wr
  !                   NAT
  !
  interface GigabitEthernet0/0------------------------------------进入0/0接口
  description $ETH-LAN$$ETH-SW-LAUNCH$$INTF-INFO-GE 0/0$$ES_LAN$
  ip address 192.168.0.1 255.255.240.0---------------------------给0/0接口配置IP地址
  ip nat inside----------------------------------------------NAT转换,定义该口为内部网络口
  ip virtual-reassembly
  duplex auto
  speed auto
  media-type rj45
  !
  interface GigabitEthernet0/1----------------------------------进入0/1接口
  description $ETH-WAN$
  ip address 121.34.255.242 255.255.255.240---------------------给0/1配置IP地址
  ip nat outside------------------------------------------------定义该端口为NAT转换的外部口
  ip virtual-reassembly
  duplex auto
  speed auto
  media-type rj45
  !
  ip forward-protocol nd
  ip route 0.0.0.0 0.0.0.0 121.34.255.254------------------------设置默认路由
  ip nat inside source list 9 interface GigabitEthernet0/1 overload--------------把需要NAT内部转换的列表定义到0/1外部口上
  !
  access-list 9 permit 192.168.0.0 0.0.0.255-----------------允许192.168.0.0网段上网,且被定义为将要NAT
页: [1]
查看完整版本: cisco3825路由配置