ensp基礎(chǔ)實(shí)驗(yàn),數(shù)通路由交換技術(shù)(NAT配置,服務(wù)器NAT,NAT回流,公網(wǎng)DNS域名解析)


LSW1
system-view
sysname SW1
vlan batch 10 100 200
int vlan 10
ip add 192.168.10.254? 24
int vlan 100
ip add 192.168.100.254? 24
int vlan 200
ip add? ?200.1.1.1? ?24
int g0/0/1
port link-type access
port default? vlan 200
int? g0/0/2
port link-type trunk
port trunk allow-pass vlan 100
int g0/0/3
port link-type access
port default? vlan 10
ip route-static 0.0.0.0 0 200.1.1.2
LSW2
system-view
sysname SW2
vlan batch 100??
int? g0/0/1
port link-type trunk
port trunk allow-pass vlan 100
int g0/0/2
port link-type access
port default? vlan 100
AR1
system-view
sysname AR1
int g0/0/0
ip add 12.1.1.1? 24
int g0/0/1
ip add 200.1.1.2? 24
int g0/0/2
ip add 8.8.8.254? 24
ip route-static 0.0.0.0 0.0.0.0 12.1.1.2
ip route-static 192.168.10.0 255.255.255.0 200.1.1.1
ip route-static 192.168.100.0 255.255.255.0 200.1.1.1
acl number 3000??
?rule 5 permit ip?
ip address 12.1.1.1 255.255.255.0?
?nat server protocol tcp global 12.1.1.10 www inside 192.168.100.1 www
?nat server protocol udp global 12.1.1.10 dns inside 8.8.8.8 dns
?nat outbound 3000
acl number 3001??
?rule 5 permit ip source 192.168.10.0 0.0.0.255 destination 12.1.1.10 0
interface GigabitEthernet0/0/1
?ip address 200.1.1.2 255.255.255.0
nat server protocol tcp global 12.1.1.10 www inside 192.168.100.1 www
?nat server protocol udp global 12.1.1.10 dns inside 8.8.8.8 dns
?nat outbound 3001
AR2
system-view
sysname AR2
int g0/0/0
ip add 12.1.1.2? 24
int g0/0/1
ip add 23.1.1.2? 24
AR3
system-view
sysname AR3
int g0/0/0
ip add 23.1.1.3? 24
int g0/0/1
ip add 172.16.1.254? 24
ip route-static 0.0.0.0 0 23.1.1.2
acl 3000
rule permit ip sou any
int g0/0/0
nat outbound 3000