| cisco 2621xm 做NAT典型配置 |
|
| |
|
| 【导读】cisco 2621xm 做NAT典型配置 |
Router#sh run
Building configuration... Current configuration : 2335 bytes
!
version 12.2
service timestamps debug uptime
service timestamps log uptime
service password-encryption
!<BR>hostname Router
!
enable secret 5 $1$2qcD$sKLJhsTs0FWYyFanxh7QK0
enable password 7 10440D1803164F465B507B787C
!
ip subnet-zero
!
!
!
!
!
!
interface FastEthernet0/0
ip address 211.96.×.× 255.255.255.240
ip access-group 101 in
ip access-group 101 out
ip nat outside
duplex auto
speed auto
!
interface Serial0/0
no ip address
shutdown
!
interface FastEthernet0/1
ip address 192.168.168.1 255.255.255.0
ip access-group 101 in
ip access-group 101 out
ip nat inside
duplex auto
speed auto
!
ip nat inside source list 10 interface FastEthernet0/0 overload
ip classless
ip route 0.0.0.0 0.0.0.0 211.96.109.193
no ip http server
ip pim bidir-enable
!
!
access-list 10 permit 192.168.168.0 0.0.0.255
access-list 101 deny tcp any any eq echo
access-list 101 deny tcp any any eq chargen
access-list 101 deny tcp any any eq 135
access-list 101 deny tcp any any eq 136
access-list 101 deny tcp any any eq 137
access-list 101 deny tcp any any eq 138
access-list 101 deny tcp any any eq 139
access-list 101 deny tcp any any eq 389
access-list 101 deny tcp any any eq 445
access-list 101 deny tcp any any eq 4444
access-list 101 deny tcp any any eq 1068
access-list 101 deny tcp any any eq 5554
access-list 101 deny tcp any any eq 9995
access-list 101 deny tcp any any eq 9996
access-list 101 deny tcp any any eq 6666
access-list 101 deny tcp any any eq 593
access-list 101 deny udp any any eq tftp
access-list 101 deny udp any any eq 135
access-list 101 deny udp any any eq 136
access-list 101 deny udp any any eq netbios-ns
access-list 101 deny udp any any eq netbios-dgm
access-list 101 deny udp any any eq netbios-ss
access-list 101 deny udp any any eq snmp
access-list 101 deny udp any any eq 389
access-list 101 deny udp any any eq 445
access-list 101 deny udp any any eq 1434
access-list 101 deny udp any any eq 1433
access-list 101 deny udp any any eq 1068
access-list 101 deny udp any any eq 9995
access-list 101 deny udp any any eq 9996
access-list 101 deny udp any any eq 5554
access-list 101 deny udp any any eq 593
access-list 101 permit ip any any
!
line con 0
line aux 0
line vty 0 4
password 7 09464A081F044A5F5A5E567D7C7079606D
login
!
!
end Router# |
(责任编辑: 51CTO.com TEL:010-68476606)
 |
频道声明:本频道的文章除部分特别声明禁止转载的专稿外,可以自由转载.但请务必注明出出处和原始作者 文章版权归本频道与文章作者所有.对于被频道转载文章的个人和网站,我们表示深深的谢意。
| 原始作者:佚名 |
录入时间:2006-10-13 4:50:07 |
| 信息来源:不详 |
投稿信箱:itqoo@126.com |
|
|
 |
|
|
|
| 文章录入:admin 责任编辑:admin |
|
上一篇文章: 配置CA互操作性之--ca互操作性配置举例
下一篇文章: pix+2611的ADSL+VPN配置 |
| 【字体:小 大】【发表评论】【加入收藏】【告诉好友】【打印此文】【关闭窗口】 |