3-tier design/NATConfig

From Teknologisk videncenter
Jump to: navigation, search
HQFW1#<input>conf t</input>
Enter configuration commands, one per line.  End with CNTL/Z.
HQFW1(config)#<input>ip access-list extended NAT_ACL</input> 
HQFW1(config-ext-nacl)#<input>permit ip 172.16.0.0 0.0.255.255 any</input>
HQFW1(config-ext-nacl)#<input>permit ip 172.17.0.0 0.0.255.255 any</input>
HQFW1(config-ext-nacl)#<input>permit ip 172.18.0.0 0.0.255.255 any</input>
HQFW1(config-ext-nacl)#<input>exit</input>
HQFW1(config)#<input>ip nat inside source list NAT-ACL interface ethernet 0/0/0 overload</input> 
HQFW1(config)#<input>interface ethernet 0/0/0</input>
HQFW1(config-if)#<input>ip nat outside</input> 
HQFW1(config-if)#<input>exit</input>
HQFW1(config)#<input>interface fastethernet 0/0</input>
HQFW1(config-if)#<input>ip nat inside</input>
HQFW1(config-if)#<input>interface fastethernet 0/1</input>
HQFW1(config-if)#<input>ip nat inside</input>