17-22
Cisco Security Appliance Command Line Configuration Guide
OL-12172-03
Chapter 17 Configuring NAT
Using Dynamic NAT and PAT
Figure 17-19
Outside NAT and Inside NAT Combined
See the following commands for this example:
hostname(config)#
nat (dmz) 1 10.1.1.0 255.255.255.0 outside
hostname(config)#
nat (dmz) 1 10.1.1.0 255.255.255.0
hostname(config)#
static (inside,dmz) 10.1.1.5 10.1.2.27 netmask 255.255.255.255
hostname(config)#
global (outside) 1 209.165.201.3-209.165.201.4
hostname(config)#
global (inside) 1 10.1.2.30-1-10.1.2.40
When you specify a group of IP address(es) in a
nat
command, then you must perform NAT on that group
of addresses when they access any lower or same security level interface; you must apply a
global
command with the same NAT ID on each interface, or use a
static
command. NAT is not required for
that group when it accesses a higher security interface, because to perform NAT from outside to inside,
you must create a separate
nat
command using the
outside
keyword. If you do apply outside NAT, then
the NAT requirements preceding come into effect for that group of addresses when they access all higher
security interfaces. Traffic identified by a
static
command is not affected.
Outside
DMZ
Inside
Global 1: 209.165.201.3-
209.165.201.10
Global 1: 10.1.2.30-
10.1.2.40
Static to DMZ: 10.1.2.27
10.1.1.5
Outside NAT 1: 10.1.1.0/24
NAT 1: 10.1.1.0/24
10.1.1.15
10.1.2.27
Translation
209.165.201.4
10.1.1.15
Translation
10.1.2.30
10.1.1.15
Undo Translation
10.1.2.27
10.1.1.5
130038
Содержание 500 Series
Страница 38: ...Contents xxxviii Cisco Security Appliance Command Line Configuration Guide OL 12172 03 ...
Страница 45: ...P A R T 1 Getting Started and General Information ...
Страница 46: ......
Страница 277: ...P A R T 2 Configuring the Firewall ...
Страница 278: ......
Страница 354: ...17 38 Cisco Security Appliance Command Line Configuration Guide OL 12172 03 Chapter 17 Configuring NAT NAT Examples ...
Страница 561: ...P A R T 3 Configuring VPN ...
Страница 562: ......
Страница 891: ...P A R T 4 System Administration ...
Страница 892: ......
Страница 975: ...P A R T 5 Reference ...
Страница 976: ......