Documentos de Académico
Documentos de Profesional
Documentos de Cultura
Shariaty@gmail.com
www.alishariaty.ir
Estimated time
02:00:00
Problem
Private IP addresses may not access the internet.
Solution
Source IP will be translated to public.
Static NAT
Dynamic NAT
PAT (NAT Overload)
Step1
Inside & outside interfaces selection.
Step1
Inside & outside interfaces selection.
Step2
NAT table initiation.
Example
Router(conf)# IP nat inside source static 192.168.1.10 80.80.80.80
Router(conf)# IP nat inside source static 192.168.1.11 80.80.80.81
Step1
Inside & outside interfaces selection.
Router(conf)# interface fastethernet 0/0
Router(conf-if)# ip nat inside
Router(conf)# interface serial 0
Router(conf-if)# ip nat outside
Step2
Internal users with standard ACL.
Router(conf)# Access-list 1 permit 192.168.1.0 0.0.0.255
Step3
Outside address pool.
Router(conf)# ip nat pool test 80.80.80.1 80.80.80.14 netmask
255.255.255.240
Step4
NAT table initiation.
Router(conf)# ip nat inside source list 1 pool test
Step5
Idle timeout (default 5 min).
Router(conf)# ip nat translation time-out 300
Step1
Inside & outside interfaces selection.
Router(conf)# interface fastethernet 0/0
Router(conf-if)# ip nat inside
Router(conf)# interface serial 0
Router(conf-if)# ip nat outside
Step2
Internal users with standard ACL.
Router(conf)# Access-list 1 permit 192.168.1.0 0.0.0.255
Step3
Outside address pool.
Router(conf)# ip nat pool test 80.80.80.1 80.80.80.14 netmask
255.255.255.240
Step4
NAT table initiation.
A. Translate inside addresses to an outside interface
Router(conf)# ip nat inside source list 1 interface serial 0/0/0 overload
Note
If NAT is activated on an interface , it may not be
deactivated just by "no ip nat" command. In these
cases first: