如下是实验拓扑:
1. R2远程telnet访问R1的外网口10.10.10.3,配置nat:
ASA:
objetnetwork outside_static //映射的外网地址对象名称
host10.10.10.4 //映射的外网地址是10.10.10.4
objectnetwork inside_static //定义内网地址对象名称
host172.16.1.3 //需要映射的内网地址是172.16.1.3
nat(inside,outside) static outside_static //将内网地址对象转换成外网地址
通过如下命令查看nat的状态:
showxlate
ASA842(config-if)#show xlate
1 in use, 1 mostused
Flags: D - DNS,i - dynamic, r - portmap, s - static, I - identity, T - twice
NAT frominside:172.16.1.3 to outside:10.10.10.4
flags s idle0:14:10 timeout 0:00:00
show nat detail
ASA842(config-if)#show nat detail
Auto NATPolicies (Section 2)
1 (inside) to(outside) source static inside_static outside_static
translate_hits = 15, untranslate_hits = 33
Source - Origin: 172.16.1.3/32, Translated:10.10.10.4/32
在R2上telnet10.10.10.3:
R2#telnet10.10.10.3
Trying10.10.1

2305

被折叠的 条评论
为什么被折叠?



