Jump to content

Problema ar NAT


Guest Praktiskais
 Share

Recommended Posts

Guest Praktiskais

Nu nekadigi netieku datora (10.10.10.2) IIS (80 portam klat). Vai kads varetu man palidzet noskaidrot kur problema?

 

ip cef

no ip dhcp use vrf connected

!

ip dhcp pool sdm-pool

import all

network 10.10.10.0 255.255.255.248

default-router 10.10.10.1

dns-server 159.xxx.xxx.65 159.xxx.60.20

lease 0 2

!

!

ip name-server 159.xxx.xxx.65

ip name-server 159.148.60.20

ip inspect name SDM_LOW cuseeme

ip inspect name SDM_LOW dns

ip inspect name SDM_LOW ftp

ip inspect name SDM_LOW h323

ip inspect name SDM_LOW https

ip inspect name SDM_LOW icmp

ip inspect name SDM_LOW imap

ip inspect name SDM_LOW pop3

ip inspect name SDM_LOW netshow

ip inspect name SDM_LOW rcmd

ip inspect name SDM_LOW realaudio

ip inspect name SDM_LOW rtsp

ip inspect name SDM_LOW esmtp

ip inspect name SDM_LOW sqlnet

ip inspect name SDM_LOW streamworks

ip inspect name SDM_LOW tftp

ip inspect name SDM_LOW tcp

ip inspect name SDM_LOW udp

ip inspect name SDM_LOW vdolive

!

!

username admin privilege 15 password 0 Password

!

!

!

!

!

!

interface Loopback0

description $FW_INSIDE$

ip address 200.200.100.1 255.255.255.0

!

interface FastEthernet0

description WAN$FW_OUTSIDE$$ETH-WAN$

ip address 159.xxx.xxx.103 255.255.255.192

ip verify unicast reverse-path

ip nat outside

ip inspect SDM_LOW out

ip virtual-reassembly

duplex auto

speed auto

!

interface FastEthernet1

no ip address

duplex auto

speed auto

!

interface FastEthernet2

description LAN-1

switchport trunk native vlan 2

switchport mode trunk

!

interface Vlan1

description Management interfeiss$FW_INSIDE$$ETH-SW-LAUNCH$$INTF-INFO-FE 2$

ip address 192.168.1.1 255.255.255.0

ip nat inside

ip virtual-reassembly

ip tcp adjust-mss 1452

!

interface Vlan2

description LAN-1.1

ip address 10.10.10.1 255.255.255.0

ip nat inside

ip virtual-reassembly

!

interface Async1

no ip address

encapsulation slip

!

ip classless

ip route 0.0.0.0 0.0.0.0 159.xxx.xxx.126 permanent

ip route 10.0.0.0 255.0.0.0 10.10.10.0

ip route 10.10.10.0 255.255.255.0 10.10.10.0

!

!

ip http server

ip http port 8080

ip http authentication local

ip http secure-server

ip http timeout-policy idle 5 life 86400 requests 10000

ip nat inside source list 3 interface FastEthernet0 overload

ip nat inside source static tcp 10.10.10.2 80 interface FastEthernet0 80

!

ip access-list standard access-list

permit any

!

access-list 1 remark SDM_ACL Category=2

access-list 1 permit 10.10.10.0 0.0.0.255

access-list 2 remark SDM_ACL Category=2

access-list 2 permit 10.10.10.0 0.0.0.255

access-list 3 remark SDM_ACL Category=2

access-list 3 permit 10.10.10.0 0.0.0.255

access-list 101 permit tcp any host 159.xxx.xxx.103 eq www

no cdp run

 

!

!

Link to comment
Share on other sites

Izveido kontu, vai pieraksties esošajā, lai komentētu

Jums ir jābūt šī foruma biedram, lai varētu komentēt tēmas

Izveidot jaunu kontu

Piereģistrējies un izveido jaunu kontu, tas būs viegli!

Reģistrēt jaunu kontu

Pierakstīties

Jums jau ir konts? Pierakstieties tajā šeit!

Pierakstīties tagad!
 Share

×
×
  • Izveidot jaunu...