¹¦ÄܽéÉÜ£º
NATµØÖ·³Ø×ª»» ͨ¹ý ¹«ÍøµØÖ·³ØµÄIPµØÖ·+¶Ë¿ÚºÅÀ´¶ÔÓ¦ºÍÇø±ð¸÷¸öÊý¾ÝÁ÷½øÐÐÍøÂçµØÖ·×ª»»£¬ÒÔ´ïµ½¶àÄÚ²¿Ö÷»úͨ¹ýÉÙÁ¿¹«ÍøIPµØÖ·À´·ÃÎÊÍâ²¿ÍøÂçµÄÄ¿µÄ¡£
Ó¦Óó¡¾°£º
Æóҵͨ¹ý×âÓÃÔËÓªÉ̵ÄרÏßÉÏÍø£¬µ±Óжà¸ö¹«ÍøIPµØÖ·µÄʱºò£¬Í¨¹ý°Ñ¶à¸ö¹«ÍøIPµØÖ··Åµ½¹«ÍøµØÖ·³Ø£¬°ÑÄÚÍøÓû§µÄµØÖ·×ª»»³É¹«ÍøµØÖ·³ØÀïÃæµÄIPµØÖ·£¬Ê¹ÄÚÍøÓû§Äܹ»·ÃÎÊÍâÍø¡£
Ò»¡¢×éÍøÐèÇó
ÄÚÍøµØÖ·Í¨¹ýNAT£¬×ª»»³É¹«ÍøµØÖ·³ØµÄµØÖ·£¬Ê¹ÄÚÍøÄܹ»Õý³£·ÃÎÊÍâÍø¡£
¶þ¡¢×éÍøÍØÆË

Èý¡¢ÅäÖÃÒªµã
1¡¢»ù±¾ipµØÖ·ÅäÖÃ
2¡¢»ù±¾µÄip·ÓÉÅäÖÃ
3¡¢¶¨ÒånatµÄÄÚÍø¿ÚºÍÍâÍø¿Ú
4¡¢ÔÚR1ÉÏÅäÖÃACL£¬°ÑÄÚÍøÐèÒª½øÐÐNATת»»µÄÁ÷Á¿Æ¥Åä³öÀ´
5¡¢ÅäÖù«ÍøµØÖ·³Ø
6¡¢ÅäÖÃnatת»»²ßÂÔ
ËÄ¡¢ÅäÖò½Öè
1¡¢»ù±¾ipµØÖ·ÅäÖÃ
Ruijie(config)#hostname R1
R1(config)#interface gigabitEthernet 0/0
R1(config-GigabitEthernet 0/0)#ip address 192.168.1.1 255.255.255.0
R1(config-GigabitEthernet 0/0)#exit
R1(config)#interface gigabitEthernet 0/1
R1(config-GigabitEthernet 0/1)#ip address 192.168.2.1 255.255.255.0
R1(config-GigabitEthernet 0/1)#exit
Ruijie(config)#hostname R2
R2(config)#interface gigabitEthernet 0/0
R2(config-GigabitEthernet 0/0)#ip address 192.168.1.2 255.255.255.0
R2(config-GigabitEthernet 0/0)#exit
R2(config)#interface gigabitEthernet 0/1
R2(config-GigabitEthernet 0/1)#ip address 172.16.1.1 255.255.255.0
R2(config-GigabitEthernet 0/1)#exit
R2(config)#interface gigabitEthernet 0/2
R2(config-GigabitEthernet 0/2)#ip address 172.16.2.1 255.255.255.0
R2(config-GigabitEthernet 0/2)#exit
Ruijie(config)#hostname R3
R3(config)#interface fastEthernet 0/0
R3(config-if-FastEthernet 0/0)#ip address 192.168.2.2 255.255.255.0
R3(config-if-FastEthernet 0/0)#exit
2¡¢»ù±¾µÄip·ÓÉÅäÖÃ
R1(config)#ip route 172.16.0.0 255.255.0.0 192.168.1.2
R1(config)#ip route 100.1.1.0 255.255.255.0 192.168.2.2
R2(config)#ip route 100.1.1.0 255.255.255.0 192.168.1.1
3¡¢¶¨ÒånatµÄÄÚÍø¿ÚºÍÍâÍø¿Ú
R1(config)#interface gigabitEthernet 0/1
R1(config-GigabitEthernet 0/1)#ip nat outside //ÅäÖÃnatµÄÍâÍø¿Ú
R1(config-GigabitEthernet 0/1)#exit
R1(config)#int gigabitEthernet 0/0
R1(config-GigabitEthernet 0/0)#ip nat inside //ÅäÖÃnatµÄÄÚÍø¿Ú
R1(config-GigabitEthernet 0/0)#exit
4¡¢ÔÚR1ÉÏÅäÖÃACL£¬°ÑÄÚÍøÐèÒª½øÐÐNATת»»µÄÁ÷Á¿Æ¥Åä³öÀ´
R1(config)#ip access-list standard 10
R1(config-std-nacl)#10 permit 172.16.1.0 0.0.0.255
R1(config-std-nacl)#20 permit 172.16.2.0 0.0.0.255
R1(config-std-nacl)#exit
5¡¢ÅäÖù«ÍøµØÖ·³Ø
×¢Ò⣺
1£©¹«ÍøµØÖ·³ØµÄµØÖ·£¬²»Ò»¶¨Òª¸úÍâÍø¿ÚµÄµØÖ·ÔÚͬһ¸öÍø¶Î£¬Ö»ÒªÊÇÍâÍø·ÖÅäµÄ¿ÉÓÃipµØÖ·¾Í¿ÉÒÔ¡£
2£©¹«ÍøµØÖ·µÄÆðʼipµØÖ·ºÍ½áÊøipµØÖ·¿ÉÒÔ²»Á¬Ðø
R1(config)#ip nat pool ruijie netmask 255.255.255.0 //ÅäÖÃÒ»¸öÃû×ÖΪruijieµÄ¹«ÍøµØÖ·³Ø
R1(config-ipnat-pool)#address 192.168.2.10 192.168.2.11 //¹«ÍøµØÖ·µÄÆðʼipµØÖ·£¬½áÊøipµØÖ·
R1(config-ipnat-pool)#address 192.168.2.15 192.168.2.15 //ÈôÓжà¸ö¹«ÍøµØÖ·£¬µ«ÊDz»Á¬Ðø£¬¿ÉÒÔÅäÖöà¸ö¹«ÍøµØÖ·¶Î
R1(config-ipnat-pool)#exit
6¡¢ÅäÖÃnatת»»²ßÂÔ
R1(config)#ip nat inside source list 10 pool ruijie overload //½«acl 10Æ¥ÅäµÄÁ÷Á¿£¬Ö´ÐÐnatת»»£¬×ª»»³ÉµØÖ·³ØruijieÀïÃæµÄµØÖ·
×¢Ò⣺
overload²ÎÊýÊÇÖ´ÐÐnatÖØÔØµÄº¬Ò壬Èô²»¼ÓoverloadÊÇÖ´Ðж¯Ì¬µÄipÒ»¶ÔÒ»Ó³É䣬²»»áÖ´Ðж˿Úת»»£¬²»Äܽâ¾ö¹«ÍøµØÖ·²»¹»µÄÎÊÌâ¡£ÈôÊÇÔÚÍøÂç³ö¿ÚÖ´ÐÐNAT£¬ÊÇΪÁ˽â¾ö¹«ÍøµØÖ·²»¹»µÄÎÊÌ⣬±ØÐëÒª¼Óoverload²ÎÊý¡£
Îå¡¢ÅäÖÃÑéÖ¤
²âÊÔÄÚÍøÄÜ·ñÕý³£·ÃÎÊÍâÍø£¬ÈôÄÚÍøPC¿ÉÒÔÕý³£·ÃÎÊÍâÍø£¬ÔòNATÅäÖÃÕýÈ·¡£ÔÚ³ö¿Ú·ÓÉÆ÷Éϲ鿴NATת»»±íÏîÈçÏ£º
