1. Routerçé
ç½®
#
sysname Router
#
acl number 3000
rule 5 permit source 192.168.1.1 0.0.0.0
#
acl number 3001
rule 5 permit source 192.168.1.2 0.0.0.0
#
traffic classifier testA operator or
if-match acl 3000
traffic classifier testB operator or
if-match acl 3001
#
traffic behavior testA
redirect ip-nexthop 202.168.100.1
traffic behavior testB
redirect ip-nexthop 202.168.100.2
#
traffic policy test
classifier testA behavior testA
classifier testB behavior testB //é
ç½®éå®åï¼å®ç°ä¸ºæ¥èªInternetä¸åæ¥å£çæ¥æä»ç¶ä»æ¤æ¥å£æ å°åºå»
#
interface GigabitEthernet1/0/0
ip address 202.168.100.1 255.255.255.0
nat static protocol tcp global current-interface 8080 inside 192.168.1.1 ftp netmask 255.255.255.255
#
interface GigabitEthernet2/0/0
ip address 202.168.100.2 255.255.255.0
nat static protocol tcp global current-interface 8080 inside 192.168.1.2 ftp netmask 255.255.255.255 //é
ç½®NAT Staticï¼å®ç°å¤ç½ç¨æ·è®¿é®å
ç½æå¡å¨
#
interface GigabitEthernet3/0/0
ip address 192.168.100.1 255.255.255.0
traffic-policy test inbound
#
ip route-static 0.0.0.0 0.0.0.0 202.168.100.1
ip route-static 0.0.0.0 0.0.0.0 202.168.100.2 //é
ç½®çä»·è·¯ç±å®ç°NATåä¸è¡
#
return
2. æ£æ¥é
ç½®ç»æã
Internetä¸ç¨æ·è½å¤æ£å¸¸è®¿é®FTPæå¡å¨ã
é
置注æäºé¡¹