camel410 发表于 2007-7-26 11:56:55

继续讨论内网地址通过路由器用否NAT

关于内网地址通过路由器用否NAT的讨论:

环境:在cisco3560上划分两个vlan,实现DHCP服务,我只有一个公网地址,能否通过在3560设置,实现上外网,内部计算机DHCP获取地址呢?
请大家指导!谢谢!!
目前,DHCP我已经做好,只是到外网的路子走不通,请各位大虾帮忙呀!
这是在3560上的show run结果:
show run
Building configuration...

Current configuration : 2275 bytes
!
version 12.2
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname test3560
!
!
no aaa new-model
ip subnet-zero
ip routing
!
ip dhcp pool DHCPserver01
   network 192.168.91.0 255.255.255.0
   dns-server 202.96.160.4 202.96.166.68
   default-router 192.168.91.1
!
ip dhcp pool DHCPserver02
   network 192.168.92.0 255.255.255.0
   dns-server 202.96.160.4 202.96.166.68
   default-router 192.168.92.1
!
!
!
!
no file verify auto
spanning-tree mode pvst
spanning-tree extend system-id
!
vlan internal allocation policy ascending
!
!
interface FastEthernet0/1
no switchport
ip address 221.190.41.120 255.255.255.0
!
interface FastEthernet0/2
switchport access vlan 91
switchport mode access
!
interface FastEthernet0/3
switchport access vlan 91
switchport mode access
!
interface FastEthernet0/4
switchport access vlan 91
switchport mode access
!
interface FastEthernet0/5
switchport access vlan 91
switchport mode access
!
interface FastEthernet0/6
switchport access vlan 91
switchport mode access
!
interface FastEthernet0/7
switchport access vlan 92
switchport mode access
!
interface FastEthernet0/8
switchport access vlan 92
switchport mode access
!
interface FastEthernet0/9
switchport access vlan 92
switchport mode access
!
interface FastEthernet0/10
switchport access vlan 92
switchport mode access
!
interface FastEthernet0/11
switchport access vlan 92
switchport mode access
!
interface FastEthernet0/12
switchport access vlan 92
switchport mode access
!
interface FastEthernet0/13
!
interface FastEthernet0/14
!
interface FastEthernet0/15
!
interface FastEthernet0/16
!
interface FastEthernet0/17
!
interface FastEthernet0/18
!
interface FastEthernet0/19
!
interface FastEthernet0/20
!
interface FastEthernet0/21
!
interface FastEthernet0/22
!
interface FastEthernet0/23
!
interface FastEthernet0/24
!
interface GigabitEthernet0/1
!
interface GigabitEthernet0/2
!
interface Vlan1
no ip address
!
interface Vlan91
ip address 192.168.91.1 255.255.255.0
!
interface Vlan92
ip address 192.168.92.1 255.255.255.0
!
ip classless
ip route 0.0.0.0 0.0.0.0 221.190.41.108
ip http server
!
!
!
control-plane
!
!
line con 0
line vty 0 4
no login
line vty 5 15
no login
!
!
end

zhuww 发表于 2007-7-26 16:36:40

三层交换机不等于路由器哦,它不能做nat伪装的哦

louyc 发表于 2007-7-29 08:49:03

你一号端口配的公网IP除了可以在公网连接你交换机本身外没有任何意义~你不做NAT你的内往数据报就算到达ISP就被丢弃了~
页: [1]
查看完整版本: 继续讨论内网地址通过路由器用否NAT