Sunday, 10 November 2013

Translation of destination ports Using NAT

Around my studies, My spouse and i gave me a new necessity that is fairly unusual, along with acquired generally no practical application inside actuality.. basically, it’s perfect for the particular CCIE research! Below was the requirement:



Presented the particular underneath diagram, configure the particular system in order that a new telnet through R1 meant to help R3′s loopback0 interface with TCP interface 19 will offer anyone VTY entry to R3. Don't configure R3.

NAT Outside the house Diagram

It’s fairly obvious right here NAT will be what we’re searching for, but the NAT transactions can be really difficult to help navigate. First, I’ll say to just a little key I exploit pertaining to static NAT translations:

Intended for on the inside -> outside the house translations, the particular get collection will be “ip nat on the inside resource static <inside global> <inside local>” – To put it differently, this can be read since “ip nat on the inside resource static <THE_IP_WE_WANT_TO_KNOW_THE_OTHER_END_AS> <THE_TRUE_IP_OF_THE_END_DEVICE>

One example is, let’s say many of us were explained to “Configure NAT so that you can ping to help 99. 99. 99. 99 but truly achieve a hundred and fifty. a couple of. a couple of. a couple of. We’d choose this particular:

ip nat on the inside resource static 99. 99. 99. 99 a hundred and fifty. a couple of. a couple of. a couple of

Now, pertaining to outside the house translations, the particular logic is totally flipped- meaning if you can don't forget 1 (either on the inside or even outside), you are able to don't forget the other!

With all the above observe with instructions pertaining to static NAT, our own necessity is not hard. Here’s what My spouse and i invented:

! R1
!
interface Serial0/0
ip nat outside the house
!
ip nat outside the house resource static tcp a hundred and fifty. 3. 3. 3 twenty three a hundred and fifty. 9. 9. 9 19
!

Now, let’s check:

Rack1R1#telnet a hundred and fifty. 9. 9. 9 19
Hoping a hundred and fifty. 9. 9. 9, 19... Open up


User Accessibility Verification

Private data:

R3>

Right now there we have now that! We’ve productively started a new telnet session a great IP handle which formally doesn’t are present within our system, along with caused it to be route to help TCP interface twenty three with R3′s loopback. Seeing that borat could say, pleasant!

0 comments:

Post a Comment