interface Loopback0
ip address 203.0.113.254 255.255.255.255
interface Ethernet0/0
no switchport
ip address 198.51.100.254 255.255.255.0
ip route 192.0.2.0 255.255.255.0 198.51.100.1
C9K-NAT
C9K-NAT コンフィグ
プロトコル
コンフィグ
解説
送信元 IP NAT(PAT)
C9K-NAT#show run | s ip nat|1/0/1|1/0/7|license|ACL|RM
license boot level network-advantage
interface GigabitEthernet1/0/1
no switchport
ip address 192.0.2.1 255.255.255.0
ip nat inside
interface GigabitEthernet1/0/7
no switchport
ip address 198.51.100.1 255.255.255.0
ip nat outside
ip nat inside source route-map RM-NAT interface GigabitEthernet1/0/7 overload
ip access-list extended ACL-NAT
10 permit ip 10.0.0.0 0.255.255.255 any
20 permit ip 172.16.0.0 0.15.255.255 any
30 permit ip 192.168.0.0 0.0.255.255 any
40 permit ip 192.0.2.0 0.0.0.255 any
50 permit ip 198.51.100.0 0.0.0.255 any
ip access-list extended ACL-NAT-EXCLUDE
10 permit ip any 10.0.0.0 0.255.255.255
20 permit ip any 172.16.0.0 0.15.255.255
30 permit ip any 192.168.0.0 0.0.255.255
40 permit ip any 192.0.2.0 0.0.0.255
50 permit ip any 198.51.100.0 0.0.0.255
route-map RM-NAT deny 10
match ip address ACL-NAT-EXCLUDE
route-map RM-NAT permit 100
match ip address ACL-NAT