Documente Academic
Documente Profesional
Documente Cultură
Chapitre 19
NAT et PAT
Le NAT
ICND 2.00-3
Rseau priv
Utilise la plage dadresses prives
(adressage local)
Les adresses locales ne doivent
Pas tre utilises sur Internet
Internet
Utilise la plage dadresses
publiques
Les adresses publiques sont
Globalement uniques
ICND 2.00-4
Terminologie
ICND 2.00-5
ICND 2.00-6
ICND 2.00-7
ICND 2.00-8
ICND 2.00-9
ICND 2.00-10
Le PAT
ICND 2.00-11
WAN
PAT
Router
Interface WAN:
138.76.28.4
S
IE
M
N
X
D
O
R
F
138.76.29.7
Router
SA = 138.76.29.7, spor t= 23
DA =138.76.29.7, dpor t= 23
SA = 138.76.29.7, spor t= 23
DA = 138.76.29.7, dpor t= 23
S
IX
E
M
N
D
O
R
F
Net A
10.0.0.0/8
10.0.0.10
ICND 2.00-12
Adresses privees
Une seule
Adresse IP
publique
WAN
mappage IP @, publique
Port assign #
TU....TCP/UDP
2002, Cisco Systems, Inc. All rights reserved.
ICND 2.00-13
Configuration du PAT
Spcfier ladresse translater
Router(config)#IP Nat inside source list [standard Access
List number] pool [NAT Pool Name] overload
ICND 2.00-14
Exemple de PAT
ICND 2.00-15
ICND 2.00-16
Outside local
---
Outside global
---
ICND 2.00-17
Router#debug ip nat
NAT: s=192.168.1.95->172.31.233.209, d=172.31.2.132 [6825]
NAT: s=172.31.2.132, d=172.31.233.209->192.168.1.95 [21852]
NAT: s=192.168.1.95->172.31.233.209, d=172.31.1.161 [6826]
NAT*: s=172.31.1.161, d=172.31.233.209->192.168.1.95 [23311]
NAT*: s=192.168.1.95->172.31.233.209, d=172.31.1.161 [6827]
NAT*: s=192.168.1.95->172.31.233.209, d=172.31.1.161 [6828]
NAT*: s=172.31.1.161, d=172.31.233.209->192.168.1.95 [23313]
NAT*: s=172.31.1.161, d=172.31.233.209->192.168.1.95 [23325]
ICND 2.00-18