1 拓扑案列
2 配置
pc 访问外网
interface LoopBack192
ip address 192.168.1.1 255.255.255.0
interface Vlan-interface1
ip address 10.1.1.1 255.255.255.0
ip route-static 0.0.0.0 0 10.1.1.2
local-user admin class manage
password hash $h$60XD4lCsmqgrjN2mpfhTRFdSBPC1f+xRBOO4ObIthqLLv15lHRVcY8+n+ro3I3cDSY5B3OQOEok8RLumfHa2AVdOq26ETN3gS2DCv2A==
service-type ftp
authorization-attribute user-role level-15
authorization-attribute user-role network-admin
authorization-attribute user-role network-operator
ftp server enable
nat
interface GigabitEthernet0/0
port link-mode route
combo enable copper
ip address 10.1.1.2 255.255.255.0
interface GigabitEthernet0/1
port link-mode route
combo enable copper
ip address 100.1.1.1 255.255.255.0
nat outbound 2000 address-group 1
nat static enable
interface GigabitEthernet0/0
port link-mode route
combo enable copper
ip address 10.1.1.2 255.255.255.0
interface GigabitEthernet0/1
port link-mode route
combo enable copper
ip address 100.1.1.1 255.255.255.0
nat outbound 2000 address-group 1
nat static enable
user-group system
nat static outbound 192.168.1.1 100.1.1.4
nat address-group 1
address 100.1.1.4 100.1.1.4
===================================================
isp
interface LoopBack1
ip address 8.8.8.8 255.255.255.255
interface Vlan-interface1
ip address 100.1.1.2 255.255.255.0
测试
pc 上网