No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade
Knowledge Base

FAQ-How to configure nat and nat server at the same time when AR1200 has only one public network IP

Publication Date:  2012-09-22  |   Views:  5  |   Downloads:  0  |   Author:  c00222574  |   Document ID:  EKB1000015752

Contents

Issue Description

Q: How to configure nat and nat server at the same time when AR1200 has only one public network IP?

Topology:

PC-------|
               |---------AR12/22/32----------internet
server---|

AR12/22/32 has only one public network IP
interface GigabitEthernet0/0/0
ip address 123.130.240.70 255.255.255.248

Alarm Information

NULL

Handling Process


1. there is follow failure information according to original custom configuration:

nat address-group 1 123.130.240.70 123.130.240.70

interface GigabitEthernet0/0/0
ip address 123.130.240.70 255.255.255.248
nat server protocol tcp global 123.130.240.70 8001 inside 192.168.102.200 8001
The address conflicts with interface or ARP IP

interface GigabitEthernet0/0/0
ip address 123.130.240.70 255.255.255.248
nat outbound 2000 address-group 1
The address conflicts with interface or ARP IP

2. The way to remodify data configuration is as follows, it can solve clash report

interface GigabitEthernet0/0/0
ip address 123.130.240.70 255.255.255.248
nat server protocol tcp global current-interface 3389 inside 192.168.102.200 3389
nat server protocol tcp global current-interface 8080 inside 192.168.102.100 8080
nat server protocol tcp global current-interface 9000 inside 192.168.102.200 9000
nat server protocol tcp global current-interface 9001 inside 192.168.102.200 9001
nat server protocol tcp global current-interface 8399 inside 192.168.102.100 8399
nat server protocol tcp global current-interface www inside 192.168.102.100 www
nat outbound 2000

When there is only one external interface IP needs to make NAT and NAT server, suggest as follows:
1. Adopt current running interface IP when configure global address of NAT server;
2. Ordinary NAT access to network suggested to Easy NAT, no need to configure address-group

Root Cause

NULL

Suggestions

NULL