R0106-HP MSR Router Series Layer 3 - IP Services Command Reference(V7)

175
Examples
# Allow external users to access the internal Web server at 10.110.10.10 on the L AN through
http://202.110.10.10:8080.
<Sysname> system-view
[Sysname] interface gigabitethernet 2/1/1
[Sysname-GigabitEthernet2/1/1] nat server protocol tcp global 202.110.10.10 8080 inside
10.110.10.10 http
# Allow external users to access the internal FTP server at 10.110.10.11 in MPLS VPN vrf10 through
ftp://202.110.10.10.
[Sysname] interface gigabitethernet 2/1/1
[Sysname-GigabitEthernet2/1/1] nat server protocol tcp global 202.110.10.10 21 inside
10.110.10.11 vpn-instance vrf10
# Allow external hosts to ping the host at 10.110.10.12 in VPN vrf10 by using the ping 202.110.10.11
command.
<Sysname> system-view
[Sysname] interface gigabitethernet 2/1/1
[Sysname-GigabitEthernet2/1/1] nat server protocol icmp global 202.110.10.11 inside
10.110.10.12 vpn-instance vrf10
# Allow external hosts to access the Telnet services of internal servers at 10.110.10.1 to 10.110.10.100 in
MPLS VPN vrf10 through the public address 202.110.10.10 and port numbers from 1001 to 1100. As a
result, a user can Telnet to 202.110.10.10:1001 to access 10.110.10.1, Telnet to 202.110.10.10:1002 to
access 10.110.10.2, and so on.
<Sysname> system-view
[Sysname] interface gigabitethernet 2/1/1
[Sysname-GigabitEthernet2/1/1] nat server protocol tcp global 202.110.10.10 1001 1100
inside 10.110.10.1 10.110.10.100 telnet vpn-instance vrf10
Related commands
nat server-group
display nat all
display nat server
nat server-group
Use nat server-group to create an internal server group.
Use undo nat server-group to remove an internal server group.
Syntax
nat server-group group-number
undo nat server-group group-number
Default
No server group exists.
Views
System view
Predefined user roles
network-admin