R0106-HP MSR Router Series Layer 3 - IP Services Configuration Guide(V7)
131
DS-Lite tunnel peer: -
VPN instance/VLAN ID/VLL ID: -/-/-
Protocol: ICMP(1)
Responder:
Source IP/port: 202.38.1.111/42496
Destination IP/port: 202.38.1.100/0
DS-Lite tunnel peer: -
VPN instance/VLAN ID/VLL ID: -/-/-
Protocol: ICMP(1)
State: ICMP_REPLY
Application: OTHER
Start time: 2012-08-16 09:30:49 TTL: 27s
Interface(in) : GigabitEthernet2/1/1
Interface(out): GigabitEthernet2/1/2
Initiator->Responder: 5 packets 420 bytes
Responder->Initiator: 5 packets 420 bytes
Total sessions found: 1
Outbound dynamic NAT for internal-to-external access
(non-overlapping addresses)
Network requirements
As shown in Figure 55, a company has a segment address 192.168.0.0/16 and two public IP addresses
202.38.1.2 and 202.38.1.3. Configure outbound dynamic NAT to allow only internal users on segment
192.168.1.0/24 to access the Internet.
Figure 55 Network diagram
Configuration procedure
# Specify IP addresses for the interfaces. (Details not shown.)
# Configure address group 0, and add an address member from 202.38.1.2 to 202.38.1.3.
<Router> system-view
[Router] nat address-group 0
[Router-nat-address-group-0] address 202.38.1.2 202.38.1.3
[Router-nat-address-group-0] quit