cisco防火墙PIX 501连接内网与外网的配置,防火墙各接口配置运行命令?

2025-12-06 06:59:30
推荐回答(1个)
回答1:

假设外网ip为202.96.128.166/24,内网网段为192.168.10.0/24。f0/1口连接外网,f0/0口连去内网。

Router>
Router>
Router>
Router>en
Router>enable
Router#config
Router#configure
Configuring from terminal, memory, or network [terminal]?
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#inter
Router(config)#interface f0/1
Router(config-if)#ip ad
Router(config-if)#ip address 202.96.128.166 255.255.255.0
Router(config-if)#no shut
Router(config-if)#no shutdown

%LINK-5-CHANGED: Interface FastEthernet0/1, changed state to up

%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state to up

Router(config-if)#exit
Router(config)#inter
Router(config)#interface f0/0
Router(config-if)#ip ad
Router(config-if)#ip address 192.168.10.1 255.255.255.0
Router(config-if)#no hsut
Router(config-if)#no shut
Router(config-if)#no shutdown

%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up

%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, changed state to up

Router(config-if)#exit
Router(config)#acc
Router(config)#access-list 1 pe
Router(config)#access-list 1 permit 192.168.10.0 0.0.0.255
Router(config)#inter
Router(config)#interface f0/0
Router(config-if)#ip nat in
Router(config-if)#ip nat inside
Router(config-if)#exit
Router(config)#inter
Router(config)#interface f0/1
Router(config-if)#ip nat o
Router(config-if)#ip nat outside
Router(config-if)#exit
Router(config)#ip route 0.0.0.0 0.0.0.0 inter
Router(config)#ip route 0.0.0.0 ?
A.B.C.D Destination prefix mask
Router(config)#ip route 0.0.0.0 0.0.0.0 inter
Router(config)#ip route 0.0.0.0 0.0.0.0 int?
% Unrecognized command
Router(config)#ip route 0.0.0.0 0.0.0.0 ?
A.B.C.D Forwarding router's address
Ethernet IEEE 802.3
FastEthernet FastEthernet IEEE 802.3
GigabitEthernet GigabitEthernet IEEE 802.3z
Loopback Loopback interface
Null Null interface
Serial Serial
Vlan Catalyst Vlans
Router(config)#ip route 0.0.0.0 0.0.0.0 f0/1
Router(config)#ip nat in
Router(config)#ip nat inside s
Router(config)#ip nat inside source l
Router(config)#ip nat inside source list 1 inter
Router(config)#ip nat inside source list 1 interface f0/1
Router(config)#