|
Dinamik NAT bo`yicha ishni bajarish tartibi
|
bet | 30/73 | Sana | 23.05.2024 | Hajmi | 12,81 Mb. | | #251629 |
Bog'liq «Tarmoq xavfsizligi»Dinamik NAT bo`yicha ishni bajarish tartibi
12..6 – rasm. Dinamik NAT tamoyili asosida qurilgan tarmoq tuzilishi
Birinchi navbatda Router1 va Router2 larga statik ip route beriladi. Chunki internet qismidagi adreslarni oldindan bilmaymiz.
Router1(config)#ip route 0.0.0.0 0.0.0.0 12..12..12..2
Router2(config)#ip route 0.0.0.0 0.0.0.0 12..12..12..1
195.158.1.1 dan 195.158.1.10 gacha public IP adreslarni tarqatishimiz uchun TATU nomli Pool yaratamiz.
Router(config)#ip nat pool TATU 195.158.1.1 195.158.1.10 netmask 255.255.255.240
LAN tarmoqlar ichida aynan 192.168.1.0/24 tarmoq internetga chiqishi uchun Access list foydalanamiz
Router1(config)#access-list 10 permit 192.168.1.0 0.0.0.255
Access list ni TATU nomli yaratilgan NAT ga biriktiramiz.
Router1(config)#ip nat inside source list 10 pool TATU
Router ning kirish va chiqish portlariga NAT ni biriktiramiz
Router1(config)#interface fastEthernet 0/0
Router1(config-if)#ip nat inside
Router1(config-if)#exit
Router1(config)#interface fastEthernet 0/1
Router1(config-if)#ip nat outside
Router1(config-if)#exit
12..7 Rasm. . Dinamik NAT
Router1# show ip nat translations
Router1#show running-config
12..7-rasm. Manzillarni translatsiyasi bo’yicha olingan natijalar
Topshiriq
Cisco packet tracer muhiti asosida tarmoqni tuzilishini yarating
Tamoqdag har bir R1, R2 marshrutizatorlarining interfeyslarini sozlang va tekshiring
Dinamik NAT bo`yicha tarmoq konfiguratsiyalarini sozlang va tekshiring
13-Laboratoriya ishi
Mavzu: Tarmoqni himoyalash protokollari SCP, SNMP ni sozlash va log fayllarni tadqiq etish
Ishning maqsadi
Ushbu laboratoriya ishi quyidagilar uchun mo’ljallangan:
tarmoqni himoyalash protokollari SCP, SNMP ni sozlashni o’rganish;
Log fayllarni tadqiq etish. Syslog serverini sozlashni o’rganish.
|
| |