- 论坛徽章:
- 0
|
各位大大,
小弟单位用的是huawei 2631, 以下是小弟的设置, 但內网就是不能上公网, 內网的介面不能ping 通外网的介面, 外网的介面可以ping到公网.
以下是小弟的设置, 请问哪里错了. 谢谢
<Huawei>;dis cu
<Huawei>;dis current-configuration
#
sysname Huawei
#
super password level 3 cipher L.*ASL0!D1^X==#E\/)6SD!!
#
local-user huawei password cipher VS*(WK:G!3ST=^Q`MAD3<1!!
local-user huawei level 3
#
nat address-group 4 210.87.106.126 210.87.106.126
nat aging-time tcp 300
nat aging-time udp 180
nat aging-time icmp 180
#
interface Aux0
async mode flow
link-protocol ppp
#
interface Ethernet0/0
description connect to LAN
tcp mss 1394
ip address 210.87.106.126 255.255.255.224
ip address 10.128.37.1 255.255.255.0 sub
ip address 192.168.1.1 255.255.255.0 sub
ip address 192.168.0.250 255.255.255.0 sub
#
interface Ethernet0/1
description
ip address 172.18.22.194 255.255.255.252
#
interface Tunnel4
mtu 1476
ip address 192.168.54.34 255.255.255.252
source Ethernet0/1
destination 172.24.254.189
nat server protocol icmp global 210.87.106.126 inside 10.128.37.1
nat server protocol tcp global 210.87.106.126 telnet inside 10.128.37.1 telnet
nat server protocol udp global 210.87.106.126 snmp inside 10.128.37.1 snmp
nat server protocol tcp global 210.87.106.120 ftp inside 192.168.1.11 ftp
nat server protocol udp global 210.87.106.120 dns inside 192.168.1.11 dns
nat server protocol tcp global 210.87.106.120 22 inside 192.168.1.11 22
#
interface NULL0
#
ip route-static 0.0.0.0 0.0.0.0 Tunnel 4 preference 60
ip route-static 172.16.0.0 255.240.0.0 172.18.22.193 preference 60
ip route-static 172.22.254.29 255.255.255.255 172.18.22.193 preference 60
snmp-agent
snmp-agent local-engineid 000002DB3F00000300002D8F
snmp-agent community read public
snmp-agent community write public
snmp-agent sys-info version all
snmp-agent target-host trap address udp-domain 172.24.254.22 params securityname public
snmp-agent target-host trap address udp-domain 172.25.140.65 params securityname public
#
command-privilege level 0 view shell display current-configuration
#
user-interface con 0
authentication-mode local
user-interface aux 0
authentication-mode local
user-interface vty 0 4
authentication-mode local
user privilege level 3
#
return |
|