- 论坛徽章:
- 5
|
应某要求做了次测试。
多ISP接入的出口流量优化+NAT地址池配置+路由TRACK联动+内网部分奇/偶数子网分流
Current configuration : 2608 bytes
!
version 12.4
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname C-3640
!
boot-start-marker
boot-end-marker
!
!
no aaa new-model
!
resource policy
!
!
!
ip cef
no ip domain lookup
!
!
ip sla monitor 1
type echo protocol ipIcmpEcho 10.0.0.1 source-interface Ethernet0/0
ip sla monitor schedule 1 life forever start-time now
ip sla monitor 2
type echo protocol ipIcmpEcho 10.0.1.1 source-interface Ethernet0/1
ip sla monitor schedule 2 life forever start-time now
!
!
!
!
!
!
!
!
!
!
!
!
fax interface-type fax-mail
!
!
!
!
track 1 rtr 1
!
track 2 rtr 2
!
!
!
!
!
interface Ethernet0/0
ip address 10.0.0.2 255.255.255.252
ip nat outside
ip virtual-reassembly
half-duplex
!
interface Ethernet0/1
ip address 10.0.1.2 255.255.255.252
ip nat outside
ip virtual-reassembly
half-duplex
!
interface Ethernet0/2
ip address 192.168.0.1 255.255.255.0
ip nat inside
ip virtual-reassembly
ip policy route-map in
half-duplex
!
interface Ethernet0/3
no ip address
half-duplex
!
interface Serial1/0
no ip address
encapsulation ppp
serial restart-delay 0
!
interface Serial1/1
no ip address
encapsulation ppp
serial restart-delay 0
!
interface Serial1/2
no ip address
encapsulation ppp
serial restart-delay 0
!
interface Serial1/3
no ip address
encapsulation ppp
serial restart-delay 0
!
no ip http server
no ip http secure-server
ip route 0.0.0.0 0.0.0.0 10.0.0.1 5 track 1
ip route 0.0.0.0 0.0.0.0 10.0.1.1 10 track 2
ip route 100.100.100.100 255.255.255.255 10.0.0.1
ip route 192.168.0.0 255.255.0.0 192.168.0.2
ip route 200.200.200.200 255.255.255.255 10.0.1.1
!
!
ip nat pool out1 10.0.0.4 10.0.0.7 netmask 255.255.255.252
ip nat pool out2 10.0.1.4 10.0.1.7 netmask 255.255.255.252
ip nat inside source route-map out1 pool out1
ip nat inside source route-map out2 pool out2
!
access-list 1 permit 192.168.0.0 0.0.255.255
access-list 10 permit 192.168.0.0 0.0.254.255
access-list 11 permit 192.168.1.0 0.0.254.255
!
route-map in permit 10
match ip address 10
set ip next-hop verify-availability 10.0.0.1 1 track 1
set ip next-hop 10.0.0.1
!
route-map in permit 20
match ip address 11
set ip next-hop verify-availability 10.0.1.1 1 track 2
set ip next-hop 10.0.1.1
!
route-map out2 permit 10
match ip address 1
match interface Ethernet0/1
!
route-map out1 permit 10
match ip address 1
match interface Ethernet0/0
!
!
!
control-plane
!
!
!
!
!
!
!
dial-peer cor custom
!
!
!
!
!
line con 0
exec-timeout 0 0
privilege level 15
logging synchronous
line aux 0
line vty 0 4
exec-timeout 0 0
privilege level 15
no login
!
!
end |
|