[c-nsp] NAT port map question

Gert Doering gert at greenie.muc.de
Mon Aug 23 17:27:58 EDT 2004


Hi,

On Mon, Aug 23, 2004 at 11:19:31PM +0200, Marcel Lammerse wrote:
> I.e.
> 
> 213.84.22.161 TCP 1 -> 192.168.1.1 TCP 1
> 213.84.22.161 TCP 2 -> 192.168.1.1 TCP 2
> 213.84.22.161 TCP 3 -> 192.168.1.1 TCP 3
> ..
> 213.84.22.161 TCP 65535 -> 192.168.1.1 TCP 65535
> 
> Please don't tell me I have to enter 65535 static port translations to 
> get this to work...

You could just omit the port specification, mapping "everything on
213.84.22.161" to "everything on 192.168.1.1" (examples in the cisco
docs).

If you only want TCP, complement that mapping with an ACL.

gert

-- 
USENET is *not* the non-clickable part of WWW!
                                                           //www.muc.de/~gert/
Gert Doering - Munich, Germany                             gert at greenie.muc.de
fax: +49-89-35655025                        gert at net.informatik.tu-muenchen.de


More information about the cisco-nsp mailing list