<div dir="ltr">Thanks, it works good :)<br></div><div class="gmail_extra"><br><br><div class="gmail_quote">2013/2/19 Daniel Celiński <span dir="ltr"><<a href="mailto:daniel.02c@gmail.com" target="_blank">daniel.02c@gmail.com</a>></span><br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">Try something like that:<br>
<br>
<br>
ip nat pool nat-pool1 napt multibind<br>
address a.b.c.1/32 port-block 1 to 15<br>
<br>
ip nat pool nat-pool2 napt multibind<br>
address a.b.c.2/32 port-block 1 to 15<br>
<br>
policy access-list pacl-nat<br>
seq 10 permit ip any <dst net1 of your customers network> class customers<br>
seq 20 permit ip any <dst net2 of your customers network> class customers<br>
seq 100 permit ip any any class internet<br>
<br>
nat policy nat-policy1<br>
access-group pacl-nat<br>
class internet<br>
pool pool1 bras<br>
timeout tcp 18000<br>
endpoint-independent filtering udp<br>
class customers<br>
ignore<br>
<br>
nat policy nat-policy2<br>
access-group pacl-nat<br>
class internet<br>
pool pool2 bras<br>
timeout tcp 18000<br>
endpoint-independent filtering udp<br>
class customers<br>
ignore<br>
<br>
In policy acl "pacl-nat" you include all your customers networks.<br>
>From radius you can return nat policy names: "nat-policy1" or "nat-policy2"<br>
<br>
<br>
--<br>
Daniel<br>
<div class="HOEnZb"><div class="h5">_______________________________________________<br>
redback-nsp mailing list<br>
<a href="mailto:redback-nsp@puck.nether.net">redback-nsp@puck.nether.net</a><br>
<a href="https://puck.nether.net/mailman/listinfo/redback-nsp" target="_blank">https://puck.nether.net/mailman/listinfo/redback-nsp</a><br>
</div></div></blockquote></div><br></div>