iczfirz wrote:
偉哥... 比多個難題你
ip host host-29 202.123.165.29
!
!
!
!
interface Ethernet0
ip address 202.123.165.30 255.255.255.248
ip nat outside
no mop enabled
!
interface Ethernet1
ip address 1.0.0.1 255.255.255.0
ip nat inside
no mop enabled
!
ip nat pool host-29 202.123.165.29 202.123.165.29 netmask 255.255.255.248
ip nat pool service-11 1.0.0.11 1.0.0.11 prefix-length 28 type rotary
ip nat inside source list 1 pool host-29 overload
ip nat inside destination list 10 pool service-11
ip classless
ip route 0.0.0.0 0.0.0.0 202.123.165.25
no ip http server
ip pim bidir-enable
!
access-list 1 permit 1.0.0.0 0.0.0.255
access-list 10 permit 202.123.165.29
!
上面係得既... 做到load distribution..
但我要做埋睇到咩port 就用乜server pool.. 所以我改上面果兩句為下面咁... 希望睇到係telnet就比佢入 pool service-11... 其它port就去service-12 13 14... 但....
ip nat inside destination list 10 pool service-11
>>>>
ip nat inside destination list 199 pool service-11
access-list 10 permit 202.123.165.29
>>>>
access-list 199 permit 23 host 202.123.165.29 any
但就唔work.. debug nat都直頭睇唔到有反應 ... 即係個acl 199唔work.. 你有乜idea?