Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

IP NAT INSIDE routing

Status
Not open for further replies.

albr8

IS-IT--Management
Feb 20, 2002
1
US
I am currently trying to enter a static inside route to redirect a particular port to an inside address.

IP NAT INSIDE SOURCE STATIC TCP a.b.c.d 3389 e.f.g.h 3389 where a.b.c.d is my inside address and e.f.g.h is my outside global ip.

This is one of many in the nat table for various ports to be redirected inside. When I enter the line I get the error: Address e.f.g.h already in use on attached network.

I see the word overload in manuals where the address is used from single global to many internal but I cannot get it to accept it, in fact it does not appear in the ? help. the word extendable does but has no effect when added.

ver 11.3 so what am I missing? tnx
 
I'm not a big nat expert but have set it up a few times. If I understand your goal correctly, I think you need an 'ip nat outside source static x.x.x.x y.y.y.y' command, where x.x.x.x is your outside global address and y.y.y.y is your inside local address.
 
Well something bothered me about my first thought. I looked up 'ip nat outside source blah blah' on CCO and it appears as though I was right to be concerned. That translates source addresses only - not destination addresses (or ports). However, I did find an example of translating port numbers using 'ip nat inside course blah blah blah' and it used the same ip address but different port numbers. Don't know if that implies you can only translate ports using the same IP or not? Sorry. I should have looked it up first.

Here is that link:

 
I fear that I may be digging myself deeper and deeper into a hole. However, still not being sure if I know what you wanted to do, it may be that I nearly had it right the first time. You don't need to change 'inside' to 'outside' as was my first erroneous suggestion. I think you may just need to change 'source' to 'destination' and list your global address first and your inside address last. I'll shut up now. Here is the best link on CCO for NAT that I could find:

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top