Cisco | Extranet - Fast BIQ
Enter module switch
Hw-module session 1/0
Config port interface in switch module
interface GigabitEthernet0/26
description SIP-TRUNK
switchport access vlan 220
switchport mode access
no shutdown
Create Vlan
vlan 220
Name SIP-TRUNK
!
interface Ethernet-Internal1/0/0
service instance 220 ethernet
encapsulation dot1q 220
bridge-domain 220 split-horizon group 0
!
interface BDI220
no shut
description PB-INTERFACE
ip flow monitor NETFLOW-Monitor_Permata input
ip flow monitor NETFLOW-Monitor_Permata output
ip address 172.26.33.215 255.255.255.240
ip nat outside
encapsulation dot1Q 220
ip virtual-reassembly
end
!
##ROUTING TO EXTERNAL NEXTHOP FR EXTRANET ROUTE##
ip route 10.112.6.14 255.255.255.255 172.26.33.209 name KSEI_DEV
##routing TO INTERNAL VIA FW-H2H##
ip route 10.87.228.208 255.255.255.255 10.21.189.83 name DEV_SVR
!
ip nat pool NPOOL-DEV-KSEI 172.26.33.213 172.26.33.213 netmask 255.255.255.240
!
Extended IP access list NAT__DEV_KSEI_10.87.228.208
10 permit ip host 10.87.228.208 host 10.112.6.14
20 permit ip host 10.112.6.14 host 10.87.228.208
30 permit ip host 10.87.244.26 host 10.112.6.14
40 permit ip host 10.112.6.14 host 10.87.244.26
50 permit ip host 10.89.1.23 host 10.112.6.14
60 permit ip host 10.112.6.14 host 10.89.1.23
!
route-map RMAP_NAT_DEV_KSEI permit 10
match ip address NAT__DEV_KSEI_10.87.228.208
match interface BDI220
!
ip nat inside source route-map RMAP_NAT_DEV_KSEI pool NPOOL-DEV-KSEI overload
!
interface BDI220
ip nat outside
!
=======TINGGAL KONFIG DISISI FW-H2H ========
=======TINGGAL KONFIG DISISI FW-H2HSW-EDGE ========
Posting Komentar untuk "Cisco | Extranet - Fast BIQ"