Cisco¤Ç¤Î¥ë¡¼¥¿¤ÎÀßÄê¤ò¤ä¤Ã¤Æ¤ß¤Þ¤¹¡£
¥¤¥ó¥¿¡¼¥Õ¥§¡¼¥¹¡ÊIF¡Ë¤ÎÀßÄ꤫¤é½ç¤Ë¼Â»Ü¤·¤Þ¤¹¡£
¥¤¥ó¥¿¡¼¥Õ¥§¡¼¥¹¡ÊIF¡Ë¤ÎÀßÄ꤫¤é½ç¤Ë¼Â»Ü¤·¤Þ¤¹¡£
¢££±¡¥IF¤ËIP¥¢¥É¥ì¥¹¤ò³ä¤êÅö¤Æ¤ë
(1)ÀßÄê³µÍ×
°Ê²¼¤Î¿Þ¤Î¤è¤¦¤Ë¡¢LAN¦¤Ë192.168.1.254/24¡¢WAN¦¤Ë172.16.12.254/24¤ÎIP¥¢¥É¥ì¥¹¤ò³ä¤êÅö¤Æ¤Þ¤¹¡£

¤³¤³¤Ç¡¢Ãí°ÕÅÀ¤Ç¤¹¡£Cisco892¤Î¾ì¹ç¡¢¥¤¥ó¥¿¡¼¥Õ¥§¡¼¥¹¤Î0~7ÈÖ¡ÊFastEthernet0~7¡Ë¤Ï¥¹¥¤¥Ã¥Á¥ó¥°¥Ï¥Ö¤È¤·¤ÆÆ°ºî¤·¤Þ¤¹¡£¤è¤Ã¤Æ¡¢¤³¤Î8¤Ä¤Î¥Ý¡¼¥È¤Ç1¤Ä¤ÎIP¥¢¥É¥ì¥¹¤ò»ý¤Á¤Þ¤¹¡£¤³¤Î¤È¤¡¢IP¥¢¥É¥ì¥¹¤Ï¡¢FastEthernet0~7¤ò«¤Í¤¿vlan1¤ËÀßÄꤷ¤Þ¤¹¡£
(2)ÀßÄê
(2)ÀßÄê
Router#conf t
Router(config)#int vlan 1
Router(config-if)#ip address 192.168.1.254 255.255.255.0
Router(config-if)#no shutdown
Router(config-if)#exit
Router(config)#int gigabitEthernet 0
Router(config-if)#ip address 172.16.12.254 255.255.255.0
Router(config-if)#no shutdown
Router(config-if)#end
(3)ÄÌ¿®¤Î³Îǧ¤ò¤·¤Æ¤ß¤Þ¤·¤ç¤¦¡£
192.168.1.0/24¤Î¥»¥°¥á¥ó¥È¤ÎPC¡Ê192.168.1.11¡Ë¤«¤é¡¢172.16.12.0/24¤ÎPC¤Ëping¤òÁ÷¿®¤·¤Þ¤·¤ç¤¦¡£PC¤Î¥Ç¥Õ¥©¥ë¥ÈGW¤Ï¥ë¡¼¥¿¤ò¸þ¤±¤Þ¤·¤ç¤¦¡£¤Þ¤¿¡¢PC¤ÎOS¤ä¥¦¥¤¥ë¥¹Âкö¥½¥Õ¥È¤Î¤Ê¤É¤Î¥Ñ¡¼¥½¥Ê¥ëFWµ¡Ç½¤Çping¤¬µñÈݤµ¤ì¤Æ¤¤¤ë¾ì¹ç¤¬¤¢¤ê¤Þ¤¹¡£°ì»þŪ¤ËOFF¤Ë¤·¤Æ¤ª¤¤Þ¤·¤ç¤¦¡£
¢££²¡¥NAT¤ò¤·¤Æ¤ß¤è¤¦¡£
(1)³µÍ×
192.168.1.11¤ÎIP¥¢¥É¥ì¥¹¤ÎPC¤ò¡¢³°¤«¤é¤Ï203.0.113.11¤Ë¸«¤¨¤ë¤è¤¦¤Ë¤·¤Þ¤·¤ç¤¦¡£
¤Ä¤Þ¤ê¡¢203.0.113.11¤Ø¤ÎÄÌ¿®¤ò¥ë¡¼¥¿¤Ç192.168.1.11¤ËNAT¤·¤Þ¤¹¡£
(2)ÀßÄê
ÀßÄê¤Ï°Ê²¼¤Ç¤¹¡£
Router(config)#interface vlan 1
Router(config-if)#ip nat inside
Router(config-if)#exit
Router(config)#int gigabitEthernet 0
Router(config-if)#ip nat outside
Router(config-if)#exit
Router(config)#ip nat inside source static 192.168.1.11 203.0.113.11
Router(config)#end
(3)ÀßÄê³Îǧ
¡ÀßÄꥳ¥Þ¥ó¥É
NAT¤¬ÀßÄꤵ¤ì¤Æ¤¤¤ë¤«¤ò¡¢°Ê²¼¤Î¥³¥Þ¥ó¥É¤Ç³Îǧ¤·¤Þ¤¹¡£
Router#sh ip nat translations
Pro Inside global Inside local Outside local Outside global
--- 203.0.113.11 192.168.1.11 --- ---
¢PingÁÂÄÌ
172.16.1.0/24¤ÎPC¤«¤é203.0.113.11¤ËPing¤òÂǤäƤߤޤ·¤ç¤¦¡£PC¤ÎËÜÅö¤ÎIP¥¢¥É¥ì¥¹¤Ï192.168.1.11¤Ç¤¹¤¬¡¢ping¤¬ÆÏ¤¯¤È»×¤¤¤Þ¤¹¡£
£Wireshark¤Ç³Îǧ
¥ë¡¼¥¿¤ÎÁ°¸å¤Ç¥Ñ¥±¥Ã¥È¤Î°¸À褬ÊѲ½¤·¤Æ¤¤¤ë¤³¤È¤ò³Îǧ¤·¤Æ¤ß¤Þ¤·¤ç¤¦¡£
£Wireshark¤Ç³Îǧ
¥ë¡¼¥¿¤ÎÁ°¸å¤Ç¥Ñ¥±¥Ã¥È¤Î°¸À褬ÊѲ½¤·¤Æ¤¤¤ë¤³¤È¤ò³Îǧ¤·¤Æ¤ß¤Þ¤·¤ç¤¦¡£
¤ÀßÄꥳ¥Þ¥ó¥É¤Ç³Îǧ
NAT¥Æ¡¼¥Ö¥ë¤ËÊÑ´¹¤Î¾ðÊ󤬵²±¤µ¤ì¤Æ¤¤¤ë¤³¤È¤¬Ê¬¤«¤ê¤Þ¤¹¡£
Router#sh ip nat translations
Pro Inside global Inside local Outside local Outside global
icmp 203.0.113.11:1 192.168.1.11:1 172.16.12.1:1 172.16.12.1:1
--- 203.0.113.11 192.168.1.11 --- ---
¢££³¡¥Âиþ¤Î¥ë¡¼¥¿¤ÈÀܳ¤·¤Æ¤ß¤è¤¦¡£
(1)ÀßÄê³µÍ×
°Ê²¼¤Î¿Þ¤Î¤è¤¦¤Ë¡¢Âиþ¤È¤·¤Æ¡¢LAN¦¤Ë192.168.2.254/24¡¢WAN¦¤Ë172.16.12.253/24¤ÎIP¥¢¥É¥ì¥¹¤ò³ä¤êÅö¤Æ¤Þ¤¹¡£

(2)ÀßÄê
Router#conf t
Router(config)#hostname R2¡¡¡¡¢«Ê¬¤«¤ê¤ä¤¹¤¤¤è¤¦¤Ë¡¢¥ë¡¼¥¿¤Î¥Û¥¹¥È̾¤òR2¤Ë¤·¤Þ¤¹¡£
R2(config)#int vlan 1
R2(config-if)#ip address 192.168.2.254 255.255.255.0
R2(config-if)#no shutdown
R2(config-if)#exit
R2(config)#int gigabitEthernet 0
R2(config-if)#ip address 172.16.12.253 255.255.255.0
R2(config-if)#no shutdown
R2(config-if)#end
(3)ÄÌ¿®¤Î³Îǧ¤ò¤·¤Æ¤ß¤Þ¤·¤ç¤¦¡£
¡ping¤ÎÁÂÄ̳Îǧ
ping¤ò½ç¤ËÁ÷¿®¤·¡¢¥ë¡¼¥¿¤ÎLAN¦¡¢WAN¦¡¢Âиþ¥ë¡¼¥¿¤ÎWAN¦¡¢LAN¦¡¢Âиþ¤ÎPC¤Î¤É¤³¤Þ¤ÇÆÏ¤¯¤«¤ò³Îǧ¤·¤Æ¤¯¤À¤µ¤¤¡£¶²¤é¤¯¡¢¥ë¡¼¥¿¤ÎWAN¦¤Þ¤Ç¤·¤«ÆÏ¤«¤Ê¤¤¤È»×¤¤¤Þ¤¹¡£
¢¥ë¡¼¥Æ¥£¥ó¥°¥Æ¡¼¥Ö¥ë¤Î³Îǧ
°Ê²¼¤¬¼ç¤Ê¤â¤Î¤Ç¤¹¡£¼«Ê¬¤Î¥ë¡¼¥¿¤Î¥Í¥Ã¥È¥ï¡¼¥¯¤·¤«¸«¤¨¤Ê¤¤¤³¤È¤Ç¤·¤ç¤¦¡£
R2#sh ip route
C 172.16.12.0/24 is directly connected, GigabitEthernet0
C 192.168.2.0/24 is directly connected, Vlan1
(4)¥¹¥¿¥Æ¥£¥Ã¥¯¥ë¡¼¥Æ¥£¥ó¥°¤ÎÀßÄê¤òÆþ¤ì¤Þ¤¹¡£
2Âæ¤Î¥ë¡¼¥¿¤ÎξÊý¤ËɬÍפǤ¹¡£
R1(config)#ip route 192.168.2.0 255.255.255.0 172.16.12.253
R2(config)#ip route 192.168.1.0 255.255.255.0 172.16.12.254
¤¹¤ë¤È¡¢¥¹¥¿¥Æ¥£¥Ã¥¯¥ë¡¼¥È¤¬Äɲ䵤ì¤ë¤Î¤¬Ê¬¤«¤ê¤Þ¤¹¡£
R2#sh ip route
C 172.16.12.0/24 is directly connected, GigabitEthernet0
C 192.168.2.0/24 is directly connected, Vlan1
S 192.168.1.0/24 [1/0] via 172.16.12.254
(5)ÄÌ¿®¤Î³Îǧ¤ò¤·¤Æ¤ß¤Þ¤·¤ç¤¦¡£
ping¤ò½çÈÖ¤ËÂǤäƤߤޤ·¤ç¤¦¡£
¢££´¡¥RIP¤ÇÂиþ¤Î¥ë¡¼¥¿¤ÈÀܳ¤·¤Æ¤ß¤è¤¦¡£
(1)ÀßÄê³µÍ×
¥À¥¤¥Ê¥ß¥Ã¥¯¥ë¡¼¥Æ¥£¥ó¥°¥×¥í¥È¥³¥ë¤Ç¤¢¤ëRIP¤òưºî¤µ¤»¤Þ¤¹¡£
(2)ÀßÄê
R1¤Î¾ì¹ç¤Ï¡¢¼«¿È¤Î¥¤¥ó¥¿¡¼¥Õ¥§¡¼¥¹
¤Î¥Í¥Ã¥È¥ï¡¼¥¯¤òµºÜ¤·¤Þ¤¹¡£
router rip
network 192.168.2.0
network 172.16.0.0¡¡¡¡¢«¥¯¥é¥¹¥Õ¥ë¤Ê¤Î¤Ç¡¢¤³¤¦¤·¤Æ¤¯¤À¤µ¤¤¡£
(3)ÄÌ¿®¤Î³Îǧ¤ò¤·¤Æ¤ß¤Þ¤·¤ç¤¦¡£
¡ping¤ÎÁÂÄ̳Îǧ
ping¤ò½ç¤ËÁ÷¿®¤·¡¢¥ë¡¼¥¿¤ÎLAN¦¡¢WAN¦¡¢Âиþ¥ë¡¼¥¿¤ÎWAN¦¡¢LAN¦¡¢Âиþ¤ÎPC¤Î¤É¤³¤Þ¤ÇÆÏ¤¯¤«¤ò³Îǧ¤·¤Æ¤¯¤À¤µ¤¤¡£
¢¥ë¡¼¥Æ¥£¥ó¥°¥Æ¡¼¥Ö¥ë¤Î³Îǧ
RIP¤Ç¸ò´¹¤·¤¿·ÐÏ©¤Ç¤¢¤ë¤È¤¤¤¦°ÕÌ£¤òɽ¤¹R¤Î¹Ô¤ò¸«¤Þ¤·¤ç¤¦¡£
Âиþ¤Î¥Í¥Ã¥È¥ï¡¼¥¯¤¬¸«¤¨¤Æ¤¤¤ë¤Ï¤º¤Ç¤¹¡£
R1#sh ip route
R 192.168.2.0/24 [120/1] via 172.16.12.253, 00:00:19, GigabitEthernet0
Copyright (C) 2011¡Á nw.seeeko.com ¥Í¥Ã¥È¥ï¡¼¥¯¥¹¥Ú¥·¥ã¥ê¥¹¥È - ¤»¡¼¤³¤Î¤Ä¤ë¤® -