6.6.7 Packet Tracer - Configure PAT

Video Statistics and Information

Video
Captions Word Cloud
Reddit Comments
Captions
configure port address translation path configure dynamic nut with overloads configure traffic that will be permitted on r1 this router click here configure one statement for access list one to permit any address be logging 172 1600 prefix 16. okay 172 16.00 prefix 16 includes these two network addresses this and another this okay okay go to r1 enter enable configure terminal global configuration mode uh let's slash list okay access this one space and permit the 172160 for me 172 1600 prefix 16 and white card is 0 0 255 35 enter configure a pool of addresses for not another one with nat pool that uses the two usable addresses in the two or nine 165 200 to 32 prefix through the address space okay prefix theory only permit two host addresses 232 is the network address 233 is the first host 234 is the second and last host and the net mask is the prefix theory remember 235 will be the broadcast okay and create this pool i trade the pool type in a pull use this name any pool name you can use any pool for example pull one to 3 and 234 okay remember use this pull 2965 200 to 32 is the network address turn 9165 200 to 33 the thirds and 209 165 200 to 34 the second and last the net net mask is to 55-55-55 that 252 32 this is prefix theory okay enter associate access list one with not pull okay you created the access list you created the pool now associate bot okay ipnot inside source list list is number one number one and pull the name is pull dash one case sensitive or dash one okay but use the list one the pool full name and use overload okay to use port address translation use path overload this is path port address translation enter and finally configure nut interfaces serial 0 1 0 will be the outside gigabit 0 0 0 the inside and gigabit 001 inside interface here 0 1 0 ip not outside enter interface gigabit gigabit 0 0 0 ip not inside and gigabit 0 0 1 ip not inside x verify okay verify dynamic nad with overloads access services across internet from web browser of each of the pcs that use r1 okay pc1 l1 pc2 or l2 okay any of these pieces access the webpage of server one okay server one for 9165 201.5 okay pc1 use a web browser to access the web page use this ip address 29165 2015 so 9165 201.5 go success and another network for example l2 the same procedure 209 165 201.5 go success were all connections successful yes build not translations view the net translation on r1 show api translations go to r1 go and to go privileged accent mode show ip not translations enter you can see 172 16 11 11 the inside local 172 16 11 11 is the private ip address of l2 you can verify this 172 16 11 11. and this private ip address was translated to 209 165 200 to 303 okay the first type b on this pool okay the first ip on the pool 209 165 200 253 but uses this port 1024 and this another inside local 172 1610 10 is the private ip address of pc1 verify here 172 10 10 private ip address of pc1 and was translated to 209 165 200 to 303 the first ip address on the pull the fields okay but the port is different 1025 okay for laptop for l2 translate to 29165 233 with port 1024 and for pc one translate to the first ip address on the port to an ios 85 200 233 but uses another port 1025 and outside local is 209 165 201.5 with port 80 the http port for web server one notice that all four devices were able to communicate and they are using just one address out of the pool okay verify also with l1 web browser 209 165 201.5 go success and also with pc2 web browser 2 online 165 201.5 okay go very good server one this this others go to r1 repeat show up in a translations and you will see four entries okay and and they are using just one address out of the pool okay to 33 to 303 to 3 to 0 d3 okay the [Music] okay this is [Music] l2 uses 23 this is pc1 translated to 233 this is l1 to 2v3 pc2 translated to to theory but the port is different the port 1034 1025 1026 and 1037. but we'll continue to use the same address until it runs out of port numbers to associate with the translation once that occurs the next address in the pool will be used while the the radical limit would be 65 536 since the port number field is a 16 bit number the device would likely run out of memory before the limit would be written configure path using an interface configure traffic that will be permitted on r2 now configure on r2 okay but with interface go to r2 enter enable configure terminal now global configuration mode and configure one statement for access list 2 to permit any address below in 172.17.00 16 okay and 172 1700 prefix 16 includes these two networks these two local area networks this and another this okay and create that ip access list 2 permit 172 17 0 0 and wild card for prefix 16 and 0 0 35 enter associate access list2 with the nat interface and allow addresses to be reduced okay associate the access list with this interface serial 0 1 1 on r2 and there are two nod statement to use interface connected to the internet and provide translations for all internal devices okay associate the list number two this access list to the interface serial 0 1 1 serial 1 go to r2 type in that inside source list this is number two and there is no pull only interface the interface cl011 interface serium 0 1 1 overload to use path okay port address translation enter and next configure interfaces serial 0 1 1 outside gigabit 0 0 0 inside gigabit 0 0 1 inside interface here zero one one ip9 outside interface gigabit zero zero zero ip not inside interface yoga with zero zero one hypnot inside exit verify but interface implementation access services across the internet from the web browser of each of the pcs that use r2 pc3 l3 pc4 and l4 okay from these devices pc3 l3 pc4 l4 access the web page for server 1. this web page 2 or 9 165 201.5 okay pc3 web browser 209 165 201.5 enter or click on go server very good for example l4 web browser 2 of 9 165 201.5 go very good l3 web browser 209 165 201.5 enter very nice and pc4 web browser 29165 201.5 go very nice were all connections successful the answer is yes vienna translations build the net translation somewhere to go to r2 and privilege accent mode show ip not translations okay okay i have five lines because because these two lines is for only one pc okay 172 17 11 11 and 4 172 17 11 11 and was translated to 2 and i 165 202 130 is the ip address of serial 0 1 1. okay okay show running config you will see serial zero one one ipad s2 or knight 165 202 130 is the ip address of serial 0 1 1. okay space space show ip not translations okay and 172 17 11 11 the l4 ip address was translated to 20165 202 130 the ipads of serial 01 172 17 10 10 pc3 132 17 10 10 is the ip address of pc3 and was translated to 209 165 2021 field okay the ip address of serial 0 1 1. and 132 17 10 11 the ip address of l3 132 17 10 11 was translated to 20165 202 130 172 17 11 10 pc4 172 17 11 10 was translated to 2965 202130 the ip address of serial 01.1 okay 130 130 130 13813 but the port is different 1035 137 1038 okay this is port address translation but okay compare not the statistics on r1 and not two okay go to r1 show ipnot as these fix go to r2 go to r2 show ipnob as the this digs okay r2 and r1 compare okay another one translation four okay four lines four dynamic and four extended four dynamic and four extended outside interface serial 0 1 1 cl011 okay but dynamic mappings using the pull okay the pull this is the net mask for the pull start with ip address 233 and ip others to 34 total addresses to an allocated one one in use okay with on r2 total translations five dynamic five extended five outside interface here one one cdr1 one and dynamic dynamic mappings not using dynamic mappings no information for this okay the difference is r1 has dynamic mappings and r2 doesn't have dynamic mappings okay no dynamic mappings on r2 because r2 will use only the ip address of serial 01.1 for translations okay completion 100 thank you very much you
Info
Channel: Christian Augusto Romero Goyzueta
Views: 1,732
Rating: undefined out of 5
Keywords: ensa, enterprise networking, security, automation, ccna, version 7, ccna 7, nat, network address translation, port address translation, pat
Id: LdgKpJAqnmM
Channel Id: undefined
Length: 19min 57sec (1197 seconds)
Published: Fri Aug 21 2020
Related Videos
Note
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.