Ch11 NAT - Practical Flashcards
1
Q
Configure Static NAT (6)
A
- ip nat inside source static local_ip global_ip //Establishes static translation between inside local address and inside global address.
- interface interface_id // Specifies interface to be used for inside.
- ip nat inside // Marks the interface as connected to the inside.
- exit // exits configuration mode
- interface interface_id // Specify interface to be used for outside.
- ip nat outside // Marks the interface as connected to the outside.
2
Q
3 Ways to Verify Static NAT Translations
A
- show ip nat translations // shows active NAT translations.
- show ip nat statistics
- clear ip nat statistics // used to clear NAT stats for testing.
3
Q
Configure Dynamic NAT (7)
A
- ip nat pool pool_name start_ip end_ip {netmask subnet_mask | prefix-length prefix_length }
- access-list acl_number permit ip_source [source_wildcard] // creates acl permitting addresses that should be translated.
- ip nat inside source list acl_number pool pool_name // establish dynamic NAT and links acl and NAT pool.
- interface inside_interface_id
- ip nat inside
- interface outside_interface_id
- ip nat outside
4
Q
4 Ways to Verify Dynamic NAT
A
- show ip nat translations {verbose}
- clear ip nat translations * // clears dynamic translations from NAT table.
- show ip nat statistics
- show running-config // look for NAT/ACL/interface/pool commands
5
Q
Configure PAT - Address Pool (7)
A
- ip nat pool pool_name start_ip end_ip {netmask subnet_mask | prefix-length prefix_length}
- access-list acl_number permit source_ip [source_wildcard]
- ip nat inside source list acl_number pool pool_name overload
- interface inside_interface_id
- ip nat inside
- interface outside_interface_id
- ip nat outside
6
Q
Configure PAT - Single Address (6)
A
- access-list acl_name permit source_ip [source_wildcard]
- ip nat inside source list acl_number inteface exit_interface_id overload // ip same as used in outside_interface_id in step 5
- interface inside_interface_id
- ip nat inside
- interface outside_interface_id
- ip nat outside
7
Q
Configure Port Forwarding (5)
A
- ip nat inside source {static {tcp | udp local_ip local _port global_ip global_port } [extendable]
- interface inside_interface_id
- ip nat inside
- interface outside_interface_id
- ip nat outside