ããã·ã¥ã 圌ã®åŸãã«ããå°ã匷ãã 以äžã§ãã é«å±±ã®ç§èå°ãç§ã®ç®ã®åã§å ããããŒãžã¥ã®ãµã³ãã¬ã¹ãçã女ã®åããã²ãã®ä»ãããã³ãã«ã§ã¬ãŒã¹ã®åããµãããŠã²ãããéå»ãå ããŸããã ããŸãæ£ç¢ºã§ã¯ãªãã匷åãªè ãããã«åããŠåŒã£åŒµã£ããšããäºå®ãæããããžã§ã¹ãã£ãŒãè¡šæ ãç§ã®åãæ倧éã«åŒãåºããããã©ã®ãããªå æ¬çãªkunyushushkaããããæåŸ ã§ããã®ããããã¯ç§ã«åãã£ãŠè ãåºããã§ããããïŒä»ã®äœããæããïŒã
ããããäœãèµ·ãã£ãã®ãããããŠåœŒå¥³ããå·§åŠã«ã²ã£ãããããåã ãããã®ã¿ã§ãªããç²ã匷ãæã§ãç§ã®ç®èŠãã®æåŸã®æ°ç§éã«ãã³ã¯ã®è²èª¿ã§ãããã«é°åœ±ãä»ããããç§ã®å·ã€ããå¿ãæž©ããŸããïŒåœŒå¥³ã®é«ªãèŠãåãªãã§ãå°å¥³ã¯å°ãæããããªã£ãã¯ãã話ãïŒã ç®ãéãããšãããã¯å¥åŠãªããšã§ã¯ãªããæ°æœã®éºè·¡ã®çãäžã«ããªãããšã«æ°ã¥ããããã«éãã®å°éã®æ§è³ªãæåŠããŸããã å°ãå®å¿ã å«ã³ãæ¢ãã-ãè¹ãåºãŠïŒãã 圌ã¯éé£ããŠãéšéã®é·ãè©ã§ç§ãæºãã¶ããŸããã è¬çœªãã代ããã«ãç£ç£ãšç§ã¯åœŒãå°ããªãªãããéåžžã«è²¬ä»»ããä»äºãããã®ãåŸ ã£ãŠãããšãããã¥ãŒã¹ãç§ã«ãããããŸããã 圌ã®èšèãå¿ã«çããã«ãç§ã¯äœåºŠããã²èªæã«æ»ã£ãŠã¿ãŸãããããã¹ã¯å¿èã®å¥è·¡ãèŠãç¶ããŸããã è¡ããªããã°ãªããŸããã§ããã
ç£ç£ã®ãªãã£ã¹ã«æ»åšããç¬éãšæŠéããã·ã§ã³ãèšå®ããããã»ã¹ã¯çç¥ããŸãããããã®ç¯çœªã·ãŒã³ã®è©³çŽ°ãç¥ãå¿ èŠã¯ãããŸãããã²ã©ãããŒã«ã«å ãŸããè è¿«ãéãããæmailã䞡芪ã®é€åã®åçã瀺ãæ¶ãšåé¡ã絶æã«æºã¡ãè ãäžãããã§ã«æ²»å®å§å¡äŒã®ææ»å®ã®çªå·ããã€ã€ã«ãããç¶æ ã§ãã¥ãŒããå°ç¡ãã«ããªãã§æããããšãèŠæ±ããŸãïŒããªããèŠãããšãã§ããããã«ãç§ã¯ãã®ãããªã±ãŒã¹ã®ããã«ç§ã®è¢ã«åãæããããŸãã-ããããã®åã«ç§ã¯ãªãç±å¿ã«æ¥ãã ã®ãèããªããã°ãªããŸããã§ãã ç£ç£ã®ã©ãããããã®Wi-Fièšå®ã確èªãããä»ãããã¯èª°ã ãããŒãªã³ïŒAïŒA BL ### bïŒïŒããšèšãããŠããããã«ïŒã ããããäœããã®æ¹æ³ã§ã¿ã¹ã¯ãèšå®ããã圌女ã¯Project Serverãã£ã³ãã¹ã«ç«ã£ãŠã圌女ãèŠãè¥ã女ã®åãé ¬ãæã¡ãä»ã®å¥³æ§ããŒã ã¯ãããªããç¥ã£ãŠããããã«ãè§ã«ç«ã€åœŒãã®å£ããããååã®åçã«å«æªæãæã£ãŠèŠãŸãã幎é ã®å¥³æ§ã®ããŒãã«ã åŸæ»ãã¯ã§ããŸããã§ãã-ã¿ã¹ã¯ã解決ããå¿ èŠããããŸããã
ãã®ãããæçµçã«ã¯ãç¹å®ã®ãµãŒããŒãžã®ãªã¢ãŒãã¢ã¯ã»ã¹ãæäŸããå¿ èŠããããŸãããç¹å®ã®ãµãŒããŒãé 延ããŠèš±å®¹ã§ããªãããŠã³ã¿ã€ã ãåŒãèµ·ãããªãããã«ããµãŒããŒäžã§æããã«ç Žæããæ§è³ªã®ã¢ã¯ã·ã§ã³ãå®è¡ããããã§ãã ãã®ã¿ã¹ã¯ã®ãããã¯ãŒã¯éšåã¯ãç§ã®å£ããããè©ã«éãéããããéŠã«ãã£ãããšæ±ããããããŸããã åŒåžãå°é£ã«ãªããé段ãäžå±€éã«ç»ãããšãé£ãããªããŸããã
ç§ã®ãªãã£ã¹ã«æ»ã£ãŠãç§ã¯ä»äºãšãéãè¿ããã«è³ªå±ãããã¹ããŒããåãæ»ãæ¹æ³ã«ã€ããŠçå£ã«èããŸããã ããŸããããã¯èµ·ããå¯èœæ§ãããããšç§ã¯å®å¿ããããç§ãã¡ã®ã€ã³ã¿ãŒãããã¯å®å®ããŠãããã²ããã€ããŠããããæ©èœããã人ã ãä»ã®ç¯çœªè ãåã°ãããã åœå±ã«ããã£ã³ãã«ãèœã¡ã確çã¯éåžžã«é«ãïŒïŒããšå ±åããã ãããŠããã®èããå ¬çãšèããŠãç§ã¯å¹žãããã«ç¬ã£ãŠããã³ã¯ã®ãµã³ãã¬ã¹ãçããã²ã®å¥³ã®åãšäžç·ã«èŠåãåãæ»ããŸããã ããããéãè¯ããã°ãåœæã®é¡ã®é»æ°éä¿¡äºæ¥è ã®ãšã³ãžãã¢ã®å¥œå¥å¿ã¯ã3ã€ã®æåïŒãã以æ¥ãç§ã«ãšã£ãŠéåžžã«äžæå¿«ïŒãæŸãå§ããŸãã-BGPãããã³ãã£ã«ã¿ãªã³ã°ãã¹å±æ§ã®ããããçš®é¡ã®æ¹è¯ãç©æ¥µçã«ç¿åŸããŸããïŒãã¹ãŠã®äººãç¥ã£ãŠããããã«ããããã®ãšã³ãžãã¢ã家æãšçŽæ¥çµã³ã€ãå¯èœæ§ãé«ãïŒãRFC 4274ã®çµãããŸã§ä¿¡é ŒããŠããªãã宣èšããããã®ã«æºæ ããããã«ã«ãŒãéžæã¢ã«ãŽãªãºã ããã¹ãããŸãã以åã®é°è¬ïŒãšã³ãžãã¢ããããŠ-æªã®å¢åïŒã«ãããã®ã°ã«ãŒãã®è¡åã®ãããè³çŠã« æ²é»ã®ç§ãã¡ã®éšéã¯ããŸããŸãé »ç¹ã«é»è©±ãèããŸããã åŒã³åºãã®éèªçãªå 容ã¯ç§ã«ã¯ããããªãããéšéé·ã®é ã®æåã®çœé«ªã®å€èŠ³ïŒåœŒãããŒãæªæºããšã¹ã¿ã€ã«ä»ãããããšããããªãèŠæãã¹ãå åã§ããïŒããã³åœŒã®ïŒãµãŒãã¹ïŒæäŸã«é¢ãããµãŒãã¹ãŠãŒã¶ãŒã®å°è±¡ãç§ã«äŒãããšãã®åœŒã®è±ããªè¡šæ ã«ãã£ãŠå€æãããç¶æ³ã¯å€ç§çä»å ¥ãå¿ èŠãšããŸããã
éåžžã«å°éçãªãããã¯ãŒã¯ãšã³ãžãã¢ïŒç§ïŒã®ããŒã ã«ããçããã¬ã€ã³ã¹ããŒãã³ã°ã»ãã·ã§ã³ã®çµæã«åºã¥ããŠãããã¯ã¢ãããã£ãã«ãæ¥ç¶ããããšã決å®ãããŸããã ããããã«ãŒãã®ç¹å®ã®ã»ã¯ã·ã§ã³ã§éäºãè¡ãããŠããªãã£ãããã殺害ãããäœããçºçããå Žåãã¡ã€ã³ããããã¯ã¢ããã«ãã£ãã«ãåãæ¿ããŸãããBGPã®ç 究ãçå£ã«åãæ¢ããæªã®å¢åã«ãããäž¡æ¹ã®ãã£ãã«ã§åæã«ãµãŒããŒã®å¯çšæ§ãæ§æããå¿ èŠããããŸããïŒå³1ïŒã ãããŠãæåã®ã¢ãã¬ã¹ãäœããã®çš®é¡ã®èªåŸããã¢ã¯ã»ã¹ã§ããªãå ŽåïŒã¢ãã¬ã¹ã¯ã©ãããã§ãã¢ã¯ã»ã¹ã§ããŸãããã©ãããã§ãã¢ã¯ã»ã¹ã§ããªãå¯èœæ§ããããŸãïŒããŠãŒã¶ãŒã¯2çªç®ã®ã¢ãã¬ã¹ã«æ¥ç¶ããŸãããåæã«ãä»ã®ãŠãŒã¶ãŒã¯æåã®ã¢ãã¬ã¹ã«ã¢ã¯ã»ã¹ããããšã§ãµãŒããŒã«ã¢ã¯ã»ã¹ã§ããŸãã
å³1
æ³šïŒ æµã®æŠåšã圌ã«åŒãã€ããŠäœ¿çšããããšã¯ç¢ºãã«å°ãèããããŠããŸããããBGPã«ã€ããŠèšåãããã³ã«éšéå šäœãè·³ãäžãããååæ¶ã§ååæ¶ãèŠãé ããã®ã§ãç¥ã«è ¹ãç«ãŠãªãããã«è«é¡ã§RIPEã«æžããªãããšã«ããŸããã
ãã®ãããåé¡ã解決ããéã«æ¡ä»¶ãšå¶éãæã«å ¥ããŠãNATãéçã«ãŒããã«ãŒããããã®ããŒã«ã䜿çšããŠè§£æ±ºçãèŠã€ãããŸããã å³2ã«ç€ºãäŸã§ããã®ãœãªã¥ãŒã·ã§ã³ãæ€èšããŠãã ãããäŸã®ã¢ãã¬ã¹æå®ã¹ããŒã ã¯ããã©ã€ããŒãã¢ãã¬ã¹ã®ã¿ã䜿çšããŸãã æåã®ãã£ãªã¢ïŒISP1ïŒã®ãªãã£ã¹ã«ãŒã¿ãŒïŒR1ïŒãšã²ãŒãïŒR2ïŒéã®ã¢ãã¬ã¹ã¯172.16.12.0/29ã«å€æŽããã2çªç®ã®ãã£ãªã¢ïŒISP2ïŒã®ãªãã£ã¹ã«ãŒã¿ãŒïŒR1ïŒãšã²ãŒãïŒR3ïŒéã®ã¢ãã¬ã¹ã¯172.16.13.0ã«å€æŽãããŸã/ 29ã ããŒã«ã«ãããã¯ãŒã¯ã¯ãå®ç掻ã§ãäŸã§ãããã©ã€ããŒããããã¯ãŒã¯ã¢ãã¬ã¹192.168.1.0/24ã䜿çšããŸãã192.168.1.1ã¯ã«ãŒã¿ãŒã«å±ãã192.168.1.31ã¯ãµãŒããŒã«å±ããŸãã
R1#sh ip int br
Interface IP-Address OK? Method Status Protocol
FastEthernet0/0 172.16.12.1 YES NVRAM up up
FastEthernet0/1 172.16.13.1 YES manual up up
FastEthernet1/0 192.168.1.1 YES NVRAM up up
NATãµãŒããŒã®å Žåãåãããã€ããŒã®ããŒã«ã«æ¬¡ã®IPã¢ãã¬ã¹ãå®çŸ©ããŸãã
ISP1ïŒ192.168.1.31-> 172.16.12.4
ISP2ïŒ192.168.1.31-> 172.16.13.4
å³2ã
æåã®ãããã€ããŒ-ISP1ã®ãã£ãã«ã§ãµãŒããŒã®å¯çšæ§ãæ§æããŸãã
æåã®ãããã€ããŒãéãããã©ã«ãã«ãŒãïŒ
R1(config)#ip route 0.0.0.0 0.0.0.0 172.16.12.2
NATãããŒããã£ã¹ãã§äœ¿çšãããã€ã³ã¿ãŒãã§ã€ã¹ãå®çŸ©ããŸãã
R1(config)#int fa 0/0
R1(config-if)#ip nat outside
R1(config-if)#int fa 1/0
R1(config-if)#ip nat inside
NatimãµãŒããŒ
R1(config)#ip nat inside source static 192.168.1.31 172.16.12.4 extendable
ããã ãã§ã-ãµãŒããŒã¯172.168.12.4ã®ãŠãŒã¶ãŒãå©çšã§ããŸããããã¯ãã¡ãããæ§æé åãããèŠã䟡å€ã¯ãããŸããããããã§ãå šäœåã«ã€ããŠã¯å¿ èŠã§ãã
次ã«ã2çªç®ã®ãããã€ããŒ-ISP2ã®ãã£ãã«ã§ãµãŒããŒã®å¯çšæ§ãèšå®ããŸãã
ã€ã³ã¿ãŒãã§ã€ã¹ãå®çŸ©ããNATãããŒããã£ã¹ãã§äœ¿çšããŸãã
R1(config)#int fa 0/1
R1(config-if)#ip nat outside
NatimãµãŒããŒ
R1(config)#ip nat inside source static 192.168.1.31 172.16.13.4 extendable
ãããŠãæãèå³æ·±ã質åã§ããã¯ã©ã€ã¢ã³ããISP 2ãçµç±ããå ŽåãFastEthernet0 / 1ã€ã³ã¿ãŒãã§ã€ã¹ãä»ããŠãµãŒããŒããå¿çãéä¿¡ããæ¹æ³ã§ããæåã«é ã«æµ®ããã ã®ã¯ãåŸã«å€æããããšã§ãïŒæ確åã¯ããã€ãã®éåžžã«å¹æçãªæé ã§è¡ãããŸããç°ç«¯å¯©åã®è倧è£ã®è£å€æã®ã¹ãã€ã³æ¯éšããåçšããçµæã¯çãã®äœå°ã¯ãããŸããïŒæ£ãã決å®ã§ã-ããã¯ã«ãŒããããã®äœ¿çšã§ãã ãã®ãããfa1 / 0ã€ã³ã¿ãŒãã§ã€ã¹ã§ã¯ãISP2ãä»ããŠçä¿¡ããã¯ã©ã€ã¢ã³ãã«è¿ããããã±ãããã€ã³ã¿ãŒã»ããããå¿ èŠããããŸãã ãããã®ãã±ãããã©ã®ããã«äžèŽããããã¯ãŸã å®å šã«ã¯æããã§ã¯ãããŸããã ãã±ããã®éä¿¡å ã¢ãã¬ã¹ã¯åãã§ã-192.168.1.31ãå®å ããã±ãããã«ãŒã¿ãŒã«éãããã€ã³ã¿ãŒãã§ãŒã¹ã決ããŠèå¥ããŸããã ç·åŒµãé«ãŸãã解決çã¯çãŸããŸããã§ããã èªæè ã®èãšã®ç¹°ãè¿ãã®ééã®èŠèŸŒã¿ã¯æžããŸããã 倧éã®ã°ãŒã°ã«æ€çŽ¢ãšè«æãã«ã¢ãã©ãŒãžã¥ãšã¢ãŒãïŒç¬¬äºæ¬¡äžç倧æŠã§ã®æ¬ºforã®ããã®ãã¶ã€ã³2.ãŠãã³ãŒã³ãã¬ã¹ããèªãã åŸã解決çãçãŸããŸãã-æ§æã«å°å ¥ããåŸã§èª¬æããŸãã
R1(config)#ip nat pool ISP_2nd 192.168.133.0 192.168.133.254 prefix-length 24
R1(config)#access-list 100 permit ip any host 172.16.13.4
R1(config)#ip nat outside source list 100 pool ISP_2nd add-route
2çªç®ã®ãããã€ããŒããã€ã³ã¿ãŒãã§ã€ã¹fa 0/1ã«å°çãããã±ããã®å ŽåããŠãŒã¶ãŒã¢ãã¬ã¹ïŒãœãŒã¹IPã¢ãã¬ã¹ïŒãããŒã«192.168.133.x / 24ã«å€æãã2çªç®ã®ãªãã¬ãŒã¿ãŒãä»ããŠãµãŒããŒã«ã¢ã¯ã»ã¹ãããŠãŒã¶ãŒã«è¿ããããã±ããã¯ã€ã³ã¿ãŒãã§ã€ã¹fa 1 /ã«ãªããŸã0ã«ã¯ããã£ãŒã«ãdst ip addr = 192.168.133.xããããŸããããã«ããã次ã®ããšãã§ããŸãã
R1(config)#access-list 101 permit ip any 192.168.133.0 0.0.0.255
R1(config)#route-map 2ISP permit 10
R1(config-route-map)#match ip address 101
R1(config-route-map)#set ip next-hop 172.16.13.3
R1(config-route-map)#exit
R1(config)# int fa 1/0
R1(config-if)#ip policy route-map 2ISP
ãããŠåºæ¥äžãã-å®è¡å¯èœãªãœãªã¥ãŒã·ã§ã³ã®æºåãæŽããŸããã çµå¶é£ãžã®ç°¡åãªå ±åæžããããŠããã¯âŠãããããŒã«ããã¯ããã¯ã€ã³ã泚ããè¿ãã®æãçãããäžè¬ã«ããã®æã®èšç»ã®éåžžã®å®æœã«æ³šæãã人çã楜ããã§ããŸãã...ã§ã¯ãããŸããã GNS3ã®ã©ããåéãã2ã€ã®ã¯ã©ã€ã¢ã³ããã¹ãã®ãªãœãŒã¹ãç¯çŽããŠãç§ã¯1ã€ã«å¶éãã次ã®æ©èœã«æ°ä»ããŸãã-ã¯ã©ã€ã¢ã³ããNATãããŒããã£ã¹ãã®ã¢ãã¬ã¹172.16.13.4ã«2çªç®ã®éä¿¡äºæ¥è ãä»ããŠãµãŒããŒã«æ¥ç¶ããå Žåã次ã®è¡ãååŸããŸãïŒ
R1#show ip nat translations
Pro Inside global Inside local Outside local Outside global
--- --- --- 192.168.133.1 ZZ.ZZ.ZZ.ZZ
tcp 172.16.13.4:3389 192.168.1.31:3389 192.168.133.1:59324 ZZ.ZZ.ZZ.ZZ:59324
æåã®è¡ã«ç¹ã«æ³šæãæããŸãã äœããã®çç±ã§ãŠãŒã¶ãŒãISP1ãä»ããŠåæãããã¢ãã¬ã¹172.16.12.4ã«åæ¥ç¶ãããå ŽåããŠãŒã¶ãŒããã®ãã±ããã®éä¿¡å ã¢ãã¬ã¹ãããŒã«192.168.133.x / 24ã«å€æããããµãŒããŒããã®ãã±ããã¯ã«ãŒããããã«åé¡ãããŸãISP2ãããã¯ãŒã¯ãžã®fa0 / 1ã€ã³ã¿ãŒãã§ã€ã¹ãä»ããŠã¹ããŒãããŸãã æŸéã®å Žå
t
cp 172.16.13.4:3389 192.168.1.31:3389 192.168.133.136:59324 ZZ.ZZ.ZZ.ZZ:59324
æçµçã«æéåãã«ãªããã¿ã€ã ã¢ãŠãåŸã«ãããŒããã£ã¹ãã¯ã¯ãªã¢ãããŸãããæåã®ãããŒããã£ã¹ãã¯ãŸã ãã³ã°ããæ·±å»ãªåé¡ãçºçããŸãã ãããŠãåºåãããªããããè©ŠããŠã¿ãªãã£ãã®ã§ããïŒããšèšã£ãããã«ãç§ã¯æåã®fa 0/0ã§è¿œå ã®NATãè©ŠããŠãVRFã®2çªç®ã®ã€ã³ã¿ãŒãã§ãŒã¹ãšNAT NVIã®ããŒã«ã©ã€ãºãè©Šã¿ããŠã¹ãªç¥è©±ã®ãã©ã«å¯Ÿããå¯å€§ãªè¡ã®å ±é ¬- ãDuseãããããŠã«ãŒã¿ãŒã®åšãã®ãã€ãããã®æã«7人ã®åŠå¥³ïŒåœç¶ãå°åŠæ ¡ã§ã¯ãããã§ã¯ãããŸããïŒãæ§ç¯ãã確å®ãªæ¹æ³ã§ããã圌ã¯ç®ãæ»ããã«ããŸããããæã¿ã®çµæããããããŸããã§ããïŒããå®è¡ããŠããååã®æ°ãŸããé¡ã«ãã£ãŠå€æããŸãããïŒã»ã¬ã¢ããŒäžã®ãã£ãããã-æã¿ã©ããã®çµæã¯èª°ã§ãç°ãªã eïŒã ãã®ç¶æ³ã§ã¯ãåãããŒã ã®éåžžã«å°éçãªãšã³ãžãã¢ïŒæªã®å¢åã®ãšã³ãžãã¢ãšæ··åããªãããã«ïŒãè¿ éã«åéããå¿ èŠãããã圌女ïŒç¶æ³ïŒã¯ãã®ã³ã¬ã¯ã·ã§ã³ãåãåããŸããã ããŠããã¹ãŠããã¿ãŒã³ã«åŸã£ãŠé²ã¿ãŸã-ãã¬ãŒã³ã¹ããŒãã³ã°ã解決çã®çºèŠãå®è£ ãåœå±ãžã®å ±åãè¡ãªãŸãããå ±åŸ©ããœã¹ããã«ã®scarè²ã®èŒããªã©ã
ãããæ©éå§ããŸãããã ããããžã«ã¯é倧ãªå€æŽã¯ãããŸãããIPã¢ãã¬ã¹10.0.0.1/32ã®ã«ãŒãããã¯0ã€ã³ã¿ãŒãã§ã€ã¹ã®ã¿ãè¿œå ãããŸãã 䜿çšãããIOSæ©èœã«é¢ããŠã¯ããããããªã·ãŒããŒã¹ã®ã«ãŒãã£ã³ã°ã«ãªããŸãã
å³3
èšå®ãè¡ããŸãïŒèšå®ã¯0ããè¡ãããŸã-以åã®èšå®ã¯åé€ãããŸãïŒã
NATå€æã®ã€ã³ã¿ãŒãã§ãŒã¹ãå®çŸ©ããŸãã
R1(config)#int fa 0/0
R1(config-if)#ip nat outside
R1(config-if)#int lo0
R1(config-if)#ip nat outside
R1(config-if)#int fa 1/00
R1(config-if)#ip nat inside
çŸåšãfa 0/1ã€ã³ã¿ãŒãã§ã€ã¹ãNATæäœã«é¢äžããŠããªãããšã«æ³šæããŠãã ããã
NATã«ãŒã«ãè¿œå ããŸãã
R1(config)#ip nat inside source static 192.168.1.31 172.16.12.4 extendable
R1(config)#ip nat inside source static 192.168.1.31 172.16.13.4 extendable
æåã®ãããã€ããŒãéãããã©ã«ãã«ãŒãïŒ
R1(config)#ip route 0.0.0.0 0.0.0.0 172.16.12.2
ãã®ãããfa0 / 0ïŒISP1ãä»ããïŒçµç±ã®ã¢ã¯ã»ã¹ãæ¢ã«æäŸãããŠããŸãã2çªç®ã®æŒç®åã䜿çšããå ŽåããŸã æšæž¬ããŠããªãå Žåãfa0 / 1ã€ã³ã¿ãŒãã§ã€ã¹ã§NATå€æãå®è¡ãã代ããã«ãçä¿¡ãã±ããããªãã€ã¬ã¯ãããŸããã®ã€ã³ã¿ãŒãã§ã€ã¹ããlo0ã€ã³ã¿ãŒãã§ã€ã¹ã«ç§»åãã172.16.13.4ã§ãµãŒããŒãã¹ã¬ããåããŸãã ããã«ãããlo0ã§route-mapã䜿çšããŠã2çªç®ã®ãããã€ããŒçµç±ã§è¿ããããµãŒããŒããã®ãã±ããã远跡ããGRTïŒäžè¬ã«ãŒãã£ã³ã°ããŒãã«ïŒããã€ãã¹ããŠfa 0/1çµç±ã§ãªãã€ã¬ã¯ãããæ©äŒãåŸãããŸãã åèšã§ããã®ã¢ã¯ã·ã§ã³ã«ã¯3ã€ã®ã«ãŒãããããé¢äžããŸãã
R1(config)#ip access-list extended from_2ndISP
R1(config-ext-nacl)#permit ip any host 172.16.13.4
R1(config-ext-nacl)#route-map from_2ndISP permit 10
R1(config-route-map)#match ip address from_2ndISP
R1(config-route-map)#set interface Loopback1
R1(config-route-map)#int fa 0/1
R1(config-if)#ip policy route-map from_2ndISP
ãã®mapaã«ãŒãïŒfrom_2ndISPïŒã¯ãfa0 / 1ã€ã³ã¿ãŒãã§ãŒã¹ã«å°çãããã¹ãŠã®ãã±ãããlo0ã€ã³ã¿ãŒãã§ãŒã¹ã«ãªãã€ã¬ã¯ãããããã§NATãããŒããã£ã¹ããšããµãŒããŒãžã®ãã±ããã®ãããªãã«ãŒãã£ã³ã°ãGRTã®æ¥ç¶ãããã«ãŒããä»ããŠè¡ãããŸãã
次ãž
R1(config)#ip access-list extended srv_2_loop
R1(config-ext-nacl)#permit ip host 192.168.1.31 any
R1(config-ext-nacl)# route-map srv_2_loop permit 10
R1(config-route-map)#match ip address srv_2_loop
R1(config-route-map)#set interface Loopback1
R1(config-route-map)#int fa 1/0
R1(config-if)#ip policy route-map srv_2_loop
ãã®ã«ãŒããããïŒsrv_2_loopïŒã䜿çšãããšããµãŒããŒããã®ãã¹ãŠã®ãã±ãããlo0ã€ã³ã¿ãŒãã§ã€ã¹ã«ãªãã€ã¬ã¯ããããéNATå€æãééããåŸããã±ããã¯ã€ã³ã¿ãŒãã§ã€ã¹ãã¥ãŒã«å°éããŸãïŒéå§ãããã»ãã·ã§ã³ã®ãœãŒã¹ãã£ãŒã«ãã¯192.168.1.31ã§ã¯ãªã172.16.13.4ã«ãªããŸãïŒ 2çªç®ã®éä¿¡äºæ¥è ãéããŠïŒãããã«ããã
R1(config)#ip access-list extended back_2ndISP
R1(config-ext-nacl)#permit ip host 172.16.13.4 any
R1(config-ext-nacl)# route-map back_2ndISP permit 10
R1(config-route-map)#match ip address back_2ndISP
R1(config-route-map)#set ip nex-hop 172.16.13.3
R1(config-route-map)#int fa lo0
R1(config-if)#ip policy route-map back_2ndISP
ãœãŒã¹172.16.13.4ãã2çªç®ã®éä¿¡äºæ¥è ã®ã²ãŒããŠã§ã€ã«ãã±ããããªãã€ã¬ã¯ããããšãacl back_2ndISPã«è©²åœããªããã®ã¯ãã¹ãŠGRTã䜿çšããŠã«ãŒãã£ã³ã°ãããŸãã
ããã ãã§ãã äž¡æ¹ã®ãªãã·ã§ã³ãæ©èœããŠãããšèªèã§ããŸãããå€ãã®ç¶æ³ã§æåã®ãã®ã¯ãã®ãããªãã®ã§ã¯ãªããªããŸãããã®ããã2çªç®ã®æ¹æ³ã¯ãšã¬ã¬ã³ãã§ã¯ãããŸããããããä¿¡é Œæ§ãé«ããªããŸãã
ãã®ããã«ã¯ãèªè ã«ç解ãä»»ããŸãïŒãããã誰ãããããèªãã åŸã«å瀺ãåããã®ã§ãæéããããŠãã ããïŒãç§ã¯çµµã®ããã«çŸããéæ©éã«æ²¿ã£ãŠæ£æ©ã«åºãããããŒãžã¥ã®ã¬ãŒã¹ã®åã®äžã§å ã ãšãã姿ã§åšå²ã®é¢šæ¯ããªãã¬ãã·ã¥ããŸãã
䜿çšãããæç®ïŒ
ãžã§ãã»ãã€ã«ããžã§ããã¡ãŒã»ããã€ãã³ã»ãã£ãã«ã ã«ãŒãã£ã³ã°TCP / IPãããªã¥ãŒã IIïŒ2001 CiscoPressïŒ
I.A.ã¯ãªã¬ãã Bonãç«ãšç§åŠãšç§åŠè ã«å¯Ÿããæ·åïŒ1933; reprintãã1934ïŒã
M.M.ã·ã£ã€ã³ãã³ã ç¥ã®åã«ãããç«ãšè¡ïŒ1924ïŒ; æçïŒ1959ïŒ; Pius IXããJohn XXIIIïŒ1966ïŒãŸã§ã
I.O. ã¹ãµãã³ã ãªãªãšã³ããŒãªã³ã°ãšGLONASSã®äœ¿çšã®åºæ¬ïŒ2010; PolitãPublãïŒ