senyek00
23-10-2011, 10:24
Salve a tutti,
ho un webserver dietro a un router cisco soho 97, siamo nella rete 192.168.1.0/24, ho spostato il server http del router sulla porta 8080 e ho configurato il router per fare i forwarding della porta ottanta sull'host 192.168.1.10 con il comando "ip nat inside source static tcp 192.168.1.10 80 interface Dialer0 80".
Tuttavia il router continua a non forwardare, dall'esterno non riesco a vedere il webserver interno.
Ho pensato che ci possa essere qualche deny implicito che non ricordo ma nonostante qualche prova ancora non funziona. Vi allego la mia configurazione occultando i dati sensibili.
Spero che mi possiate aiutare. Vi ringrazio anticipatamente.
!
version 12.3
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname cisco
!
boot-start-marker
boot-end-marker
!
enable secret 5 *******************
!
ip subnet-zero
!
!
ip name-server 213.205.32.70
ip name-server 213.205.36.70
no aaa new-model
!
!
!
!
!
!
!
interface Ethernet0
ip address 192.168.1.1 255.255.255.0
ip nat inside
hold-queue 100 out
!
interface ATM0
no ip address
no atm ilmi-keepalive
dsl operating-mode auto
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 101
!
!
interface Dialer0
ip address negotiated
ip nat outside
encapsulation ppp
dialer pool 101
ppp authentication chap callin
ppp chap hostname ***************
ppp chap password 0 **************
!
ip classless
ip route 0.0.0.0 0.0.0.0 Dialer0
ip http server
ip http port 8080
no ip http secure-server
!
ip nat inside source list 101 interface Dialer0 overload
ip nat inside source static tcp 192.168.1.10 80 interface Dialer0 80
!
access-list 101 permit ip 192.168.1.0 0.0.0.255 any
access-list 101 permit ip any 192.168.1.0 0.0.0.255
dialer-list 101 protocol ip permit
!
control-plane
!
!
line con 0
password *************
login
no modem enable
transport preferred all
transport output all
line aux 0
transport preferred all
transport output all
line vty 0 4
password *************
login
transport preferred all
transport input all
transport output all
!
scheduler max-task-time 5000
end
ho un webserver dietro a un router cisco soho 97, siamo nella rete 192.168.1.0/24, ho spostato il server http del router sulla porta 8080 e ho configurato il router per fare i forwarding della porta ottanta sull'host 192.168.1.10 con il comando "ip nat inside source static tcp 192.168.1.10 80 interface Dialer0 80".
Tuttavia il router continua a non forwardare, dall'esterno non riesco a vedere il webserver interno.
Ho pensato che ci possa essere qualche deny implicito che non ricordo ma nonostante qualche prova ancora non funziona. Vi allego la mia configurazione occultando i dati sensibili.
Spero che mi possiate aiutare. Vi ringrazio anticipatamente.
!
version 12.3
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname cisco
!
boot-start-marker
boot-end-marker
!
enable secret 5 *******************
!
ip subnet-zero
!
!
ip name-server 213.205.32.70
ip name-server 213.205.36.70
no aaa new-model
!
!
!
!
!
!
!
interface Ethernet0
ip address 192.168.1.1 255.255.255.0
ip nat inside
hold-queue 100 out
!
interface ATM0
no ip address
no atm ilmi-keepalive
dsl operating-mode auto
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 101
!
!
interface Dialer0
ip address negotiated
ip nat outside
encapsulation ppp
dialer pool 101
ppp authentication chap callin
ppp chap hostname ***************
ppp chap password 0 **************
!
ip classless
ip route 0.0.0.0 0.0.0.0 Dialer0
ip http server
ip http port 8080
no ip http secure-server
!
ip nat inside source list 101 interface Dialer0 overload
ip nat inside source static tcp 192.168.1.10 80 interface Dialer0 80
!
access-list 101 permit ip 192.168.1.0 0.0.0.255 any
access-list 101 permit ip any 192.168.1.0 0.0.0.255
dialer-list 101 protocol ip permit
!
control-plane
!
!
line con 0
password *************
login
no modem enable
transport preferred all
transport output all
line aux 0
transport preferred all
transport output all
line vty 0 4
password *************
login
transport preferred all
transport input all
transport output all
!
scheduler max-task-time 5000
end