upd. Похоже у меня неправильно настроен Nat.
Коллеги, кто может помочь с nat? :(С роутера можно выполнить telnet www.ru 80 /source virtual-ppp1
traceroute отрабатывает. :rotate:
На PC - затыкается на последнем сервере корбины.... :shock: :cry:
SWRouter#traceroute www.ru
Type escape sequence to abort.
Tracing the route to www.ru (194.87.0.50)
1 vpn10-l0.msk.corbina.net (85.21.0.10) 0 msec 4 msec 4 msec
2 hq-bb-giga2-5.msk.corbina.net (85.21.17.18) 40 msec 28 msec 8 msec
3 ko-bb-port-channel2.msk.corbina.net (195.14.54.186) 4 msec 4 msec 4 msec
4 msu-bb-teng4-3.msk.corbina.net (195.14.54.226) 0 msec 4 msec 4 msec
5 m9-bb-teng4-1.msk.corbina.net (195.14.54.218) 4 msec 4 msec 4 msec
6 M9-IX-1G.Demos.net (193.232.244.35) 4 msec 4 msec 4 msec
7 iki-1-vl10.demos.net (194.87.0.83) 4 msec 8 msec 4 msec
8 www.ru (194.87.0.50) 4 msec 8 msec 4 msec
SWRouter#
pc:
C:\--Роутер-wifi\19092007-2>tracert www.ru
Трассировка маршрута к www.ru [194.87.0.50]
с максимальным числом прыжков 30:
1 <1 мс <1 мс <1 мс 192.168.10.1
2 2 ms 2 ms 2 ms vpn10-l0.msk.corbina.net [85.21.0.10]
3 2 ms 2 ms 2 ms hq-bb-giga2-5.msk.corbina.net [85.21.17.18]
4 2 ms 2 ms 2 ms ko-bb-port-channel2.msk.corbina.net [195.14.54.1
86]
5 2 ms 2 ms 2 ms msu-bb-teng4-3.msk.corbina.net [195.14.54.226]
6 2 ms 2 ms 2 ms m9-bb-teng4-1.msk.corbina.net [195.14.54.218]
7 * * * Превышен интервал ожидания для запроса.
8 * * ^C
SWRouter#sh ru
Building configuration...
Current configuration : 2818 bytes
!
version 12.4
no service pad
no service timestamps debug uptime
service timestamps log datetime localtime
no service password-encryption
!
hostname SWRouter
!
boot-start-marker
boot system flash c850-advsecurityk9-mz.124-9.T3.bin
boot-end-marker
!
logging buffered 51200 warnings
!
aaa new-model
!
!
aaa authentication ppp default local
aaa authorization network default none
!
aaa session-id common
!
resource policy
!
clock timezone MSK 3
no ip dhcp use vrf connected
ip dhcp excluded-address 192.168.10.1
!
ip dhcp pool HOME
import all
network 192.168.10.0 255.255.255.248
default-router 192.168.10.1
dns-server 85.21.192.3 213.234.192.8
lease infinite
!
!
ip cef
ip domain name corbina.net
ip multicast-routing
vpdn enable
!
vpdn-group 1
!
l2tp-class corbina
!
!
!
!
username **** privilege 15 secret 5 *******
!
pseudowire-class class1
encapsulation l2tpv2
protocol l2tpv2 corbina
ip local interface FastEthernet4
!
!
!
!
!
!
interface FastEthernet0
no cdp enable
!
interface FastEthernet1
shutdown
no cdp enable
!
interface FastEthernet2
shutdown
no cdp enable
!
interface FastEthernet3
shutdown
no cdp enable
!
interface FastEthernet4
ip address dhcp
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
no cdp enable
!
interface Dot11Radio0
no ip address
shutdown
speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0 54.0
station-role root
no cdp enable
!
interface Virtual-PPP1
ip address negotiated
ip mtu 1380
ip nat outside
no ip virtual-reassembly
no cdp enable
ppp authentication chap callin
ppp chap hostname *****
ppp chap password 0 ****
pseudowire 85.21.17.19 10 pw-class class1
!
interface Vlan1
ip address 192.168.10.1 255.255.255.248
ip nat inside
ip virtual-reassembly
!
no ip classless
ip route 0.0.0.0 0.0.0.0 Virtual-PPP1
ip route 85.21.192.3 255.255.255.255 dhcp
ip route 213.234.192.8 255.255.255.255 dhcp
ip route 85.21.17.19 255.255.255.255 dhcp
!
no ip http server
no ip http secure-server
ip nat inside source list NAT-TO-CORBINA interface FastEthernet4 overload
ip nat inside source list NAT-TO-OUTSIDE interface Virtual-PPP1 overload
!
ip access-list extended NAT-TO-CORBINA
permit ip 192.168.10.0 0.0.0.248 10.0.0.0 0.255.255.255
permit ip 192.168.10.0 0.0.0.248 host 10.219.0.17
permit ip 192.168.10.0 0.0.0.248 host 85.21.17.19
permit ip 192.168.10.0 0.0.0.248 host 85.21.192.3
permit ip 192.168.10.0 0.0.0.248 host 213.234.192.8
permit ip 192.0.0.0 0.255.255.255 any
ip access-list extended NAT-TO-OUTSIDE
permit ip 192.0.0.0 0.255.255.255 any
!
no cdp run
!
control-plane
!
!
line con 0
no modem enable
transport output all
line aux 0
transport output all
line vty 0 4
transport input all
transport output all
!
scheduler max-task-time 5000
end