>Я же писал про ДВА одинаковых списка - не получается у меня рисую идею, потому что данных мало. создаем по интерфейсу на каждого провайдера
interface FastEthernet4.1
desc ISP1
encapsulation dot1Q 101
ip addr 111.111.111.111 255.255.255.252
ip nat outside
ip nat enable
!
interface FastEthernet4.2
desc ISP2
encapsulation dot1Q 102
ip addr 222.222.222.222 255.255.255.252
ip nat outside
ip nat enable
дальше пишем правила НАТ
ip nat inside source route-map ISP1-NAT interface FastEthernet4.1 overload
ip nat inside source route-map ISP2-NAT interface FastEthernet4.2 overload
!
route-map ISP1-NAT permit 10
match ip address 100
match ip next-hop 5
!
route-map ISP2-NAT permit 10
match ip address 100
match ip next-hop 6
акцесс листы оформляем
access-list 5 remark NAT ISP1 (nex-hop)
access-list 5 permit 111.111.111.112
access-list 6 remark NAT ISP2 (nex-hop)
access-list 6 permit 222.222.222.223
access-list 100 remark SNAT
access-list 100 deny ip any 1.0.0.0 0.255.255.255
access-list 100 deny ip any 10.0.0.0 0.255.255.255
access-list 100 deny ip any 172.16.0.0 0.15.255.255
access-list 100 deny ip 192.168.0.0 0.0.255.255 192.168.0.0 0.0.255.255
access-list 100 permit ip host 192.168.2.1 any
access-list 100 permit ip 192.168.3.0 0.0.0.255 any
access-list 100 permit ip host 192.168.0.2 any
access-list 100 permit ip host 192.168.1.1 any
ну и так далее.. Ж-)
идея ясна?