URL: https://www.opennet.me/cgi-bin/openforum/vsluhboard.cgi
Форум: vsluhforumID6
Нить номер: 15985
[ Назад ]

Исходное сообщение
"827 проброс порта 3389"

Отправлено kayn , 08-Апр-08 22:26 
НЕ получается, помогите люди добрые чайнику.
Вот конфиг
Current configuration : 3831 bytes                                  
!
version 12.4            
service nagle            
no service pad              
service timestamps debug uptime                              
service timestamps log uptime                            
service password-encryption                          
service linenumber                  
!
hostname gw-our              
!
boot-start-marker                
boot-end-marker              
!
enable secret 5 $1$eEUv$WqSqVfCbJUWqzCXSQHfRj1                                              
!
aaa new-model            
!
!
aaa authentication login                      
aaa authorization network noauth none                                    
!
aaa session-id common                    
!
resource policy              
!
clock timezone msk 3                    
clock summer-time MSD recurring last Sun Mar 2:00 last Sun Oct 2:00                                                                  
!
!
ip cef      
ip host gw-our X.X.X.X                          
ip host gw-def X.X.X.X                          
ip name-server X.X.X.X                            
ip name-server X.X.X.X                          
!
!
voice service voip                  
fax protocol t38 ls-redundancy 0 hs-redundancy 0 fallback cisco                                                                
!
!
!
!
!
!
!
!
!
voice translation-rule 7861                          
rule 1 /^7861/ //                  
!
!
voice translation-profile inc-7861-pcut                                      
translate called 7861                      
!
!
voip-incoming translation-profile inc-7861-pcut                                              
username ALADIN password 7 083B4D5F1E0A1D4640                                            
!
!
translation-rule 1                  
Rule 1 ^810 011                
!
!
translation-rule 3                  
Rule 1 ^8 7            
!
!
translation-rule 4                  
Rule 1 ^82 7861                
!
!
translation-rule 22                  
Rule 1 ^2 78612                
!
bridge irb          
!
!
!
interface Loopback0                  
no ip address              
!
interface Ethernet0                  
ip address 192.168.100.254 255.255.255.0                                        
ip nat inside              
ip virtual-reassembly                      
hold-queue 100 out                  
!
interface ATM0              
no ip address              
ip nat outside              
ip virtual-reassembly                      
no ip mroute-cache                  
no logging event link-status                            
no atm ilmi-keepalive                      
dsl operating-mode auto                        
bridge-group 1              
pvc 0/35        
!  
!
interface BVI1              
ip address X.X.X.X 255.255.255.252                                        
ip nat outside              
ip virtual-reassembly                      
!
ip route 0.0.0.0 0.0.0.0 X.X.X.X                                    
no ip http server                
!
ip nat inside source list 1 interface BVI1 overload                                                  
ip nat inside source static tcp 192.168.100.250 3389 X.X.X.X 3389 extendabl                                                                                
e no-alias          
!
access-list 1 permit 192.168.100.0 0.0.0.255                                            
!
control-plane            
!
bridge 1 protocol ieee                      
bridge 1 route ip                
!
voice-por        
cptone RU          
station-id number X                              
!
voice-port 2            
cptone RU          
station-id number X                              
!
voice-port 3            
cptone RU          
station-id number X                              
!
voice-port 4            
cptone RU          
station-id number X                              
!
dial-peer voice 1 pots                      
destination-pattern X                            
port 1      
!
dial-peer voice 5 voip                      
description Kuban_short                        
destination-pattern 82.......                              
progress_ind setup enable 3                            
progress_ind progress enable 8                              
translate-outgoing called 4                            
session target ipv4:X.X.X.X                                
codec g729r8 bytes 40                      
fax rate 9600              
fax protocol t38 ls-redundancy 0 hs-redundancy 0 fallback cisco                                                                
!
dial-peer voice 6 voip                      
description Krasnodar                      
destination-pattern [2]......                              
progress_ind setup enable 3                            
progress_ind progress enable 8                              
translate-outgoing called 22                            
session target ipv4:X.X.X.X                                
codec g729r8 bytes 40                      
fax rate 4800              
fax protocol t38 ls-redundancy 0 hs-redundancy 0 fallback cisco                                                                
!
dial-peer voice 7 voip                      
description Russia                  
destination-pattern 8[234567890].........                                          
progress_ind setup enable 3                            
progress_ind progress enable 8                              
translate-outgoing called 3                            
session target ipv4:X.X.X.X                                
codec g729r8 bytes 40                      
fax rate 9600              
fax protocol t38 ls-redundancy 0 hs-redundancy 0 fallback cisco                                                                
!
dial-peer voice 8 voip                      
description WORLD                  
destination-pattern 810T                        
progress_ind setup enable 3                            
progress_ind progress enable 8                              
translate-outgoing called 1                            
session target ipv4:X.X.X.X                                
codec g729r8 bytes 40                      
fax rate 9600              
fax protocol t38 ls-redundancy 0 hs-redundancy 0 fallback cisco                                                                
!
dial-peer voice 2 pots                      
preference 1            
destination-pattern 2                    
port 2      
!
dial-peer voice 3 pots                      
preference 2            
destination-pattern AAAAAAA                            
port 3      
!
dial-peer voice 4 pots                      
preference 3            
destination-pattern AAAAAAA                            
port 4      
!
gateway      
timer receive-rtp 1200                      
emulate cisco h323 bandwidth                            
!
!
line con 0          
exec-timeout 120 0                  
stopbits 1          
speed 115200            
line vty 0 4            
exec-timeout 120 0                  
!
scheduler max-task-time 5000                            
sntp server 194.87.0.27                      
end  
при попытке подключения show ip nat translations кажет мой внешний IP, но ответа от терминального сервера нет...

Содержание

Сообщения в этом обсуждении
"827 проброс порта 3389"
Отправлено CrAzOiD , 08-Апр-08 22:58 
а если убрать no-alias ?

"827 проброс порта 3389"
Отправлено kayn , 09-Апр-08 11:43 
тоже самое....


"827 проброс порта 3389"
Отправлено vorch , 09-Апр-08 13:36 
А почему вы всех натите под интерфейс, а статику делаете под конкретный адрес. Попробуйте сделать так:

ip nat inside source static tcp 192.168.100.250 3389 interface BVI1 3389

У меня так всегда работало.
Хотя тут многое зависит от версии ИОС - на некоторых со статическим натом действительно были проблемы, но я с ними сталкивался только на старых ИОСах. У вас я вижу 12.4, так что не думаю, что проблема в ИОСе. Но если совсем никак не получается - попробуйте сменить на другой.