>
>no nat (inside) 1 10.200.98.142 255.255.255.255
>nat (inside) 1 0.0.0.0 0.0.0.0
>global (outside) 1 interface
>
>И покажите sh route и sh run | i access-gr сорри что сразу не написал
nat (inside) 1 0.0.0.0 0.0.0.0 пустит всех в инет через NAT а необходимо только определенные адреса, а все остальные чтоб ходили через прокси сервер
Gateway of last resort is xxx.xxx.xxx.17 to network 0.0.0.0
C xxx.xxx.xxx.16 255.255.255.248 is directly connected, outside
S 192.168.10.0 255.255.255.0 [1/0] via 10.200.96.1, inside
S 172.16.0.0 255.255.255.0 [1/0] via xxx.xxx.xxx.17, outside
S 172.16.100.0 255.255.252.0 [1/0] via xxx.xxx.xxx.17, outside
C 127.0.0.0 255.255.255.0 is directly connected, _internal_loopback
S 10.200.98.0 255.255.255.0 [1/0] via 10.200.96.1, inside
C 10.200.96.0 255.255.255.0 is directly connected, inside
S 10.200.97.0 255.255.255.0 [1/0] via 10.200.96.1, inside
S 192.168.0.0 255.255.255.0 [1/0] via 10.200.96.1, inside
S 192.168.2.0 255.255.255.0 [1/0] xxx.xxx.xxx.17, outside
S* 0.0.0.0 0.0.0.0 [1/0] via xxx.xxx.xxx.17, outside
sh run | i access-group
access-group Inside in interface inside
access-group Outside in interface outside
access-list Inside extended permit ip any any
access-list Inside extended permit icmp any any
access-list Outside extended permit ip any host xxx.xxx.xxx.19
access-list Outside extended permit icmp any host xxx.xxx.xxx.19