1.创建NAT策略绑定地址组
nat-policy
rule name 192_168_1_0_nat
source-zone trust
destination-zone untrust
source-address 192.168.1.0 mask 255.255.255.0
action source-nat easy-ip
2.内网客户机连通性测试后查看防火墙会话表
display firewall session table all
icmp VPN: public --> public 192.168.1.2:55365[12.1.1.1:2049] --> 80.1.1.1:2048
icmp VPN: public --> public 192.168.1.3:56133[12.1.1.1:2050] --> 80.1.1.1:2048
icmp VPN: public --> public 192.168.1.4:256[12.1.1.1:2051] --> 80.1.1.1:2048
icmp VPN: public --> public 192.168.1.1:54341[12.1.1.1:2048] --> 80.1.1.1:2048
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END
请登录后查看评论内容