NAT

NAT

IR615 1:1 NAT映射

InRouterAdmin 发表了文章 • 0 个评论 • 100 次浏览 • 2020-03-30 15:52 • 来自相关话题

  1. 在IR615 WAN端口设置多IP,需要映射多少个IP,就添加多个IP,图中设置的多IP为   2. 做两条NAT映射,一条是SNAT 一条是DNAT DNT 映射中注意添加源IP地址段,SNAT映射 ...查看全部
ir615-nat.png

ir615-nat2.png

 
1. 在IR615 WAN端口设置多IP,需要映射多少个IP,就添加多个IP,图中设置的多IP为
 
2. 做两条NAT映射,一条是SNAT 一条是DNAT
DNT 映射中注意添加源IP地址段,SNAT映射注意添加目的地址段。

IR900 路由器如何做端口映射?

回复

InRouterSunzd 回复了问题 • 2 人关注 • 1 个回复 • 493 次浏览 • 2018-11-30 11:11 • 来自相关话题

IRouter-OpenVPN-NAT-Port-Mapping

InRouterSunzd 发表了文章 • 0 个评论 • 561 次浏览 • 2018-01-27 15:11 • 来自相关话题

1. 新建OpenVPN Clinet,OpenVPN 隧道命名为:OpenVPN_T_1 (名称为自定义,但后面的NAT映射需要用到此隧道名,因为OpenVPN服务开启之后,会生成一个此名称的虚拟接口)。 ...查看全部
1. 新建OpenVPN Clinet,OpenVPN 隧道命名为:OpenVPN_T_1 (名称为自定义,但后面的NAT映射需要用到此隧道名,因为OpenVPN服务开启之后,会生成一个此名称的虚拟接口)。
openvpn-config.PNG

2. OpenVPN Client 建立成功。
openvpn-clinet-status.PNG

3. 将路由器下端设备192.168.2.2:8080&5002 端口映射到虚拟接口“OpenVPN_T_1”
openvpn-interface-portmaping.PNG

4.下端设备192.168.2.2 建立TCP Server 8080&5002 
LAN-PC-TCP-Server-Port-config.PNG


5.OpenVPN Server访问Client OpenVPN_T_1 接口IP 192.168.100.26:8080
test-8080.PNG


与下端设备192.168.2.2:8080 成功建立TCP链接
test-8080-connected.PNG


OpenVPN Server访问Client OpenVPN_T_1 接口IP 192.168.100.26:5002(图片后面的CMD命令框)
test-5002.PNG


与下端设备192.168.2.2:5002 成功建立TCP链接
test-5002-connected.PNG

IR900-OpenVPN-NAT-Maping

InRouterAdmin 发表了文章 • 0 个评论 • 468 次浏览 • 2018-01-26 15:54 • 来自相关话题

 1.IR900 OpenVPN Client 配置 OpenVPN Client 连接状态 ...查看全部

IR900-OpenVPN-NAT-Maping-top.png


 1.IR900 OpenVPN Client 配置

IR900-OpenVPN-NAT-Maping-01.png


OpenVPN Client 连接状态

IR900-OpenVPN-NAT-Maping-02.png


OpenVPN服务器端测试连通性,ping 客户端 IP 10.8.0.6

IR900-OpenVPN-NAT-Maping-03.png


2.NAT端口映射
内网LAN 端口

IR900-OpenVPN-NAT-Maping-04.png


IR900-OpenVPN-NAT-Maping-05.png


DNAT 目的地址NAT,源网络为Outside 类型为 Interface port to IP port
协议TCP(根据实际情况定义TCP or UDP)
接口: openvpn 1 ( OpenVPN Client 所创建的接口)
端口范围:1024-1028 (可以只填写1个,也可以是对应的连续范围)
转换成为的地址 IP地址 192.168.2.10 (LAN端口所连接设备)
端口范围:1024-1028 (openvpn1 与上面的端口一致)

IR900-OpenVPN-NAT-Maping-06.png



3.IR900 LAN端口设备配置

IR900-OpenVPN-NAT-Maping-07.png


LAN端口设备 TCP 服务器配置,这里使用tcpudp debug 工具,创建并启动TCP Server。 启动服务器,该工具开始监听所创建的端口。


IR900-OpenVPN-NAT-Maping-08.png


4.OpenVPN服务器访问设备端口
使用 telnet 10.8.0.6 1024 放弃192.168.2.10:1024 端口

IR900-OpenVPN-NAT-Maping-09.png



IR900-OpenVPN-NAT-Maping-10.png


TCP Server 收发数据正常:

IR900-OpenVPN-NAT-Maping-11.png

 

NAT Configure on IR900

InRouterSunzd 发表了文章 • 0 个评论 • 570 次浏览 • 2017-11-01 16:46 • 来自相关话题

1. Introduction Network Address Translation (NAT) simplifies and conserves IP addresses. It enables private IP networks to c ...查看全部
1. Introduction
Network Address Translation (NAT) simplifies and conserves IP addresses. It enables private IP networks to connect to the Internet using unregistered IP addresses (in the private address space specified in RFC 1918). NAT operates on a router, usually connecting two networks together, and is used to translate the private addresses in the internal network into legal routable addresses, before packets are forwarded to another network, because ISPs will not route RFC 1918 addresses. NAT offers the dual functions of security and address conservation, and is typically implemented in remote-access environments at the edge of the network where an enterprise connects to its ISP.
2. Configure NAT on IR900
From navigation panel, select Firewall>>NAT, then enter “NAT” page, as shown below.
1.jpg

Click <Add> to add new NAT rules, as shown below.
2.jpg

Page description is shown below: 
10.png

3. Examples
Next we take two examples to explain the NAT function. Application Case 1- SNAT: SNAT allows IR900 to act as an Internet gateway for internal LAN clients by translating the clients' internal network IP Addresses into a public IP Address on IR900. Network topology as the following show. When the PCs in the LAN nework (192.168.1.0/24)need to access internet, IR900 will translate their source IP address to the IP address of one interface on IR900.
3.jpg

Configure on IR900: Step 1: Configure ACL;
4.jpg

Step 2: Configure NAT;
5.jpg

Step 3: Define inside and outside interface;
6.jpg

Application Case 2- DNAT(Port Mapping/Forwarding):
Port mapping/forwarding allows remote computers (for example, computers on the Internet) to connect to a specific computer or service within a private local-area network (LAN). As the following show, Any device which is capable of reaching internet can access remote service (192.168.2.100:8000) via port mapping .
7.jpg

Configure on IR900:
8.jpg

9.jpg

 
Contact us
 Copyright © 2011 InHand Networks, All rights reserved. 
Tel: 86-10-64391099-8022
 Fax: 86-10-64399872 
Address: Wangjing Science Park, Road Lizezhonger, Chaoyang District, Beijing, P. R. C, 100102 
Website: http://www.inhandnetworks.com 
Email: info@inhandnetworks.com
 

IR900虚拟IP映射

InRouterSunzd 发表了文章 • 0 个评论 • 375 次浏览 • 2017-11-01 15:22 • 来自相关话题

映翰通900路由器虚拟IP映射操作文档     一:登陆映翰通900路由器  FE 0/1 默认IP地址192.168.1.1   FE 0/2 默认IP地址192.168.2.1 用户名 ...查看全部
映翰通900路由器虚拟IP映射操作文档
 
 
一:登陆映翰通900路由器
 FE 0/1 默认IP地址192.168.1.1 
 FE 0/2 默认IP地址192.168.2.1
用户名、密码:adm,123456
1,电脑设置自动获取 网络===本地连接===属性===IPV4/TCP===自动获取
1.png

2,网线插到FE 0/2网口 连接电脑
打开网页 输入192.168.2.1
输入用户名,密码登陆
2.png

 
二:设置虚拟IP映射
防火墙===网络地址转换(NAT)
3.png

新增
4.png

动作:1:1NAT
转换类型:Vitural IP TO IP
Ip地址:虚拟IP
转换成的地址:
IP地址:真实IP
源网络范围:
指的是对端地址
 
 
 

IR900 路由器如何做端口映射?

回复

InRouterSunzd 回复了问题 • 2 人关注 • 1 个回复 • 493 次浏览 • 2018-11-30 11:11 • 来自相关话题

IR615 1:1 NAT映射

InRouterAdmin 发表了文章 • 0 个评论 • 100 次浏览 • 2020-03-30 15:52 • 来自相关话题

  1. 在IR615 WAN端口设置多IP,需要映射多少个IP,就添加多个IP,图中设置的多IP为   2. 做两条NAT映射,一条是SNAT 一条是DNAT DNT 映射中注意添加源IP地址段,SNAT映射 ...查看全部
ir615-nat.png

ir615-nat2.png

 
1. 在IR615 WAN端口设置多IP,需要映射多少个IP,就添加多个IP,图中设置的多IP为
 
2. 做两条NAT映射,一条是SNAT 一条是DNAT
DNT 映射中注意添加源IP地址段,SNAT映射注意添加目的地址段。

IRouter-OpenVPN-NAT-Port-Mapping

InRouterSunzd 发表了文章 • 0 个评论 • 561 次浏览 • 2018-01-27 15:11 • 来自相关话题

1. 新建OpenVPN Clinet,OpenVPN 隧道命名为:OpenVPN_T_1 (名称为自定义,但后面的NAT映射需要用到此隧道名,因为OpenVPN服务开启之后,会生成一个此名称的虚拟接口)。 ...查看全部
1. 新建OpenVPN Clinet,OpenVPN 隧道命名为:OpenVPN_T_1 (名称为自定义,但后面的NAT映射需要用到此隧道名,因为OpenVPN服务开启之后,会生成一个此名称的虚拟接口)。
openvpn-config.PNG

2. OpenVPN Client 建立成功。
openvpn-clinet-status.PNG

3. 将路由器下端设备192.168.2.2:8080&5002 端口映射到虚拟接口“OpenVPN_T_1”
openvpn-interface-portmaping.PNG

4.下端设备192.168.2.2 建立TCP Server 8080&5002 
LAN-PC-TCP-Server-Port-config.PNG


5.OpenVPN Server访问Client OpenVPN_T_1 接口IP 192.168.100.26:8080
test-8080.PNG


与下端设备192.168.2.2:8080 成功建立TCP链接
test-8080-connected.PNG


OpenVPN Server访问Client OpenVPN_T_1 接口IP 192.168.100.26:5002(图片后面的CMD命令框)
test-5002.PNG


与下端设备192.168.2.2:5002 成功建立TCP链接
test-5002-connected.PNG

IR900-OpenVPN-NAT-Maping

InRouterAdmin 发表了文章 • 0 个评论 • 468 次浏览 • 2018-01-26 15:54 • 来自相关话题

 1.IR900 OpenVPN Client 配置 OpenVPN Client 连接状态 ...查看全部

IR900-OpenVPN-NAT-Maping-top.png


 1.IR900 OpenVPN Client 配置

IR900-OpenVPN-NAT-Maping-01.png


OpenVPN Client 连接状态

IR900-OpenVPN-NAT-Maping-02.png


OpenVPN服务器端测试连通性,ping 客户端 IP 10.8.0.6

IR900-OpenVPN-NAT-Maping-03.png


2.NAT端口映射
内网LAN 端口

IR900-OpenVPN-NAT-Maping-04.png


IR900-OpenVPN-NAT-Maping-05.png


DNAT 目的地址NAT,源网络为Outside 类型为 Interface port to IP port
协议TCP(根据实际情况定义TCP or UDP)
接口: openvpn 1 ( OpenVPN Client 所创建的接口)
端口范围:1024-1028 (可以只填写1个,也可以是对应的连续范围)
转换成为的地址 IP地址 192.168.2.10 (LAN端口所连接设备)
端口范围:1024-1028 (openvpn1 与上面的端口一致)

IR900-OpenVPN-NAT-Maping-06.png



3.IR900 LAN端口设备配置

IR900-OpenVPN-NAT-Maping-07.png


LAN端口设备 TCP 服务器配置,这里使用tcpudp debug 工具,创建并启动TCP Server。 启动服务器,该工具开始监听所创建的端口。


IR900-OpenVPN-NAT-Maping-08.png


4.OpenVPN服务器访问设备端口
使用 telnet 10.8.0.6 1024 放弃192.168.2.10:1024 端口

IR900-OpenVPN-NAT-Maping-09.png



IR900-OpenVPN-NAT-Maping-10.png


TCP Server 收发数据正常:

IR900-OpenVPN-NAT-Maping-11.png

 

NAT Configure on IR900

InRouterSunzd 发表了文章 • 0 个评论 • 570 次浏览 • 2017-11-01 16:46 • 来自相关话题

1. Introduction Network Address Translation (NAT) simplifies and conserves IP addresses. It enables private IP networks to c ...查看全部
1. Introduction
Network Address Translation (NAT) simplifies and conserves IP addresses. It enables private IP networks to connect to the Internet using unregistered IP addresses (in the private address space specified in RFC 1918). NAT operates on a router, usually connecting two networks together, and is used to translate the private addresses in the internal network into legal routable addresses, before packets are forwarded to another network, because ISPs will not route RFC 1918 addresses. NAT offers the dual functions of security and address conservation, and is typically implemented in remote-access environments at the edge of the network where an enterprise connects to its ISP.
2. Configure NAT on IR900
From navigation panel, select Firewall>>NAT, then enter “NAT” page, as shown below.
1.jpg

Click <Add> to add new NAT rules, as shown below.
2.jpg

Page description is shown below: 
10.png

3. Examples
Next we take two examples to explain the NAT function. Application Case 1- SNAT: SNAT allows IR900 to act as an Internet gateway for internal LAN clients by translating the clients' internal network IP Addresses into a public IP Address on IR900. Network topology as the following show. When the PCs in the LAN nework (192.168.1.0/24)need to access internet, IR900 will translate their source IP address to the IP address of one interface on IR900.
3.jpg

Configure on IR900: Step 1: Configure ACL;
4.jpg

Step 2: Configure NAT;
5.jpg

Step 3: Define inside and outside interface;
6.jpg

Application Case 2- DNAT(Port Mapping/Forwarding):
Port mapping/forwarding allows remote computers (for example, computers on the Internet) to connect to a specific computer or service within a private local-area network (LAN). As the following show, Any device which is capable of reaching internet can access remote service (192.168.2.100:8000) via port mapping .
7.jpg

Configure on IR900:
8.jpg

9.jpg

 
Contact us
 Copyright © 2011 InHand Networks, All rights reserved. 
Tel: 86-10-64391099-8022
 Fax: 86-10-64399872 
Address: Wangjing Science Park, Road Lizezhonger, Chaoyang District, Beijing, P. R. C, 100102 
Website: http://www.inhandnetworks.com 
Email: info@inhandnetworks.com
 

IR900虚拟IP映射

InRouterSunzd 发表了文章 • 0 个评论 • 375 次浏览 • 2017-11-01 15:22 • 来自相关话题

映翰通900路由器虚拟IP映射操作文档     一:登陆映翰通900路由器  FE 0/1 默认IP地址192.168.1.1   FE 0/2 默认IP地址192.168.2.1 用户名 ...查看全部
映翰通900路由器虚拟IP映射操作文档
 
 
一:登陆映翰通900路由器
 FE 0/1 默认IP地址192.168.1.1 
 FE 0/2 默认IP地址192.168.2.1
用户名、密码:adm,123456
1,电脑设置自动获取 网络===本地连接===属性===IPV4/TCP===自动获取
1.png

2,网线插到FE 0/2网口 连接电脑
打开网页 输入192.168.2.1
输入用户名,密码登陆
2.png

 
二:设置虚拟IP映射
防火墙===网络地址转换(NAT)
3.png

新增
4.png

动作:1:1NAT
转换类型:Vitural IP TO IP
Ip地址:虚拟IP
转换成的地址:
IP地址:真实IP
源网络范围:
指的是对端地址