VPP NAT测试,不支持VLAN,在NAT下arp学习有问题,需要手动添加;直连接口ICMP不支持,
来源:互联网 发布:安卓制作windows启动盘 编辑:程序博客网 时间:2024/06/16 15:12
=================================
CARRIER GRADE NAT - NAT44 README
=================================
What is implemented:
====================
* NAT44 UDP, TCP, ICMP protocols
* Show and config commands for various parameters for the same
* NF9 logging is implemented but is not tested
What is not implemented:
=========================
* TCP MSS
* TCP refresh direction
* Static port forwarding
* Syslog support
* Destination based logging or session logging
* None of the ALGs
* Performance optimization
* Binary APIs, suitable for configuring the feature from netconf/restconf/yang
* Support for VLANs
Setup
=====
+--------------+
+------------+ GEb/0/0 | |
| Tester +-------------->+ vCGN/vPE-f |
| +<--------------+ VM in UCS |
+------------+ GE13/0/0 | |
+--------------+
Configure Interfaces and add routes in vPE-f
=============================================
set int ip address GigabitEthernetb/0/0 10.4.5.2/24
set int state GigabitEthernetb/0/0 up
set int ip address GigabitEthernet13/0/0 20.4.5.2/24
set int state GigabitEthernet13/0/0 up
ip route add 4.4.4.0/24 via GigabitEthernet13/0/0
ip route add 1.2.3.0/24 via GigabitEthernetb/0/0 show ip fib
Configure vCGN NAT44 for UDP/TCP/ICMP
=======================================
set vcgn inside GigabitEthernetb/0/0 outside GigabitEthernet13/0/0
set vcgn port limit 65535 set vcgn dynamic port start 5641
set vcgn map 10.1.1.0 - 10.1.1.31 set vcgn tcp timeout active 65535 init 65535
set vcgn udp timeout active 65535 init 65535 set vcgn icmp timeout 65535
Set ARP entries for CGN to Tester
==================================
set ip arp GigabitEthernet13/0/0 4.4.4.4 11:22:33:44:55:00
set ip arp GigabitEthernetb/0/0 1.2.3.0 11:22:33:44:55:10
set ip arp GigabitEthernetb/0/0 1.2.3.1 11:22:33:44:55:12
set ip arp GigabitEthernetb/0/0 1.2.3.2 11:22:33:44:55:13
set ip arp GigabitEthernetb/0/0 1.2.3.3 11:22:33:44:55:14
set ip arp GigabitEthernetb/0/0 1.2.3.4 11:22:33:4e:55:11
set ip arp GigabitEthernetb/0/0 1.2.3.5 11:22:33:44:55:15
set ip arp GigabitEthernetb/0/0 1.2.3.6 11:22:33:44:55:16
set ip arp GigabitEthernetb/0/0 1.2.3.7 11:22:33:44:55:17
set ip arp GigabitEthernetb/0/0 1.2.3.8 11:22:33:44:55:18
set ip arp GigabitEthernetb/0/0 1.2.3.9 11:22:33:44:55:19
set ip arp GigabitEthernetb/0/0 1.2.3.10 11:22:33:44:55:1a
set ip arp GigabitEthernetb/0/0 1.2.3.11 11:22:33:44:55:1b
set ip arp GigabitEthernetb/0/0 1.2.3.12 11:22:33:44:55:1c
set ip arp GigabitEthernetb/0/0 1.2.3.13 11:22:33:44:55:1d
set ip arp GigabitEthernetb/0/0 1.2.3.14 11:22:33:44:55:1e
set ip arp GigabitEthernetb/0/0 1.2.3.15 11:22:33:44:55:1f
set ip arp GigabitEthernetb/0/0 1.2.3.16 11:22:33:44:50:01
set ip arp GigabitEthernetb/0/0 1.2.3.17 11:22:33:44:51:01
set ip arp GigabitEthernetb/0/0 1.2.3.18 11:22:33:44:52:01
set ip arp GigabitEthernetb/0/0 1.2.3.19 11:22:33:44:53:01
set ip arp GigabitEthernetb/0/0 1.2.3.20 11:22:33:44:54:02
set ip arp GigabitEthernetb/0/0 1.2.3.21 11:22:33:44:55:01
set ip arp GigabitEthernetb/0/0 1.2.3.22 11:22:33:44:56:02
set ip arp GigabitEthernetb/0/0 1.2.3.23 11:22:33:44:57:00
set ip arp GigabitEthernetb/0/0 1.2.3.24 11:22:33:44:58:02
set ip arp GigabitEthernetb/0/0 1.2.3.25 11:22:33:44:59:03
set ip arp GigabitEthernetb/0/0 1.2.3.26 11:22:33:44:5a:01
set ip arp GigabitEthernetb/0/0 1.2.3.27 11:22:33:44:5b:02
set ip arp GigabitEthernetb/0/0 1.2.3.28 11:22:33:44:5c:03
set ip arp GigabitEthernetb/0/0 1.2.3.29 11:22:33:44:5d:04
set ip arp GigabitEthernetb/0/0 1.2.3.30 11:22:33:44:5e:05
set ip arp GigabitEthernetb/0/0 1.2.3.31 11:22:33:44:5f:06
Show commands
=============
show vcgn config
show vcgn statistics
show node counters
show interface
Show commands to show translations
==================================
show vcgn inside-translation protocol tcp inside-addr 1.2.3.4 start-port 5641 end-port 5645
show vcgn outside-translation protocol tcp outside-addr 10.1.1.31 start-port 7000 end-port 8000
show vcgn inside-translation protocol icmp inside-addr 1.2.3.4 start-port 7000 end-port 8000
show vcgn outside-translation protocol icmp outside-addr 10.1.1.31 start-port 7000 end-port 8000
CARRIER GRADE NAT - NAT44 README
=================================
What is implemented:
====================
* NAT44 UDP, TCP, ICMP protocols
* Show and config commands for various parameters for the same
* NF9 logging is implemented but is not tested
What is not implemented:
=========================
* TCP MSS
* TCP refresh direction
* Static port forwarding
* Syslog support
* Destination based logging or session logging
* None of the ALGs
* Performance optimization
* Binary APIs, suitable for configuring the feature from netconf/restconf/yang
* Support for VLANs
Setup
=====
+--------------+
+------------+ GEb/0/0 | |
| Tester +-------------->+ vCGN/vPE-f |
| +<--------------+ VM in UCS |
+------------+ GE13/0/0 | |
+--------------+
Configure Interfaces and add routes in vPE-f
=============================================
set int ip address GigabitEthernetb/0/0 10.4.5.2/24
set int state GigabitEthernetb/0/0 up
set int ip address GigabitEthernet13/0/0 20.4.5.2/24
set int state GigabitEthernet13/0/0 up
ip route add 4.4.4.0/24 via GigabitEthernet13/0/0
ip route add 1.2.3.0/24 via GigabitEthernetb/0/0 show ip fib
Configure vCGN NAT44 for UDP/TCP/ICMP
=======================================
set vcgn inside GigabitEthernetb/0/0 outside GigabitEthernet13/0/0
set vcgn port limit 65535 set vcgn dynamic port start 5641
set vcgn map 10.1.1.0 - 10.1.1.31 set vcgn tcp timeout active 65535 init 65535
set vcgn udp timeout active 65535 init 65535 set vcgn icmp timeout 65535
Set ARP entries for CGN to Tester
==================================
set ip arp GigabitEthernet13/0/0 4.4.4.4 11:22:33:44:55:00
set ip arp GigabitEthernetb/0/0 1.2.3.0 11:22:33:44:55:10
set ip arp GigabitEthernetb/0/0 1.2.3.1 11:22:33:44:55:12
set ip arp GigabitEthernetb/0/0 1.2.3.2 11:22:33:44:55:13
set ip arp GigabitEthernetb/0/0 1.2.3.3 11:22:33:44:55:14
set ip arp GigabitEthernetb/0/0 1.2.3.4 11:22:33:4e:55:11
set ip arp GigabitEthernetb/0/0 1.2.3.5 11:22:33:44:55:15
set ip arp GigabitEthernetb/0/0 1.2.3.6 11:22:33:44:55:16
set ip arp GigabitEthernetb/0/0 1.2.3.7 11:22:33:44:55:17
set ip arp GigabitEthernetb/0/0 1.2.3.8 11:22:33:44:55:18
set ip arp GigabitEthernetb/0/0 1.2.3.9 11:22:33:44:55:19
set ip arp GigabitEthernetb/0/0 1.2.3.10 11:22:33:44:55:1a
set ip arp GigabitEthernetb/0/0 1.2.3.11 11:22:33:44:55:1b
set ip arp GigabitEthernetb/0/0 1.2.3.12 11:22:33:44:55:1c
set ip arp GigabitEthernetb/0/0 1.2.3.13 11:22:33:44:55:1d
set ip arp GigabitEthernetb/0/0 1.2.3.14 11:22:33:44:55:1e
set ip arp GigabitEthernetb/0/0 1.2.3.15 11:22:33:44:55:1f
set ip arp GigabitEthernetb/0/0 1.2.3.16 11:22:33:44:50:01
set ip arp GigabitEthernetb/0/0 1.2.3.17 11:22:33:44:51:01
set ip arp GigabitEthernetb/0/0 1.2.3.18 11:22:33:44:52:01
set ip arp GigabitEthernetb/0/0 1.2.3.19 11:22:33:44:53:01
set ip arp GigabitEthernetb/0/0 1.2.3.20 11:22:33:44:54:02
set ip arp GigabitEthernetb/0/0 1.2.3.21 11:22:33:44:55:01
set ip arp GigabitEthernetb/0/0 1.2.3.22 11:22:33:44:56:02
set ip arp GigabitEthernetb/0/0 1.2.3.23 11:22:33:44:57:00
set ip arp GigabitEthernetb/0/0 1.2.3.24 11:22:33:44:58:02
set ip arp GigabitEthernetb/0/0 1.2.3.25 11:22:33:44:59:03
set ip arp GigabitEthernetb/0/0 1.2.3.26 11:22:33:44:5a:01
set ip arp GigabitEthernetb/0/0 1.2.3.27 11:22:33:44:5b:02
set ip arp GigabitEthernetb/0/0 1.2.3.28 11:22:33:44:5c:03
set ip arp GigabitEthernetb/0/0 1.2.3.29 11:22:33:44:5d:04
set ip arp GigabitEthernetb/0/0 1.2.3.30 11:22:33:44:5e:05
set ip arp GigabitEthernetb/0/0 1.2.3.31 11:22:33:44:5f:06
Show commands
=============
show vcgn config
show vcgn statistics
show node counters
show interface
Show commands to show translations
==================================
show vcgn inside-translation protocol tcp inside-addr 1.2.3.4 start-port 5641 end-port 5645
show vcgn outside-translation protocol tcp outside-addr 10.1.1.31 start-port 7000 end-port 8000
show vcgn inside-translation protocol icmp inside-addr 1.2.3.4 start-port 7000 end-port 8000
show vcgn outside-translation protocol icmp outside-addr 10.1.1.31 start-port 7000 end-port 8000
0 0
- VPP NAT测试,不支持VLAN,在NAT下arp学习有问题,需要手动添加;直连接口ICMP不支持,
- VPP NAT测试,不支持VLAN,在NAT下arp学习有问题,需要手动添加;直连接口ICMP不支持,
- cisco vpp NAT VLAN支持
- cisco vpp NAT VLAN支持
- ICMP/NAT/ARP/RARP/DHCP/DNS协议的作用
- 浅谈ARP、NAT、ICMP、DHCP、RIP、OSPF、BGP协议
- 谁知道在openswan 网关对网关,中间有NAT设备下,这是什么问题呀?
- Win7 "不支持此接口"问题
- NAT,ARP之”混战
- DNS、NAT、ARP&RARP
- 在linux下做 nat
- NAT环境下tcp_timestamps问题
- 解决XMPP在64位下不支持的问题
- 解决combox在火狐下不支持中文检索问题
- centos5下添加虚拟机nat端口映射
- 解决 win7 不支持此接口 问题
- 在liunx下原本是不支持rar文件的,需要安装liunx下的winrar版本
- VM下Ubuntu用NAT连不上网
- cisco vpp NAT VLAN支持
- 请不要滥用SharedPreference
- 安卓app一运行就闪退,logcat,提示“应用过期”,求大神解答
- POJ 3026 Borg Maze
- git出现 fatal: remote origin already exists.
- VPP NAT测试,不支持VLAN,在NAT下arp学习有问题,需要手动添加;直连接口ICMP不支持,
- linux ELF反调试初探
- 使用github 搭建个人主页
- 栈和队列的两个复杂复杂操作
- android socket通信问题 求解决!!!!!!
- android 下载图片到sd卡,通过查看“相册”找不到,确定已经下载到sd卡,求指点
- TCP 2
- 时间转换
- 《最简单的图形与最复杂的信息:如何有效建立你的视觉思维》