通过twice nat实现:
object network public-IP
host 200.100.1.10
object network inside-server
host 192.168.1.10
object service port23
service tcp destination eq telnet
配置twice-NAT:
nat (Inside,Inside) source static any interface destination static public-IP inside-server service port23 port23
允许相同接口的访问:
same-security-traffic permit intra-interface