02-16-2022
03:25 PM
- last edited on
02-18-2022
08:37 AM
by
Translator
Hi all!
We have NAT Overload setup on Cisco 887 router as follows:
ip nat inside source list nat-overload interface Dialer1 overload
ip nat inside source static tcp 10.10.27.1 443 interface Dialer1 443
ip route 0.0.0.0 0.0.0.0 Dialer1
ip route 172.17.99.0 255.255.255.0 172.17.44.54
ip route vrf PRISMA 0.0.0.0 0.0.0.0 172.89.32.11
ip route vrf PRISMA 172.89.34.78 255.255.255.255 Tunnel457
The interface is now changed to Vlan2 instead of Dialer1. Also a new static route (0.0.0.0 0.0.0.0 dhcp) would be entered. What is the best way to update the NAT Overload setup?
Solved! Go to Solution.
02-17-2022
12:54 AM
- last edited on
02-18-2022
08:40 AM
by
Translator
Hello,
first of all (obviously) change
nat-overload
access list to reflect the new IP subnet of Vlan 2.
Then, I would follow the sequence below:
887#clear ip nat translation *
887#conf t
887(config)#interface Dialer 1
887(config-if)#no ip nat outside
887(config-if)#exit
887(config)#no ip nat inside source list nat-overload interface Dialer1 overload
887(config)#no ip nat inside source static tcp 10.10.27.1 443 interface Dialer1 443
887(config)#no ip route 0.0.0.0 0.0.0.0 Dialer1
887(config)#interface Vlan 2
887(config-if)#ip nat outside
887(config-if)#exit
887(config)#ip nat inside source list nat-overload interface Vlan2 overload
887(config)#ip nat inside source static tcp 10.10.27.1 443 interface Vlan2 443
887(config)#ip route 0.0.0.0 0.0.0.0 dhcp
02-16-2022
03:40 PM
- last edited on
02-18-2022
08:38 AM
by
Translator
Try Route :
ip route 0.0.0.0 0.0.0.0 dhcp
change dialer to vlanX that should work for you.
Test and advise any issue
02-17-2022
12:54 AM
- last edited on
02-18-2022
08:40 AM
by
Translator
Hello,
first of all (obviously) change
nat-overload
access list to reflect the new IP subnet of Vlan 2.
Then, I would follow the sequence below:
887#clear ip nat translation *
887#conf t
887(config)#interface Dialer 1
887(config-if)#no ip nat outside
887(config-if)#exit
887(config)#no ip nat inside source list nat-overload interface Dialer1 overload
887(config)#no ip nat inside source static tcp 10.10.27.1 443 interface Dialer1 443
887(config)#no ip route 0.0.0.0 0.0.0.0 Dialer1
887(config)#interface Vlan 2
887(config-if)#ip nat outside
887(config-if)#exit
887(config)#ip nat inside source list nat-overload interface Vlan2 overload
887(config)#ip nat inside source static tcp 10.10.27.1 443 interface Vlan2 443
887(config)#ip route 0.0.0.0 0.0.0.0 dhcp
02-17-2022 01:21 PM
Hi Georg,
I was able to follow the above configuration and make the change from interface Dialer1 to interface Vlan2.
Thank you!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide