特权模式下# ip default-gateway 192.168.15.254 //配置网关,允许他人从别的网段telnet该终端服务器

 

interface GigabitEthernet0/0------------------------------------进入0/0接口
 description $ETH-LAN$$ETH-SW-LAUNCH$$INTF-INFO-GE 0/0$$ES_LAN$
 ip address 192.168.0.1 255.255.240.0---------------------------给0/0接口配置IP地址
 ip nat inside----------------------------------------------NAT转换,定义该口为内部网络口
 ip virtual-reassembly
 duplex auto
 speed auto
 media-type rj45
!
interface GigabitEthernet0/1----------------------------------进入0/1接口
 description $ETH-WAN$
 ip address 121.34.255.242 255.255.255.240---------------------给0/1配置IP地址
 ip nat outside------------------------------------------------定义该端口为NAT转换的外部口
 ip virtual-reassembly
 duplex auto
 speed auto
 media-type rj45
!
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 121.34.255.254------------------------设置默认路由
!
ip http server-------------------------------------------------开启WEB操作功能
ip http access-class 1-----------------------------------------允许用户登陆数量
ip http authentication local
ip http secure-server------------------------------------------开启安全WEB操作功能
ip http timeout-policy idle 60 life 86400 requests 10000
ip nat pool nurenxin 121.34.255.242 121.34.255.250 netmask 255.255.255.240-----把所有内部网段NAT转换成该IP的端口
ip nat inside source list 9 interface GigabitEthernet0/1 overload--------------把需要NAT内部转换的列表定义到0/1外部口上
!
access-list 9 permit 192.168.0.0 0.0.0.255-----------------允许192.168.0.0网段上网,且被定义为将要NAT转换的网段

telnet 配置如下:
特权模式下#conf t
特权模式下#int g0/1
特权模式下#ip add 192.168.2.1 255.255.255.0
特权模式下#no shutdown
特权模式下#exit
特权模式下#line vty 0 4
特权模式下#password *****
特权模式下#login authentication default
特权模式下#exit
特权模式下#enable password *****
特权模式下#access-list 2 permit host 192.168.2.1
特权模式下#line vty 0 4
特权模式下#access-list 2 in
特权模式下#password ******
特权模式下#login authentication default
特权模式下#end
#wr

 

!                   NAT
!
interface GigabitEthernet0/0------------------------------------进入0/0接口
 description $ETH-LAN$$ETH-SW-LAUNCH$$INTF-INFO-GE 0/0$$ES_LAN$
 ip address 192.168.0.1 255.255.240.0---------------------------给0/0接口配置IP地址
 ip nat inside----------------------------------------------NAT转换,定义该口为内部网络口
 ip virtual-reassembly
 duplex auto
 speed auto
 media-type rj45
!
interface GigabitEthernet0/1----------------------------------进入0/1接口
 description $ETH-WAN$
 ip address 121.34.255.242 255.255.255.240---------------------给0/1配置IP地址
 ip nat outside------------------------------------------------定义该端口为NAT转换的外部口
 ip virtual-reassembly
 duplex auto
 speed auto
 media-type rj45
!
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 121.34.255.254------------------------设置默认路由

ip nat inside source list 9 interface GigabitEthernet0/1 overload--------------把需要NAT内部转换的列表定义到0/1外部口上
!
access-list 9 permit 192.168.0.0 0.0.0.255-----------------允许192.168.0.0网段上网,且被定义为将要NAT