Hi,
I have been trying to get my 837 onto the Internet and opening a few ports so that the webserver can be reached from the outside world, but for some reason no traffic will pass the NAT...
I can get onto the Internet fine, but no machine can reach the webserver on the inside...
Can someone please take a look at my config and tell me what goes wrong here?
Thanks,
Arnoud
PS: I know, it will need some more tuning and closing down, but I want to get it running first...
version 12.3 no service pad service timestamps debug uptime service timestamps log uptime no service password-encryption ! hostname cisco837 ! enable password XXXXXXXX ! username XXXXXXXX privilege 15 secret 5 XXXXXXXX username XXXXXXXX privilege 15 password 0 XXXXXXXX clock timezone Eindhvn 1 no aaa new-model ip subnet-zero ! no ip domain lookup ip ips po max-events 100 no ftp-server write-enable ! bridge irb ! interface Ethernet0 ip address 10.210.6.249 255.255.255.0 ip nat inside ip virtual-reassembly no ip route-cache no keepalive hold-queue 100 out ! interface ATM0 no ip address no ip route-cache no atm ilmi-keepalive dsl operating-mode auto pvc 0 8/48 encapsulation aal5mux ppp dialer dialer pool-member 1 ! ! interface FastEthernet1 no ip address duplex auto speed auto ! interface FastEthernet2 no ip address duplex auto speed auto ! interface FastEthernet3 no ip address duplex auto speed auto ! interface FastEthernet4 no ip address duplex auto speed auto ! interface Dialer0 ip address negotiated ip nat outside ip virtual-reassembly encapsulation ppp dialer pool 1 dialer-group 1 ppp authentication pap callin ppp pap sent-username XXXXXXXX password 0 XXXXXXXX ! ip classless ip route 0.0.0.0 0.0.0.0 Dialer0 permanent ip route 212.206.95.0 255.255.255.0 10.210.6.254 ! ip http server ip http secure-server ! ip nat inside source list 101 interface Dialer0 overload ip nat inside source static tcp 10.210.6.1 22 [ext-ip] 22 extendable no-alias ip nat inside source static tcp 10.210.6.1 80 [ext-ip] 80 extendable no-alias ! access-list 101 permit ip any any dialer-list 1 protocol ip permit ! ! control-plane ! ! line con 0 exec-timeout 120 0 no modem enable transport preferred all transport output all stopbits 1 line aux 0 transport preferred all transport output all line vty 0 4 exec-timeout 120 0 login local transport preferred all transport input telnet ssh transport output none ! scheduler max-task-time 5000 sntp server 17.254.0.28 end