access-list 100 permit ip any any access-list 100 permit tcp any any access-list 100 pemirt tcp any any eq 80 access-list 100 pemirt tcp any any eq 443 access-list 100 pemirt tcp any any eq 25 access-list 100 pemirt tcp any any eq 110 access-list 100 pemirt tcp any any eq domain access-list 100 pemirt udp any any eq domain access-list 100 permit icmp any any access-list 100 permit tcp any any eq 21 route-map pating permit 10 match ip address 100 ip nat pool dynamic 210.212.10.192-210.212.10.198 255.255.255.248 ip nat inside source list pating dynamic # then on ur inside router interface int fa0/1 ip nat inside ip address 10.10.100.2 255.255.255.252 #and on the outside interface int fa0/0 ip nat outside ip address ip route 0.0.0.0 0.0.0.0 fa0/0 (or wan ip of isp) ip route 10.10.0.0 255.255.0.0 10.10.100.1 (switch interface ip that is connected with router int fa0/1)