i want to pass all my users out my internet pipe on the same NAT/PAT address
at the moment i have all users behind a firewall which passes traffic to the perimeter router (the firewall's external ip is a private address & non routable)so the router's external IP is the address i present to the internet
i have implemented a PAT solution on the external interface and access to the internet is working but i thnik i remember reading that PAT doesn't like streaming, VoIP etc and this would match my problem - when i access some sites with streaming content it hangs
should i use a nat solution instead but rather than use a pool of addresses (which i don't have) just use the external interface's IP?
Perhaps there is some confusion about terminology. NAT is translation with a pool of addresses. When you do NAT with only a single address you have created PAT.
If you have only a single address then your alternative is to do PAT. If that is causing problems then perhaps you need to negotiate with your provider for additional address space.
The solution that you suggest is a PIX/ASA solution. But Michael has clearly stated in his original post that his firewall outside interface is using a private non-routable address and that he needs to do translation on his router.
I have a 2811 and streaming works fine as long as you have the streaming protocols declared in your "ip inspect" list on the router. Assuming that you already have an "ip inspect" list on the outbound interface of your, just add the streaming protocols you want to the list:
ip inspect name LIST_NAME PROTOCOL
In global config:
ip inpect name mylist pcanywhere
ip inspect name mylist h323
Interface config mode for external router interface:
ip inspect mylist out
That's all it takes to set it up, though the inspect list is usually pretty long. Mine has nearly 40 protocols listed.
This is actually a pretty cool feature, i didn't even know it existed until I was looking for a solution to advertise a subnet (prefix in BGP talk), only if a certain condition existed. This is exactly what conditional advertisements does
j ai une question j ai achete un routeur cisco 887VA-k9 , je le configuré avec la configuration ci- dessous
si je le lier avec mon pc portable sur l un de ses ports directement ça marche toute est bien ( la connexion internet + m...
Attached policy provides CLI access to the Cisco 4G router over text messaging. Two files are in the attached .tar file:
2. PDF with instructions on how to load and use the .tcl file.