IOS NAT Load Balancing for Two ISP Connections

Similar documents
IOS NAT Load Balancing with Optimized Edge Routing for Two Internet Connections

How To Configure InterVLAN Routing on Layer 3 Switches

Configuring Static and Dynamic NAT Simultaneously

Chapter 7 Lab 7-1, Configuring Switches for IP Telephony Support

Lab: Basic Router Configuration

Lab 7-1 Configuring Switches for IP Telephony Support

Sample Configuration Using the ip nat outside source static

PIX/ASA: Allow Remote Desktop Protocol Connection through the Security Appliance Configuration Example

Table of Contents. Cisco Configuring a Basic MPLS VPN

Configuring a Gateway of Last Resort Using IP Commands

Objectives. Router as a Computer. Router components and their functions. Router components and their functions

Table of Contents. Cisco Mapping Outbound VoIP Calls to Specific Digital Voice Ports

Note: This case study utilizes Packet Tracer. Please see the Chapter 5 Packet Tracer file located in Supplemental Materials.

How To Configure A Vyatta As A Ds Internet Connection Router/Gateway With A Web Server On A Dspv.Net (Dspv) On A Network With A D

Table of Contents. Cisco How Does Load Balancing Work?

INTERCONNECTING CISCO NETWORK DEVICES PART 1 V2.0 (ICND 1)

Interconnecting Cisco Network Devices 1 Course, Class Outline

Sample Configuration Using the ip nat outside source list C

CCT vs. CCENT Skill Set Comparison

Introduction about cisco company and its products (network devices) Tell about cisco offered courses and its salary benefits (ccna ccnp ccie )

Lab Load Balancing Across Multiple Paths Instructor Version 2500

Configuration Professional: Site to Site IPsec VPN Between Two IOS Routers Configuration Example

: Interconnecting Cisco Networking Devices Part 1 v2.0 (ICND1)

Cisco Certified Network Associate Exam. Operation of IP Data Networks. LAN Switching Technologies. IP addressing (IPv4 / IPv6)

Session Title: Exploring Packet Tracer v5.3 IP Telephony & CME. Scenario

How To Configure A Cisco Router With A Cio Router

BRI to PRI Connection Using Data Over Voice

How To Learn Cisco Cisco Ios And Cisco Vlan

IPv6 over MPLS VPN. Contents. Prerequisites. Document ID: Requirements

"Charting the Course...

configure WAN load balancing

Cisco Networking Professional-6Months Project Based Training

Skills Assessment Student Training Exam

Configuring IP Load Sharing in AOS Quick Configuration Guide

Interconnecting Cisco Networking Devices Part 2

Multi-Homing Security Gateway

Cisco Which VPN Solution is Right for You?

LAB Configuring NAT. Objective. Background/Preparation

Smart Tips. Enabling WAN Load Balancing. Key Features. Network Diagram. Overview. Featured Products. WAN Failover. Enabling WAN Load Balancing Page 1

UIP1868P User Interface Guide

Broadband Phone Gateway BPG510 Technical Users Guide

Cisco Configuring Commonly Used IP ACLs

Cisco Certified Network Associate (CCNA) 120 Hours / 12 Months / Self-Paced WIA Fee: $

Enabling NAT and Routing in DGW v2.0 June 6, 2012

Document ID: Introduction

Table of Contents. Cisco Using the Cisco IOS Firewall to Allow Java Applets From Known Sites while Denying Others

Implementing Secured Converged Wide Area Networks (ISCW) Version 1.0

Interconnecting Cisco Networking Devices: Accelerated (CCNAX) 2.0(80 Hs) 1-Interconnecting Cisco Networking Devices Part 1 (40 Hs)

Securing Networks with PIX and ASA

Configure ISDN Backup and VPN Connection

ASA 9.x EIGRP Configuration Example

Cisco - Configure the 1721 Router for VLANs Using a Switch Module (WIC-4ESW)

ASA 8.X: Routing SSL VPN Traffic through Tunneled Default Gateway Configuration Example

Basic Router Configuration Using Cisco Configuration Professional

ISOM3380 Advanced Network Management. Spring Course Description

Cisco Certified Network Professional (CCNP Routing & Switching)

Table of Contents. Cisco Configuring IPSec Cisco Secure VPN Client to Central Router Controlling Access

Lab Organizing CCENT Objectives by OSI Layer

ASUS WL-5XX Series Wireless Router Internet Configuration. User s Guide

Chapter 2 Lab 2-2, EIGRP Load Balancing

Troubleshooting and Maintaining Cisco IP Networks Volume 1

nexvortex Setup Guide

COURSE AGENDA. Lessons - CCNA. CCNA & CCNP - Online Course Agenda. Lesson 1: Internetworking. Lesson 2: Fundamentals of Networking

Configuring a Basic MPLS VPN

Cisco 12 CCNA Certification

Course Contents CCNP (CISco certified network professional)

Catalyst 6500/6000 Switches NetFlow Configuration and Troubleshooting

Cisco Secure PIX Firewall with Two Routers Configuration Example

Chapter 1 Personal Computer Hardware hours

Cisco Discovery 3: Introducing Routing and Switching in the Enterprise hours teaching time

ASA 8.3 and Later: Mail (SMTP) Server Access on Inside Network Configuration Example

Lab 4.4.8a Configure a Cisco GRE over IPSec Tunnel using SDM

PIX/ASA 7.x and above: Mail (SMTP) Server Access on the DMZ Configuration Example

SCOPE DOCUMENT. Trade Name IT- Network Systems Administration Post- Secondary DATE OF DISTRIBUTION VIA WEBSITE

For extra services running behind your router. What to do after IP change

50 Cragwood Rd, Suite 350 South Plainfield, NJ Victoria Commons, 613 Hope Rd Building #5, Eatontown, NJ 07724

Network Simulator Lab Study Plan

CCNA Cisco Associate- Level Certifications

Configuring Network Address Translation (NAT)

Welcome to Todd Lammle s CCNA Bootcamp

Catalyst Layer 3 Switch for Wake On LAN Support Across VLANs Configuration Example

Syslog Server Configuration on Wireless LAN Controllers (WLCs)

Description: Objective: Upon completing this course, the learner will be able to meet these overall objectives:

Load Balance Mechanism

CURSO DE PREPARACION PARA LA CERTIFICACION CCNA (Cisco Certified Network Associate)

JOB READY ASSESSMENT BLUEPRINT COMPUTER NETWORKING FUNDAMENTALS - PILOT. Test Code: 4514 Version: 01

This document is exclusive property of Cisco Systems, Inc. Permission is granted to print and copy this document for non-commercial distribution and

Configure IOS Catalyst Switches to Connect Cisco IP Phones Configuration Example

OSPF Configuring Multi-Area OSPF

Lab Developing ACLs to Implement Firewall Rule Sets

ASA 8.3 and Later: Enable FTP/TFTP Services Configuration Example

Configure WAN Load Balancing

PIX/ASA 7.x with Syslog Configuration Example

LAB MANUAL for Computer Network

Interconnecting Cisco Networking Devices, Part 1 (ICND1) v3.0

WiNG 5.X How To. Policy Based Routing Cache Redirection. Part No. TME Rev. A

Using Cisco UC320W with Windows Small Business Server

Table of Contents. Cisco Blocking Peer to Peer File Sharing Programs with the PIX Firewall

IMPLEMENTING CISCO IP ROUTING V2.0 (ROUTE)

Essential Curriculum Computer Networking 1. PC Systems Fundamentals 35 hours teaching time

Transcription:

IOS NAT Load Balancing for Two ISP Connections Document ID: 100658 Contents Introduction Prerequisites Requirements Components Used Conventions Configure Network Diagram Configurations Verify Troubleshoot Related Information Introduction This document describes a configuration for a Cisco IOS router to connect a network to the Internet with Network Address Translation (NAT) through two ISP connections. The NAT of the Cisco IOS Software can distribute subsequent TCP connections and UDP sessions over multiple network connections, if equal cost routes to a given destination are available.

Prerequisites Requirements This document assumes you start to work with LAN and WAN connections, and does not provide configuration or troubleshooting background to establish initial connectivity. This document does not describe a mechanism to differentiate between the routes; thus, there is no way to prefer a more desirable connection over a less desirable connection. Components Used This configuration was developed with the use of a Cisco 1811 router with Cisco IOS Software Release 12.4(15)T3 Advanced IP Services software. If a different software version is used, some features are possibly not available, or the configuration commands cab differ from those shown in this document. Similar configuration should be available on all Cisco IOS router platforms, although the interface configuration likely varies between different platforms. The information in this document was created from the devices in a specific lab environment. All of the devices used in this document started with a cleared (default) configuration. If your network is live, make sure that you understand the potential impact of any command. Conventions Refer to Cisco Technical Tips Conventions for more information on document conventions. Configure You need to add policy based routing for specific traffic to be sure that it always uses one ISP connection. Examples of traffic that require this behavior include IPsec VPN clients, VoIP telephony traffic, and any other traffic that should always use only one of the ISP connection options to prefer the same IP address, higher speed, or lower latency on the connection. In this section, you are presented with the information to configure the features described in this document. Note: Use the Command Lookup Tool (registered customers only) in order to find more information on the commands used in this document. Network Diagram This document uses this network setup:

This configuration example describes an access router that uses a DHCP configured IP connection to one ISP, which is shown by FastEthernet 0, and a PPPoE connection over the other ISP connection. The connection types have no particular impact on the configuration, although some connections types can hinder the usability of this configuration in specific failure scenarios, particularly in cases where IP connectivity over an Ethernet connected WAN service is used, for example, a cable modem or DSL services where an additional device terminates the WAN connectivity and provides Ethernet hand off to the Cisco IOS router. In cases where static IP addressing is applied, as opposed to DHCP assigned addresses or PPPoE, and a WAN failure occurs such that the Ethernet port still maintains the Ethernet link to the WAN connectivity device, the router continues to attempt to load balance connectivity across both the good and bad WAN connections. If your deployment requires that inactive routes be removed from load balancing, refer to the configuration provided in the document, IOS NAT Load Balancing with Optimized Edge Routing For Two Internet Connections, that describes the addition of Optimized Edge Routing in order to monitor route validity. Configurations This document uses this configuration: interface FastEthernet0 ip address dhcp ip nat outside interface FastEthernet1 no ip address pppoe enable no cdp enable interface FastEthernet2 no cdp enable interface Vlan1

description LAN Interface ip address 192.168.108.1 255.255.255.0 ip nat inside ip tcp adjust mss 1452 Define LAN facing interfaces with "ip nat inside". Interface Dialer 0 description PPPoX dialer ip address negotiated ip nat outside ip tcp adjust mss Define ISP facing interfaces with "ip nat outside". ip route 0.0.0.0 0.0.0.0 dialer 0 track 123 ip nat inside source route map fixed nat interface Dialer0 overload ip nat inside source route map dhcp nat interface FastEthernet0 overload Configure NAT overload (PAT) in order to use route maps. access list 110 permit ip 192.168.108.0 0.0.0.255 any Define ACLs for traffic that are NATed to the ISP connections. route map fixed nat permit 10 match ip address 110 match interface Dialer0 route map dhcp nat permit 10 match ip address 110 match interface FastEthernet0 Route maps associate NAT ACLs with NAT outside on the ISP facing interfaces. Verify Use this section in order to confirm that your configuration works properly. The Output Interpreter Tool (registered customers only) (OIT) supports certain show commands. Use the OIT to view an analysis of show command output.

show ip nat translationdisplays NAT activity between NAT inside hosts and NAT outside hosts. This command provides verification that inside hosts are being translated to both NAT outside addresses. Router#show ip nat translation Pro Inside global Inside local Outside local Outside global tcp 172.16.108.44:54486 192.168.108.3:54486 172.16.104.10:22 172.16.104.10:22 tcp 172.16.106.42:49620 192.168.108.3:49620 172.16.102.11:80 172.16.102.11:80 tcp 172.16.108.44:1623 192.168.108.4:1623 172.16.102.11:445 172.16.102.11:445 Router# show ip routeverifies that multiple routes to the Internet are available. Troubleshoot Router#show ip route Codes: C connected, S static, R RIP, M mobile, B BGP D EIGRP, EX EIGRP external, O OSPF, IA OSPF inter area N1 OSPF NSSA external type 1, N2 OSPF NSSA external type 2 E1 OSPF external type 1, E2 OSPF external type 2 i IS IS, su IS IS summary, L1 IS IS level 1, L2 IS IS level 2 ia IS IS inter area, * candidate default, U per user static route o ODR, P periodic downloaded static route Gateway of last resort is 172.16.108.1 to network 0.0.0.0 C 192.168.108.0/24 is directly connected, Vlan1 172.16.0.0/24 is subnetted, 2 subnets C 172.16.108.0 is directly connected, FastEthernet4 C 172.16.106.0 is directly connected, Vlan106 S* 0.0.0.0/0 [1/0] via 172.16.108.1 [1/0] via 172.16.106.1 Router# Use this section to troubleshoot your configuration. After you configure the Cisco IOS router with NAT, if the connections do not work, be sure that: NAT is applied appropriately on outside and inside interfaces. NAT configuration is complete, and ACLs reflect the traffic that must be NATed. Multiple routes to the Internet/WAN are available. Related Information Configuring Network Address Translation Features Roadmap Technical Support & Documentation Cisco Systems Contacts & Feedback Help Site Map 2013 2014 Cisco Systems, Inc. All rights reserved. Terms & Conditions Privacy Statement Cookie Policy Trademarks of Cisco Systems, Inc. Updated: Feb 22, 2008 Document ID: 100658