delay down 10 up 20
track 101 ip sla 101 reachability
delay down 10 up 20
ip local policy route-map LocalPolicy
ip nat inside source route-map DYN_NAT interface
ip nat inside source route-map FAILOVER_NAT interface
ip route 0.0.0.0 0.0.0.0
ip route 0.0.0.0 0.0.0.0
ip route 0.0.0.0 0.0.0.0
ip route 0.0.0.0 0.0.0.0
ip access-list extended PingISP_A
permit icmp host
ip access-list extended PingISP_B
permit icmp host
ip sla 100
icmp-echo 8.8.8.8 source-interface
ip sla schedule 100 life forever start-time now
ip sla 101
icmp-echo 8.8.8.8 source-interface
ip sla schedule 101 life forever start-time now
access-list 107 permit ip
access-list 108 permit ip
route-map FAILOVER_NAT permit 10
match ip address 107
match interface
route-map DYN_NAT permit 10
match ip address 108
match interface
route-map LocalPolicy permit 10
match ip address PingISP_A
set ip next-hop
set interface
route-map LocalPolicy permit 20
match ip address PingISP_B
set ip next-hop
set interface
If you need to do static NAT you would do basically the same thing:
route-map STAT_NAT permit 10
match ip address 109
match interface
route-map FAILOVER_SNAT permit 10
match ip address 110
match interface
Комментариев нет:
Отправить комментарий