Use NAT to Hide the Real IP Address of CTC to Establish a Session with ONS 15454

Similar documents
CRS Historical Reports Schedule and Session Establishment

CTC Fails to Start on Windows XP with Cisco Security Agent

Tune the CTC HEAP Variables on the PC to Improve CTC Performance

Using NAT in Overlapping Networks

NAT Support for Multiple Pools Using Route Maps

UCS Uplink Ethernet Connection Configuration Example

CDR Database Copy or Migration to Another Server

Policy Based Routing with the Multiple Tracking Options Feature Configuration Example

How to Configure a Cisco Router Behind a Non-Cisco Cable Modem

Configuring a Cisco 827 Router Using PPPoA With CHAP and PAP

Cisco DSL Router Configuration and Troubleshooting Guide Cisco DSL Router Acting as a PPPoE Client with a Dynamic IP Address

VG248 Port Configuration to Light the Caller ID MWI

Configuring IOS Server Load Balancing with HTTP Probes in the Dispatched Mode

WebView and IIS Connection Timeouts

Configuring a Terminal/Comm Server

Syslog Server Configuration on Wireless LAN Controllers (WLCs)

Configuring a Cisco 827 Router to Support PPPoE Clients, Terminating on a Cisco 6400 UAC

Configuring the VPN Client 3.x to Get a Digital Certificate

Hotdial on IP Phones with CallManager Configuration Example

Implementing Authentication Proxy

Route Leaking in MPLS/VPN Networks

OSPF Routers Connected by a Point to Multipoint Link

Adjust Administrative Distance for Route Selection in Cisco IOS Routers Configuration Example

VoIP with Channel Associated Signaling (CAS)

Configuring Cisco CallManager IP Phones to Work With IP Phone Agent

IOS Router : Easy VPN (EzVPN) in Network Extension Mode (NEM) with Split tunnelling Configuration Example

cable modem dhcp proxy nat on Cisco Cable Modems

Integrating Cisco CallManager IVR and Active Directory

LAN to LAN IPsec Tunnel Between a Cisco VPN 3000 Concentrator and Router with AES Configuration Example

Configuring a Cisco Secure IDS Sensor in CSPM

Telnet, Console and AUX Port Passwords on Cisco Routers Configuration Example

Reestablishing a Broken Cisco CallManager Cluster SQL Subscription with CallManager 3.0, 3.1 and 3.2

CallManager Configuration Requirements for IPCC

Using vemlog to debug Nexus 1000v problems

Configuring Transparent and Proxy Media Redirection Using ACNS Software 4.x

CDR Database Copy or Migration to Another Server

How BGP Routers Use the Multi Exit Discriminator for Best Path Selection

Three interface Router without NAT Cisco IOS Firewall Configuration

RHI on the Content Switching Module Configuration Example

MD5 Authentication Between BGP Peers Configuration Example

Context Based Access Control (CBAC): Introduction and Configuration

Best Practices When Configuring Circuits on the ONS 15454

ICM Logger Database Configuration Synchronization

This document provides a sample configuration for X25 Over TCP.

Configuring IS IS for IP on Cisco Routers

VPN Connection through Zone based Firewall Router Configuration Example

ACS Shell Command Authorization Sets on IOS and ASA/PIX/FWSM Configuration Example

Configure the IPv6 BGP Local Preference Feature

Sharing a Cisco Unity Voice Mail Box between Two or More IP Phones

Configuring Secure (Router) Mode on the Content Switching Module

Table of Contents. Cisco WebVPN Capture Tool on the Cisco ASA 5500 Series Adaptive Security Appliance

MeetingPlace for Outlook Onsite Installation or Upgrade

Configuring Commonly Used IP ACLs

Cisco Unified Communications Manager: Localization to Native Language

Cisco Secure Desktop (CSD) on IOS Configuration Example using SDM

Troubleshoot Missing Speed Dials Issue in IPMA

Cisco Back to Back Frame Relay

Dynamically Configuring DHCP Server Options

Fixing Issues with Corporate Directory Lookup from the Cisco IP Phone

Configuring the Cisco VPN 3000 Concentrator with MS RADIUS

Check Password Synchronization with the Admin Utility in the Cisco CallManager Cluster

ACS 5.x: LDAP Server Configuration Example

IP Phone 7940/7960 Fails to BootProtocol Application Invalid

Implement Static Routes for IPv6 Configuration Example

Configuring Redundant Routing on the VPN 3000 Concentrator

ASA Clientless SSL VPN (WebVPN) Troubleshooting Tech Note

GRE Tunnel with VRF Configuration Example

Understanding Cisco Express Forwarding

Configure BIOS Policy for Cisco UCS

IOS/CCP: Dynamic Multipoint VPN using Cisco Configuration Professional Configuration Example

CVP 40 EVAL, CVP 40 DISTI, CVP 40 DART, CVP 41 EVAL,CVP 41 DIST NFR, CVP 41 DART NFR, CVP 70 EVAL, CVP 70 DIST NFR

Reestablishing a Broken CallManager Cluster SQL Subscription with Cisco CallManager

OSPF Virtual Link. Contents. Prerequisites. Document ID: Requirements. Components Used

Connect the PC and Log into the GUI

Troubleshooting Cisco Express Forwarding Routing Loops

Caller ID Name Delivery Issues on Cisco IOS Gateways

Configuring IDS TCP Reset Using VMS IDS MC

Auxiliary Port, Console Port, and Adapter Pinouts for Cisco 1000, 1600, 2500, 2600, and 3600 Series Routers

Secure ACS Database Replication Configuration Example

Connect the PC and Log into the GUI

Connect the PC and Log into the GUI

Upgrade BIOS on Cisco UCS Server Blade

Cisco DSL Router Configuration and Troubleshooting Guide Step by Step Configuration of RFC1483 Pure Bridging

Device Interface IP Address Subnet Mask Default Gateway

Router Allows VPN Clients to Connect IPsec and Internet Using Split Tunneling Configuration Example

Cisco Aironet Client Adapter Installation Tips for Windows NT v4.0

How to Authenticate VPN 5000 Client to the VPN 5000 Concentrator with Cisco Secure NT 2.5 and Later (RADIUS)

Table of Contents. Cisco NAT Order of Operation

Introduction p. 1 Self-Assessment p. 9 Networking Fundamentals p. 17 Introduction p. 18 Components and Terms p. 18 Topologies p. 18 LAN Technologies

LANE, CES, and VBR PVCs in Shaped VP Tunnels

PIX/ASA as a DHCP Server and Client Configuration Example

Lock and Key: Dynamic Access Lists

Configuring Transparent Bridging

Lab 7 Configuring Basic Router Settings with IOS CLI

Communication Media Module IP Connectivity

Configuring Basic MPLS Using OSPF

Wireless LAN Controller (WLC) Mobility Groups FAQ

CallManager MoH uses G.711 Codec while Voice Calls use G.729 Codec Configuration Example

Cisco Configuring Hub and Spoke Frame Relay

Configure a Cisco Router with TACACS+ Authentication

Transcription:

Use NAT to Hide the Real IP Address of CTC to Establish a Session with ONS 15454 Document ID: 65122 Contents Introduction Prerequisites Requirements Components Used Conventions Background Information Topology Configure Network Diagram Configurations Cisco ONS 15454 Configuration PC Configuration Router Configuration Verify Verification Procedure Troubleshoot Troubleshooting Commands Related Information Introduction This document provides a sample configuration for Network Address Translation (NAT) to establish a session between Cisco Transport Controller (CTC) and ONS 15454. The configuration hides the real IP address of CTC through NAT when CTC resides inside the firewall. Note: For this procedure to work, you must ensure that the ports are not blocked or filtered. Prerequisites Requirements Before you attempt this configuration, ensure that you have knowledge of these topics: Cisco ONS 15454 Cisco Routers that support NAT Components Used The information in this document is based on these software and hardware versions: Cisco ONS 15454 version 5.0 and later Cisco IOS Software Release 12.1(11) and later

The information in this document was created from the devices in a specific lab environment. All of the devices used in this document started with a cleared (default) configuration. If your network is live, make sure that you understand the potential impact of any command. Conventions For more information on document conventions, refer to the Cisco Technical Tips Conventions. Background Information Topology The topology consists of these elements: One Cisco ONS 15454 One PC Two Cisco 2600 series routers Cisco ONS 15454 resides in the external network, and acts as the server. The PC resides in the internal network, and serves as the CTC client. Configure In this section, you are presented with the information to configure the features described in this document. Note: To find additional information on the commands used in this document, use the Command Lookup Tool (registered customers only). Network Diagram This document uses this network setup:

Configurations This document uses these configurations: Cisco ONS 15454 PC Cisco 2600 series routers Cisco ONS 15454 Configuration 10.89.238.192 is the IP address of the ONS 15454 (see arrow A in Figure 2), and 10.89.238.1 represents the default router (see arrow B in Figure 2). Figure 2 ONS 15454 Configuration PC Configuration 172.16.1.254 is the IP address of the PC (see arrow A in Figure 3), and 172.16.1.1 represents the default gateway (see arrow B in Figure 3). NAT translates the IP address to 10.89.239.100 for security reasons. The Cisco 2600 series router provides the necessary support for NAT and routing. Figure 3 PC Configuration

Router Configuration Complete these steps to configure NAT support on the routers: 1. Configure the outside interface. 2. 3. interface Ethernet1/1 ip address 10.89.239.1 255.255.255.0 ip nat outside Configure the inside interface where the PC resides. interface Ethernet1/2 ip address 172.16.1.1 255.255.255.0 ip nat inside Configure static NAT. ip nat inside source static 172.16.1.254 10.89.239.100 The configuration converts the IP address 172.16.1.254 (inside local) (see arrow B in Figure 4) to 10.89.239.100 (inside global) (see arrow A in Figure 4). 4. Issue the show ip nat translations command on the router. Figure 4 IP NAT Translations Verify This section provides information you can use to confirm your configuration is working properly.

Verification Procedure Complete these steps: 1. Run Microsoft Internet Explorer. 2. Type http://10.89.238.192 in the Address bar of the browser window, and press ENTER. The CTC Login window appears. 3. Type your User Name and Password to log in. CTC client must successfully establish a session with the ONS 15454. Troubleshoot This section provides information you can use to troubleshoot your configuration. Troubleshooting Commands Certain show commands are supported by the Output Interpreter Tool (registered customers only), which allows you to view an analysis of show command output. Note: Before issuing debug commands, refer to Important Information on Debug Commands. debug ip nat detailedturns on the IP NAT detailed trace. The output of the debug ip nat command indicates the address translations. For example, NAT translates 172.16.1.254 to 10.89.239.100 when CTC sends data to ONS 15454 (see arrow A in Figure 5). Similarly, NAT translates 10.89.239.100 to 172.16.1.254 when CTC receives data from ONS 15454 (see arrow B in Figure 5). Figure 5 Debug IP NAT Detailed Related Information Technical Support & Documentation Cisco Systems Contacts & Feedback Help Site Map 2013 2014 Cisco Systems, Inc. All rights reserved. Terms & Conditions Privacy Statement Cookie Policy Trademarks of Cisco Systems, Inc. Updated: Jan 09, 2006 Document ID: 65122