Cisco Systems 6000 manual Configuring Client NAT Pools

Page 33

Configuring the Content Switching Module

 

Command

Purpose

Step 5

 

 

Router(config-redirect-v)# idle duration

Set the CSM connection idle timer for the redirect

 

 

virtual server2.

Step 6

 

 

Router(config-redirect-v)# client

Configure the combination of the ip-addressand

 

ip-address network-mask [exclude]

network-maskused to restrict which clients are

 

 

allowed to access the redirect virtual server2.

Step 7

 

 

Router(config-redirect-v)# inservice

Enable the redirect virtual server and begin

 

 

advertisements2.

Step 8

 

 

Router# show ip slb vserver redirect

Show all redirect servers configured.

 

[detail]

 

 

 

 

1.Enter the exit command to leave a mode or submode. Enter the end command to return to the menu’s top level.

2.The no form of this command restores the defaults.

This example shows how to configure redirect virtual servers to specify virtual servers to real servers in a server farm:

Router (config)# ip slb serverfarm FARM1

Router (config-slb-sfarm)# redirect-vserver REDIR_1

Router (config-slb-redirect-)# webhost relocation relo 301

Router (config-slb-redirect-)# virtual 172.1.2.30 tcp www

Router (config-slb-redirect-)# inservice

Router (config-slb-redirect-)# exit

Router (config-slb-sfarm)# redirect-vserver REDIR_2

Router (config-slb-redirect-)# webhost relocation relo 301

Router (config-slb-redirect-)# virtual 172.1.2.31 tcp www

Router (config-slb-redirect-)# inservice

Router (config-slb-redirect-)# exit

Router (config-slb-sfarm)# real 10.8.0.8

Router (config-slb-real)# redirect-vserver REDIR_1

Router (config-slb-real)# inservice

Router (config-slb-sfarm)# real 10.8.0.9

Router (config-slb-real)# redirect-vserver REDIR_2

Router (config-slb-real)# inservice

Router (config-slb-real)# end

Router# show ip slb serverfarm detail

Configuring Client NAT Pools

When you configure client Network Address Translation (NAT) pools, NAT converts the source IP address of the client requests into an IP address on the server-side VLAN. Use the NAT pool name in the server farm submode, using the nat command, to specify which connections need to be client NATed.

To configure client NAT pools, perform this task:

 

Command

Purpose

Step 1

 

 

Router(config)# ip slb natpool pool-name

Configure a content switching NAT. You must

 

start-ip end-ip netmask mask

create at least one client address pool to use this

 

 

command1, 2.

Step 2

Router(config)# ip slb serverfarm

Enter the server farm submode to apply the

 

serverfarm-name

client NAT.

 

 

 

 

 

Catalyst 6000 Family Content Switching Module Installation and Configuration Note

 

 

 

 

 

 

 

78-11631-02 Rev. A0

 

 

33

 

 

 

 

 

Image 33
Contents Contents Overview Features Describes the features of the CSMThese sections describe the CSM CSM front panel features are shown in Figure Front Panel DescriptionStatus LED Operation Mode RJ-45 ConnectorOff Red Orange Green Green to Orange Content Switching Module and Servers Client-to-CSM-to-Server Traffic Flow Client-to-Content Switching Module-to-Server Traffic FlowSafety Overview CSM memory is not configurable System RequirementsMemory Requirements Hardware Supported Power RequirementsEnvironmental Requirements 72-876-01 Console Cable Not applicablePreparing to Install the CSM Installing the Content Switching ModuleRequired Tools Software RequirementsInstalling the CSM Power supply Installing Modules in the Catalyst 6000 Family Switch Verifying the Installation Verifying the InstallationUsing the Command-Line Interface Accessing Online HelpUpgrading to a New Software Release Set up a session between the supervisor engine and the CSM Upgrading from the Supervisor Engine BootflashCSM upgrade 127.0.0.zz c6slb-apc.revision-num.bin Routerconfig# power cycle module slot-numberCSM upgrade slot0 c6slb-apc.revision-num.bin Routerconfig# tftp-server slotxc6slb-apc.revision-num.binRouter config# power cycle module slot-number Upgrading from a Pcmcia CardSwitchport Configuring the Content Switching ModuleSwitchport access vlan Router# vlan databaseConfiguration Overview Configure the required parameters in the following sections Configuring VLANsSee for the following notes Configuring VLANsConfiguring Server-Side VLANs Configuring Client-Side VLANsConfiguring Server Farms Configuring Real Servers Configuring Policies Configuring Maps Configure multiple cookies Configure multiple cookies into a cookie mapConfiguring Sticky Groups Configuring Virtual Servers Configuring Dynamic Feedback Protocol Configuring TCP ParametersConfiguring Redirect Virtual Servers Configuring Client NAT Pools Configuring Server NAT Writing and Restoring ConfigurationsSingle Subnet Bridge Mode Configuration Configuration ExamplesConfigure a client-side Vlan Enter the Vlan modeConfigure a server-side Vlan Exit to have the configuration take effectSecure Router Mode Configuration Vlan modeCreate the client-side Vlan 2 and enter the SLB Routerconfig# ip slb vlan 3 server Fault-Tolerant ConfigurationCreate the server-side Vlan 3 and enter the SLB Exit the submodeRouterconfig# mac access-list extended Venus Router# configure terminalRouterconfig# int GigabitEthernet 2/1 Routerconfig-if#service-policy input VenusConfiguration Parameter On Both Content Switching Modules Fault-tolerant configuration, the following rules applyAssign the Content Switching IP address on Create the client-side Vlan 2 and enter the SLB Vlan modeRouter B Hsrp address 192.158.38.10Define Vlan 9 as a fault-tolerant Vlan Assign the default route for VlanCreate the Content Switching primary Configure a client-side VLAN2Hsrp Configuration Overview Configuring HsrpCSG Vlan Configure Switch 2-FT2 Hsrp secondary as followsConfigure VLANs on Hsrp FT2 as follows Configuring CSM VLANsConfiguring Probes for Health Monitoring Configure EtherChannel on both switches as followsAdd ports to the EtherChannel as follows Http creates an Http probe with a default configuration Probe-name is the name of the probe being configured it hasIcmp creates an Icmp probe with a default configuration Telnet creates a Telnet probe with a default configurationHttp Probe Commands Available to all Probe ConfigurationsIcmp Probe TCP Probe FTP, SMTP, and Telnet ProbeDNS Probe Submode Configuring Route Health Injection Understanding RHIRHI Overview Routing to VIP Addresses With RHI Routing to VIP Addresses Without RHIRouterconfig# ip slb vserver vserver1 Configuring RHI for Virtual ServersUnderstanding How the CSM Determines VIP Availability Understanding Propagation of VIP Availability InformationTranslated Safety Warnings Safety Information Referral WarningRegulatory Standards Compliance Wrist Strap Warning Blank Faceplate Installation Requirement Warning Translated Safety Warnings Related Documentation Qualified Personnel WarningRelease Notes for Catalyst 6000 Family IOS Software World Wide Web Obtaining DocumentationDocumentation CD-ROM Ordering DocumentationTo access Cisco.com, go to the following website Contacting TAC by Using the Cisco TAC WebsiteObtaining Technical Assistance Cisco.comContacting TAC by Telephone Obtaining Technical Assistance