MSG360-4 WAN口 上端路由LAN口,获取静态地址192.168.10.111。MSG360-4下LAN地址为192.168.100.1,内网中有web服务器地址为192.168.100.2,在MSG360-4中internet映射中添加端口映射如图所示:
这是根据官方手册中这样设置的,但一直不成功,浏览器输入192.168.10.111后一直进MSG360-4管理页面,无法进入web服务器首页,请高手帮忙看看那的问题
(0)
最佳答案
1、把设备的登录端口80/443改成8080/8443
2、或者修改映射的端口不要冲突就行
(0)
我也感觉是登录端口和映射冲突,服务器那边是没法改的,但路由web页面没法改登陆端口,命令方式可以改么,需要怎么配置呢
sys ip http port 8080 修改MSG的web登录端口到8080
我输入 sys 192.168.10.111 http port 8080这样对么,我试了下还是不行,能帮忙再分析下么
1、sys 2、ip http port 8080 //不要进行替换,这个是固定的命令
web登陆端口改过来了,但我映射的服务器还是打不开,输入MSG360-4路由WAN口地址192.168.10.111还是打不开我的服务器网页,直接输入我服务器地址192.168.100.2就可以,是不是映射还没有成功
配置贴出来看看,display cur 服务器是否能从这个口出去上网?
***这个口上网正常
*** 喷??? 注意技术论坛,有黑名单机制哦
fuwuqi三个字手机端回复不知道为啥总会变成星号
<H3C> <H3C>display cur # version 7.1.064, Release 5231 # sysname H3C # clock timezone Beijing add 08:00:00 # telnet server enable # port-security enable # dialer-group 1 rule ip permit # ip redirects enable ip unreachables enable ip ttl-expires enable # nat alg h323 nat alg ils nat alg mgcp nat alg nbt nat alg rsh nat alg sccp nat alg sip nat alg sqlnet nat alg tftp nat alg xdmcp # dhcp enable # dns proxy enable dns server 192.168.10.1 ip host H3C 192.168.100.1 ip host oauthindev.h3c.com 192.168.100.1 ip host www.spiritapp-wlan-ac.h3c.com 192.168.100.1 # module-proxy work-mode route # password-recovery enable # vlan 1 # vlan 100 # dhcp server ip-pool 1 gateway-list 192.168.100.1 network 192.168.100.0 mask 255.255.255.0 dns-list 192.168.100.1 # dhcp server ip-pool 100 gateway-list 172.16.100.1 network 172.16.100.0 mask 255.255.252.0 dns-list 172.16.100.1 # nqa entry xiaobei test type http frequency 5000 history-record enable history-record number 1 probe timeout 500 url http://www.baidu.com # nqa schedule xiaobei test start-time now lifetime forever # wlan service-template st_7819468076449598 description 3 ssid XD vlan 100 service-template enable # interface Dialer1 mtu 1492 ppp ipcp dns admit-any ppp ipcp dns request dialer bundle enable dialer-group 1 dialer timer idle 0 dialer timer autodial 60 ip address ppp-negotiate tcp mss 1452 nat outbound # interface Dialer2 mtu 1492 ppp ipcp dns admit-any ppp ipcp dns request dialer bundle enable dialer-group 1 dialer timer idle 0 dialer timer autodial 60 ip address ppp-negotiate tcp mss 1452 nat outbound # interface Dialer3 mtu 1492 ppp ipcp dns admit-any ppp ipcp dns request dialer bundle enable dialer-group 1 dialer timer idle 0 dialer timer autodial 60 ip address ppp-negotiate tcp mss 1452 nat outbound # interface Dialer4 mtu 1492 ppp ipcp dns admit-any ppp ipcp dns request dialer bundle enable dialer-group 1 dialer timer idle 0 dialer timer autodial 60 ip address ppp-negotiate tcp mss 1452 nat outbound # interface Dialer5 mtu 1492 ppp ipcp dns admit-any ppp ipcp dns request dialer bundle enable dialer-group 1 dialer timer idle 0 dialer timer autodial 60 ip address ppp-negotiate tcp mss 1452 nat outbound # interface NULL0 # interface Vlan-interface1 ip address 192.168.100.1 255.255.255.0 # interface Vlan-interface100 ip address 172.16.100.1 255.255.252.0 # interface GigabitEthernet1/0/5 port link-mode route description GigabitEthernet1/0/5 ip address 192.168.10.111 255.255.255.0 nat outbound nat server protocol tcp global current-interface 80 inside 192.168.100.2 80 undo dhcp select server # interface GigabitEthernet1/0/1 port link-mode bridge # interface GigabitEthernet1/0/2 port link-mode bridge # interface GigabitEthernet1/0/3 port link-mode bridge # interface GigabitEthernet1/0/4 port link-mode bridge # scheduler logfile size 16 # line class aux user-role network-operator # line class console user-role network-admin # line class vty user-role network-operator # line aux 0 authentication-mode scheme user-role network-admin idle-timeout 0 0 screen-length 0 # line con 0 authentication-mode scheme user-role network-admin # line vty 0 31 authentication-mode scheme user-role network-operator # ip route-static 0.0.0.0 0 GigabitEthernet1/0/5 192.168.10.1 # undo info-center logfile enable # nqa server enable # ntp-service enable ntp-service unicast-server ***.*** # domain cloud authentication portal none authorization portal none accounting portal none # domain extend-auth authentication portal none authorization portal none accounting portal none # domain system # domain default enable system # role name level-0 description Predefined level-0 role # role name level-1 description Predefined level-1 role # role name level-2 description Predefined level-2 role # role name level-3 description Predefined level-3 role # role name level-4 description Predefined level-4 role # role name level-5 description Predefined level-5 role # role name level-6 description Predefined level-6 role # role name level-7 description Predefined level-7 role # role name level-8 description Predefined level-8 role # role name level-9 description Predefined level-9 role # role name level-10 description Predefined level-10 role # role name level-11 description Predefined level-11 role # role name level-12 description Predefined level-12 role # role name level-13 description Predefined level-13 role # role name level-14 description Predefined level-14 role # user-group system # local-user admin class manage password hash $h$6$MZBRnPFitnN64IRg$gWS1nqQkac7U3ESzHJptHjMzAY9G+NXT/4J4FcrBvYy JEgkTN3IHDmzis+87IfBP2vu+FXroqCaaUK0VMuE6pg== service-type ssh telnet terminal http https authorization-attribute user-role network-admin # portal host-check enable portal free-rule 2 destination ip any udp 53 portal free-rule 3 destination ip any tcp 53 portal free-rule 4 destination short.weixin.qq.com portal free-rule 5 destination mp.weixin.qq.com portal free-rule 6 destination long.weixin.qq.com portal free-rule 7 destination dns.weixin.qq.com portal free-rule 8 destination minorshort.weixin.qq.com portal free-rule 9 destination extshort.weixin.qq.com portal free-rule 10 destination szshort.weixin.qq.com portal free-rule 11 destination szlong.weixin.qq.com portal free-rule 12 destination szextshort.weixin.qq.com portal free-rule 13 destination ***.*** portal free-rule 14 destination wifi.weixin.qq.com # portal web-server 1 url http://192.168.100.1 # portal web-server local-server url https://192.168.100.1/portal # portal web-server lvzhou-server url http://oasisauth.h3c.com/portal/protocol server-type oauth # portal local-web-server http # portal local-web-server https # portal extend-auth-server qq # portal extend-auth-server mail mail-protocol pop3 imap # ip http port 8013 ip http enable ip https enable # wlan auto-ap enable wlan auto-persistent enable # wlan global-configuration # wlan ap-group default-group vlan 1 ap-model SPM-X1-10 gigabitethernet 1 gigabitethernet 2 gigabitethernet 3 gigabitethernet 4 gigabitethernet 5 gigabitethernet 6 gigabitethernet 7 gigabitethernet 8 gigabitethernet 9 gigabitethernet 10 gigabitethernet 11 gigabitethernet 12 ap-model SPM-X1-24 gigabitethernet 1 gigabitethernet 2 gigabitethernet 3 gigabitethernet 4 gigabitethernet 5 gigabitethernet 6 gigabitethernet 7 gigabitethernet 8 gigabitethernet 9 gigabitethernet 10 gigabitethernet 11 gigabitethernet 12 gigabitethernet 13 gigabitethernet 14 gigabitethernet 15 gigabitethernet 16 gigabitethernet 17 gigabitethernet 18 gigabitethernet 19 gigabitethernet 20 gigabitethernet 21 gigabitethernet 22 gigabitethernet 23 gigabitethernet 24 ap-model WAP711H radio 1 radio enable service-template st_7819468076449598 ethernet 1 ethernet 2 ethernet 3 ap-model WAP712C radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 ap-model WAP712C-HI radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 ap-model WAP712C-LI radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 ap-model WAP712E radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 ap-model WAP712H radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 ethernet 1 ethernet 2 ethernet 3 ap-model WAP722 radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 gigabitethernet 2 ap-model WAP722E radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 gigabitethernet 2 ap-model WAP722E-W2 radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 gigabitethernet 2 ap-model WAP722H radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 gigabitethernet 2 gigabitethernet 3 gigabitethernet 4 gigabitethernet 5 ap-model WAP722S radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 ap-model WAP722S-W2 radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 ap-model WAP722X-W2 radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 gigabitethernet 2 gigabitethernet 3 ap-model WAP723-W2 radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 radio 3 radio enable service-template st_7819468076449598 module 1 gigabitethernet 1 gigabitethernet 2 # cloud-management server domain oasis.h3c.com # return <H3C>
这是因为MSG360-4web登录的默认端口也是80 ,所以接收到对80端口的请求后,就做出了回应,到了设备的web登录界面,用 ip http port xxxx 将设备的web登录端口改掉,改其他端口也相同的方式
(0)
web登陆端口改过来了,但我映射的服务器还是打不开,输入MSG360-4路由WAN口地址192.168.10.111还是打不开我的服务器网页,直接输入我服务器地址192.168.100.2就可以
我是个小白,只会web设置,论坛也有好几个人在提这个问题,但没有答案,我折腾了好几天,最后映射成功了。正常步骤映射好后,要打开NAT HAIRPIN功能,才能直接输入wan口地址访问服务器web页面,我又多测试了下,改MSG360-4web登录的默认端口,没打开NAT HAIRPIN功能还是直接进MSG360-4web管理页,不改MSG360-4web登录的默认端口,打开NAT HAIRPIN功能照样可以直接访问内网服务器web页面。具体原理为啥我还是没搞懂,也希望懂的人给我普及下知识。
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
<H3C> <H3C>display cur # version 7.1.064, Release 5231 # sysname H3C # clock timezone Beijing add 08:00:00 # telnet server enable # port-security enable # dialer-group 1 rule ip permit # ip redirects enable ip unreachables enable ip ttl-expires enable # nat alg h323 nat alg ils nat alg mgcp nat alg nbt nat alg rsh nat alg sccp nat alg sip nat alg sqlnet nat alg tftp nat alg xdmcp # dhcp enable # dns proxy enable dns server 192.168.10.1 ip host H3C 192.168.100.1 ip host oauthindev.h3c.com 192.168.100.1 ip host www.spiritapp-wlan-ac.h3c.com 192.168.100.1 # module-proxy work-mode route # password-recovery enable # vlan 1 # vlan 100 # dhcp server ip-pool 1 gateway-list 192.168.100.1 network 192.168.100.0 mask 255.255.255.0 dns-list 192.168.100.1 # dhcp server ip-pool 100 gateway-list 172.16.100.1 network 172.16.100.0 mask 255.255.252.0 dns-list 172.16.100.1 # nqa entry xiaobei test type http frequency 5000 history-record enable history-record number 1 probe timeout 500 url http://www.baidu.com # nqa schedule xiaobei test start-time now lifetime forever # wlan service-template st_7819468076449598 description 3 ssid XD vlan 100 service-template enable # interface Dialer1 mtu 1492 ppp ipcp dns admit-any ppp ipcp dns request dialer bundle enable dialer-group 1 dialer timer idle 0 dialer timer autodial 60 ip address ppp-negotiate tcp mss 1452 nat outbound # interface Dialer2 mtu 1492 ppp ipcp dns admit-any ppp ipcp dns request dialer bundle enable dialer-group 1 dialer timer idle 0 dialer timer autodial 60 ip address ppp-negotiate tcp mss 1452 nat outbound # interface Dialer3 mtu 1492 ppp ipcp dns admit-any ppp ipcp dns request dialer bundle enable dialer-group 1 dialer timer idle 0 dialer timer autodial 60 ip address ppp-negotiate tcp mss 1452 nat outbound # interface Dialer4 mtu 1492 ppp ipcp dns admit-any ppp ipcp dns request dialer bundle enable dialer-group 1 dialer timer idle 0 dialer timer autodial 60 ip address ppp-negotiate tcp mss 1452 nat outbound # interface Dialer5 mtu 1492 ppp ipcp dns admit-any ppp ipcp dns request dialer bundle enable dialer-group 1 dialer timer idle 0 dialer timer autodial 60 ip address ppp-negotiate tcp mss 1452 nat outbound # interface NULL0 # interface Vlan-interface1 ip address 192.168.100.1 255.255.255.0 # interface Vlan-interface100 ip address 172.16.100.1 255.255.252.0 # interface GigabitEthernet1/0/5 port link-mode route description GigabitEthernet1/0/5 ip address 192.168.10.111 255.255.255.0 nat outbound nat server protocol tcp global current-interface 80 inside 192.168.100.2 80 undo dhcp select server # interface GigabitEthernet1/0/1 port link-mode bridge # interface GigabitEthernet1/0/2 port link-mode bridge # interface GigabitEthernet1/0/3 port link-mode bridge # interface GigabitEthernet1/0/4 port link-mode bridge # scheduler logfile size 16 # line class aux user-role network-operator # line class console user-role network-admin # line class vty user-role network-operator # line aux 0 authentication-mode scheme user-role network-admin idle-timeout 0 0 screen-length 0 # line con 0 authentication-mode scheme user-role network-admin # line vty 0 31 authentication-mode scheme user-role network-operator # ip route-static 0.0.0.0 0 GigabitEthernet1/0/5 192.168.10.1 # undo info-center logfile enable # nqa server enable # ntp-service enable ntp-service unicast-server ***.*** # domain cloud authentication portal none authorization portal none accounting portal none # domain extend-auth authentication portal none authorization portal none accounting portal none # domain system # domain default enable system # role name level-0 description Predefined level-0 role # role name level-1 description Predefined level-1 role # role name level-2 description Predefined level-2 role # role name level-3 description Predefined level-3 role # role name level-4 description Predefined level-4 role # role name level-5 description Predefined level-5 role # role name level-6 description Predefined level-6 role # role name level-7 description Predefined level-7 role # role name level-8 description Predefined level-8 role # role name level-9 description Predefined level-9 role # role name level-10 description Predefined level-10 role # role name level-11 description Predefined level-11 role # role name level-12 description Predefined level-12 role # role name level-13 description Predefined level-13 role # role name level-14 description Predefined level-14 role # user-group system # local-user admin class manage password hash $h$6$MZBRnPFitnN64IRg$gWS1nqQkac7U3ESzHJptHjMzAY9G+NXT/4J4FcrBvYy JEgkTN3IHDmzis+87IfBP2vu+FXroqCaaUK0VMuE6pg== service-type ssh telnet terminal http https authorization-attribute user-role network-admin # portal host-check enable portal free-rule 2 destination ip any udp 53 portal free-rule 3 destination ip any tcp 53 portal free-rule 4 destination short.weixin.qq.com portal free-rule 5 destination mp.weixin.qq.com portal free-rule 6 destination long.weixin.qq.com portal free-rule 7 destination dns.weixin.qq.com portal free-rule 8 destination minorshort.weixin.qq.com portal free-rule 9 destination extshort.weixin.qq.com portal free-rule 10 destination szshort.weixin.qq.com portal free-rule 11 destination szlong.weixin.qq.com portal free-rule 12 destination szextshort.weixin.qq.com portal free-rule 13 destination ***.*** portal free-rule 14 destination wifi.weixin.qq.com # portal web-server 1 url http://192.168.100.1 # portal web-server local-server url https://192.168.100.1/portal # portal web-server lvzhou-server url http://oasisauth.h3c.com/portal/protocol server-type oauth # portal local-web-server http # portal local-web-server https # portal extend-auth-server qq # portal extend-auth-server mail mail-protocol pop3 imap # ip http port 8013 ip http enable ip https enable # wlan auto-ap enable wlan auto-persistent enable # wlan global-configuration # wlan ap-group default-group vlan 1 ap-model SPM-X1-10 gigabitethernet 1 gigabitethernet 2 gigabitethernet 3 gigabitethernet 4 gigabitethernet 5 gigabitethernet 6 gigabitethernet 7 gigabitethernet 8 gigabitethernet 9 gigabitethernet 10 gigabitethernet 11 gigabitethernet 12 ap-model SPM-X1-24 gigabitethernet 1 gigabitethernet 2 gigabitethernet 3 gigabitethernet 4 gigabitethernet 5 gigabitethernet 6 gigabitethernet 7 gigabitethernet 8 gigabitethernet 9 gigabitethernet 10 gigabitethernet 11 gigabitethernet 12 gigabitethernet 13 gigabitethernet 14 gigabitethernet 15 gigabitethernet 16 gigabitethernet 17 gigabitethernet 18 gigabitethernet 19 gigabitethernet 20 gigabitethernet 21 gigabitethernet 22 gigabitethernet 23 gigabitethernet 24 ap-model WAP711H radio 1 radio enable service-template st_7819468076449598 ethernet 1 ethernet 2 ethernet 3 ap-model WAP712C radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 ap-model WAP712C-HI radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 ap-model WAP712C-LI radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 ap-model WAP712E radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 ap-model WAP712H radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 ethernet 1 ethernet 2 ethernet 3 ap-model WAP722 radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 gigabitethernet 2 ap-model WAP722E radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 gigabitethernet 2 ap-model WAP722E-W2 radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 gigabitethernet 2 ap-model WAP722H radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 gigabitethernet 2 gigabitethernet 3 gigabitethernet 4 gigabitethernet 5 ap-model WAP722S radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 ap-model WAP722S-W2 radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 ap-model WAP722X-W2 radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 gigabitethernet 1 gigabitethernet 2 gigabitethernet 3 ap-model WAP723-W2 radio 1 radio enable service-template st_7819468076449598 radio 2 radio enable service-template st_7819468076449598 radio 3 radio enable service-template st_7819468076449598 module 1 gigabitethernet 1 gigabitethernet 2 # cloud-management server domain oasis.h3c.com # return <H3C>