[index] AT-AR1050V コマンドリファレンス 5.4.9
WAN側物理インターフェース | eth1 |
WAN側(eth1)IPv6アドレス | RAで受信したプレフィックスにもとづいて設定 |
LAN側(vlan1)IPv6アドレス | DHCPv6 PDで取得したIPv6プレフィックスにもとづいて設定 |
WAN側(tunnel0)IPv4アドレス | MAPルール配信サーバーから取得した情報にもとづいて自動設定 |
Note”IPv6オプション” に対応したホームゲートウェイに接続する場合は、ホームゲートウェイの ”IPv6オプション” 対応機能を無効にした上で本製品を接続してください。ホームゲートウェイで ”IPv6オプション” 対応機能が有効な場合、本設定例ではIPv4を使用した通信が正しく動作しません。
interface eth1 ip dhcp-client default-route distance 254 ip address dhcp ipv6 dhcp client pd IPoE
ipv6 dhcp pool IPoE-vlan1 dns-server interface vlan1
interface vlan1 ip address 192.168.10.1/24 no ipv6 nd suppress-ra ipv6 nd other-config-flag ipv6 address IPoE ::/64 eui64 ipv6 dhcp server IPoE-vlan1
ipv6 forwarding
ip dhcp pool pool10 network 192.168.10.0 255.255.255.0 range 192.168.10.100 192.168.10.131 dns-server 192.168.10.1 default-router 192.168.10.1 lease 0 2 0
service dhcp-server
softwire-configuration BIGLOBE method proprietary map-version draft mesh-mode upstream-interface eth1 vendor-url JPNE
interface tunnel0 tunnel softwire BIGLOBE tunnel mode map-e ip tcp adjust-mss pmtu
ip route 0.0.0.0/0 tunnel0
zone ipv4-internal network dhcp ip subnet 0.0.0.0/0 interface vlan1 network hgw ip subnet 0.0.0.0/0 interface eth1 network lan ip subnet 192.168.10.0/24 interface vlan1
zone ipv4-internet network wan ip subnet 0.0.0.0/0 interface tunnel0 host nat ip address dynamic interface tunnel0
zone ipv6-internal network lan ipv6 subnet ::/0 interface vlan1 host vlan1 ipv6 address dynamic interface vlan1
zone ipv6-internet network wan ipv6 subnet ::/0 interface eth1 host eth1 ipv6 address dynamic interface eth1
application dhcpv4 protocol udp dport 67 to 68
application dhcpv6 protocol udp dport 546 to 547
application icmpv6 protocol ipv6-icmp
firewall rule 10 permit dhcpv4 from ipv4-internal.dhcp to ipv4-internal.dhcp rule 20 permit any from ipv4-internal.lan to ipv4-internal.lan rule 30 permit any from ipv4-internal.lan to ipv4-internet rule 40 permit any from ipv4-internet.wan.nat to ipv4-internet rule 50 permit any from ipv4-internal.hgw to ipv4-internal.hgw rule 100 permit any from ipv6-internal to ipv6-internal rule 110 permit any from ipv6-internal to ipv6-internet rule 120 permit any from ipv6-internet.wan.eth1 to ipv6-internet rule 130 permit icmpv6 from ipv6-internet to ipv6-internet.wan.eth1 rule 140 permit dhcpv6 from ipv6-internet to ipv6-internet.wan.eth1 protect
nat rule 10 masq any from ipv4-internal to ipv4-internet enable
ip dns forwarding
end
copy running-config startup-config
」の書式で実行します。awplus# copy running-config startup-config ↓ Building configuration... [OK]
awplus# write memory ↓ Building configuration... [OK]
awplus(config)# log buffered level informational facility kern msgtext Firewall ↓
awplus# show log | include Firewall ↓
! interface eth1 ip dhcp-client default-route distance 254 ip address dhcp ipv6 dhcp client pd IPoE ! ipv6 dhcp pool IPoE-vlan1 dns-server interface vlan1 ! interface vlan1 ip address 192.168.10.1/24 no ipv6 nd suppress-ra ipv6 nd other-config-flag ipv6 address IPoE ::/64 eui64 ipv6 dhcp server IPoE-vlan1 ! ipv6 forwarding ! ip dhcp pool pool10 network 192.168.10.0 255.255.255.0 range 192.168.10.100 192.168.10.131 dns-server 192.168.10.1 default-router 192.168.10.1 lease 0 2 0 ! service dhcp-server ! softwire-configuration BIGLOBE method proprietary map-version draft mesh-mode upstream-interface eth1 vendor-url JPNE ! interface tunnel0 tunnel softwire BIGLOBE tunnel mode map-e ip tcp adjust-mss pmtu ! ip route 0.0.0.0/0 tunnel0 ! zone ipv4-internal network dhcp ip subnet 0.0.0.0/0 interface vlan1 network hgw ip subnet 0.0.0.0/0 interface eth1 network lan ip subnet 192.168.10.0/24 interface vlan1 ! zone ipv4-internet network wan ip subnet 0.0.0.0/0 interface tunnel0 host nat ip address dynamic interface tunnel0 ! zone ipv6-internal network lan ipv6 subnet ::/0 interface vlan1 host vlan1 ipv6 address dynamic interface vlan1 ! zone ipv6-internet network wan ipv6 subnet ::/0 interface eth1 host eth1 ipv6 address dynamic interface eth1 ! application dhcpv4 protocol udp dport 67 to 68 ! application dhcpv6 protocol udp dport 546 to 547 ! application icmpv6 protocol ipv6-icmp ! firewall rule 10 permit dhcpv4 from ipv4-internal.dhcp to ipv4-internal.dhcp rule 20 permit any from ipv4-internal.lan to ipv4-internal.lan rule 30 permit any from ipv4-internal.lan to ipv4-internet rule 40 permit any from ipv4-internet.wan.nat to ipv4-internet rule 50 permit any from ipv4-internal.hgw to ipv4-internal.hgw rule 100 permit any from ipv6-internal to ipv6-internal rule 110 permit any from ipv6-internal to ipv6-internet rule 120 permit any from ipv6-internet.wan.eth1 to ipv6-internet rule 130 permit icmpv6 from ipv6-internet to ipv6-internet.wan.eth1 rule 140 permit dhcpv6 from ipv6-internet to ipv6-internet.wan.eth1 protect ! nat rule 10 masq any from ipv4-internal to ipv4-internet enable ! ip dns forwarding ! end
(C) 2019 アライドテレシスホールディングス株式会社
PN: 613-002735 Rev.C