华为QUIDWAY 28-11 外网无法访问内网FTP SERVER 的问题

发布时间:2024-05-11 01:38 发布:上海旅游网

问题描述:

已经为FTP SERVER(内网地址 10.3.255.2 端口1151)在路由上做了端口映射

但是外网访问有用户登陆不能传输文件

路由配置如下:

********************************************************************************
* Copyright(c) 1998-2007 Huawei Technologies Co., Ltd. All rights reserved. *
* Without the owner's prior written consent, *
* no decompiling or reverse-engineering shall be allowed. *
********************************************************************************

Login authentication

Username:XXXXXX
Password:
<daotong>dis cur
#
sysname daotong
#
cpu-usage cycle 1min
#
radius scheme system
#
domain system
#
local-user alex2906
password simple alex2906
service-type telnet
level 3
local-user xxxxxx
password simple xxxxxx
service-type telnet
level 3
#
dhcp server ip-pool 1
network 111.111.113.0 mask 255.255.255.0
gateway-list 111.111.111.10
dns-list 202.99.192.68 211.138.106.3 202.99.192.66
expired unlimited
#
acl number 2000
rule 0 permit source 111.111.113.0 0.0.0.255
rule 1 permit source 10.3.2.10 0
rule 2 permit source 10.3.255.2 0
#
interface Aux0
async mode flow
#
interface Ethernet0/0
description waiwang
ip address xxx.xxx.xxx.xxx 255.255.255.252
ip address 10.2.1.2 255.255.255.252 sub
nat outbound 2000
nat server protocol tcp global xxx.xxx.xxx.xxx www inside 111.111.113.14 www
nat server protocol tcp global xxx.xxx.xxx.xxx 8080 inside 10.3.255.2 8080
nat server protocol tcp global xxx.xxx.xxx.xxx 13101 inside 10.3.255.2 13101
nat server protocol tcp global xxx.xxx.xxx.xxx 1151 inside 10.3.255.2 1151
nat server protocol tcp global xxx.xxx.xxx.xxx ftp inside 10.3.255.2 ftp
#
interface Ethernet0/1
description neiwang
ip address 111.111.113.10 255.255.255.0
ip address 10.3.255.1 255.255.255.0 sub
#
interface Serial0/0
clock DTECLK1
link-protocol ppp
ip address dhcp-alloc
#
interface NULL0
#
dhcp server forbidden-ip 111.111.113.5 111.111.113.15
#
ip route-static 0.0.0.0 0.0.0.0 xxx.xxx.xxx.xxx preference 60
ip route-static 10.0.0.0 255.0.0.0 10.2.1.1 preference 50
#
user-interface con 0
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
#
return

<daotong>
<daotong>
<daotong>

问题解答:

这个需要更改一下你serv-u上的模式, 主动模式和被动模式.

配置就是这样的了.

热点新闻