Есть атс, её адреса 192.168.9.20, 21. Она коннектится к sip Прокси.
Если на роутере настроен 1 провайдер и nat, то всё работает. При настройке на роутере одновременной работы двух провайдеров сигнализация проходит, а голоса нет. В чём может быть проблема?
КОнфиг ниже.
Код:
ip vrf isp1
rd 65000:1
route-target export 65000:1
route-target import 65000:99
!
ip vrf isp2
rd 65000:2
route-target export 65000:2
route-target import 65000:99
!
ip vrf lan
rd 65000:99
route-target export 65000:99
route-target import 65000:1
route-target import 65000:2
interface GigabitEthernet0/1
ip vrf forwarding lan
ip address 10.10.20.2 255.255.255.252
ip nat inside
ip policy route-map PBR
!
interface GigabitEthernet0/1.10
encapsulation dot1Q 10
ip vrf forwarding isp1
ip address 1.1.1.1 255.255.255.248
ip nat outside
!
interface GigabitEthernet0/1.11
encapsulation dot1Q 11
ip vrf forwarding isp2
ip address 2.2.2.1 255.255.255.0
ip nat outside
router bgp 65000
bgp log-neighbor-changes
!
address-family ipv4 vrf isp1
redistribute connected
default-information originate
exit-address-family
!
address-family ipv4 vrf isp2
redistribute connected
default-information originate
exit-address-family
!
address-family ipv4 vrf lan
redistribute connected
maximum-paths 2
exit-address-family
ip access-list extended AV
permit ip 192.168.10.0 0.0.0.255 any
permit ip host 192.168.9.20 host 195.239.174.100
permit ip host 192.168.9.21 host 195.239.174.100
permit ip host 192.168.9.20 host 195.218.234.180
permit ip host 192.168.9.21 host 195.218.234.180
ip access-list extended NAT
deny ip any 192.168.0.0 0.0.255.255
deny ip any 172.16.0.0 0.15.255.255
deny ip any 10.0.0.0 0.255.255.255
permit ip any any
route-map PBR permit 20
match ip address AV
set ip next-hop 1.1.1.2
!
route-map ISP2 permit 10
match ip address NAT
match interface GigabitEthernet0/1.11
!
route-map ISP1 permit 10
match ip address NAT
match interface GigabitEthernet0/1.10
ip nat inside source route-map ISP1 interface GigabitEthernet0/1.10 vrf lan overload
ip nat inside source route-map ISP2 interface GigabitEthernet0/1.11 vrf lan overload
ip nat inside source static tcp 192.168.10.56 21 1.1.1.1 21 vrf lan extendable
ip route vrf lan 192.168.9.0 255.255.255.0 10.10.20.1
ip route vrf lan 192.168.10.0 255.255.255.0 10.10.20.1
ip route vrf isp1 0.0.0.0 0.0.0.0 1.1.1.2
ip route vrf isp2 0.0.0.0 0.0.0.0 2.2.2.2
Если настраивать без vrf, а просто с рут мапами, тоже не работает.