NAT and routing for one router and two ISPs

I have a Cisco ISR with three fast ethernet connections - 1 is local lan, 1 is ISP A and 2 is ISP B.
Say the local LAN is private IP subnet 192.168.100.0/24.  The interface to ISP A is 192.168.66.10 and the route to the Internet via ISP A is 192.168.66.1.  The interface to ISP B is 192.168.77.10 and the route to the Internet via ISP B is 192.168.77.1.  I would like all traffic destined for 11.0.0.0/8 to NAT to ISP A interface IP 192.168.66.10 and route out same.  I would like all other internet traffic the default 0.0.0.0 route to NAT to the ISP B interface IP 192.168.77.10 and route out that interface.  How would I accomplish this?
LVL 1
amigan_99Network EngineerAsked:
Who is Participating?
 
Craig BeckCommented:
You need policy-based routing.

You could try something like this...

interface FastEthernet0/0
ip address 192.168.100.1 255.255.255.0
ip nat inside
no shutdown
!
interface FastEthernet0/1
ip address 192.168.66.10 255.255.255.0
ip nat outside
ip policy route-map route11net
no shutdown
!
interface FastEthernet1/0
ip address 192.168.77.10 255.255.255.0
ip nat outside
no shutdown
!
access-list 100 remark ACL for NAT via FastEthernet0/1
access-list 100 permit ip 192.168.100.0 0.0.0.255 11.0.0.0 0.255.255.255
access-list 101 remark ACL for NAT via FastEthernet1/0
access-list 101 deny ip 192.168.100.0 0.0.0.255 11.0.0.0 0.0.0.255
access-list 101 permit ip 192.168.100.0 0.0.0.255 any
access-list 102 remark ACL for Route-Map to 11.0.0.0/8
access-list 102 permit ip any 11.0.0.0 0.255.255.255
!
route-map route11net permit 10
match ip address 102
set ip next-hop 192.168.66.1
!
ip nat inside source list 100 interface FastEthernet0/1 overload
ip nat inside source list 100 interface FastEthernet1/0 overload

ip route 0.0.0.0 0.0.0.0 192.168.77.1
0
 
hangeles1Commented:
Sounds like you need policy based routing. See if this helps:

http://www.cisco.com/en/US/docs/ios/12_0/qos/configuration/guide/qcpolicy.html
0
 
amigan_99Network EngineerAuthor Commented:
craigbeck: Just to verify - I think you mean the second ip nat inside to read


ip nat inside source list 101 interface FastEthernet1/0 overload

..right?
0
 
Craig BeckCommented:
Oops!! Yes, you are correct :-)

ip nat inside source list 100 interface FastEthernet0/1 overload
ip nat inside source list 101 interface FastEthernet1/0 overload
0
 
amigan_99Network EngineerAuthor Commented:
Most helpful - thank you!
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.