<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: cisco 837 config with 5 static ip's in Archive</title>
    <link>https://business.forums.bt.com/t5/Archive/cisco-837-config-with-5-static-ip-s/m-p/5079#M700</link>
    <description>&lt;P&gt;Hi Steve,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I can't really assist with the Cisco (not what you wanted to hear I know) but I can provide some insight into&amp;nbsp;BT's static IP's that will hopefully&amp;nbsp;help in resolving your issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When connecting to the BT network on an account that has multiple IP's, the connecting device that establishes the PPP session will always be assigned a DHCP peer address to guarantee connectivity. The way the business hub works is it uses the peer route to map the static IP's, you then set router up as the gateway for the multiple addresses on&amp;nbsp;a no-NAT network (the Business Hub runs an internal NAT and externaly facing no-NAT network simultaniously), any device connecting on the NAT will always show as being on the DHCP peer address, and any device configured with a no-NAT public IP will show as having that IP.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It sounds to me like you've not disabled NAT for the public IP's, and with NAT enabled the static IP's will always route over the Cisco's WAN address... hence inbound is fine but outbound isn't. It is possible to use one of your static IP's on the WAN side of the Cisco, providing it can be set to obtain the subnet and gateway via DHCP from the HGR... so basically tell the WAN port to use one of the IP's you specify but grab the subnet and gateway from the ISP. This way you can keep your set up and have inbound access via each devices own IP, but outbound will show as what ever IP you specified.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Ultimately the 5 IP's you have are no-NAT IP's that are being told to run over NAT which is what I believe is causing your issue.&lt;/P&gt;</description>
    <pubDate>Wed, 01 Apr 2009 07:41:59 GMT</pubDate>
    <dc:creator>a-hill</dc:creator>
    <dc:date>2009-04-01T07:41:59Z</dc:date>
    <item>
      <title>cisco 837 config with 5 static ip's</title>
      <link>https://business.forums.bt.com/t5/Archive/cisco-837-config-with-5-static-ip-s/m-p/5075#M699</link>
      <description>&lt;P&gt;Hi Everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm hopeing that someone has come up against this issue before as I think that it would be a common problem. &amp;nbsp;&lt;/P&gt;&lt;P&gt;I got BT business broadband with 5 static IP addresses to find out that the 2 wire router supplied does not do one-to-one NAT, meaning that each public IP address is mapped to a separate private ip address with numerous days taking to BT support on the phone I found out that the router was the problem as it did not provide the functionality to do this.&amp;nbsp; So I spoke to someone I know and he suggested that I should get a cisco 837 as this would do everything I want and it nearly does. &amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am currently NATing 2 public IP addresses to separate private IP addresses and everything appeared to be working from the outside, however I have recently noticed there is a major flaw in this configuration as one of the servers is a small business server 2008 and it needs to send email to a third party mail filter and I have only just realised that the IP address that is being presented to the outside world is a DHCP assigned IP address that is assigned to the dialer when the router negotiates it's IP address.&amp;nbsp; I have spent countless hours trying to configure the router to connect differently and trying to force the router to use the static IP address that was supposidly the IP address of the router however this does not work and it seems that I need to use the&amp;nbsp; &lt;STRONG&gt;ip address negotiated&lt;/STRONG&gt; command instead of manually assigning the IP address to this interface.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now with this configuration all 5 public IP addresses can be acccessed including the routers IP address and the 5 public ip addresses can also all be NAT' but I need to make the traffic appear to come from a single IP address or even one of my public ip addresses as I it will be totally impossible to have a proper mailserver running if the originating IP address that is presented to everyone on connection is the assigned IP address on the DIALER 0 interface which is going to change and insidentally is not the supposid(IP address of the router).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have tried asking BT to make the address the dialer gets via &lt;STRONG&gt;[ip address negotiated]&lt;/STRONG&gt; static unable to get out of the loop of first line support to ITSM back to telephone support.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;On the likes of an asa 5580 you can use the global nat command to ensure all your traffic is coming from the ip address of your choosing. Is there anything you can do on a cisco 837 to do this?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I really am shocked to find a company the size of BT who I know for a fact use a lot of cisco equipment far more advanced than a cisco 837 cannot provide the connection information to configure this router.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am also annoyed at this because BT also sell cisco 837 router to small businesses as they also sell you 5 public IP addresses which are not properly useable with the supplied 2 wire router.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Anyway enough ranting! If you have any ideas who to contact in BT and what to ask for please help me out I have added the configuration of the router in the hope someone can spot something that would do it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;On a plus point this config will work as long as you don't plan on having a working email server &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;TIA&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Steve&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Current configuration : 4707 bytes&lt;BR /&gt;!&lt;BR /&gt;version 12.4&lt;BR /&gt;no service pad&lt;BR /&gt;service timestamps debug datetime msec&lt;BR /&gt;service timestamps log datetime msec&lt;BR /&gt;no service password-encryption&lt;BR /&gt;!&lt;BR /&gt;hostname ******-router&lt;BR /&gt;!&lt;BR /&gt;boot-start-marker&lt;BR /&gt;boot-end-marker&lt;BR /&gt;!&lt;BR /&gt;enable secret 5 itsasecretpassword&lt;BR /&gt;!&lt;BR /&gt;aaa new-model&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa session-id common&lt;BR /&gt;!&lt;BR /&gt;resource policy&lt;BR /&gt;!&lt;BR /&gt;ip dhcp excluded-address 10.100.0.254&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip cef&lt;BR /&gt;ip name-server 10.100.0.1&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;username admin privilege 15 password 0 ********&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0&lt;BR /&gt;&amp;nbsp;ip address 10.100.0.254 255.255.255.0&lt;BR /&gt;&amp;nbsp;no ip redirects&lt;BR /&gt;&amp;nbsp;no ip unreachables&lt;BR /&gt;&amp;nbsp;no ip proxy-arp&lt;BR /&gt;&amp;nbsp;ip nat inside&lt;BR /&gt;&amp;nbsp;ip virtual-reassembly&lt;BR /&gt;&amp;nbsp;hold-queue 100 out&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet2&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;hold-queue 100 out&lt;BR /&gt;!&lt;BR /&gt;interface ATM0&lt;BR /&gt;&amp;nbsp;ip address 81.142.ROU.TER 255.255.255.248&lt;BR /&gt;&amp;nbsp;no ip redirects&lt;BR /&gt;&amp;nbsp;no ip unreachables&lt;BR /&gt;&amp;nbsp;no ip proxy-arp&lt;BR /&gt;&amp;nbsp;no atm ilmi-keepalive&lt;BR /&gt;&amp;nbsp;dsl operating-mode auto&lt;BR /&gt;&amp;nbsp;pvc 0/38&lt;BR /&gt;&amp;nbsp; encapsulation aal5mux ppp dialer&lt;BR /&gt;&amp;nbsp; dialer pool-member 1&lt;BR /&gt;&amp;nbsp;!&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet1&lt;BR /&gt;&amp;nbsp;duplex auto&lt;BR /&gt;&amp;nbsp;speed auto&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet2&lt;BR /&gt;&amp;nbsp;duplex auto&lt;BR /&gt;&amp;nbsp;speed auto&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet3&lt;BR /&gt;&amp;nbsp;duplex auto&lt;BR /&gt;&amp;nbsp;speed auto&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet4&lt;BR /&gt;&amp;nbsp;duplex auto&lt;BR /&gt;&amp;nbsp;speed auto&lt;BR /&gt;!&lt;BR /&gt;interface Dialer0&lt;BR /&gt;&amp;nbsp;description $FW_OUTSIDE$&lt;BR /&gt;&amp;nbsp;ip address negotiated&lt;BR /&gt;&amp;nbsp;no ip redirects&lt;BR /&gt;&amp;nbsp;no ip unreachables&lt;BR /&gt;&amp;nbsp;no ip proxy-arp&lt;BR /&gt;&amp;nbsp;ip nat outside&lt;BR /&gt;&amp;nbsp;ip virtual-reassembly&lt;BR /&gt;&amp;nbsp;encapsulation ppp&lt;BR /&gt;&amp;nbsp;dialer pool 1&lt;BR /&gt;&amp;nbsp;dialer-group 1&lt;BR /&gt;&amp;nbsp;no cdp enable&lt;BR /&gt;&amp;nbsp;ppp authentication chap callin&lt;BR /&gt;&amp;nbsp;ppp chap hostname B*******@hg**.btclick.com&lt;BR /&gt;&amp;nbsp;ppp chap password 0 *******&lt;/P&gt;&lt;P&gt;&amp;nbsp;ppp pap sent-username B*****@hg**.btclick.com password 0 *******&lt;/P&gt;&lt;P&gt;&amp;nbsp;ppp ipcp dns request&lt;BR /&gt;&amp;nbsp;ppp ipcp wins accept&lt;BR /&gt;&amp;nbsp;ppp ipcp mask request&lt;BR /&gt;&amp;nbsp;ppp ipcp route default&lt;BR /&gt;&amp;nbsp;ppp ipcp address accept&lt;BR /&gt;!&lt;BR /&gt;ip route profile&lt;BR /&gt;ip route 0.0.0.0 0.0.0.0 Dialer0&lt;BR /&gt;ip http server&lt;BR /&gt;ip http secure-server&lt;BR /&gt;!&lt;BR /&gt;ip nat inside source list 1 interface Dialer0 overload&lt;BR /&gt;ip nat inside source static tcp 10.100.0.1 25 81.142.aaa.aaa 25 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.1 80 81.142.aaa.aaa 80 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.1 443 81.142.aaa.aaa 443 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.1 987 81.142.aaa.aaa 987 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.1 1723 81.142.aaa.aaa 1723 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.1 3389 81.142.aaa.aaa 3389 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.9 22 81.142.bbb.bbb 22 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.9 25 81.142.bbb.bbb 25 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.9 80 81.142.bbb.bbb 80 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.9 443 81.142.bbb.bbb 443 extendable&lt;BR /&gt;!&lt;BR /&gt;access-list 1 permit 10.100.0.0 0.0.0.255&lt;BR /&gt;snmp-server community public RO&lt;BR /&gt;!&lt;BR /&gt;control-plane&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;line con 0&lt;BR /&gt;&amp;nbsp;no modem enable&lt;BR /&gt;line aux 0&lt;BR /&gt;line vty 0 4&lt;BR /&gt;&amp;nbsp;exec-timeout 120 0&lt;BR /&gt;&amp;nbsp;password ********&lt;BR /&gt;&amp;nbsp;length 0&lt;BR /&gt;!&lt;BR /&gt;scheduler max-task-time 5000&lt;BR /&gt;end&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;&lt;DIV class="message-edit-history"&gt;&lt;SPAN class="edit-author"&gt;Message Edited by stevehutton on &lt;/SPAN&gt;&lt;SPAN class="local-date"&gt;01-04-2009&lt;/SPAN&gt;&lt;SPAN class="local-time"&gt; 02:06 AM&lt;/SPAN&gt;&lt;/DIV&gt;</description>
      <pubDate>Wed, 01 Apr 2009 01:06:52 GMT</pubDate>
      <guid>https://business.forums.bt.com/t5/Archive/cisco-837-config-with-5-static-ip-s/m-p/5075#M699</guid>
      <dc:creator>stevehutton</dc:creator>
      <dc:date>2009-04-01T01:06:52Z</dc:date>
    </item>
    <item>
      <title>Re: cisco 837 config with 5 static ip's</title>
      <link>https://business.forums.bt.com/t5/Archive/cisco-837-config-with-5-static-ip-s/m-p/5079#M700</link>
      <description>&lt;P&gt;Hi Steve,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I can't really assist with the Cisco (not what you wanted to hear I know) but I can provide some insight into&amp;nbsp;BT's static IP's that will hopefully&amp;nbsp;help in resolving your issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When connecting to the BT network on an account that has multiple IP's, the connecting device that establishes the PPP session will always be assigned a DHCP peer address to guarantee connectivity. The way the business hub works is it uses the peer route to map the static IP's, you then set router up as the gateway for the multiple addresses on&amp;nbsp;a no-NAT network (the Business Hub runs an internal NAT and externaly facing no-NAT network simultaniously), any device connecting on the NAT will always show as being on the DHCP peer address, and any device configured with a no-NAT public IP will show as having that IP.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It sounds to me like you've not disabled NAT for the public IP's, and with NAT enabled the static IP's will always route over the Cisco's WAN address... hence inbound is fine but outbound isn't. It is possible to use one of your static IP's on the WAN side of the Cisco, providing it can be set to obtain the subnet and gateway via DHCP from the HGR... so basically tell the WAN port to use one of the IP's you specify but grab the subnet and gateway from the ISP. This way you can keep your set up and have inbound access via each devices own IP, but outbound will show as what ever IP you specified.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Ultimately the 5 IP's you have are no-NAT IP's that are being told to run over NAT which is what I believe is causing your issue.&lt;/P&gt;</description>
      <pubDate>Wed, 01 Apr 2009 07:41:59 GMT</pubDate>
      <guid>https://business.forums.bt.com/t5/Archive/cisco-837-config-with-5-static-ip-s/m-p/5079#M700</guid>
      <dc:creator>a-hill</dc:creator>
      <dc:date>2009-04-01T07:41:59Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco 837 config with 5 static ip's</title>
      <link>https://business.forums.bt.com/t5/Archive/cisco-837-config-with-5-static-ip-s/m-p/5105#M701</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your response.&amp;nbsp; I went back at the config and entered the IP address of the router back into the dialer instead of negotiating it and it is now working properly (I done this about 50 times already but funnily enough it's working now).&amp;nbsp; Thanks for your help with this, possibly there was some more configuration later on that made the difference but all 5 static ip's are working now and the originating IP address outbound is now showing as the IP address of the router and one to one Nat is working as well &lt;span class="lia-unicode-emoji" title=":grinning_face_with_smiling_eyes:"&gt;😄&lt;/span&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have added a full copy of the config for anyone else that is having problems configuring a Cisco 837 router to get full use out of their BT business broadband static IP addresses.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Steve&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;version 12.4&lt;BR /&gt;no service pad&lt;BR /&gt;service timestamps debug datetime msec&lt;BR /&gt;service timestamps log datetime msec&lt;BR /&gt;no service password-encryption&lt;BR /&gt;!&lt;BR /&gt;hostname router&lt;BR /&gt;!&lt;BR /&gt;boot-start-marker&lt;BR /&gt;boot-end-marker&lt;BR /&gt;!&lt;BR /&gt;enable secret&lt;BR /&gt;!&lt;BR /&gt;aaa new-model&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa session-id common&lt;BR /&gt;!&lt;BR /&gt;resource policy&lt;BR /&gt;!&lt;BR /&gt;ip dhcp excluded-address 10.100.0.254&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip cef&lt;BR /&gt;ip name-server 10.100.0.1&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;&lt;BR /&gt;username admin privilege 15 password 0 [password]&lt;BR /&gt;&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0&lt;BR /&gt;&amp;nbsp;ip address 10.100.0.254 255.255.255.0&lt;BR /&gt;&amp;nbsp;no ip redirects&lt;BR /&gt;&amp;nbsp;no ip unreachables&lt;BR /&gt;&amp;nbsp;no ip proxy-arp&lt;BR /&gt;&amp;nbsp;ip nat inside&lt;BR /&gt;&amp;nbsp;ip virtual-reassembly&lt;BR /&gt;&amp;nbsp;hold-queue 100 out&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet2&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;hold-queue 100 out&lt;BR /&gt;!&lt;BR /&gt;interface ATM0&lt;BR /&gt;&amp;nbsp;ip address [Routers IP address] 255.255.255.248&lt;BR /&gt;&amp;nbsp;no ip redirects&lt;BR /&gt;&amp;nbsp;no ip unreachables&lt;BR /&gt;&amp;nbsp;no ip proxy-arp&lt;BR /&gt;&amp;nbsp;no atm ilmi-keepalive&lt;BR /&gt;&amp;nbsp;dsl operating-mode auto&lt;BR /&gt;&amp;nbsp;pvc 0/38&lt;BR /&gt;&amp;nbsp; encapsulation aal5mux ppp dialer&lt;BR /&gt;&amp;nbsp; dialer pool-member 1&lt;BR /&gt;&amp;nbsp;!&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet1&lt;BR /&gt;&amp;nbsp;duplex auto&lt;BR /&gt;&amp;nbsp;speed auto&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet2&lt;BR /&gt;&amp;nbsp;duplex auto&lt;BR /&gt;&amp;nbsp;speed auto&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet3&lt;BR /&gt;&amp;nbsp;duplex auto&lt;BR /&gt;&amp;nbsp;speed auto&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet4&lt;BR /&gt;&amp;nbsp;duplex auto&lt;BR /&gt;&amp;nbsp;speed auto&lt;BR /&gt;!&lt;BR /&gt;interface Dialer0&lt;BR /&gt;&amp;nbsp;description $FW_OUTSIDE$&lt;BR /&gt;&amp;nbsp;ip address negotiated&lt;BR /&gt;&amp;nbsp;no ip redirects&lt;BR /&gt;&amp;nbsp;no ip unreachables&lt;BR /&gt;&amp;nbsp;no ip proxy-arp&lt;BR /&gt;&amp;nbsp;ip nat outside&lt;BR /&gt;&amp;nbsp;ip virtual-reassembly&lt;BR /&gt;&amp;nbsp;encapsulation ppp&lt;BR /&gt;&amp;nbsp;dialer pool 1&lt;BR /&gt;&amp;nbsp;dialer-group 1&lt;BR /&gt;&amp;nbsp;no cdp enable&lt;BR /&gt;&amp;nbsp;ppp authentication chap callin&lt;BR /&gt;&amp;nbsp;ppp chap hostname Bxxxxxx@hgxx.btclick.com&lt;BR /&gt;&amp;nbsp;ppp chap password 0 [password]&lt;BR /&gt;&amp;nbsp;ppp pap sent-username Bxxxxxx@hgXX.btclick.com password 0 [password]&lt;BR /&gt;&amp;nbsp;ppp ipcp dns request&lt;BR /&gt;&amp;nbsp;ppp ipcp wins accept&lt;BR /&gt;&amp;nbsp;ppp ipcp mask request&lt;BR /&gt;&amp;nbsp;ppp ipcp route default&lt;BR /&gt;&amp;nbsp;ppp ipcp address accept&lt;BR /&gt;!&lt;BR /&gt;ip route profile&lt;BR /&gt;ip route 0.0.0.0 0.0.0.0 Dialer0&lt;BR /&gt;ip http server&lt;BR /&gt;ip http secure-server&lt;BR /&gt;!&lt;BR /&gt;ip nat inside source list 1 interface Dialer0 overload&lt;BR /&gt;ip nat inside source static tcp 10.100.0.1 25 81.142.aaa.aaa 25 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.1 80 81.142.aaa.aaa 80 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.1 443 81.142.aaa.aaa 443 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.1 987 81.142.aaa.aaa 987 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.1 1723 81.142.aaa.aaa 1723 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.1 3389 81.142.aaa.aaa 3389 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.9 22 81.142.bbb.bbb 22 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.9 25 81.142.bbb.bbb 25 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.9 80 81.142.bbb.bbb 80 extendable&lt;BR /&gt;ip nat inside source static tcp 10.100.0.9 443 81.142.bbb.bbb 443 extendable&lt;BR /&gt;!&lt;BR /&gt;access-list 1 permit 10.100.0.0 0.0.0.255&lt;BR /&gt;snmp-server community public RO&lt;BR /&gt;!&lt;BR /&gt;control-plane&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;line con 0&lt;BR /&gt;&amp;nbsp;no modem enable&lt;BR /&gt;line aux 0&lt;BR /&gt;line vty 0 4&lt;BR /&gt;&amp;nbsp;exec-timeout 120 0&lt;BR /&gt;&amp;nbsp;password [password]&lt;BR /&gt;&amp;nbsp;length 0&lt;BR /&gt;!&lt;BR /&gt;scheduler max-task-time 5000&lt;BR /&gt;end&lt;/P&gt;</description>
      <pubDate>Thu, 02 Apr 2009 00:02:29 GMT</pubDate>
      <guid>https://business.forums.bt.com/t5/Archive/cisco-837-config-with-5-static-ip-s/m-p/5105#M701</guid>
      <dc:creator>stevehutton</dc:creator>
      <dc:date>2009-04-02T00:02:29Z</dc:date>
    </item>
    <item>
      <title>Re: cisco 837 config with 5 static ip's</title>
      <link>https://business.forums.bt.com/t5/Archive/cisco-837-config-with-5-static-ip-s/m-p/5144#M702</link>
      <description>&lt;P&gt;&amp;nbsp;Hello&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is a way to do this. All you have to do is unnumber the router address given by bt to the ethernet port(or ports as a vlan member if they are layer 2 ports on that model - I cant remember) against the dialer interface.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You then use the cisco as a default gateway to any host on your lan that you wish to use a static IP for - obviously you will need a seperate firewall.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For example, your ethernet port will have an ip address of 1.1.1.1 (This is the address BT give as the router/hub address)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You then put a device (EG a firewall) behind this, with a static IP on your range, and the 1.1.1.1 address as its default gateway.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can use all of the other statics in this way - or - as I do - use a firewall to perform the NAT (I use checkpoint NGX, as its one of the products I work with)&lt;/P&gt;</description>
      <pubDate>Sun, 05 Apr 2009 15:44:51 GMT</pubDate>
      <guid>https://business.forums.bt.com/t5/Archive/cisco-837-config-with-5-static-ip-s/m-p/5144#M702</guid>
      <dc:creator>mark239</dc:creator>
      <dc:date>2009-04-05T15:44:51Z</dc:date>
    </item>
  </channel>
</rss>

