Modo de Configuaraciƥn Router C-810

24

Click here to load reader

description

manual

Transcript of Modo de Configuaraciƥn Router C-810

Page 1: Modo de Configuaraciƥn Router C-810

Any Unauthorized Use of The System is Unlawful, and May be

Subject to Civil and/or Criminal Penalties.

This System May be Logged or Monitored Without Further Notice,

and That The Resulting Logs May be Used as Evidence in Court.^C

RTR-4554(config)#!

RTR-4554(config)#ied. Issue "write memory" to save new certificate

RTR-4554(config)#

RTR-4554(config)#

RTR-4554(config)#!

RTR-4554(config)#line con 0

RTR-4554(config-line)# login local

RTR-4554(config-line)# no modem enable

RTR-4554(config-line)#line aux 0

RTR-4554(config-line)#line vty 0 4

RTR-4554(config-line)# access-class 23 in

RTR-4554(config-line)# privilege level 15

RTR-4554(config-line)# login local

RTR-4554(config-line)# transport input telnet ssh

RTR-4554(config-line)#!

RTR-4554(config-line)#scheduler max-task-time 5000

RTR-4554(config)#!

RTR-4554(config)#!

RTR-4554(config)#end

RTR-4554#write

Building configuration...

*Mar 1 00:24:06.407: %SYS-5-CONFIG_I: Configured from console by console[OK]

Page 2: Modo de Configuaraciƥn Router C-810

RTR-4554#

RTR-4554#

RTR-4554#

RTR-4554#show run

Building configuration...

Current configuration : 4513 bytes

!

version 12.4

no service pad

service timestamps debug datetime msec

service timestamps log datetime msec

service password-encryption

!

hostname RTR-4554

!

boot-start-marker

boot-end-marker

!

logging buffered 51200 warnings

!

no aaa new-model

!

resource policy

!

ip cef

!

Page 3: Modo de Configuaraciƥn Router C-810

!

no ip dhcp use vrf connected

no ip dhcp conflict logging

!

ip dhcp pool VLAN1

network 10.245.128.216 255.255.255.252

dns-server 200.62.148.55 200.62.148.56

default-router 10.245.128.217

lease 0 2

!

ip dhcp pool VLAN3

network 10.245.192.216 255.255.255.252

dns-server 200.62.148.55 200.62.148.56

default-router 10.245.192.217

lease 0 2

!

!

no ip domain lookup

!

!

crypto pki trustpoint TP-self-signed-1744946288

enrollment selfsigned

subject-name cn=IOS-Self-Signed-Certificate-1744946288

revocation-check none

rsakeypair TP-self-signed-1744946288

!

!

Page 4: Modo de Configuaraciƥn Router C-810

crypto pki certificate chain TP-self-signed-1744946288

certificate self-signed 01

30820240 308201A9 A0030201 02020101 300D0609 2A864886 F70D0101 04050030

31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274

69666963 6174652D 31373434 39343632 3838301E 170D3032 30333031 30303233

30375A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649

4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D31 37343439

34363238 3830819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281

8100CD86 0AB87606 79718CDF EC7E8A90 616A0654 3DC2DB75 1D621CBF D8F8991E

66299ABD 06C35CFF 883EED50 47550286 EE4F3B54 CD7A2D91 4B75C72C 18D8B11E

8764BA25 23866E49 25DAF10B 6ABF4FAF 04F30C1F B36431C2 E7F82061 522687D8

F2C47919 31192D73 87841A91 281DB1E3 3E3B835D 29D08B4E 4E8D5700 1895E8AC

BF850203 010001A3 68306630 0F060355 1D130101 FF040530 030101FF 30130603

551D1104 0C300A82 08525452 2D343535 34301F06 03551D23 04183016 80148318

9FF13DA0 D021CF87 7D9AC42F 2085B5AD 8D00301D 0603551D 0E041604 1483189F

F13DA0D0 21CF877D 9AC42F20 85B5AD8D 00300D06 092A8648 86F70D01 01040500

03818100 6411961A 07253EEA 655C017F ED187F91 8B9B516E F8E79118 4E652190

2F0BB57C DE0F242E CDADD35C FF329530 A83CF566 857453DB D877C35A EE0D8E42

C88C3451 D4D6D515 FAA1E2EE 3239B568 48BBDEAC 307475F3 9FE2F847 7A7CBAA8

F5DB19BC ECF12F0A F83F82B3 B4AB9163 D35D0614 6E801E55 A3F082BA 28231B19 C15C46

45

quit

username admin privilege 15 secret 5 $1$WWP7$kWAEKEXh.vTeiXv7x4RNi/

!

!

!

!

Page 5: Modo de Configuaraciƥn Router C-810

!

!

interface FastEthernet0

description LAN0 - Telecentro1

spanning-tree portfast

!

interface FastEthernet1

description LAN1 - Telecentro2

switchport access vlan 2

shutdown

spanning-tree portfast

!

interface FastEthernet2

description LAN2 - Telecentro3

switchport access vlan 3

shutdown

spanning-tree portfast

!

interface FastEthernet3

description LAN3 - Telecentro4

switchport access vlan 4

shutdown

spanning-tree portfast

!

interface FastEthernet4

description WAN-VSAT network

ip address dhcp client-id FastEthernet4

Page 6: Modo de Configuaraciƥn Router C-810

rate-limit output access-group 100 64000 8000 16000 conform-action transmit exc

eed-action drop

rate-limit output access-group 110 64000 8000 16000 conform-action transmit exc

eed-action drop

rate-limit output access-group 120 64000 8000 16000 conform-action transmit exc

eed-action drop

speed 100

half-duplex

!

interface Vlan1

description VLAN1 - Telecentro 1

ip address 10.245.128.217 255.255.255.252

ip tcp adjust-mss 1452

RTR-4554#wr

Building configuration...

[OK]

RTR-4554#reload

Proceed with reload? [confirm]

*Mar 1 00:25:17.183: %SYS-5-RELOAD: Reload requested by console. Reload Reason:

Reload Command.

System Bootstrap, Version 12.3(8r)YI3, RELEASE SOFTWARE

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 2006 by cisco Systems, Inc.

C870 series (Board ID: 3-148) platform with 131072 Kbytes of main memory

Page 7: Modo de Configuaraciƥn Router C-810

Booting flash:/c870-advipservicesk9-mz.124-9.T1.bin

Self decompressing the image : #################################################

######################################################## [OK]

Restricted Rights Legend

Use, duplication, or disclosure by the Government is

subject to restrictions as set forth in subparagraph

(c) of the Commercial Computer Software - Restricted

Rights clause at FAR sec. 52.227-19 and subparagraph

(c) (1) (ii) of the Rights in Technical Data and Computer

Software clause at DFARS sec. 252.227-7013.

cisco Systems, Inc.

170 West Tasman Drive

San Jose, California 95134-1706

Cisco IOS Software, C870 Software (C870-ADVIPSERVICESK9-M), Version 12.4(9)T1, R

ELEASE SOFTWARE (fc2)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 1986-2006 by Cisco Systems, Inc.

Compiled Wed 30-Aug-06 22:34 by prod_rel_team

Image text-base: 0x8002008C, data-base: 0x81BECDE8

Page 8: Modo de Configuaraciƥn Router C-810

This product contains cryptographic features and is subject to United

States and local country laws governing import, export, transfer and

use. Delivery of Cisco cryptographic products does not imply

third-party authority to import, export, distribute or use encryption.

Importers, exporters, distributors and users are responsible for

compliance with U.S. and local country laws. By using this product you

agree to comply with applicable laws and regulations. If you are unable

to comply with U.S. and local laws, return this product immediately.

A summary of U.S. laws governing Cisco cryptographic products may be found at:

http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

If you require further assistance please contact us by sending email to

[email protected].

Installed image archive

Cisco 871 (MPC8272) processor (revision 0x200) with 118784K/12288K bytes of memo

ry.

Processor board ID FHK1027515C

MPC8272 CPU Rev: Part Number 0xC, Mask Number 0x10

5 FastEthernet interfaces

128K bytes of non-volatile configuration memory.

28672K bytes of processor board System flash (Intel Strataflash)

Page 9: Modo de Configuaraciƥn Router C-810

Press RETURN to get started!

*Mar 1 00:00:04.731: %VPN_HW-6-INFO_LOC: Crypto engine: onboard 0 State change

d to: Initialized

*Mar 1 00:00:04.787: %VPN_HW-6-INFO_LOC: Crypto engine: onboard 0 State change

d to: Enabled

*Mar 1 00:00:08.311: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to down

*Mar 1 00:00:08.311: %LINK-3-UPDOWN: Interface FastEthernet0, changed state to

up

*Mar 1 00:00:09.323: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et0, changed state to up

*Mar 1 00:00:10.827: USB init complete.

*Mar 1 00:00:12.983: %SYS-5-CONFIG_I: Configured from memory by console

*Mar 1 00:25:15.375: %SYS-5-RESTART: System restarted --

Cisco IOS Software, C870 Software (C870-ADVIPSERVICESK9-M), Version 12.4(9)T1, R

ELEASE SOFTWARE (fc2)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 1986-2006 by Cisco Systems, Inc.

Compiled Wed 30-Aug-06 22:34 by prod_rel_team

*Mar 1 00:25:15.375: %SNMP-5-COLDSTART: SNMP agent on host RTR-4554 is undergoi

ng a cold start

*Mar 1 00:25:15.419: %SSH-5-ENABLED: SSH 1.99 has been enabled

*Mar 1 00:25:15.471: %CRYPTO-6-ISAKMP_ON_OFF: ISAKMP is OFF

*Mar 1 00:25:16.711: %LINK-5-CHANGED: Interface FastEthernet1, changed state to

administratively down

Page 10: Modo de Configuaraciƥn Router C-810

*Mar 1 00:25:16.711: %LINK-5-CHANGED: Interface FastEthernet2, changed state to

administratively down

*Mar 1 00:25:16.711: %LINK-5-CHANGED: Interface FastEthernet3, changed state to

administratively down

*Mar 1 00:25:16.991: %LINK-3-UPDOWN: Interface FastEthernet0, changed state to

up

*Mar 1 00:25:17.711: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et1, changed state to down

*Mar 1 00:25:17.711: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et2, changed state to down

*Mar 1 00:25:17.711: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et3, changed state to down

*Mar 1 00:25:17.991: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et0, changed state to down

*Mar 1 00:25:29.131: %PKI-6-AUTOSAVE: Running configuration saved to NVRAM

*Mar 1 00:26:19.771: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to up

*Mar 1 00:26:27.711: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to down

*Mar 1 00:26:55.331: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to up

*Mar 1 00:26:57.711: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to down

*Mar 1 00:27:35.815: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to up

*Mar 1 00:27:37.711: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to down

Page 11: Modo de Configuaraciƥn Router C-810

*Mar 1 00:28:21.299: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to up

*Mar 1 00:28:27.727: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to down

*Mar 1 00:29:11.783: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to up

*Mar 1 00:29:17.727: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to downCCCUNAUTHORIZED ACCESS PROHIBITED

This System is for Only Authorized Users Access.

Any Unauthorized Use of The System is Unlawful, and May be

Subject to Civil and/or Criminal Penalties.

This System May be Logged or Monitored Without Further Notice,

and That The Resulting Logs May be Used as Evidence in Court.

User Access Verification

Username:

% Username: timeout expired!

Username:

% Username: timeout expired!

Username: admin

Password:

RTR-4554#

RTR-4554#show ip int b

Interface IP-Address OK? Method Status Prot

ocol

Page 12: Modo de Configuaraciƥn Router C-810

FastEthernet0 unassigned YES unset up down

FastEthernet1 unassigned YES unset administratively down down

FastEthernet2 unassigned YES unset administratively down down

FastEthernet3 unassigned YES unset administratively down down

FastEthernet4 unassigned YES DHCP up down

Vlan1 10.245.128.217 YES NVRAM up down

Vlan2 10.245.160.217 YES NVRAM up down

Vlan3 10.245.192.217 YES NVRAM up down

RTR-4554#conf ter

Enter configuration commands, one per line. End with CNTL/Z.

RTR-4554(config)#

RTR-4554(config)#inte

RTR-4554(config)#interface fas

RTR-4554(config)#interface fastEthernet 4

RTR-4554(config-if)#

*Mar 1 00:32:13.447: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to up

*Mar 1 00:32:17.727: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to down

Page 13: Modo de Configuaraciƥn Router C-810

RTR-4554(config-if)#ip rip send version 1 2

RTR-4554(config-if)#

RTR-4554(config-if)#end

RTR-4554#

*Mar 1 00:33:20.023: %SYS-5-CONFIG_I: Configured from console by admin on conso

lewr

Building configuration...

[OK]

*Mar 1 00:33:24.055: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to up

RTR-4554#

*Mar 1 00:33:27.727: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to down

RTR-4554#

RTR-4554#

RTR-4554#show run

Building configuration...

Current configuration : 4538 bytes

!

version 12.4

no service pad

service timestamps debug datetime msec

service timestamps log datetime msec

service password-encryption

!

hostname RTR-4554

Page 14: Modo de Configuaraciƥn Router C-810

!

boot-start-marker

boot-end-marker

!

logging buffered 51200 warnings

!

no aaa new-model

!

resource policy

!

ip cef

!

!

no ip dhcp use vrf connected

no ip dhcp conflict logging

!

ip dhcp pool VLAN1

network 10.245.128.216 255.255.255.252

dns-server 200.62.148.55 200.62.148.56

default-router 10.245.128.217

lease 0 2

!

ip dhcp pool VLAN3

network 10.245.192.216 255.255.255.252

dns-server 200.62.148.55 200.62.148.56

default-router 10.245.192.217

lease 0 2

Page 15: Modo de Configuaraciƥn Router C-810

!

!

no ip domain lookup

!

!

crypto pki trustpoint TP-self-signed-1744946288

enrollment selfsigned

subject-name cn=IOS-Self-Signed-Certificate-1744946288

revocation-check none

rsakeypair TP-self-signed-1744946288

!

!

crypto pki certificate chain TP-self-signed-1744946288

certificate self-signed 01

30820240 308201A9 A0030201 02020101 300D0609 2A864886 F70D0101 04050030

31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274

69666963 6174652D 31373434 39343632 3838301E 170D3032 30333031 30303235

32395A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649

4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D31 37343439

34363238 3830819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281

8100CD86 0AB87606 79718CDF EC7E8A90 616A0654 3DC2DB75 1D621CBF D8F8991E

66299ABD 06C35CFF 883EED50 47550286 EE4F3B54 CD7A2D91 4B75C72C 18D8B11E

8764BA25 23866E49 25DAF10B 6ABF4FAF 04F30C1F B36431C2 E7F82061 522687D8

F2C47919 31192D73 87841A91 281DB1E3 3E3B835D 29D08B4E 4E8D5700 1895E8AC

BF850203 010001A3 68306630 0F060355 1D130101 FF040530 030101FF 30130603

551D1104 0C300A82 08525452 2D343535 34301F06 03551D23 04183016 80148318

9FF13DA0 D021CF87 7D9AC42F 2085B5AD 8D00301D 0603551D 0E041604 1483189F

Page 16: Modo de Configuaraciƥn Router C-810

F13DA0D0 21CF877D 9AC42F20 85B5AD8D 00300D06 092A8648 86F70D01 01040500

03818100 6C1221B3 DDC4B0C4 B9B2F078 8E1C3C0B 71FE58E5 5CA28AD6 48AF6488

86DE8C46 32801FC7 F587079F BAF2D68F 7947C7CF 7C686131 1E4A1400 90FF3995

C2046323 853BDEF5 3983545F 05412818 4F4EF75A B65CF7D2 35859CBD F6D217A5

46197018 ADF73475 8DEA59DC B5FE79BA 17E17C6F B2977914 07D363E6 0D76F7D9 7CB286

57

quit

username admin privilege 15 secret 5 $1$WWP7$kWAEKEXh.vTeiXv7x4RNi/

!

!

!

!

!

!

interface FastEthernet0

description LAN0 - Telecentro1

spanning-tree portfast

!

interface FastEthernet1

description LAN1 - Telecentro2

switchport access vlan 2

shutdown

spanning-tree portfast

!

interface FastEthernet2

description LAN2 - Telecentro3

switchport access vlan 3

Page 17: Modo de Configuaraciƥn Router C-810

shutdown

spanning-tree portfast

!

interface FastEthernet3

description LAN3 - Telecentro4

switchport access vlan 4

shutdown

spanning-tree portfast

!

interface FastEthernet4

description WAN-VSAT network

ip address dhcp client-id FastEthernet4

ip rip send version 1 2

rate-limit output access-group 100 64000 8000 16000 conform-action transmit exc

eed-action drop

rate-limit output access-group 110 64000 8000 16000 conform-action transmit exc

eed-action drop

rate-limit output access-group 120 64000 8000 16000 conform-action transmit exc

eed-action drop

speed 100

half-duplex

!

interface Vlan1

description VLAN1 - Telecentro 1

ip address 10.245.128.217 255.255.255.252

RTR-4554#wr

Page 18: Modo de Configuaraciƥn Router C-810

Building configuration...

[OK]

RTR-4554#exit

Page 19: Modo de Configuaraciƥn Router C-810

RTR-4554 con0 is now available

Press RETURN to get started.

Page 20: Modo de Configuaraciƥn Router C-810

*Mar 1 00:34:40.695: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to up

*Mar 1 00:34:47.727: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to down

*Mar 1 00:36:01.179: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to up

*Mar 1 00:36:07.727: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

et4, changed state to down