r1-8.2

Upload: cu-nguyen

Post on 14-Feb-2018

215 views

Category:

Documents


0 download

TRANSCRIPT

  • 7/23/2019 R1-8.2

    1/4

  • 7/23/2019 R1-8.2

    2/4

    Cisco IOS Software, 2800 Software (C2800NM-ADVIPSERVICESK9-M), Version 12.4(15)T1, RELEASE SOFTWARE (fc2)Technical Support: http://www.cisco.com/techsupportCopyright (c) 1986-2007 by Cisco Systems, Inc.Compiled Wed 18-Jul-07 06:21 by pt_rel_team

    --- System Configuration Dialog ---

    Continue with configuration dialog? [yes/no]: n

    Press RETURN to get started!

    Router>enableRouter#configure terminalEnter configuration commands, one per line. End with CNTL/Z.Router(config)#interface FastEthernet0/0Router(config-if)#ip address 192.168.10.2 255.255.255.0Router(config-if)#ip address 192.168.10.1 255.255.255.0Router(config-if)#no shutdown

    Router(config-if)#%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up

    %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, changed state to up

    Router(config-if)#exitRouter(config)#interface FastEthernet0/1Router(config-if)#ip address 10.0.0.1 255.255.255.0Router(config-if)#no shutdown

    Router(config-if)#%LINK-5-CHANGED: Interface FastEthernet0/1, changed state to up

    Router(config-if)#exitRouter(config)#router ripRouter(config-router)#network 10.0.0.0Router(config-router)#network 192.168.10.0Router(config-router)#%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state to up

    Router(config-router)#endRouter#configure terminalEnter configuration commands, one per line. End with CNTL/Z.Router(config)#hostname Router1

    Router1(config)#%SYS-5-CONFIG_I: Configured from console by console

    Router1(config)#endRouter1#copy running-config startup-configDestination filename [startup-config]?Building configuration...[OK]Router1#%SYS-5-CONFIG_I: Configured from console by console

  • 7/23/2019 R1-8.2

    3/4

    Router1#conf tEnter configuration commands, one per line. End with CNTL/Z.Router1(config)#Router1(config)#liRouter1(config)#line vtRouter1(config)#line vty 0Router1(config-line)#pasRouter1(config-line)#password 12345Router1(config-line)#exRouter1(config-line)#exitRouter1(config)#enaRouter1(config)#enable seRouter1(config)#enable secret 12345Router1(config)#usRouter1(config)#username asd paRouter1(config)#username asd password 12345Router1(config)#cryRouter1(config)#crypto isRouter1(config)#crypto isakmp poRouter1(config)#crypto isakmp policy 10Router1(config-isakmp)#auRouter1(config-isakmp)#authentication pRouter1(config-isakmp)#authentication pre-share

    Router1(config-isakmp)#hasRouter1(config-isakmp)#hash shaRouter1(config-isakmp)#enRouter1(config-isakmp)#encryption aeRouter1(config-isakmp)#encryption aes 256Router1(config-isakmp)#grRouter1(config-isakmp)#group 2Router1(config-isakmp)#liRouter1(config-isakmp)#lifetime 86400Router1(config-isakmp)#exRouter1(config)#crRouter1(config)#crypto isRouter1(config)#crypto isakmp ke

    Router1(config)#crypto isakmp key tRouter1(config)#crypto isakmp key toRouter1(config)#crypto isakmp key toor addRouter1(config)#crypto isakmp key toor address 10.0.0.2 //kha chia s trcRouter1(config)#crRouter1(config)#crypto ipRouter1(config)#crypto ipsec trRouter1(config)#crypto ipsec transform-set TSET espRouter1(config)#crypto ipsec transform-set TSET esp-Router1(config)#crypto ipsec transform-set TSET esp-aRouter1(config)#crypto ipsec transform-set TSET esp-aesRouter1(config)#crypto ipsec transform-set TSET esp-aes esp-Router1(config)#crypto ipsec transform-set TSET esp-aes esp-sh

    Router1(config)#crypto ipsec transform-set TSET esp-aes esp-sha-hmacRouter1(config)#acRouter1(config)#access-list 101peRouter1(config)#access-list 101 peRouter1(config)#access-list 101 permit ip 192.168.10.0 0.0.0.255 192.168.20.0 0.0.0.255Router1(config)#crRouter1(config)#acRouter1(config)#access-list 101 peRouter1(config)#cr

  • 7/23/2019 R1-8.2

    4/4

    Router1(config)#crypto maRouter1(config)#crypto map CMAP ipRouter1(config)#crypto map CMAP ipRouter1(config)#crypto map CMAP 10 ipRouter1(config)#crypto map CMAP 10 ipsec-isakmp% NOTE: This new crypto map will remain disabled until a peer and a valid access list have been configured.Router1(config-crypto-map)#setRouter1(config-crypto-map)#set peRouter1(config-crypto-map)#set peer 10.0.0.2Router1(config-crypto-map)#maRouter1(config-crypto-map)#match addRouter1(config-crypto-map)#match address 101Router1(config-crypto-map)#seRouter1(config-crypto-map)#set trRouter1(config-crypto-map)#set transform-set TSETRouter1(config-crypto-map)#exRouter1(config)#inRouter1(config)#interface faRouter1(config)#interface fastEthernet 0/1Router1(config-if)#crRouter1(config-if)#crypto maRouter1(config-if)#crypto map CMAP*Jan 3 07:16:26.785: %CRYPTO-6-ISAKMP_ON_OFF: ISAKMP is ON

    Router1(config-if)#do wrRouter1(config-if)#do wrBuilding configuration...[OK]Router1(config-if)#