Você está na página 1de 15

CLI Command Line Interface

Switch: Clicar pressionar enter (entra no switch).


Router: CTRL + C Para cancelar e dar enter (entra no router).
Slot HWIC
CTRL + SHIT + ! "estra#a.
> $%"% &'&C.
# $%"% &()*L&.
(confg)# $%"% "& C%(I+,R)-.% +L%*)L.
(confg-line)# $%"% C%(S%L& / $odo 0T1
(confg-if)# "entro de u2a I(T&R)C&
(confg-if-range)# "entro de u2a R)(+&
(dhcp-confg)# "entro de u2 P%%L "HCP.
(confg-vlan)# "entro de u2a 0L)(.
(confg-subif)# "entro de u2a Su34Inter5ace.
(confg-router)# "entro de u2 protocolo de Rotea2ento.
(confg-std-nacl)# "entro de u2a )CL Padr6o (o2eada.
(confg-ext-nacl)# "entro de u2a )CL &stendida (o2eada.
$%"% &()*L& #
7enable Sai do 2odo e8ec e entra no 2odo ena3le.
9reload + enter Reinicia o e:uipa2ento.
9disable Sai do 2odo ena3le e #olta para o 2odo e8ec.
9exit + enter Retorna ao 2odo e8ec.
9 &8i3e os co2andos dispon;#eis no 2odo ena3le.
9conf &8i3e os co2andos co2 o pre<8o =con5>.
9sho! &8i3e os ar?u2entos do co2ando =show>.
9sho! logging &8i3e os lo?s do e:uipa2ento.
9sho! version &8i3e in5or2a@Aes do e:uipa2ento.
9sho! interfaces Binterface (5ast&thernet C/D)E &8i3e detalhes de u2a
inter5ace.
9sho! ip interface brief &8i3e in5or2a@Aes resu2idas das inter5aces.
9sho! cloc" &8i3e a data e a hora.
9sho! cdp &8i3e os ti2ers do C"P.
9sho! cdp neighbors &8i3e in5or2a@Aes dos #iFinhos C"P.
9sho! cdp entr# Bnome do e$uipamento (Rio)E &8i3e detalhes de u2
e:uipa2ento.
9sho! %ash& &8i3e o conteGdo da 2e2Hria Iash. !JCD!KLJ 3Mtes total
(!CNOLKK! 3Mtes 5ree). Con#erter para 2e?a e su3trair P KCOLCJL (QNL!.KL
R*. Q.ND!KL $*).
9sho! startup-confg &8i3e o ar:ui#o startup4con<?.
9sho! running-confg &8i3e o ar:ui#o runnin?4con<?.
9sho! mac-address-table &8i3e a ta3ela C)$ do switch.
9sho! arp &8i3e a ta3ela )RP.
9sho! run &8i3e detalhes das inter5aces.
9cloc" set Bhh&mm&ssE B'ul#E B()E B*)(+E )ltera a data e a hora.
9cop# running-confg startup-confg ou !r Sal#a as altera@Aes.
$%"% "& C%(I+,R)-.% +L%*)L (confg)#
9confgure terminal &ntra no 2odo de con<?ura@6o ?lo3al.
9conf t =con<?ure ter2inal> a3re#iado.
9conf t + ,-. )uto co2pleta o co2ando =con<?ure ter2inal>.
(con<?)9exit ou C,/L + 0 + enter 0olta para o 2odo ena3le.
(con<?)9hostname BnomeE )ltera o no2e do e:uipa2ento.
(con<?)9banner motd Bcaracter (1)E B2ensa?e2 (2omente pessoal
autori3ado4)E Bcaracter (1)E Insere u2 3anner no e:uipa2ento.
(con<?)9no cdp run "esati#a o processo C"P.
(con<?)9cdp run )ti#a o processo C"P.
"entro de u2a I(T&R)C& (confg-if)#
(con<?)9interface Bno2e da inter5ace (fast5thernet )67)E &ntra na
inter5ace (porta).
(con<?4i5)9shutdo!n "esati#a u2a inter5ace.
(con<?4i5)9no shutdo!n )ti#a u2a inter5ace.
(con<?4i5)9speed B()/())/())) (DCC)E "e<ne u2a #elocidade
2anual2ente.
(con<?4i5)9duplex Bfull/half (5ull)E "e<ne o duple8 2anual2ente.
(con<?4i5)9ip address BipE B2SscaraE Insere ip e 2Sscara na inter5ace.
(con<?4i5)9no ip address Re2o#e o ip da inter5ace.
(con<?4i5)9description Bdescri89o (?atewaM)E Insere descri@6o na
inter5ace.
(con<?4i5)9exit Sai da porta e retorna ao 2odo de con<?ura@6o ?lo3al.
"entro de u2a R)(+& (confg-if-range)#
7enable
9confgure terminal
(con<?)9interface range Binter5ace inicial (fast5thernet )67)E :BnG2ero <nal
(*;)E.
(con<?4i54ran?e)9speed B#elocidade (DC/())/DCCC)E )ltera a #elocidade da
ran?e.
(con<?4i54ran?e)9duplex Bfull/hal5E )ltera o 2odo de trans2iss6o da ran?e.
(con<?4i54ran?e)9shutdo!n "esati#a as inter5aces da ran?e.
(con<?4i54ran?e)9no shutdo!n )ti#a as inter5aces da ran?e.
(con<?4i54ran?e)9exit Sai da ran?e e retorna ao 2odo de con<?ura@6o
?lo3al.
9sho! running-confg Para #eri<car as altera@Aes.
<L-= (confg-if)#
Switch7enable
Switch9confgure terminal
Switch9sho! vlan brief &8i3e todas as 0L)(S.
Switch(con<?)9interface vlan( &ntra na inter5ace 0lanD.
Switch(con<?4i5)9no shutdo!n Ha3ilita a inter5ace.
Switch(con<?4i5)9ip address (>*?(@A?)?( *77?*77?*77?*;A Insere ip na
inter5ace.
Switch(con<?4i5)9exit
Switch(con<?)9exit
Switch9ping (>*?(@A?)?* e5etua pin? contra u2 al#o (se der .TTT P oUV se
der W. P deu rui2).
Criando <L-=2&
<L-= (confg-vlan)# "entro de u2a 0lan.
Switch7enable
Switch9confgure terminal
Switch(con<?)9vlan BnG2ero da #lan (*)E Cria u2a 0L)(.
Switch(con<?4#lan)9name Bno2e (<lan*)E Insere no2e na 0L)(.
Switch(con<?4i5)9s!itchport access vlan BnG2ero (*)E Insere a porta na
0L)(.
Switch(con<?)9no vlan BnG2ero da #lan (*)E Re2o#e a 0L)(.
Switch9delete %ash&vlan?dat Re2o#e o ar:ui#o 0lan.dat / Xera o Switch.
Bass!ord (confg)#
5nable Bass!ord (confg)#
7enable
9confgure terminal
(con<?)9enable pass!ord (*+ Insere senha ena3le plana.
(con<?)9enable secret +*( Insere senha ena3le secreta.
Obs.: A senha de enable um pr-requisito para o TELNET funcionar.
Local Bass!ord and Login (confg)#
7enable
9confgure terminal
(con<?)9username Cisco pass!ord *)(+ Inseri lo?in e senha locais.
Console Bass!ord (confg-line)#
7enable
9confgure terminal
(con<?)9line console ) &ntra no 2odo console.
(con<?4line)9pass!ord (*+ Insere a senha console.
(con<?4line)9login Ha3ilita a senha console.
<,C Bass!ord (confg-line)#
7enable
9confgure terminal
(con<?)9line vt# ) (7 &ntra no 2odo 0T1 (Telnet).
(con<?4line)9pass!ord (*+ Insere a senha 0T1.
(con<?4line)9login Ha3ilita a senha 0T1.
Obs.: De 0 a ! " # interfaces habilitadas$ o m%&imo suportado por esse
modo. A senha de enable tem que estar habilitada para o recurso de telnet
funcionar.
Ssh Yl BusuSrioE BipE )cessa o &:uipa2ento #ia telnet.
5ncription (confg)#
7enable
9confgure terminal
(con<?)9cr#pto "e# generate rsa +era a cha#e de cripto?ra<a de ODQ
3its.
Bass!ord-5ncription (confg)#
7enable
9confgure terminal
(con<?)9service pass!ord-encr#ption Cripto?ra5a todas as senhas.
,imeout e 2#slog (confg-line)#
7enable
9confgure terminal
(con<?)9line console ) 6 line vt# ) (7
(con<?4line)9exec-timeout @) )ltera o ti2eout (te2po de espera).
(con<?4line)9logging s#nchronous SincroniFa as 2ensa?ens sMslo?.
22D (confg-line)#
7enable
9confgure terminal
(con<?)9hostname Bno2e do e:uipa2ento (Ecur#)E )ltera o no2e do
e:uipa2ento.
(con<?)9ip domain-name Bno2e de "o2;nio (Ecur#)E Inseri u2 do2;nio
no e:uipa2ento.
(con<?)9username BusuSrio (mcur#)E password Bsenha (cisco)E Insere u2
lo?in e senha locais.
(con<?)9cr#pto "e# generate rsa +era a cha#e de cripto?ra<a RS).
(con<?)9line vt# ) (7 &ntra no 2odo 0T1.
(con<?4line)9login local Ha3ilita o lo?in local no e:uipa2ento.
(con<?4line)9transport input ssh Per2ite o trS5e?o SSH.
%*S.: ssh :L BusuFrioE BipE )cessa o e:uipa2ento #ia telnet.
=ame (confg)#
7enable
9confgure terminal
(con<?)9hostname Bno2e do e:uipa2ento (Ecur#)E )ltera o no2e do
e:uipa2ento.
Bool GDCB (dhcp-confg)#
Router7enable
Router9confgure terminal
Router(con<?)9ip dhcp pool HnomeI Cria u2 Poll "HCP.
Router(dhcp4con<?)9net!or" (>*?(@A?()?( *77?*77?*77?*;A "e<ne a
rede a ser distri3u;da.
Router(dhcp4con<?)9default-router (>*?(@A?()?*7; Inseri u2 +atewaM
no Pool.
Router(dhcp4con<?)9dns-server (>*?(@A?()?*7; Inseri u2 "(S no Poll.
Router(dhcp4con<?)9lease HdiasI )ltera o te2po de concess6o. (SH no
e:uipa2ento realV no pacUet tracer !.C n6o aceita o co2ando).
Router(dhcp4con<?)9ip dhcp excluded-address (>*?(@A?()?( Inseri u2a
e8clus6o de ip.
%3s.: Trans5or2a u2 roteador e2 u2 "HCP.
2panning ,ree Brotocol (confg)#
Switch7enable
Switch9sho! spanning-tree &8i3e in5or2a@Aes do Spannin? Tree.
Switch(con<?)9spanning-tree vlan ( priorit# +) Para #isualiFar os #alores
aceitS#eis. "epois 3asta repetir o co2ando e su3stituir o nG2ero KC por u2
#alor Z KQ[!L. )ltera o #alor da prioridade.
Switch(con<?)9spanning-tree portfast "esati#a os ti2ers do spannin?4
tree (SH o da Cisco).
Switch(con<?)9spanning-tree mode rapid-pvst )ltera para o Rapid4P0ST
(Spannin?4Tree da
Cisco).
Borts (confg-if)#
-ccess Bort )ssocia4se so2ente a u2a 0L)(. "e<nida para conte8to e2
dispositi#os <nais.
,run" Bort ,sada para per2itir o trS5e?o de 2ais de u2a 0L)(. (6o se
associa a u2a 0L)( espec;<caV de#e ser plu?ada a e:uipa2entos co2 suporte
ao LCQ.D\ (dot D\ / . D\).
Switch7enable
Switch9confgure terminal
Switch(con<?)9interface Binter5ace (fast5thernet )6*;)E &ntra na inter5ace
QJ.
Switch(con<?4i5)9s!itchport mode Baccess ou trun"E "e<ne a porta co2o
)ccess ou TrunU.
Switch9sho! running-confg Para #isualiFar as inter5aces no 2odo access.
Switch9sho! vlan brief Para #isualiFar as inter5aces.
2ub-Interfaces (confg-subif)#
Router7enable
Router9confgure terminal
Router(con<?)9interface fast5thernet )6)?() Cria u2a Su34Inter5ace.
Router(con<?4su3i5)9encapsulation dot(J () =)2arra> a Su34Inter5ace ]
0L)(.
Router(con<?4su3i5)9ip address ()?(?(?* *77?*77?*77?*7* Insere IP e
$Sscara.
<,B Brotocol (confg-if)#
Switch7enable
Switch9confgure terminal
Switch(con<?)9vtp mode Bserver / client / transparentE "e<ne o 2odo
de opera@6o 0TP.
^ Ser#er P CriaV de<ne e e8clui 0L)(. Client P SH #_ 0L)(. Transparent P 0_ a
0L)(V 2as n6o associa o ca2inho da 0TP.
Switch(con<?)9vtp domain Bno2e do do2;nio (mcur#)E "e<ne o no2e do
"o2;nio.
Switch(con<?)9vtp pass!ord Bsenha ((*+)E "e<ne u2a senha 0TP.
Switch9sho! vtp pass!ord &8i3e a senha 0TP.
Switch9sho! vtp status &8i3e in5or2a@Aes so3re o 0TP.
5therchannel (confg-if-range)#
Switch7enable
Switch9confgure terminal
Switch(con<?)9interface range fast5thernet )67 -*;
Switch(con<?4i54ran?e)9channel-group BnG2ero (()E mode on Cria u2
Port4Channel na Ran?e. ^ (o 2S8i2o at` ! a?re?a@Aes co2 L portas por
a?re?a@6o. ^ Se2pre te2 :ue ser 5eito e2 portas se:uenciais: QV KV J...
Switch(con<?4i54ran?e)9interface port-channel Bna (()E &ntra na porta
#irtual criada pelo Channel4+roup.
Switch9sho! ip interface brief 0eri<ca as inter5aces.
0erando o 2!itch #
Switch7enable
Switch9delete vlan?dat &8clui o ar:ui#o 0L)(.")T da 2e2Hria lash
(Xerando o switch).
Switch9reload Reinicia o Switch.
0erando o /outer #
Router7enable
Router 9erase startup-confg Xera o Router.
Router 9reload Reinicia o Router. ^%*S: Responder =K ] per?unta se n6o
ele sal#a de no#o.
/outes (confg)#
Router7enable
Router9confgure terminal
Router(con<?)9ip route Brede destino ((>*?(@A?*)?))E B2Sscara destino
(*77?*77?*77?*7*)E Bip prH8i2o salto (*))?()?()?*)E Cria u2a rota. ^ %*S.:
Pode ser: &stStica (2anual2ente)V Conectada (auto2Stica ou direta2ente
conectada) e "inb2ica (protocolo de rotea2ento P RIPV *+PV %SP...). ^ Rota
espec;<ca P Cria u2a rota espec;<ca para u2 Gnico PC.
Router9sho! ip route &8i3e a ta3ela de rotas.
Router9sho! ip route connected &8i3e as rotas Conectadas.
Router9sho! ip route static &8i3e as rotas &stSticas.
Bort-2ecurit# (confg-if)#
Switch7enable
Switch9confgure terminal
Switch(con<?)9
Switch(con<?)9interface Binter5ace (fast5thernet )6*;)E Para entrar na
inter5ace.
Switch(con<?4i5)9s!itchport port-securit# Ha3ilita o Protocolo Port4
SecuritM.
Switch(con<?4i5)9s!itchport port-securit# mac-address stic"# =)2arra>
o 2ac dina2ica2ente. ^ Ir no PC e pin?ar para ?erar trS5e?o de pacotes para o
reconheci2ento.
Switch(con<?4i5)9s!itchport port-securit# mac-address B8888.8888.8888E
=)2arra> o 2ac 2anual2ente. ^ "e<ne :uais s6o.
Switch(con<?4i5)9s!itchport port-securit# maximum Bna :ue #oc_ :uer (;)E
)ltera a :uantidade de 2accs na porta. ^ "e<ne :uantos s6o.
Switch9sho! run Para #isualiFar detalhes das inter5aces.
Switch9sho! port-securit# &8i3e in5or2a@Aes de controle do Port4SecuritM.
Switch9sho! port-securit# address &8i3e in5or2a@Aes do Port4SecuritM.
Switch9sho! port-securit# interface Binter5ace (fastethernet )6()E
&8i3e in5or2a@Aes do Port4SecuritM na inter5ace.
/IB - Brotocolo de /oteamento (confg-router)#
Router7enable
Router9confgure terminal
Router(con<?)9router rip Ha3ilita o RIP no Router.
Router(con<?4router)9net!or" Brede conectada ((>*?(@A?()?))E )nuncia
as rotas conectadas.
Router(con<?4router)9rip version * )ltera o RIP para a #ers6o Q.
Router(con<?4router)9no auto-summar# "esa3ilita a auto su2ariFa@6o. ^
Su2ariFar P &n?lo3ar 2ais de u2a rede nu2a Gnica rota.
Router(con<?4router)9passive-interface Binter5ace (fastethernet )6))E
"esa3ilita os up4dates RIP na porta.
Router9sho! ip route rip &8i3e as rotas do Protocolo RIP.
Router9sho! ip protocols &8i3e os protocolos instalados no router.
Router9debug ip rip Ha3ilita os e#entos do protocolo RIP.
Router9no debug ip rip "esa3ilita os e#entos do protocolo RIP.
Router9debug ip &8i3e as op@Aes do ="e3u? IP>.
Router9no debug all "esa3ilita todos os 2onitora2entos do "e3u?.
5IL/B - Brotocolo de /oteamento (confg-router)#
Router7enable
Router9confgure terminal
Router(con<?)9router eigrp Bna de )S P Siste2a )utdno2o (()))E Ha3ilita
o &I+RP no Router. ^ )S P Se a e2presa esti#er na internet #eri<car o naV se
n6oV pode ser :ual:uer u2 desde :ue o 2es2o na escolhido seea con<?urado
e2 todos os Routers.
Router(con<?4router)9net!or" Brede conectada ((>*?(@A?()?))E Bwildcard
()?)?)?+)E )nuncia as rotas conectadas.
Router9sho! ip route eigrp &8i3e a ta3ela de rotas do &I+RP.
Router(con<?4router)9no auto-summar# "esa3ilita a auto su2ariFa@6o. ^
Su2ariFar P &n?lo3ar 2ais de u2a rede nu2a Gnica rota.
Router(con<?4i5)9band!idth B3anda e2 U3ps (*);A)E Insere in5or2a@Aes
de 3anda na inter5ace. ^ $enor 3anda P $aior o Custo f $aior 3anda P $enor
o Custo.
Router9sho! ip route eigrp &8i3e as rotas do Protocolo &I+RP.
Router9sho! ip eigrp neighbor &8i3e a ta3ela de #iFinhos.
Router9sho! ip eigrp topolog# &8i3e o 2apa topolH?ico.
Brotocolos La#er * Bara Lin"Ms 2eriais (confg-if)#
^ H"LC Padr6o CISC%V 5aF controle de Iu8oV ` o de5ault das inter5aces seriais.
^ PPP Padr6o I&&&V g o 2ais usado e2 linUcs seriais no 2undoV 5aF controle de
Iu8oV per2ite autentica@6o e suporta 2Gltiplos protocolos laMer K.
Router9sho! interfaces Binter5ace serial (serial )6)6))E &8i3e detalhes da
inter5ace.
Router(con<?4i5)9encapsulation ppp )ltera o encapsula2ento da inter5ace
para PPP.
K2BN - Brotocolo de /oteamento (confg-router)#
K2BN /ede Boint to Boint (confg-router)#
Router7enable
Router9confgure terminal
Router(con<?)9router ospf Bna de Processa2ento (())E Ha3ilita o %SP no
Router.
Router(con<?4router)9net!or" Brede (()?(?(?))E Bwildcard ()?)?)?O)E area Bna
da area (())E )nuncia a rede especi<cada.
Router(con<?4router)9passive-interface Binter5ace (fastethernet )6))E
"esa3ilita os up4dates do %SP na inter5ace.
Router(con<?4i5)9band!idth B3anda e2 U3ps (()))E Insere in5or2a@Aes de
3anda na inter5ace. ^ $enor 3anda P $aior o Custo f $aior 3anda P $enor o
Custo.
Router9sho! ip route ospf &8i3e as rotas do Protocolo %SP.
Router9sho! ip ospf interface Binter5ace (serial )6)6))E &8i3e
in5or2a@Aes do %SP na inter5ace.
Router9sho! ip ospf neighbor &8i3e os #iFinhos %SP. ^ ("R / *"R / "R
%ther).
Router9sho! ip ospf database &8i3e a ta3ela TopolH?ica.
^ Redes $ulticast: &thernet P Possui suporte ao trS5e?o de 3roadcast e ra2e4
relaM P (6o possui suporte ao trS5e?o de 3roadcast.
K2BN /ede Boint to Eultipoint (confg-router)#
^ "R P Roteador "esi?nado. echa adeac_ncia co2 os de2ais Routers.
ResponsS#el por propa?ar as rotas na rede 2ulti4acesso. (% Router co2 o
2aior I" ` eleito).
^ *"R P Roteador "esi?nado *acUup. ResponsS#el por su3stituir o "RV caso ele
#enha a 5alhar na rede. (% Router co2 o Qa 2aior I" serS o eleito).
^ "R %ther P S6o todos os outros Roteadores da rede.
Nor8a a 5lei89o do G/ (confg-router)#
Router7enable
Router9confgure terminal
Router(con<?)9router ospf Bna de Processa2ento (())E Ha3ilita o %SP no
Router.
Router(con<?4router)9router-id Bid (*77?*77?*77?*7*)E "e<ne o Router4I"
do %SP.
Router9clear ip ospf process Reinicia o processo %SP.
-CL (-ccess Control Lists)
-CL Badr9o =umerada (confg)#
Router7enable
Router9confgure terminal
Router(con<?)9access-list Bna de )CL de D at` NN (())E Bper2it / denM (den#)E
BIP ori?e2 (()?(?(?()E BWildcard (0.0.0.0 :uando 5or hostV caso seea para rede
calcular e usar o correspondente)E ou -ccess-list H()I Hden#I host
H()?(?(?(I Cria u2a )CL Padr6o (u2erada.
Router(con<?)9access-list Bna da )CL (())E re2arU B$ensa?e2
(,esteP-CLP=umerada)E Insere u2 te8to na )CL (u2erada.
Router(con<?)9access-list Bna da )CL (())E Bper2it / denM (permit)E anM
Ha3ilita o acesso a todas as de2ais rotas.
Router(con<?4i5)9ip access-group Bna da )CL (())E Bin / out (out)E )plica a
)CL (u2erada na inter5ace.
Router9sho! -ccess lists &8i3e in5or2a@Aes das )CLcs.
Router(con<?)9no access-list Bna da )CL (())E Re2o#e u2a )CL
(u2erada.
-CL Badr9o =omeada (confg-std-nacl)#
Router7enable
Router9confgure terminal
Router(con<?)9ip access-list standard Bno2e da )CL (de3)E Cria u2a )CL
Padr6o (o2eada.
Router(con<?4std4nacl)9Bper2it / denM (den#)E BIP ori?e2 (()?(?(?()E
BWildcard (0.0.0.0)E ou Bden#E host B()?(?(?(E Cria u2a Re?ra na )CL
(o2eada.
Router(con<?4std4nacl)9remar" B$ensa?e2 (,esteP-CLP=omeada)E Insere
u2a $ensa?e2 na )CL (o2eada.
Router(con<?4std4nacl)9Bper2it / denM (permit)E anM Ha3ilita o acesso nas
de2ais rotas.
Router(con<?4i5)9ip access-group Bno2e da )CL (de3)E Bin / out (out)E
)plica a )CL (o2eada na inter5ace.
Router9sho! access lists &8i3e in5or2a@Aes das )CLcs.
Router(con<?)9no ip access-list standard Bno2e da )CL (de3)E Re2o#e
u2a )CL (o2eada.
-CL 5stendida =umerada (confg)#
Router7enable
Router9confgure terminal
Router(con<?)9access-list Bna de )CL de DCC at` DNN (()))E Bper2it / denM
(den#)E Bprotocolo (tcp)E BIP %ri?e2 (()?(?(?()E BWildcard %ri?e2 ()?)?)?O)E
BIP "estino (*)?(?(?()E BWildcard "estino ()?)?)?O)E e$ Bporta (A))E ou access-
list B())E Bden#E BtcpE host B()?(?(?(E host B*)?(?(?(E e: BA)E Cria u2a
)CL &stendida (u2erada.
Router(con<?4i5)9ip access-group Bna de )CL (()))E Bin / out (in)E )plica a
)CL (u2erada na inter5ace.
Router(con<?)9no access-list Bna de )CL (()))E Re2o#e u2a )CL
(u2erada.
Con<?ura@6o de &8e2plo:
Router(con<?)9access-list ()) den# tcp host ()?(?(?( host *)?(?(?( e$
A) Cria.
Router(con<?)9access-list ()) permit icmp host ()?(?(?* host *)?(?(?*
Cria.
Router(con<?)9access-list ()) den# icmp host ()?(?(?0 )?0.0.O *)?(?(?)
)?)?)?O Cria.
Router(con<?)9access-list ()) permit ip an# an# Per2ite o acesso nas
de2ais rotas.
Router(con<?)9access-list ()) remar" -CLP5stendidaP=umerada Insere
$ensa?e2.
Router(con<?4i5)9ip access-group ()) in )plica a )CL na inter5ace.
Router9sho! access lists &8i3e as )CLcs.
-CL 5stendida =omeada (confg-ext-nacl)#
Router7enable
Router9confgure terminal
Router(con<?)9ip access-list extended Bno2e da )CL (<irgem)E Cria u2a
)CL &stendida (o2eada.
Router(con<?4e8t4nacl)9Bper2it / den#E BprotocoloE BIB KrigemE BQildcard
KrigemE BIB GestinoE BQildcard GestinoE e$ BportaE Cria u2a re?ra na
)CL (o2eada.
Router(con<?4e8t4nacl)9remar" BmensagemE Insere descri@6o na )CL
(o2eada.
Con<?ura@6o de &8e2plo:
Router(con<?)9ip access-list extended <irgem Cria a )CL.
Router(con<?4e8t4nacl)9den# tcp host ()?(?(?( host *)?(?(?( e$ A) Cria
a Re?ra.
Router(con<?4e8t4nacl)9permit icmp host ()?(?(?* host *)?(?(?* Cria a
Re?ra.
Router(con<?4e8t4nacl)9den# icmp ()?(?(?) )?)?)?O *)?(?(?) )?)?)?O Cria
a Re?ra.
Router(con<?4e8t4nacl)9permit ip an# an# Per2ite o acesso nas de2ais
rotas.
Router(con<?4e8t4nacl)9remar" -CLP5stendidaP=omeada Insere
$ensa?e2.
Router(con<?4i5)9ip access-group <irgem in )plica a )CL na inter5ace.
Router9sho! access lists &8i3e as )CLcs.
Liberando o acesso ,elnet para um Rnico host (confg-line)#
Router7enable
Router9confgure terminal
Router(con<?)9access-list *) permit host *)?(?(?+ Cria.
Router(con<?)9line vt# ) (7 Ha3ilita o Telnet.
Router(con<?4line)9access-class *) in )plica a )CL no 2odo Telnet.
=-, (confg-if)# 6 (confg)#
=-, 2tatic (confg-if)# 6 (confg)#
Router7enable
Router9confgure terminal
Router(con<?)9interface Bnome da interfaceE &ntra na inter5ace.
Router(con<?4i5)9ip nat inside "e<ne a Inter5ace Pri#ada (Rede Interna).
Router(con<?4i5)9ip nat outside "e<ne a Inter5ace PG3lica (Rede &8terna
hInterneti).
Router(con<?)9ip nat inside source static BIB Brivado do DostE BIB
BRblico do /outer defnido na porta outsideE Cria o ()T &stStico.
Router9ip nat statistics &8i3e in5or2a@Aes do ()T.
Router(con<?)9no ip nat inside source static (>*?(@A?()?( *)(?(;;?@@?*
Re2o#e o ()T &stStico.
Con<?ura@6o de &8e2plo:
Router(con<?)9interface Nast5thernet )6( &ntra.
Router(con<?4i5)9ip nat inside "e<ne co2o Pri#ada.
Router(con<?)9interface Nast5thernet )6) &ntra.
Router(con<?4i5)9ip nat outside "e<ne co2o PG3lica.
Router(con<?)9ip nat inside source static (>*?(@A?()?( *)(?(;;?@@?*
Cria.
Router9ip nat statistics &8i3e.
=-, G#namic (confg-if)# 6 (confg)#
Router7enable
Router9confgure terminal
Router(con<?)9interface Bnome da interfaceE &ntra na inter5ace.
Router(con<?4i5)9ip nat inside "e<ne a Inter5ace Pri#ada (Rede Interna).
Router(con<?4i5)9ip nat outside "e<ne a Inter5ace PG3lica (Rede &8terna
hInterneti).
Router(con<?)9access-list B( atS >>E permit B/ede BrivadaE BQildcardE
(esta )CL de#er6o estar os IPcs Pri#ados :ue sair6o para a Internet.
Router(con<?)9ip nat pool Bnome do BoolE BIB InicialE BIB NinalE netmas"
BmFscaraE (este Pool de#er6o estar os IPcs PG3licos.
Router(con<?)9ip nat inside source list BnT da -CLE pool Bnome do BollE
Cria u2 ()T "inb2ico.
Router9ip nat statistics &8i3e in5or2a@Aes do ()T.
Router(con<?)9no ip nat inside source list BnT da -CLE pool Bnome do
BollE Re2o#e o Pool.
Router(con<?)9no ip nat pool Bnome do BoolE BIB InicialE BIB NinalE
netmas" BmFscaraE Re2o#e o Pool de IPcs PG3licos.
Router(con<?)9no access-list B( atS >>E permit B/ede BrivadaE BQildcardE
Re2o#e a )CL.
Con<?ura@6o de &8e2plo:
Router(con<?)9interface Nast5thernet )60 &ntra.
Router(con<?4i5)9ip nat inside "e<ne co2o Pri#ada.
Router(con<?)9interface 2erial )6) &ntra.
Router(con<?4i5)9ip nat outside "e<ne co2o PG3lica.
Router(con<?)9access-list *0 permit (>*?(@A?()?) )?0.0.O Cria a )CL.
Router(con<?)9ip nat pool publico *))?*))?7)?+ *))?*))?7)?@ netmas"
*77?*77?*77?*;A "e<nindo IPcs do Pool.
Router(con<?)9ip nat inside source list *) pool publicoE Cria o ()T
"inb2ico.
=-, Kverload (confg-if)# 6 (confg)#
Router7enable
Router9confgure terminal
Router(con<?)9interface Bnome da interfaceE &ntra na inter5ace.
Router(con<?4i5)9ip nat inside "e<ne a Inter5ace Pri#ada (Rede Interna).
Router(con<?4i5)9ip nat outside "e<ne a Inter5ace PG3lica (Rede &8terna
hInterneti).
Router(con<?)9access-list B( atS >>E permit B/ede BrivadaE BQildcardE
(esta )CL de#er6o estar os IPcs Pri#ados :ue sair6o para a Internet.
Router(con<?)9ip nat inside source list BnT da -CLE interface Binterface
outsideE overload Cria u2 ()T %#erload.
Router9ip nat statistics &8i3e in5or2a@Aes do ()T.
Router(con<?)9no ip nat inside source list BnT da -CLE interface
Binterface outsideE overload Re2o#e o ()T %#erload.
Router(con<?)9no access-list B( atS >>E permit B/ede BrivadaE BQildcardE
Re2o#e a )CL.
Con<?ura@6o de &8e2plo:
Router(con<?)9interface Nast5thernet )60 &ntra.
Router(con<?4i5)9ip nat inside "e<ne co2o Pri#ada.
Router(con<?)9interface 2erial )6) &ntra.
Router(con<?4i5)9ip nat outside "e<ne co2o PG3lica.
Router(con<?)9access-list (0 permit (>*?(@A?)?) )?0.0.*77 Cria a )CL.
Router(con<?)9ip nat inside source list (0 interface serial )6) overloadE
Cria o ()T %#erload.
Nrame-/ela# (confg-if)#
Router7enable
Router9confgure terminal
Router(con<?)9interface Bnome da interfaceE &ntra na inter5ace.
Router(con<?4i5)9encapsulation frame-rela# "e<ne o ra2e4RelaM Cisco.
Router(con<?4i5)9encapsulation frame-rela# ietf "e<ne o ra2e4RelaM
I&T.
Router(con<?4i5)9frame-rela# lmi-t#pe Bansi / cisco / $>++aE "e<ne o
tipo de L$I.
Router(con<?4i5)9frame-rela# interface-dlci BdlciE Insere o "LCI do
Circuito 0irtual.
Con<?ura@6o de &8e2plo:
SP%:
Router(con<?4i5)9encapsulation frame-rela# "e<ne o ra2e4RelaM Cisco.
Router(con<?4i5)9frame-rela# interface-dlci (() Insere o "LCI do Circuito
0irtual.
Router(con<?4i5)9ip address *))?()?()?( *77?*77?*77?*7* Insere IP na
Inter5ace.
*H:
Router(con<?4i5)9encapsulation frame-rela# "e<ne o ra2e4RelaM Cisco.
Router(con<?4i5)9frame-rela# interface-dlci *() Insere o "LCI do Circuito
0irtual.
Router(con<?4i5)9ip address *))?*)?*)?( *77?*77?*77?*7* Insere IP na
Inter5ace.
Central:
Router(con<?)9interface BserialE?B sub-interfaceE point-to-point Cria
u2a Su34Inter5ace.
Da na Serial Router(con<?4i5)9encapsulation frame-rela# "e<ne o
ra2e4RelaM Cisco. %*S.: )plicar so2ente na Serial ;sica.
Qa Router(con<?4i5)9interface serial )6)6)?()) point-to-point Cria u2a
Su34Inter5ace.
Ka Router(con<?4i5)9frame-rela# interface-dlci ()) Insere o "LCI do
Circuito 0irtual.
Ja Router(con<?4i5)9ip address *))?()?()?* *77?*77?*77?*7* Insere IP
na Inter5ace.
Router(con<?4i5)9interface serial )6)6)?*)) point-to-point Cria u2a Su34
Inter5ace.
Router(con<?4i5)9frame-rela# interface-dlci *)) Insere o "LCI do Circuito
0irtual.
Router(con<?4i5)9ip address *))?*)?*)?* *77?*77?*77?*7* Insere IP na
Inter5ace.
Q-= Brotocol BBB (confg-if)#
-uthentication CD-B
Router7enable
Router9confgure terminal
Router(con<?)9interface Bnome da interfaceE &ntra na inter5ace.
Router(con<?4i5)9encapsulation ppp "e<ne o Protocolo PPP no LinU Serial.
Router(con<?4i5)9ppp authentication chap "e<ne a )utentica@6o CH)P no
LinU.
Router(con<?)9username Bhostname router remotoE pass!ord Bsenha
em comumE Insere no2e e senha para a )utentica@6o.
Router 9sho! interfaces Bnome da interface serialE &8i3e in5or2a@Aes
so3re a inter5ace.
Con<?ura@6o de &8e2plo:
R):
Router(con<?4i5)9 encapsulation ppp "e<ne o Protocolo PPP.
Router(con<?4i5)9 ppp authentication chap "e<ne a )utentica@6o CH)P.
Router(con<?4i5)9 username /. pass!ord cisco Insere no2e e senha
para a )utentica@6o.
Con<?ura@6o de &8e2plo:
R*:
Router(con<?4i5)9 encapsulation ppp "e<ne o Protocolo PPP.
Router(con<?4i5)9 ppp authentication chap "e<ne a )utentica@6o CH)P.
Router(con<?4i5)9 username /- pass!ord cisco Insere no2e e senha
para a )utentica@6o.
K.2?& Confgurar o Brotocolo 5IL/B em ,odas as /otas?
-uthentication B-B
Router7enable
Router9confgure terminal
Router(con<?)9interface Bnome da interfaceE &ntra na inter5ace.
Router(con<?4i5)9encapsulation ppp "e<ne o Protocolo PPP no LinU Serial.
Router(con<?4i5)9ppp authentication pap "e<ne a )utentica@6o P)P no
LinU.
Router(con<?4i5)9ppp pap sent-username Bnome do host localE pass!ord
BsenhaE &n#ia seu no2e e senha no P)P.
Router(con<?)9username Bhostname router remotoE pass!ord Bsenha
em comumE ,suSrio do Router Re2oto + senha e2 co2u2 da
)utentica@6o.
Router9sho! interfaces Bnome da interface serialE &8i3e in5or2a@Aes
so3re a inter5ace.
Con<?ura@6o de &8e2plo:
RC:
Router(con<?4i5)9 encapsulation ppp "e<ne o Protocolo PPP.
Router(con<?4i5)9 ppp authentication pap "e<ne a )utentica@6o P)P.
Router(con<?4i5)9ppp pap sent-username /C pass!ord cisco &n#ia seu
no2e e senha no P)P.
Router(con<?4i5)9 username /. pass!ord cisco Insere no2e e senha
para a )utentica@6o.
Con<?ura@6o de &8e2plo:
R*:
Router(con<?4i5)9 encapsulation ppp "e<ne o Protocolo PPP.
Router(con<?4i5)9 ppp authentication pap "e<ne a )utentica@6o P)P.
Router(con<?4i5)9ppp pap sent-username /. pass!ord cisco &n#ia seu
no2e e senha no P)P.
Router(con<?4i5)9 username /C pass!ord cisco Insere no2e e senha
para a )utentica@6o.
/edes Convergentes
()T
Rota Padr6o P Rota &stStica
)CL
%SP
Ha3ilitar o Telnet e depois:
(con<?)9access-list 7) permit
line vt# ) (7
access-class 7) in

Você também pode gostar