Switch: Clicar pressionar enter (entra no switch).
Router: CTRL + C Para cancelar e dar enter (entra no router). Slot HWIC CTRL + SHIT + ! "estra#a. > $%"% &'&C. # $%"% &()*L&. (confg)# $%"% "& C%(I+,R)-.% +L%*)L. (confg-line)# $%"% C%(S%L& / $odo 0T1 (confg-if)# "entro de u2a I(T&R)C& (confg-if-range)# "entro de u2a R)(+& (dhcp-confg)# "entro de u2 P%%L "HCP. (confg-vlan)# "entro de u2a 0L)(. (confg-subif)# "entro de u2a Su34Inter5ace. (confg-router)# "entro de u2 protocolo de Rotea2ento. (confg-std-nacl)# "entro de u2a )CL Padr6o (o2eada. (confg-ext-nacl)# "entro de u2a )CL &stendida (o2eada. $%"% &()*L& # 7enable Sai do 2odo e8ec e entra no 2odo ena3le. 9reload + enter Reinicia o e:uipa2ento. 9disable Sai do 2odo ena3le e #olta para o 2odo e8ec. 9exit + enter Retorna ao 2odo e8ec. 9 &8i3e os co2andos dispon;#eis no 2odo ena3le. 9conf &8i3e os co2andos co2 o pre<8o =con5>. 9sho! &8i3e os ar?u2entos do co2ando =show>. 9sho! logging &8i3e os lo?s do e:uipa2ento. 9sho! version &8i3e in5or2a@Aes do e:uipa2ento. 9sho! interfaces Binterface (5ast&thernet C/D)E &8i3e detalhes de u2a inter5ace. 9sho! ip interface brief &8i3e in5or2a@Aes resu2idas das inter5aces. 9sho! cloc" &8i3e a data e a hora. 9sho! cdp &8i3e os ti2ers do C"P. 9sho! cdp neighbors &8i3e in5or2a@Aes dos #iFinhos C"P. 9sho! cdp entr# Bnome do e$uipamento (Rio)E &8i3e detalhes de u2 e:uipa2ento. 9sho! %ash& &8i3e o conteGdo da 2e2Hria Iash. !JCD!KLJ 3Mtes total (!CNOLKK! 3Mtes 5ree). Con#erter para 2e?a e su3trair P KCOLCJL (QNL!.KL R*. Q.ND!KL $*). 9sho! startup-confg &8i3e o ar:ui#o startup4con<?. 9sho! running-confg &8i3e o ar:ui#o runnin?4con<?. 9sho! mac-address-table &8i3e a ta3ela C)$ do switch. 9sho! arp &8i3e a ta3ela )RP. 9sho! run &8i3e detalhes das inter5aces. 9cloc" set Bhh&mm&ssE B'ul#E B()E B*)(+E )ltera a data e a hora. 9cop# running-confg startup-confg ou !r Sal#a as altera@Aes. $%"% "& C%(I+,R)-.% +L%*)L (confg)# 9confgure terminal &ntra no 2odo de con<?ura@6o ?lo3al. 9conf t =con<?ure ter2inal> a3re#iado. 9conf t + ,-. )uto co2pleta o co2ando =con<?ure ter2inal>. (con<?)9exit ou C,/L + 0 + enter 0olta para o 2odo ena3le. (con<?)9hostname BnomeE )ltera o no2e do e:uipa2ento. (con<?)9banner motd Bcaracter (1)E B2ensa?e2 (2omente pessoal autori3ado4)E Bcaracter (1)E Insere u2 3anner no e:uipa2ento. (con<?)9no cdp run "esati#a o processo C"P. (con<?)9cdp run )ti#a o processo C"P. "entro de u2a I(T&R)C& (confg-if)# (con<?)9interface Bno2e da inter5ace (fast5thernet )67)E &ntra na inter5ace (porta). (con<?4i5)9shutdo!n "esati#a u2a inter5ace. (con<?4i5)9no shutdo!n )ti#a u2a inter5ace. (con<?4i5)9speed B()/())/())) (DCC)E "e<ne u2a #elocidade 2anual2ente. (con<?4i5)9duplex Bfull/half (5ull)E "e<ne o duple8 2anual2ente. (con<?4i5)9ip address BipE B2SscaraE Insere ip e 2Sscara na inter5ace. (con<?4i5)9no ip address Re2o#e o ip da inter5ace. (con<?4i5)9description Bdescri89o (?atewaM)E Insere descri@6o na inter5ace. (con<?4i5)9exit Sai da porta e retorna ao 2odo de con<?ura@6o ?lo3al. "entro de u2a R)(+& (confg-if-range)# 7enable 9confgure terminal (con<?)9interface range Binter5ace inicial (fast5thernet )67)E :BnG2ero <nal (*;)E. (con<?4i54ran?e)9speed B#elocidade (DC/())/DCCC)E )ltera a #elocidade da ran?e. (con<?4i54ran?e)9duplex Bfull/hal5E )ltera o 2odo de trans2iss6o da ran?e. (con<?4i54ran?e)9shutdo!n "esati#a as inter5aces da ran?e. (con<?4i54ran?e)9no shutdo!n )ti#a as inter5aces da ran?e. (con<?4i54ran?e)9exit Sai da ran?e e retorna ao 2odo de con<?ura@6o ?lo3al. 9sho! running-confg Para #eri<car as altera@Aes. <L-= (confg-if)# Switch7enable Switch9confgure terminal Switch9sho! vlan brief &8i3e todas as 0L)(S. Switch(con<?)9interface vlan( &ntra na inter5ace 0lanD. Switch(con<?4i5)9no shutdo!n Ha3ilita a inter5ace. Switch(con<?4i5)9ip address (>*?(@A?)?( *77?*77?*77?*;A Insere ip na inter5ace. Switch(con<?4i5)9exit Switch(con<?)9exit Switch9ping (>*?(@A?)?* e5etua pin? contra u2 al#o (se der .TTT P oUV se der W. P deu rui2). Criando <L-=2& <L-= (confg-vlan)# "entro de u2a 0lan. Switch7enable Switch9confgure terminal Switch(con<?)9vlan BnG2ero da #lan (*)E Cria u2a 0L)(. Switch(con<?4#lan)9name Bno2e (<lan*)E Insere no2e na 0L)(. Switch(con<?4i5)9s!itchport access vlan BnG2ero (*)E Insere a porta na 0L)(. Switch(con<?)9no vlan BnG2ero da #lan (*)E Re2o#e a 0L)(. Switch9delete %ash&vlan?dat Re2o#e o ar:ui#o 0lan.dat / Xera o Switch. Bass!ord (confg)# 5nable Bass!ord (confg)# 7enable 9confgure terminal (con<?)9enable pass!ord (*+ Insere senha ena3le plana. (con<?)9enable secret +*( Insere senha ena3le secreta. Obs.: A senha de enable um pr-requisito para o TELNET funcionar. Local Bass!ord and Login (confg)# 7enable 9confgure terminal (con<?)9username Cisco pass!ord *)(+ Inseri lo?in e senha locais. Console Bass!ord (confg-line)# 7enable 9confgure terminal (con<?)9line console ) &ntra no 2odo console. (con<?4line)9pass!ord (*+ Insere a senha console. (con<?4line)9login Ha3ilita a senha console. <,C Bass!ord (confg-line)# 7enable 9confgure terminal (con<?)9line vt# ) (7 &ntra no 2odo 0T1 (Telnet). (con<?4line)9pass!ord (*+ Insere a senha 0T1. (con<?4line)9login Ha3ilita a senha 0T1. Obs.: De 0 a ! " # interfaces habilitadas$ o m%&imo suportado por esse modo. A senha de enable tem que estar habilitada para o recurso de telnet funcionar. Ssh Yl BusuSrioE BipE )cessa o &:uipa2ento #ia telnet. 5ncription (confg)# 7enable 9confgure terminal (con<?)9cr#pto "e# generate rsa +era a cha#e de cripto?ra<a de ODQ 3its. Bass!ord-5ncription (confg)# 7enable 9confgure terminal (con<?)9service pass!ord-encr#ption Cripto?ra5a todas as senhas. ,imeout e 2#slog (confg-line)# 7enable 9confgure terminal (con<?)9line console ) 6 line vt# ) (7 (con<?4line)9exec-timeout @) )ltera o ti2eout (te2po de espera). (con<?4line)9logging s#nchronous SincroniFa as 2ensa?ens sMslo?. 22D (confg-line)# 7enable 9confgure terminal (con<?)9hostname Bno2e do e:uipa2ento (Ecur#)E )ltera o no2e do e:uipa2ento. (con<?)9ip domain-name Bno2e de "o2;nio (Ecur#)E Inseri u2 do2;nio no e:uipa2ento. (con<?)9username BusuSrio (mcur#)E password Bsenha (cisco)E Insere u2 lo?in e senha locais. (con<?)9cr#pto "e# generate rsa +era a cha#e de cripto?ra<a RS). (con<?)9line vt# ) (7 &ntra no 2odo 0T1. (con<?4line)9login local Ha3ilita o lo?in local no e:uipa2ento. (con<?4line)9transport input ssh Per2ite o trS5e?o SSH. %*S.: ssh :L BusuFrioE BipE )cessa o e:uipa2ento #ia telnet. =ame (confg)# 7enable 9confgure terminal (con<?)9hostname Bno2e do e:uipa2ento (Ecur#)E )ltera o no2e do e:uipa2ento. Bool GDCB (dhcp-confg)# Router7enable Router9confgure terminal Router(con<?)9ip dhcp pool HnomeI Cria u2 Poll "HCP. Router(dhcp4con<?)9net!or" (>*?(@A?()?( *77?*77?*77?*;A "e<ne a rede a ser distri3u;da. Router(dhcp4con<?)9default-router (>*?(@A?()?*7; Inseri u2 +atewaM no Pool. Router(dhcp4con<?)9dns-server (>*?(@A?()?*7; Inseri u2 "(S no Poll. Router(dhcp4con<?)9lease HdiasI )ltera o te2po de concess6o. (SH no e:uipa2ento realV no pacUet tracer !.C n6o aceita o co2ando). Router(dhcp4con<?)9ip dhcp excluded-address (>*?(@A?()?( Inseri u2a e8clus6o de ip. %3s.: Trans5or2a u2 roteador e2 u2 "HCP. 2panning ,ree Brotocol (confg)# Switch7enable Switch9sho! spanning-tree &8i3e in5or2a@Aes do Spannin? Tree. Switch(con<?)9spanning-tree vlan ( priorit# +) Para #isualiFar os #alores aceitS#eis. "epois 3asta repetir o co2ando e su3stituir o nG2ero KC por u2 #alor Z KQ[!L. )ltera o #alor da prioridade. Switch(con<?)9spanning-tree portfast "esati#a os ti2ers do spannin?4 tree (SH o da Cisco). Switch(con<?)9spanning-tree mode rapid-pvst )ltera para o Rapid4P0ST (Spannin?4Tree da Cisco). Borts (confg-if)# -ccess Bort )ssocia4se so2ente a u2a 0L)(. "e<nida para conte8to e2 dispositi#os <nais. ,run" Bort ,sada para per2itir o trS5e?o de 2ais de u2a 0L)(. (6o se associa a u2a 0L)( espec;<caV de#e ser plu?ada a e:uipa2entos co2 suporte ao LCQ.D\ (dot D\ / . D\). Switch7enable Switch9confgure terminal Switch(con<?)9interface Binter5ace (fast5thernet )6*;)E &ntra na inter5ace QJ. Switch(con<?4i5)9s!itchport mode Baccess ou trun"E "e<ne a porta co2o )ccess ou TrunU. Switch9sho! running-confg Para #isualiFar as inter5aces no 2odo access. Switch9sho! vlan brief Para #isualiFar as inter5aces. 2ub-Interfaces (confg-subif)# Router7enable Router9confgure terminal Router(con<?)9interface fast5thernet )6)?() Cria u2a Su34Inter5ace. Router(con<?4su3i5)9encapsulation dot(J () =)2arra> a Su34Inter5ace ] 0L)(. Router(con<?4su3i5)9ip address ()?(?(?* *77?*77?*77?*7* Insere IP e $Sscara. <,B Brotocol (confg-if)# Switch7enable Switch9confgure terminal Switch(con<?)9vtp mode Bserver / client / transparentE "e<ne o 2odo de opera@6o 0TP. ^ Ser#er P CriaV de<ne e e8clui 0L)(. Client P SH #_ 0L)(. Transparent P 0_ a 0L)(V 2as n6o associa o ca2inho da 0TP. Switch(con<?)9vtp domain Bno2e do do2;nio (mcur#)E "e<ne o no2e do "o2;nio. Switch(con<?)9vtp pass!ord Bsenha ((*+)E "e<ne u2a senha 0TP. Switch9sho! vtp pass!ord &8i3e a senha 0TP. Switch9sho! vtp status &8i3e in5or2a@Aes so3re o 0TP. 5therchannel (confg-if-range)# Switch7enable Switch9confgure terminal Switch(con<?)9interface range fast5thernet )67 -*; Switch(con<?4i54ran?e)9channel-group BnG2ero (()E mode on Cria u2 Port4Channel na Ran?e. ^ (o 2S8i2o at` ! a?re?a@Aes co2 L portas por a?re?a@6o. ^ Se2pre te2 :ue ser 5eito e2 portas se:uenciais: QV KV J... Switch(con<?4i54ran?e)9interface port-channel Bna (()E &ntra na porta #irtual criada pelo Channel4+roup. Switch9sho! ip interface brief 0eri<ca as inter5aces. 0erando o 2!itch # Switch7enable Switch9delete vlan?dat &8clui o ar:ui#o 0L)(.")T da 2e2Hria lash (Xerando o switch). Switch9reload Reinicia o Switch. 0erando o /outer # Router7enable Router 9erase startup-confg Xera o Router. Router 9reload Reinicia o Router. ^%*S: Responder =K ] per?unta se n6o ele sal#a de no#o. /outes (confg)# Router7enable Router9confgure terminal Router(con<?)9ip route Brede destino ((>*?(@A?*)?))E B2Sscara destino (*77?*77?*77?*7*)E Bip prH8i2o salto (*))?()?()?*)E Cria u2a rota. ^ %*S.: Pode ser: &stStica (2anual2ente)V Conectada (auto2Stica ou direta2ente conectada) e "inb2ica (protocolo de rotea2ento P RIPV *+PV %SP...). ^ Rota espec;<ca P Cria u2a rota espec;<ca para u2 Gnico PC. Router9sho! ip route &8i3e a ta3ela de rotas. Router9sho! ip route connected &8i3e as rotas Conectadas. Router9sho! ip route static &8i3e as rotas &stSticas. Bort-2ecurit# (confg-if)# Switch7enable Switch9confgure terminal Switch(con<?)9 Switch(con<?)9interface Binter5ace (fast5thernet )6*;)E Para entrar na inter5ace. Switch(con<?4i5)9s!itchport port-securit# Ha3ilita o Protocolo Port4 SecuritM. Switch(con<?4i5)9s!itchport port-securit# mac-address stic"# =)2arra> o 2ac dina2ica2ente. ^ Ir no PC e pin?ar para ?erar trS5e?o de pacotes para o reconheci2ento. Switch(con<?4i5)9s!itchport port-securit# mac-address B8888.8888.8888E =)2arra> o 2ac 2anual2ente. ^ "e<ne :uais s6o. Switch(con<?4i5)9s!itchport port-securit# maximum Bna :ue #oc_ :uer (;)E )ltera a :uantidade de 2accs na porta. ^ "e<ne :uantos s6o. Switch9sho! run Para #isualiFar detalhes das inter5aces. Switch9sho! port-securit# &8i3e in5or2a@Aes de controle do Port4SecuritM. Switch9sho! port-securit# address &8i3e in5or2a@Aes do Port4SecuritM. Switch9sho! port-securit# interface Binter5ace (fastethernet )6()E &8i3e in5or2a@Aes do Port4SecuritM na inter5ace. /IB - Brotocolo de /oteamento (confg-router)# Router7enable Router9confgure terminal Router(con<?)9router rip Ha3ilita o RIP no Router. Router(con<?4router)9net!or" Brede conectada ((>*?(@A?()?))E )nuncia as rotas conectadas. Router(con<?4router)9rip version * )ltera o RIP para a #ers6o Q. Router(con<?4router)9no auto-summar# "esa3ilita a auto su2ariFa@6o. ^ Su2ariFar P &n?lo3ar 2ais de u2a rede nu2a Gnica rota. Router(con<?4router)9passive-interface Binter5ace (fastethernet )6))E "esa3ilita os up4dates RIP na porta. Router9sho! ip route rip &8i3e as rotas do Protocolo RIP. Router9sho! ip protocols &8i3e os protocolos instalados no router. Router9debug ip rip Ha3ilita os e#entos do protocolo RIP. Router9no debug ip rip "esa3ilita os e#entos do protocolo RIP. Router9debug ip &8i3e as op@Aes do ="e3u? IP>. Router9no debug all "esa3ilita todos os 2onitora2entos do "e3u?. 5IL/B - Brotocolo de /oteamento (confg-router)# Router7enable Router9confgure terminal Router(con<?)9router eigrp Bna de )S P Siste2a )utdno2o (()))E Ha3ilita o &I+RP no Router. ^ )S P Se a e2presa esti#er na internet #eri<car o naV se n6oV pode ser :ual:uer u2 desde :ue o 2es2o na escolhido seea con<?urado e2 todos os Routers. Router(con<?4router)9net!or" Brede conectada ((>*?(@A?()?))E Bwildcard ()?)?)?+)E )nuncia as rotas conectadas. Router9sho! ip route eigrp &8i3e a ta3ela de rotas do &I+RP. Router(con<?4router)9no auto-summar# "esa3ilita a auto su2ariFa@6o. ^ Su2ariFar P &n?lo3ar 2ais de u2a rede nu2a Gnica rota. Router(con<?4i5)9band!idth B3anda e2 U3ps (*);A)E Insere in5or2a@Aes de 3anda na inter5ace. ^ $enor 3anda P $aior o Custo f $aior 3anda P $enor o Custo. Router9sho! ip route eigrp &8i3e as rotas do Protocolo &I+RP. Router9sho! ip eigrp neighbor &8i3e a ta3ela de #iFinhos. Router9sho! ip eigrp topolog# &8i3e o 2apa topolH?ico. Brotocolos La#er * Bara Lin"Ms 2eriais (confg-if)# ^ H"LC Padr6o CISC%V 5aF controle de Iu8oV ` o de5ault das inter5aces seriais. ^ PPP Padr6o I&&&V g o 2ais usado e2 linUcs seriais no 2undoV 5aF controle de Iu8oV per2ite autentica@6o e suporta 2Gltiplos protocolos laMer K. Router9sho! interfaces Binter5ace serial (serial )6)6))E &8i3e detalhes da inter5ace. Router(con<?4i5)9encapsulation ppp )ltera o encapsula2ento da inter5ace para PPP. K2BN - Brotocolo de /oteamento (confg-router)# K2BN /ede Boint to Boint (confg-router)# Router7enable Router9confgure terminal Router(con<?)9router ospf Bna de Processa2ento (())E Ha3ilita o %SP no Router. Router(con<?4router)9net!or" Brede (()?(?(?))E Bwildcard ()?)?)?O)E area Bna da area (())E )nuncia a rede especi<cada. Router(con<?4router)9passive-interface Binter5ace (fastethernet )6))E "esa3ilita os up4dates do %SP na inter5ace. Router(con<?4i5)9band!idth B3anda e2 U3ps (()))E Insere in5or2a@Aes de 3anda na inter5ace. ^ $enor 3anda P $aior o Custo f $aior 3anda P $enor o Custo. Router9sho! ip route ospf &8i3e as rotas do Protocolo %SP. Router9sho! ip ospf interface Binter5ace (serial )6)6))E &8i3e in5or2a@Aes do %SP na inter5ace. Router9sho! ip ospf neighbor &8i3e os #iFinhos %SP. ^ ("R / *"R / "R %ther). Router9sho! ip ospf database &8i3e a ta3ela TopolH?ica. ^ Redes $ulticast: &thernet P Possui suporte ao trS5e?o de 3roadcast e ra2e4 relaM P (6o possui suporte ao trS5e?o de 3roadcast. K2BN /ede Boint to Eultipoint (confg-router)# ^ "R P Roteador "esi?nado. echa adeac_ncia co2 os de2ais Routers. ResponsS#el por propa?ar as rotas na rede 2ulti4acesso. (% Router co2 o 2aior I" ` eleito). ^ *"R P Roteador "esi?nado *acUup. ResponsS#el por su3stituir o "RV caso ele #enha a 5alhar na rede. (% Router co2 o Qa 2aior I" serS o eleito). ^ "R %ther P S6o todos os outros Roteadores da rede. Nor8a a 5lei89o do G/ (confg-router)# Router7enable Router9confgure terminal Router(con<?)9router ospf Bna de Processa2ento (())E Ha3ilita o %SP no Router. Router(con<?4router)9router-id Bid (*77?*77?*77?*7*)E "e<ne o Router4I" do %SP. Router9clear ip ospf process Reinicia o processo %SP. -CL (-ccess Control Lists) -CL Badr9o =umerada (confg)# Router7enable Router9confgure terminal Router(con<?)9access-list Bna de )CL de D at` NN (())E Bper2it / denM (den#)E BIP ori?e2 (()?(?(?()E BWildcard (0.0.0.0 :uando 5or hostV caso seea para rede calcular e usar o correspondente)E ou -ccess-list H()I Hden#I host H()?(?(?(I Cria u2a )CL Padr6o (u2erada. Router(con<?)9access-list Bna da )CL (())E re2arU B$ensa?e2 (,esteP-CLP=umerada)E Insere u2 te8to na )CL (u2erada. Router(con<?)9access-list Bna da )CL (())E Bper2it / denM (permit)E anM Ha3ilita o acesso a todas as de2ais rotas. Router(con<?4i5)9ip access-group Bna da )CL (())E Bin / out (out)E )plica a )CL (u2erada na inter5ace. Router9sho! -ccess lists &8i3e in5or2a@Aes das )CLcs. Router(con<?)9no access-list Bna da )CL (())E Re2o#e u2a )CL (u2erada. -CL Badr9o =omeada (confg-std-nacl)# Router7enable Router9confgure terminal Router(con<?)9ip access-list standard Bno2e da )CL (de3)E Cria u2a )CL Padr6o (o2eada. Router(con<?4std4nacl)9Bper2it / denM (den#)E BIP ori?e2 (()?(?(?()E BWildcard (0.0.0.0)E ou Bden#E host B()?(?(?(E Cria u2a Re?ra na )CL (o2eada. Router(con<?4std4nacl)9remar" B$ensa?e2 (,esteP-CLP=omeada)E Insere u2a $ensa?e2 na )CL (o2eada. Router(con<?4std4nacl)9Bper2it / denM (permit)E anM Ha3ilita o acesso nas de2ais rotas. Router(con<?4i5)9ip access-group Bno2e da )CL (de3)E Bin / out (out)E )plica a )CL (o2eada na inter5ace. Router9sho! access lists &8i3e in5or2a@Aes das )CLcs. Router(con<?)9no ip access-list standard Bno2e da )CL (de3)E Re2o#e u2a )CL (o2eada. -CL 5stendida =umerada (confg)# Router7enable Router9confgure terminal Router(con<?)9access-list Bna de )CL de DCC at` DNN (()))E Bper2it / denM (den#)E Bprotocolo (tcp)E BIP %ri?e2 (()?(?(?()E BWildcard %ri?e2 ()?)?)?O)E BIP "estino (*)?(?(?()E BWildcard "estino ()?)?)?O)E e$ Bporta (A))E ou access- list B())E Bden#E BtcpE host B()?(?(?(E host B*)?(?(?(E e: BA)E Cria u2a )CL &stendida (u2erada. Router(con<?4i5)9ip access-group Bna de )CL (()))E Bin / out (in)E )plica a )CL (u2erada na inter5ace. Router(con<?)9no access-list Bna de )CL (()))E Re2o#e u2a )CL (u2erada. Con<?ura@6o de &8e2plo: Router(con<?)9access-list ()) den# tcp host ()?(?(?( host *)?(?(?( e$ A) Cria. Router(con<?)9access-list ()) permit icmp host ()?(?(?* host *)?(?(?* Cria. Router(con<?)9access-list ()) den# icmp host ()?(?(?0 )?0.0.O *)?(?(?) )?)?)?O Cria. Router(con<?)9access-list ()) permit ip an# an# Per2ite o acesso nas de2ais rotas. Router(con<?)9access-list ()) remar" -CLP5stendidaP=umerada Insere $ensa?e2. Router(con<?4i5)9ip access-group ()) in )plica a )CL na inter5ace. Router9sho! access lists &8i3e as )CLcs. -CL 5stendida =omeada (confg-ext-nacl)# Router7enable Router9confgure terminal Router(con<?)9ip access-list extended Bno2e da )CL (<irgem)E Cria u2a )CL &stendida (o2eada. Router(con<?4e8t4nacl)9Bper2it / den#E BprotocoloE BIB KrigemE BQildcard KrigemE BIB GestinoE BQildcard GestinoE e$ BportaE Cria u2a re?ra na )CL (o2eada. Router(con<?4e8t4nacl)9remar" BmensagemE Insere descri@6o na )CL (o2eada. Con<?ura@6o de &8e2plo: Router(con<?)9ip access-list extended <irgem Cria a )CL. Router(con<?4e8t4nacl)9den# tcp host ()?(?(?( host *)?(?(?( e$ A) Cria a Re?ra. Router(con<?4e8t4nacl)9permit icmp host ()?(?(?* host *)?(?(?* Cria a Re?ra. Router(con<?4e8t4nacl)9den# icmp ()?(?(?) )?)?)?O *)?(?(?) )?)?)?O Cria a Re?ra. Router(con<?4e8t4nacl)9permit ip an# an# Per2ite o acesso nas de2ais rotas. Router(con<?4e8t4nacl)9remar" -CLP5stendidaP=omeada Insere $ensa?e2. Router(con<?4i5)9ip access-group <irgem in )plica a )CL na inter5ace. Router9sho! access lists &8i3e as )CLcs. Liberando o acesso ,elnet para um Rnico host (confg-line)# Router7enable Router9confgure terminal Router(con<?)9access-list *) permit host *)?(?(?+ Cria. Router(con<?)9line vt# ) (7 Ha3ilita o Telnet. Router(con<?4line)9access-class *) in )plica a )CL no 2odo Telnet. =-, (confg-if)# 6 (confg)# =-, 2tatic (confg-if)# 6 (confg)# Router7enable Router9confgure terminal Router(con<?)9interface Bnome da interfaceE &ntra na inter5ace. Router(con<?4i5)9ip nat inside "e<ne a Inter5ace Pri#ada (Rede Interna). Router(con<?4i5)9ip nat outside "e<ne a Inter5ace PG3lica (Rede &8terna hInterneti). Router(con<?)9ip nat inside source static BIB Brivado do DostE BIB BRblico do /outer defnido na porta outsideE Cria o ()T &stStico. Router9ip nat statistics &8i3e in5or2a@Aes do ()T. Router(con<?)9no ip nat inside source static (>*?(@A?()?( *)(?(;;?@@?* Re2o#e o ()T &stStico. Con<?ura@6o de &8e2plo: Router(con<?)9interface Nast5thernet )6( &ntra. Router(con<?4i5)9ip nat inside "e<ne co2o Pri#ada. Router(con<?)9interface Nast5thernet )6) &ntra. Router(con<?4i5)9ip nat outside "e<ne co2o PG3lica. Router(con<?)9ip nat inside source static (>*?(@A?()?( *)(?(;;?@@?* Cria. Router9ip nat statistics &8i3e. =-, G#namic (confg-if)# 6 (confg)# Router7enable Router9confgure terminal Router(con<?)9interface Bnome da interfaceE &ntra na inter5ace. Router(con<?4i5)9ip nat inside "e<ne a Inter5ace Pri#ada (Rede Interna). Router(con<?4i5)9ip nat outside "e<ne a Inter5ace PG3lica (Rede &8terna hInterneti). Router(con<?)9access-list B( atS >>E permit B/ede BrivadaE BQildcardE (esta )CL de#er6o estar os IPcs Pri#ados :ue sair6o para a Internet. Router(con<?)9ip nat pool Bnome do BoolE BIB InicialE BIB NinalE netmas" BmFscaraE (este Pool de#er6o estar os IPcs PG3licos. Router(con<?)9ip nat inside source list BnT da -CLE pool Bnome do BollE Cria u2 ()T "inb2ico. Router9ip nat statistics &8i3e in5or2a@Aes do ()T. Router(con<?)9no ip nat inside source list BnT da -CLE pool Bnome do BollE Re2o#e o Pool. Router(con<?)9no ip nat pool Bnome do BoolE BIB InicialE BIB NinalE netmas" BmFscaraE Re2o#e o Pool de IPcs PG3licos. Router(con<?)9no access-list B( atS >>E permit B/ede BrivadaE BQildcardE Re2o#e a )CL. Con<?ura@6o de &8e2plo: Router(con<?)9interface Nast5thernet )60 &ntra. Router(con<?4i5)9ip nat inside "e<ne co2o Pri#ada. Router(con<?)9interface 2erial )6) &ntra. Router(con<?4i5)9ip nat outside "e<ne co2o PG3lica. Router(con<?)9access-list *0 permit (>*?(@A?()?) )?0.0.O Cria a )CL. Router(con<?)9ip nat pool publico *))?*))?7)?+ *))?*))?7)?@ netmas" *77?*77?*77?*;A "e<nindo IPcs do Pool. Router(con<?)9ip nat inside source list *) pool publicoE Cria o ()T "inb2ico. =-, Kverload (confg-if)# 6 (confg)# Router7enable Router9confgure terminal Router(con<?)9interface Bnome da interfaceE &ntra na inter5ace. Router(con<?4i5)9ip nat inside "e<ne a Inter5ace Pri#ada (Rede Interna). Router(con<?4i5)9ip nat outside "e<ne a Inter5ace PG3lica (Rede &8terna hInterneti). Router(con<?)9access-list B( atS >>E permit B/ede BrivadaE BQildcardE (esta )CL de#er6o estar os IPcs Pri#ados :ue sair6o para a Internet. Router(con<?)9ip nat inside source list BnT da -CLE interface Binterface outsideE overload Cria u2 ()T %#erload. Router9ip nat statistics &8i3e in5or2a@Aes do ()T. Router(con<?)9no ip nat inside source list BnT da -CLE interface Binterface outsideE overload Re2o#e o ()T %#erload. Router(con<?)9no access-list B( atS >>E permit B/ede BrivadaE BQildcardE Re2o#e a )CL. Con<?ura@6o de &8e2plo: Router(con<?)9interface Nast5thernet )60 &ntra. Router(con<?4i5)9ip nat inside "e<ne co2o Pri#ada. Router(con<?)9interface 2erial )6) &ntra. Router(con<?4i5)9ip nat outside "e<ne co2o PG3lica. Router(con<?)9access-list (0 permit (>*?(@A?)?) )?0.0.*77 Cria a )CL. Router(con<?)9ip nat inside source list (0 interface serial )6) overloadE Cria o ()T %#erload. Nrame-/ela# (confg-if)# Router7enable Router9confgure terminal Router(con<?)9interface Bnome da interfaceE &ntra na inter5ace. Router(con<?4i5)9encapsulation frame-rela# "e<ne o ra2e4RelaM Cisco. Router(con<?4i5)9encapsulation frame-rela# ietf "e<ne o ra2e4RelaM I&T. Router(con<?4i5)9frame-rela# lmi-t#pe Bansi / cisco / $>++aE "e<ne o tipo de L$I. Router(con<?4i5)9frame-rela# interface-dlci BdlciE Insere o "LCI do Circuito 0irtual. Con<?ura@6o de &8e2plo: SP%: Router(con<?4i5)9encapsulation frame-rela# "e<ne o ra2e4RelaM Cisco. Router(con<?4i5)9frame-rela# interface-dlci (() Insere o "LCI do Circuito 0irtual. Router(con<?4i5)9ip address *))?()?()?( *77?*77?*77?*7* Insere IP na Inter5ace. *H: Router(con<?4i5)9encapsulation frame-rela# "e<ne o ra2e4RelaM Cisco. Router(con<?4i5)9frame-rela# interface-dlci *() Insere o "LCI do Circuito 0irtual. Router(con<?4i5)9ip address *))?*)?*)?( *77?*77?*77?*7* Insere IP na Inter5ace. Central: Router(con<?)9interface BserialE?B sub-interfaceE point-to-point Cria u2a Su34Inter5ace. Da na Serial Router(con<?4i5)9encapsulation frame-rela# "e<ne o ra2e4RelaM Cisco. %*S.: )plicar so2ente na Serial ;sica. Qa Router(con<?4i5)9interface serial )6)6)?()) point-to-point Cria u2a Su34Inter5ace. Ka Router(con<?4i5)9frame-rela# interface-dlci ()) Insere o "LCI do Circuito 0irtual. Ja Router(con<?4i5)9ip address *))?()?()?* *77?*77?*77?*7* Insere IP na Inter5ace. Router(con<?4i5)9interface serial )6)6)?*)) point-to-point Cria u2a Su34 Inter5ace. Router(con<?4i5)9frame-rela# interface-dlci *)) Insere o "LCI do Circuito 0irtual. Router(con<?4i5)9ip address *))?*)?*)?* *77?*77?*77?*7* Insere IP na Inter5ace. Q-= Brotocol BBB (confg-if)# -uthentication CD-B Router7enable Router9confgure terminal Router(con<?)9interface Bnome da interfaceE &ntra na inter5ace. Router(con<?4i5)9encapsulation ppp "e<ne o Protocolo PPP no LinU Serial. Router(con<?4i5)9ppp authentication chap "e<ne a )utentica@6o CH)P no LinU. Router(con<?)9username Bhostname router remotoE pass!ord Bsenha em comumE Insere no2e e senha para a )utentica@6o. Router 9sho! interfaces Bnome da interface serialE &8i3e in5or2a@Aes so3re a inter5ace. Con<?ura@6o de &8e2plo: R): Router(con<?4i5)9 encapsulation ppp "e<ne o Protocolo PPP. Router(con<?4i5)9 ppp authentication chap "e<ne a )utentica@6o CH)P. Router(con<?4i5)9 username /. pass!ord cisco Insere no2e e senha para a )utentica@6o. Con<?ura@6o de &8e2plo: R*: Router(con<?4i5)9 encapsulation ppp "e<ne o Protocolo PPP. Router(con<?4i5)9 ppp authentication chap "e<ne a )utentica@6o CH)P. Router(con<?4i5)9 username /- pass!ord cisco Insere no2e e senha para a )utentica@6o. K.2?& Confgurar o Brotocolo 5IL/B em ,odas as /otas? -uthentication B-B Router7enable Router9confgure terminal Router(con<?)9interface Bnome da interfaceE &ntra na inter5ace. Router(con<?4i5)9encapsulation ppp "e<ne o Protocolo PPP no LinU Serial. Router(con<?4i5)9ppp authentication pap "e<ne a )utentica@6o P)P no LinU. Router(con<?4i5)9ppp pap sent-username Bnome do host localE pass!ord BsenhaE &n#ia seu no2e e senha no P)P. Router(con<?)9username Bhostname router remotoE pass!ord Bsenha em comumE ,suSrio do Router Re2oto + senha e2 co2u2 da )utentica@6o. Router9sho! interfaces Bnome da interface serialE &8i3e in5or2a@Aes so3re a inter5ace. Con<?ura@6o de &8e2plo: RC: Router(con<?4i5)9 encapsulation ppp "e<ne o Protocolo PPP. Router(con<?4i5)9 ppp authentication pap "e<ne a )utentica@6o P)P. Router(con<?4i5)9ppp pap sent-username /C pass!ord cisco &n#ia seu no2e e senha no P)P. Router(con<?4i5)9 username /. pass!ord cisco Insere no2e e senha para a )utentica@6o. Con<?ura@6o de &8e2plo: R*: Router(con<?4i5)9 encapsulation ppp "e<ne o Protocolo PPP. Router(con<?4i5)9 ppp authentication pap "e<ne a )utentica@6o P)P. Router(con<?4i5)9ppp pap sent-username /. pass!ord cisco &n#ia seu no2e e senha no P)P. Router(con<?4i5)9 username /C pass!ord cisco Insere no2e e senha para a )utentica@6o. /edes Convergentes ()T Rota Padr6o P Rota &stStica )CL %SP Ha3ilitar o Telnet e depois: (con<?)9access-list 7) permit line vt# ) (7 access-class 7) in