Escolar Documentos
Profissional Documentos
Cultura Documentos
Console Password:
CORVIT-R1(config)# line console 0
CORVIT-R1(config-line)# password cisco123
CORVIT-R1(config-line)# login
Auxiliary Password:
CORVIT-R1(config)# line aux 0
CORVIT-R1(config-line)# password cisco123
CORVIT-R1(config-line)# login
Telnet/VTY Password:
CORVIT-R1(config)# line vty 0 871
CORVIT-R1(config-line)# password cisco123
CORVIT-R1(config-line)# login
Router> enable
Router# configure terminal
Router(config)# hostname CORVIT-R1
CORVIT-R2(config)# interface ethernet 1
CORVIT-R2(config-if)# ip address 10.1.1.5 255.0.0.0
CORVIT-R2(config-if)# no shutdown
Step1: Click on Start Run Type “ncpa.cpl” Double click on Local Area Connection
Step2: Click on Properties button under General TAB. Step3: Double Click on Internet Protocol Version 4 (TCP/IPv4) .
Step4: Assign an IP address/Subnet Mask with default gateway as mentioned in the figure.
Step5: Run TFTP software to make 10.1.1.1 a TFTP server.
IP Routing
Static:
CORVIT-R1# configure terminal
CORVIT-R1(config)# ip route 200.100.100.0 255.255.255.0 1.1.1.2
RIP:
CORVIT-R1(config)# router rip
CORVIT-R1(config-router)# network 1.0.0.0
CORVIT-R1(config-router)# network 200.100.50.0
RIPv2:
CORVIT-R1# configure terminal
CORVIT-R1(config)# router rip
CORVIT-R1(config)# version 2
CORVIT-R1(config-router)# network 1.0.0.0
CORVIT-R1(config-router)# network 200.100.50.0
EIGRP:
CORVIT-R1(config)# router eigrp 10
CORVIT-R1(config-router)# network 1.0.0.0
CORVIT-R1(config-router)# network 200.100.50.0
CORVIT-R2(config)#router ospf 1
CORVIT-R2(config-router)#network 1.0.0.0 0.255.255.255 area 0
CORVIT-R2(config-router)#network 200.100.100.0 0.0.0.255 area 1
Standard ACL :
CORVIT-R2(config)# access-list 10 deny 1.1.1.1 0.0.0.0
CORVIT-R2(config)# access-list 10 permit any
OR
CORVIT-R2(config)# access-list 10 deny host 1.1.1.1
CORVIT-R2(config)# access-list 10 permit any
Extended ACL:
CORVIT-R2 (config) # access-list 110 deny tcp 1.1.1.1 0.0.0.0 1.1.1.2 0.0.0.0 eq 23
CORVIT-R2 (config) # access-list 110 permit ip any any
NAT/PAT
Static NAT:
CORVIT(config)# ip nat inside source static 192.168.1.1 1.1.1.2
CORVIT(config)# ip nat inside source static 192.168.1.2 1.1.1.3
CORVIT(config)# ip nat inside source static 192.168.1.3 1.1.1.4
Dynamic NAT:
1. Creating Source List using Access List
Verifications:
Creating VLAN:
Access Port:
Trunk Port:
Static:
SW-CORVIT(config)# interface gigabitEthernet 0/1
SW-CORVIT(config-if)# switchport trunk encapsulation dot1q
SW-CORVIT(config-if)# switchport mode trunk
Dynamic:
SW-CORVIT(config)# interface gigabitEthernet 0/1
SW-CORVIT(config-if)# switchport trunk encapsulation dot1q
SW-CORVIT(config-if)# switchport mode dynamic desirable
Verification :
Question
Your company has just added R3 router to the existing network. But currently no routing updates are being exchanged between
R3 and the network. All other connectivity, including Internet access are working properly.
The task is to identify the fault(s) and correct the router configuration to provide full connectivity between the routers.
All passwords on all routers are set to cisco.
IP addresses are listed in the chart below.
R3#show running-config
R3#configure terminal
R3(config)#no router eigrp 22
R3(config)#router eigrp 212
R3(config-router)#network 192.168.60.0
R3(config-router)#network 192.168.77.0
R3(config-router)#no auto-summary
R3(config-router)#end
R1#show running-config
R1#configure terminal
Solution:
We should create an access-list and apply it to the interface which is connected to the Server LAN because it can filter out
traffic from both Sw-2 and Core networks. The Server LAN network has been assigned addresses of 172.22.242.17 –
172.22.242.30 so we can guess the interface connected to them has an IP address of 172.22.242.30 (.30 is the number shown in
the figure). Use the “show running-config” command to check which interface has the IP address of 172.22.242.30.
Corp1#show running-config
Our access-list needs to allow host C – 192.168.33.3 to the Finance Web Server 172.22.242.23 via web (port 80)
Deny other hosts access to the Finance Web Server via web
Corp1(config)#access-list 100 deny tcp any host 172.22.242.23 eq 80
Corp1(config-if)#end