Configurazione Router Cisco per ADSL RFC1483 e 8 IP

From RVM Wiki
Revision as of 16:23, 27 July 2006 by Gabriele.vivinetto (talk | contribs)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search

Questa funziona, anche se non si pingadal router verso l'esterno e non si riesce a pingare l'ip del router.

I parametri forniti da telecom sono:

Indirizzo IP Punto-Punto =   88.43.200.254
Netmask                  = 255.255.255.252

Sarà l'indirizzo dell'interfaccia ATM0.1

Indirizzi IP Assegnati = 88.46.106.116-223
Netmask                = 255.255.255.248
Default Gateway        = 88.46.106.117

L'indirizzo default gateway sarà quello da assegnare alla Ethernet0

VPI/VCI 8/35

Ecco la config:

!
version 12.1
no service single-slot-reload-enable
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname strouter
!
logging rate-limit console 10 except errors
enable secret 5 $1$XKVL$Aw4RaQDVoXBfIZYN8LMkX1
enable password ciscopassword
!
username mnt.vvngrl password 0 Legh3aa4
ip subnet-zero
no ip source-route
no ip finger
ip domain-name st.galimberti.net
ip name-server 151.99.0.100
no ip dhcp-client network-discovery
!
!
!
interface Ethernet0
 ip address 88.46.106.217 255.255.255.248
 no cdp enable
!
interface ATM0
 no ip address
 no ip mroute-cache
 no atm ilmi-keepalive
 dsl operating-mode auto
!
interface ATM0.1 point-to-point
 bandwidth 640
 ip address 88.43.200.254 255.255.255.252
 no ip mroute-cache
 pvc 8/35
  vbr-nrt 640 640
  oam-pvc manage
  oam retry 5 5 1
  encapsulation aal5snap
 !
!
ip classless
ip route 0.0.0.0 0.0.0.0 ATM0.1
ip route 88.46.106.0 255.255.255.0 ATM0.1
no ip http server
!
no cdp run
!
line con 0
 transport input none
 stopbits 1
line vty 0 4
 login
!
scheduler max-task-time 5000
end

Questa configurazione (NON TESTATA) aggiunge anche una lan privata con il NAT:

!
version 12.1
no service single-slot-reload-enable
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname Pinfari
!
logging rate-limit console 10 except errors
enable secret 5 $1$K2Fd$J/YHWW9ZjilyTjXx2jbJ/1
enable password xxxxxxxxx
!
username adminpinfari
username Cisco privilege 15 password 0 $1$W1fA$o1oSEpahIwFVFQsbWn
ip subnet-zero
no ip finger
ip name-server 151.99.0.100
!
no ip dhcp-client network-discovery
!
!
!
interface Ethernet0
 ip address 192.168.1.1 255.255.255.0 secondary
 ip address xxx.xxx.xx.225 255.255.255.248
 ip nat inside
 no ip mroute-cache
 no keepalive
 no cdp enable
 hold-queue 100 out
!
interface ATM0
 no ip address
 no ip mroute-cache
 no atm ilmi-keepalive
 dsl operating-mode auto
!
interface ATM0.1 point-to-point
 bandwidth 512
 ip address xxx.xxx.x.210 255.255.255.252
 ip nat outside
 no ip mroute-cache
pvc 8/35         
  vbr-nrt 512 512
  oam-pvc manage
  oam retry 5 5 1
  encapsulation aal5snap
!
!
ip classless
ip route 0.0.0.0 0.0.0.0 ATM0.1
ip route xxx.xxx.xx.0 255.255.255.0 ATM0.1
no ip http server
!
ip nat pool Net_Bus xxx.xxx.xx.226 xxx.xxx.xx.226 netmask 255.255.255.248
ip nat inside source list 1 pool Net_Bus overload
access-list 1 permit 192.168.1.0 0.0.0.255
no cdp run
snmp-server community public RO
!
line con 0
 transport input none
 stopbits 1
line vty 0 4

Questa invece è una configurazione originale Telecom:

!
version 12.1
no service single-slot-reload-enable
no service pad
service timestamps debug uptime
service timestamps log datetime localtime
service password-encryption
service udp-small-servers
!
hostname t-00021333400
!
logging buffered 4096 debugging
logging rate-limit console 10 except errors
enable secret 5 $1$8Ae/$Mzse705lj9HEQOJ46d.OE0
enable password 7 01560117540A43
!
username service password 7 111A1C17011B0809
ip subnet-zero
no ip source-route
no ip finger
ip domain-name interbusiness.it
ip name-server 151.99.125.2
no ip dhcp-client network-discovery
!
!
!
interface Ethernet0
 ip address 80.16.238.193 255.255.255.240
 ip access-group 102 out
!
interface ATM0
 no ip address
 no atm ilmi-keepalive
 dsl operating-mode auto
!
interface ATM0.1 point-to-point
 description PVC verso r-mi232 1/0 TD non presente
 bandwidth 640
 ip address 62.86.95.166 255.255.255.252
 ip access-group 103 out
 pvc 8/35 
  vbr-nrt 640 640 1
  encapsulation aal5snap
 !
!
ip classless
ip route 0.0.0.0 0.0.0.0 ATM0.1
ip route 80.16.238.0 255.255.255.0 ATM0.1
ip route 151.99.0.0 255.255.0.0 ATM0.1
ip http server
!
access-list 18 permit 151.99.126.0 0.0.0.255
access-list 19 permit 151.99.126.0 0.0.0.255
access-list 30 permit 151.99.252.8
access-list 30 permit 62.86.95.165
access-list 30 permit 151.99.6.2
access-list 30 permit 151.99.9.6
access-list 30 permit 151.99.126.0 0.0.0.255
access-list 102 deny   ip 80.16.238.192 0.0.0.15 any
access-list 102 permit tcp any 80.16.238.192 0.0.0.15 established
access-list 102 permit ip any 80.16.238.192 0.0.0.15
access-list 103 permit udp 80.16.238.192 0.0.0.15 151.99.125.0 0.0.0.31 eq domain
access-list 103 permit tcp 80.16.238.192 0.0.0.15 151.99.125.0 0.0.0.31 gt 1023
access-list 103 permit tcp 80.16.238.192 0.0.0.15 host 151.99.126.5 eq www
access-list 103 permit icmp 80.16.238.192 0.0.0.15 151.99.0.0 0.0.127.255
access-list 103 permit icmp 80.16.238.192 0.0.0.15 195.31.0.0 0.0.127.255
access-list 103 deny   ip 80.16.238.192 0.0.0.15 151.99.0.0 0.0.127.255
access-list 103 deny   ip 80.16.238.192 0.0.0.15 195.31.0.0 0.0.127.255
access-list 103 permit ip 80.16.238.192 0.0.0.15 any
tacacs-server host 151.99.126.2
tacacs-server last-resort password
tacacs-server extended
tacacs-server notify connections
tacacs-server notify enable
snmp-server community public RO 18
snmp-server community private RW 19
snmp-server host 151.99.126.2 private 
banner motd ^CC
 
 
 

			Telecom Italia S.p.A.
 
		-----------------------------------------------
 
		Ogni accesso non autorizzato e' proibito
		Unauthorized access is prohibited
 
		-----------------------------------------------
                         Cliente: GALIMBERTI SRL
			 TGU:00021333400506
			 TD:TD non presente
			 NUA:70283121
			 Tipo Contratto:Netway
^C
!
line con 0
 login local
 transport input none
 stopbits 1
line vty 0 4
 access-class 30 in
 login tacacs
!
scheduler max-task-time 5000
end

Riferimenti