Sieć – Wszystko w jednym – 3

Sieć – Wszystko w jednym – 3

Sieć: projekt sieci składającej się z 3 routerów.

Zawierającej:

  • protokół routingu: EIGRP,
  • tunel VPN,
  • crypto mapy,
  • trasy statyczne,
  • access-listy.

Program: Cisco Packet Tracer

Konfiguracje routerów:

Current configuration : 1647 bytes
!
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname R1
!
boot-start-marker
boot-end-marker
!
logging message-counter syslog
!
no aaa new-model
dot11 syslog
ip source-route
!
!
!
!
ip cef
no ipv6 cef
!
multilink bundle-name authenticated
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
voice-card 0
!
!
!
!
!
archive
log config
hidekeys
!
!
crypto isakmp policy 10
encr aes
authentication pre-share
group 2
crypto isakmp key KEY-TUNNEL address 10.2.2.1
!
!
crypto ipsec transform-set VPN-TRANSSET ah-sha-hmac esp-3des esp-sha-hmac
!
crypto map MY1MAP 10 ipsec-isakmp
set peer 10.2.2.1
set transform-set VPN-TRANSSET
match address 120
!
!
!
!
!
!
!
interface Loopback0
no ip address
!
interface Tunnel0
ip address 20.20.20.1 255.255.255.252
tunnel source Serial0/1/0
tunnel destination 10.2.2.1
!
interface FastEthernet0/0
ip address 172.16.1.1 255.255.255.0
duplex auto
speed auto
!
interface FastEthernet0/1
no ip address
shutdown
duplex auto
speed auto
!
interface Serial0/1/0
ip address 10.1.1.1 255.255.255.252
clock rate 125000
crypto map MY1MAP
!
interface Serial0/1/1
no ip address
shutdown
!
router eigrp 9
network 20.20.20.0 0.0.0.3
network 172.16.1.0 0.0.0.255
no auto-summary
!
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 Serial0/1/0
no ip http server
no ip http secure-server
!
!
!
access-list 120 permit ip 172.16.1.0 0.0.0.255 172.16.2.0 0.0.0.255
!
!
!
!
!
!
!
control-plane
!
!
!
ccm-manager fax protocol cisco
!
mgcp fax t38 ecm
!
!
!
!
!
!
line con 0
line aux 0
line vty 0 4
login
!
scheduler allocate 20000 1000
end

Current configuration : 977 bytes
!
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname R2
!
boot-start-marker
boot-end-marker
!
logging message-counter syslog
!
no aaa new-model
dot11 syslog
ip source-route
!
!
!
!
ip cef
no ipv6 cef
!
multilink bundle-name authenticated
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
voice-card 0
!
!
!
!
!
archive
log config
hidekeys
!
!
!
!
!
!
!
!
!
interface FastEthernet0/0
no ip address
shutdown
duplex auto
speed auto
!
interface FastEthernet0/1
no ip address
shutdown
duplex auto
speed auto
!
interface Serial0/1/0
ip address 10.1.1.2 255.255.255.252
!
interface Serial0/1/1
ip address 10.2.2.2 255.255.255.252
clock rate 125000
!
ip forward-protocol nd
no ip http server
no ip http secure-server
!
!
!
!
!
!
!
!
!
!
control-plane
!
!
!
ccm-manager fax protocol cisco
!
mgcp fax t38 ecm
!
!
!
!
!
!
line con 0
line aux 0
line vty 0 4
login
!
scheduler allocate 20000 1000
end

Current configuration : 1709 bytes
!
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname R3
!
boot-start-marker
boot-end-marker
!
logging message-counter syslog
!
no aaa new-model
dot11 syslog
ip source-route
!
!
!
!
ip cef
no ip domain lookup
no ipv6 cef
!
multilink bundle-name authenticated
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
voice-card 0
!
!
!
!
!
archive
log config
hidekeys
!
!
crypto isakmp policy 10
encr aes
authentication pre-share
group 2
crypto isakmp key KEY_TUNNEL address 10.1.1.1
!
!
crypto ipsec transform-set VPN_TRANSSET ah-sha-hmac esp-3des esp-sha-hmac
!
crypto map MY1MAP 10 ipsec-isakmp
set peer 10.1.1.1
set transform-set VPN_TRANSSET
match address 120
!
!
!
!
!
!
!
interface Loopback0
no ip address
!
interface Tunnel0
ip address 20.20.20.2 255.255.255.252
tunnel source Serial0/1/1
tunnel destination 10.1.1.1
!
interface FastEthernet0/0
ip address 172.16.2.1 255.255.255.0
duplex auto
speed auto
!
interface FastEthernet0/1
no ip address
shutdown
duplex auto
speed auto
!
interface Serial0/1/0
no ip address
shutdown
no fair-queue
!
interface Serial0/1/1
ip address 10.2.2.1 255.255.255.252
ip access-group 120 out
crypto map MY1MAP
!
router eigrp 9
network 20.20.20.0 0.0.0.3
network 172.16.2.0 0.0.0.255
no auto-summary
!
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 Serial0/1/1
no ip http server
no ip http secure-server
!
!
!
access-list 120 permit ip 172.16.2.0 0.0.0.255 172.16.1.0 0.0.0.255
!
!
!
!
!
!
!
control-plane
!
!
!
ccm-manager fax protocol cisco
!
mgcp fax t38 ecm
!
!
!
!
!
!
line con 0
logging synchronous
line aux 0
line vty 0 4
login
!
scheduler allocate 20000 1000
end