Documente Academic
Documente Profesional
Documente Cultură
wn
System Bootstrap, Version 12.1(3r)T2, RELEASE SOFTWARE (fc1)
Copyright (c) 2000 by cisco Systems, Inc.
Initializing memory for ECC
..
c2811 processor with 524288 Kbytes of main memory
Main memory is configured to 64 bit mode with ECC enabled
Readonly ROMMON initialized
program load complete, entry point: 0x8000f000, size: 0xc940
program load complete, entry point: 0x8000f000, size: 0xc940
program load complete, entry point: 0x8000f000, size: 0x3ed1338
Self decompressing the image :
########################################################################## [OK]
Restricted Rights Legend
Use, duplication, or disclosure by the Government is
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software - Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.
cisco Systems, Inc.
170 West Tasman Drive
San Jose, California 95134-1706
Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#interface FastEthernet0/0
Router(config-if)#ip address 192.168.10.2 255.255.255.0
Router(config-if)#ip address 192.168.10.1 255.255.255.0
Router(config-if)#no shutdown
Router(config-if)#
%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, changed state t
o up
Router(config-if)#exit
Router(config)#interface FastEthernet0/1
Router(config-if)#ip address 10.0.0.1 255.255.255.0
Router(config-if)#no shutdown
Router(config-if)#
%LINK-5-CHANGED: Interface FastEthernet0/1, changed state to up
Router(config-if)#exit
Router(config)#router rip
Router(config-router)#network 10.0.0.0
Router(config-router)#network 192.168.10.0
Router(config-router)#
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state t
o up
Router(config-router)#end
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname Router1
Router1(config)#
%SYS-5-CONFIG_I: Configured from console by console
Router1(config)#end
Router1#copy running-config startup-config
Destination filename [startup-config]?
Building configuration...
[OK]
Router1#
%SYS-5-CONFIG_I: Configured from console by console
Router1#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router1(config)#
Router1(config)#li
Router1(config)#line vt
Router1(config)#line vty 0
Router1(config-line)#pas
Router1(config-line)#password 12345
Router1(config-line)#ex
Router1(config-line)#exit
Router1(config)#ena
Router1(config)#enable se
Router1(config)#enable secret 12345
Router1(config)#us
Router1(config)#username asd pa
Router1(config)#username asd password 12345
Router1(config)#cry
Router1(config)#crypto is
Router1(config)#crypto isakmp po
Router1(config)#crypto isakmp policy 10
Router1(config-isakmp)#au
Router1(config-isakmp)#authentication p
Router1(config-isakmp)#authentication pre-share
Router1(config-isakmp)#has
Router1(config-isakmp)#hash sha
Router1(config-isakmp)#en
Router1(config-isakmp)#encryption ae
Router1(config-isakmp)#encryption aes 256
Router1(config-isakmp)#gr
Router1(config-isakmp)#group 2
Router1(config-isakmp)#li
Router1(config-isakmp)#lifetime 86400
Router1(config-isakmp)#ex
Router1(config)#cr
Router1(config)#crypto is
Router1(config)#crypto isakmp ke
Router1(config)#crypto isakmp key t
Router1(config)#crypto isakmp key to
Router1(config)#crypto isakmp key toor add
Router1(config)#crypto isakmp key toor address 10.0.0.2
//kha chia s tr c
Router1(config)#cr
Router1(config)#crypto ip
Router1(config)#crypto ipsec tr
Router1(config)#crypto ipsec transform-set TSET esp
Router1(config)#crypto ipsec transform-set TSET espRouter1(config)#crypto ipsec transform-set TSET esp-a
Router1(config)#crypto ipsec transform-set TSET esp-aes
Router1(config)#crypto ipsec transform-set TSET esp-aes espRouter1(config)#crypto ipsec transform-set TSET esp-aes esp-sh
Router1(config)#crypto ipsec transform-set TSET esp-aes esp-sha-hmac
Router1(config)#ac
Router1(config)#access-list 101pe
Router1(config)#access-list 101 pe
Router1(config)#access-list 101 permit ip 192.168.10.0 0.0.0.255 192.168.20.0 0.
0.0.255
Router1(config)#cr
Router1(config)#ac
Router1(config)#access-list 101 pe
Router1(config)#cr
Router1(config)#crypto ma
Router1(config)#crypto map CMAP ip
Router1(config)#crypto map CMAP ip
Router1(config)#crypto map CMAP 10 ip
Router1(config)#crypto map CMAP 10 ipsec-isakmp
% NOTE: This new crypto map will remain disabled until a peer
and a valid access list have been configured.
Router1(config-crypto-map)#set
Router1(config-crypto-map)#set pe
Router1(config-crypto-map)#set peer 10.0.0.2
Router1(config-crypto-map)#ma
Router1(config-crypto-map)#match add
Router1(config-crypto-map)#match address 101
Router1(config-crypto-map)#se
Router1(config-crypto-map)#set tr
Router1(config-crypto-map)#set transform-set TSET
Router1(config-crypto-map)#ex
Router1(config)#in
Router1(config)#interface fa
Router1(config)#interface fastEthernet 0/1
Router1(config-if)#cr
Router1(config-if)#crypto ma
Router1(config-if)#crypto map CMAP
*Jan 3 07:16:26.785: %CRYPTO-6-ISAKMP_ON_OFF: ISAKMP is ON
Router1(config-if)#do wr
Router1(config-if)#do wr
Building configuration...
[OK]
Router1(config-if)#