Sunteți pe pagina 1din 38

VERIFICACION DE LA CONFIGURACION

SHOW RUNNING
rMAKRO_HUANCAYO#show run
Building configuration...

Current configuration : 8914 bytes


!
! Last configuration change at 09:25:42 GMT Tue Apr 25 2017
version 15.3
service timestamps debug datetime localtime
service timestamps log datetime localtime
no service password-encryption
!
hostname rMAKRO_HUANCAYO
!
boot-start-marker
boot-end-marker
!
aqm-register-fnf
!
logging buffered 9000
enable secret 5 $1$la/.$iY48PihqkThL8IT6Emyh3.
!
aaa new-model
!
!
aaa authentication login default group tacacs+ enable
aaa authentication enable default group tacacs+ enable
aaa authorization commands 1 default group tacacs+ none
aaa authorization commands 15 default group tacacs+ none
aaa accounting exec default
action-type start-stop
group tacacs+
!
aaa accounting commands 1 default
action-type start-stop
group tacacs+
!
aaa accounting commands 15 default
action-type start-stop
group tacacs+
!
aaa accounting network default
action-type start-stop
group tacacs+
!
aaa accounting connection default
action-type start-stop
group tacacs+
!
!
!
!
!
!
aaa session-id common
clock timezone GMT -5 0
!
!
!
!
!
!

!
ip vrf 100
description VPN Servicio E1-PRI
rd 64516:100
route-target export 64516:100
route-target import 64516:100
!
!
!
!
ip flow-cache timeout active 1
no ip domain lookup
ip cef
no ipv6 cef
!
!
!
!
!
multilink bundle-name authenticated
!
flow-sampler-map MRA
mode random one-out-of 100
!
!
!
!
!
!
!
license udi pid C881-K9 sn FJC2015L3RY
!
!
!
!
!
!
!
!
class-map match-any qos5_DINSTAR
match ip dscp cs5
class-map match-any qos5
match ip dscp cs5
match ip dscp cs6
class-map match-any qos1
match ip dscp cs1
class-map match-any qos2
match ip dscp cs2
class-map match-any P2
match ip dscp cs2
match access-group name qos2
class-map match-any P5
match ip dscp cs5
match access-group name qos5
class-map match-any P5_DINSTAR
match ip dscp cs5
match access-group name qos5_DINSTAR
!
policy-map SetDscpLan_DINSTAR
class P5_DINSTAR
set ip dscp cs5
class class-default
set ip dscp cs5
policy-map wanN
class qos5
priority 2048
police 2048000 384000 768000 conform-action transmit exceed-action
drop violate-action drop
class qos2
bandwidth 3072
police 3072000 576000 1152000 conform-action transmit exceed-action
set-dscp-transmit cs1 violate-action set-dscp-transmit cs1
class qos1
bandwidth 5120
class class-default
fair-queue
policy-map Shape10240N
class class-default
shape average 10250000
service-policy wanN
policy-map SetDscpLan
class P5
set ip dscp cs5
class P2
set ip dscp cs2
class class-default
set ip dscp cs1
policy-map wanL
class qos1
bandwidth 32
class class-default
fair-queue
policy-map WAN_DINSTAR
class qos5_DINSTAR
priority 2048
police 2048000 384000 768000 conform-action transmit exceed-action
drop violate-action drop
class class-default
fair-queue
policy-map Shape_DINSTAR_2048
class class-default
shape average 2049000
service-policy WAN_DINSTAR
policy-map Shape32L
class class-default
shape average 33000
service-policy wanL
!
!
!
!
!
!
!
!
!
!
!
interface Loopback0
description Interface LOOPBACK DE GESTION
ip address 10.233.13.144 255.255.255.255
!
interface Loopback10
description Loopback Monitoreo de Red Avanzado
ip address 172.28.160.39 255.255.255.255
!
interface FastEthernet0
no ip address
!
interface FastEthernet1
switchport access vlan 20
no ip address
load-interval 30
!
interface FastEthernet2
no ip address
!
interface FastEthernet3
no ip address
!
interface FastEthernet4
description ENLACE WAN MAKRO HUANCAYO
no ip address
no ip redirects
no ip proxy-arp
ip flow ingress
load-interval 30
duplex full
speed 100
!
interface FastEthernet4.10
description ENLACE WAN RPVL MAKRO HUANCAYO 32 Kbps CID::4969455
bandwidth 32
encapsulation dot1Q 2001
ip address 10.116.18.146 255.255.255.252
ip flow ingress
flow-sampler MRA egress
service-policy output Shape32L
!
interface FastEthernet4.20
description ENLACE WAN RPVN MAKRO HUANCAYO 10 Mbps CID::4969456
encapsulation dot1Q 2002
ip address 10.116.18.150 255.255.255.252
ip flow ingress
flow-sampler MRA egress
service-policy output Shape10240N
!
interface FastEthernet4.30
description Enlace WAN VOZ CID 4974209 - E1 PRI
encapsulation dot1Q 4090
ip vrf forwarding 100
ip address 172.28.213.10 255.255.255.252
no ip redirects
no ip proxy-arp
ip flow ingress
service-policy output Shape_DINSTAR_2048
!
interface Vlan1
description ENLACE LAN
ip address 10.53.125.254 255.255.254.0
no ip redirects
no ip unreachables
no ip proxy-arp
ip flow ingress
load-interval 30
flow-sampler MRA egress
service-policy input SetDscpLan
!
interface Vlan20
description LAN Interface de Servicio Telefonia E1 - PRI - MTG200
ip vrf forwarding 100
ip address 172.28.214.9 255.255.255.252
ip flow ingress
load-interval 30
no autostate
service-policy input SetDscpLan_DINSTAR
!
router bgp 64516
bgp router-id 10.233.13.144
bgp log-neighbor-changes
neighbor WAN_RPVN peer-group
neighbor WAN_RPVN remote-as 12252
neighbor WAN_RPVN password 7 062B5B0A7E1E3A2C35
neighbor WAN_RPVN timers 10 30
neighbor 10.116.18.149 peer-group WAN_RPVN
neighbor 10.116.18.149 description Enlace WAN VPN MAKRO
!
address-family ipv4
network 10.53.124.0 mask 255.255.254.0
network 10.233.13.144 mask 255.255.255.255
neighbor WAN_RPVN send-community both
neighbor WAN_RPVN soft-reconfiguration inbound
neighbor WAN_RPVN route-map From_VPN_MAKRO in
neighbor WAN_RPVN route-map SET_MAKRO_COMM out
neighbor 10.116.18.149 activate
exit-address-family
!
ip forward-protocol nd
no ip http server
no ip http secure-server
!
ip bgp-community new-format
ip flow-export source Loopback10
ip flow-export version 9
ip flow-export template options sampler
ip flow-export destination 172.28.129.214 9996
!
ip route 172.28.129.32 255.255.255.224 10.116.18.149
ip route vrf 100 0.0.0.0 0.0.0.0 172.28.213.9
ip tacacs source-interface Loopback0
!
ip access-list extended qos2
permit ip 10.53.124.0 0.0.1.255 10.53.0.0 0.0.3.255
permit ip 10.53.124.0 0.0.1.255 10.53.250.0 0.0.1.255
permit ip 10.53.124.0 0.0.1.255 172.40.50.0 0.0.1.255
permit ip 10.53.124.0 0.0.1.255 172.40.51.0 0.0.0.255
permit ip 10.53.124.0 0.0.1.255 172.40.52.0 0.0.1.255
permit ip 10.53.124.0 0.0.1.255 172.16.51.0 0.0.0.255
permit ip 10.53.124.0 0.0.1.255 172.16.52.0 0.0.1.255
permit ip 10.53.124.0 0.0.1.255 172.16.56.0 0.0.1.255
permit ip 10.53.124.0 0.0.1.255 host 10.254.1.244
permit ip 10.53.124.0 0.0.1.255 host 10.254.3.3
permit ip 10.53.124.0 0.0.1.255 10.254.21.0 0.0.0.255
ip access-list extended qos5
permit ip host 10.53.125.245 host 10.53.1.100
permit ip host 10.53.125.245 host 10.53.5.245
permit ip host 10.53.125.245 host 10.53.7.245
permit ip host 10.53.125.245 host 10.53.9.245
permit ip host 10.53.125.245 host 10.53.125.245
permit ip host 10.53.125.245 host 10.53.113.245
permit ip host 10.53.125.245 host 10.53.115.245
permit ip host 10.53.125.245 host 10.53.117.245
permit ip host 10.53.125.245 host 10.53.119.245
permit ip host 10.53.125.245 host 10.53.121.245
permit ip host 10.53.125.245 host 10.53.123.245
permit ip host 10.53.125.245 host 10.53.127.245
permit ip host 10.53.125.245 host 10.53.129.245
permit ip host 10.53.125.245 host 10.53.131.245
ip access-list extended qos5_DINSTAR
permit ip 172.28.214.8 0.0.0.3 any
!
!
ip prefix-list RED_INTERNAS seq 30 permit 10.233.13.144/32
ip prefix-list RED_INTERNAS seq 35 permit 10.53.124.0/23
!
ip prefix-list Redes_all_MAKRO seq 10 permit 0.0.0.0/0 le 32
logging source-interface Loopback0
logging host 172.19.216.53
!
route-map SET_MAKRO_COMM permit 10
description Setear Comunidad 200 a todas nuestras redes
match ip address prefix-list RED_INTERNAS
!
route-map From_VPN_MAKRO deny 10
description denegacion
match ip address prefix-list RED_INTERNAS
!
route-map From_VPN_MAKRO permit 20
description Demas Redes de Sedes Remotas CLARO
match ip address prefix-list Redes_all_MAKRO
!
snmp-server community mra RO
snmp-server ifindex persist
snmp-server trap-source Loopback10
snmp-server enable traps tty
snmp-server enable traps envmon
snmp-server enable traps bgp
snmp-server enable traps config
snmp-server enable traps entity
snmp-server enable traps cpu threshold
snmp-server enable traps syslog
snmp-server host 172.28.129.53 envmon
snmp-server host 172.28.129.53 version 2c mra
tacacs-server host 172.19.216.47
tacacs-server directed-request
tacacs-server key 7 1335161C110916212A2938352223140218
!
!
!
control-plane
!
!
!
mgcp behavior rsip-range tgcp-only
mgcp behavior comedia-role none
mgcp behavior comedia-check-media-src disable
mgcp behavior comedia-sdp-force disable
!
mgcp profile default
!
!
!
!
!
line con 0
password 7 0332521F07492F59411F184A
no modem enable
line aux 0
line vty 0 4
session-timeout 10 output
password 7 01250F105A4D081A2E5A4F46
transport input all
transport output all
!
scheduler max-task-time 5000
scheduler allocate 20000 1000
ntp server 172.28.129.52
!
end

rMAKRO_HUANCAYO#
SHOW VERSION
rMAKRO_HUANCAYO#show version
Cisco IOS Software, C800 Software (C800-UNIVERSALK9-M), Version
15.3(3)M6, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2015 by Cisco Systems, Inc.
Compiled Tue 04-Aug-15 05:50 by prod_rel_team

ROM: System Bootstrap, Version 15.4(1r)T1, RELEASE SOFTWARE (fc1)

rMAKRO_HUANCAYO uptime is 3 weeks, 6 days, 14 hours, 51 minutes


System returned to ROM by power-on
System image file is "flash:c800-universalk9-mz.SPA.153-3.M6.bin"
Last reload type: Normal Reload
Last reload reason: power-on

This product contains cryptographic features and is subject to United


States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be
found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

If you require further assistance please contact us by sending email to


export@cisco.com.

Cisco C881-K9 (revision 1.0) with 488524K/35763K bytes of memory.


Processor board ID FJC2015L3RY
5 FastEthernet interfaces
1 Virtual Private Network (VPN) Module
DRAM configuration is 32 bits wide
255K bytes of non-volatile configuration memory.
250880K bytes of ATA System CompactFlash (Read/Write)

License Info:

License UDI:

-------------------------------------------------
Device# PID SN
-------------------------------------------------
*0 C881-K9 FJC2015L3RY

License Information for 'c800'


License Level: advipservices Type: Default. No valid license found.
Next reboot license Level: advipservices

Configuration register is 0x2102

rMAKRO_HUANCAYO#
SHOW FLASH
SHOW INVENTORY

SHOW CDP NEIGHBORS

VERIFICACION DE CONECTIVIDAD
SHOW IP ROUTE
rMAKRO_HUANCAYO#show ip route
Codes: L - local, C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route, H - NHRP, l - LISP
a - application route
+ - replicated route, % - next hop override

Gateway of last resort is 10.116.18.149 to network 0.0.0.0

B* 0.0.0.0/0 [20/0] via 10.116.18.149, 00:11:24


10.0.0.0/8 is variably subnetted, 19 subnets, 3 masks
B 10.14.104.56/30 [20/0] via 10.116.18.149, 00:10:55
B 10.15.17.88/30 [20/0] via 10.116.18.149, 00:10:55
B 10.53.110.0/23 [20/0] via 10.116.18.149, 00:11:24
B 10.53.112.0/23 [20/0] via 10.116.18.149, 00:10:55
B 10.53.116.0/23 [20/0] via 10.116.18.149, 00:11:24
B 10.53.118.0/23 [20/0] via 10.116.18.149, 00:11:24
C 10.53.124.0/23 is directly connected, Vlan1
L 10.53.125.254/32 is directly connected, Vlan1
B 10.53.250.0/23 [20/0] via 10.116.18.149, 00:10:55
C 10.116.18.144/30 is directly connected, FastEthernet4.10
L 10.116.18.146/32 is directly connected, FastEthernet4.10
C 10.116.18.148/30 is directly connected, FastEthernet4.20
L 10.116.18.150/32 is directly connected, FastEthernet4.20
B 10.116.18.152/30 [20/0] via 10.116.18.149, 00:10:55
B 10.225.0.132/30 [20/0] via 10.116.18.149, 00:10:55
B 10.225.6.12/30 [20/0] via 10.116.18.149, 00:10:55
B 10.225.12.80/30 [20/0] via 10.116.18.149, 00:10:55
B 10.225.68.56/30 [20/0] via 10.116.18.149, 00:10:55
C 10.233.13.144/32 is directly connected, Loopback0
172.28.0.0/16 is variably subnetted, 2 subnets, 2 masks
S 172.28.129.32/27 [1/0] via 10.116.18.149
C 172.28.160.39/32 is directly connected, Loopback10
B 192.168.2.0/24 [20/0] via 10.116.18.149, 00:10:55
rMAKRO_HUANCAYO#
PING WANL
PING WANN
PING LAN
PING LAN TO LAN
PRUEBAS DE SATURACION
SHOW POLICY-MAP INTERFACE WANL
CoS1
SHOW POLICY-MAP INTERFACE WANN
CoS5
CoS2
CoS1
SHOW POLICY-MAP INTERFACE LAN
P5
P2
SHOW ACCESS-LIST
SHOW INTERFACES
SHOW INTERFACE WAN
SHOW INTERFACE LAN

S-ar putea să vă placă și