simulacion packet tracer

Upload: yojan

Post on 30-May-2018

216 views

Category:

Documents


0 download

TRANSCRIPT

  • 8/14/2019 simulacion packet tracer

    1/8

    AUTODIAGNSTICO

    Yojan Leandro Usme Cardona

    TutorCamilo Zapata

    N de Orden20111

    CENTRO DE SERVICIOS Y GESTION EMPRESARIALSENA ANTIOQUIA

    2010

  • 8/14/2019 simulacion packet tracer

    2/8

    Se ha pedido simular la red que se muestra en la siguiente imagen:

    Para empezar se debe configurar el switch.

    Alli vamos a crear las Vlans pedidas y adems asignarle las interfaces a utilizar en cada Vlan, as:

    Switch>enableSwitch#vlan databaseSwitch(vlan)#vlan 10 name servicesVLAN 10 modified:

    Name: servicesSwitch(vlan)#vlan 20 name adminVLAN 10 modified:

    Name: adminSwitch(vlan)#exitSwitch#Switch#configure terminalSwitch(config)#interface range fastEthernet 0/2 - 8Switch(config-if-range)#switchport mode accesSwitch(config-if-range)#switchport access vlan 10Switch(config-if-range)#no shutSwitch(config-if-range)#exitSwitch(config)#interface range fastEthernet 0/9 - 19Switch(config-if-range)#switchport access modeSwitch(config-if-range)#switchport access vlan 20Switch(config-if-range)#no shutSwitch(config-if-range)#exit

  • 8/14/2019 simulacion packet tracer

    3/8

    En el siguiente paso asignamos una interface para la comunicacin entre el Router y el Switch

    Switch(config)#interface fastEthernet 0/1Switch(config-if)#switchport mode trunk

    Switch(config-if)#endSwitch#copy r s

    %LINK-5-CHANGED: Interface FastEthernet0/1, changed state to up%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state to up

    A la hora de verificar digitamos el comando:

    Switch#show vlan

    Saldr algo como esto

    VLAN Name Status Ports---- -------------------------------- --------- -------------------------------1 default active Fa0/20, Fa0/21, Fa0/22, Fa0/23

    Fa0/2410 services active Fa0/2, Fa0/3, Fa0/4, Fa0/5

    Fa0/6, Fa0/7, Fa0/820 admin active Fa0/9, Fa0/10, Fa0/11, Fa0/12

    Fa0/13, Fa0/14, Fa0/15, Fa0/16Fa0/17, Fa0/18, Fa0/19

    Luego pasamos a configurar el Router0.Subimos la interfaz por la cual se comunica con el Switch, y creamos dos interfaces lgicas.

    Router>enaRouter#conf t

    Enter configuration commands, one per line. End with CNTL/Z.Router(config)#interface fastEthernet 0/0Router(config-if)#no shutdownRouter(config-if)#exitRouter(config)#interface fastEthernet 0/0.1Router(config-subif)#encapsulation dot1Q 10Router(config-subif)#ip address 192.168.0.1 255.255.255.0Router(config-subif)#no shutRouter(config-subif)#exitRouter(config-if)#

    %LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up%LINK-5-CHANGED: Interface FastEthernet0/0.1, changed state to upRouter(config)#interface f0/0.2

  • 8/14/2019 simulacion packet tracer

    4/8

    Router(config-subif)#encapsulation dot1Q 20Router(config-subif)#ip address 192.168.1.1 255.255.255.0Router(config-subif)#exit%LINK-5-CHANGED: Interface FastEthernet0/0.2, changed state to upRouter(config)#exitRouter#copy r s

    Luego se configura el enlace entre el Router0 y Nat Router.Se ha pedido que se establezca el enlace con la tecnologa Frame Relay

    Router0>enaRouter0#conf tEnter configuration commands, one per line. End with CNTL/Z.Router0(config)#interface serial 0/0/0 point-to-point

    Router0(config-if)#encapsulation frame-relay ietfRouter0(config-if)#frame-relay interface-dlci 100Router0(config-if)#no keepaliveRouter0(config-if)#ip address 10.0.0.1 255.255.255.252Router0(config-if)#clock rate 64000%LINEPROTO-5-UPDOWN: Line protocol on Interface Serial0/0/0, changed state to upRouter0#copy r sDestination filename [startup-config]?Building configuration...[OK]

    y en el Nat Router

    Router>enaRouter#conf tEnter configuration commands, one per line. End with CNTL/Z.Router(config)#interface serial 0/0/0 point-to-pointRouter(config-if)#encapsulation frame-relay ietfRouter(config-if)#frame-relay interface-dlci 100Router(config-if)#no keepalive%LINEPROTO-5-UPDOWN: Line protocol on Interface Serial0/0/0, changed state to up

    Router(config-if)#ip address 10.0.0.2 255.255.255.252Router(config-if)#end%SYS-5-CONFIG_I: Configured from console by consoleRouter#copy r sDestination filename [startup-config]?Building configuration...[OK]

    Configurando interfaces en Nat Router: dando direcciones entre Nat router y el ISPLos siguientes comandos han sido cnfigurados en el Nat Router; para el ISP solo se cambia lasdirecciones.

  • 8/14/2019 simulacion packet tracer

    5/8

    Router>enaRouter#conf tEnter configuration commands, one per line. End with CNTL/Z.Router(config)#interface fastEthernet0/0Router(config-if)#ip address 209.165.1.1 255.255.255.0

    Router(config-if)#no shutdownRouter(config-if)#%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to upRouter(config-if)#exitRouter(config)#interface fastEthernet 0/1Router(config-if)#ip address 209.165.2.1 255.255.255.0Router(config-if)#no shutdownRouter(config-if)#%LINK-5-CHANGED: Interface FastEthernet0/1, changed state to upRouter(config-if)#exitRouter(config)#exit

    Router#%SYS-5-CONFIG_I: Configured from console by consoleRouter#copy r sDestination filename [startup-config]?Building configuration...[OK]

    Para permitir la comunicacin se configuraremos el protocolo de enrutamiento OSPF, ademas dela ruta estatica.Los comandos siguientes se le dan al Router0, son las redes vecinas conectadas a este Router.

    router ospf 1network 192.168.0.0 0.0.0.255 area 0network 192.168.1.0 0.0.0.255 area 0network 10.0.0.0 0.0.0.3 area 0

    ip route 0.0.0.0 0.0.0.0 serial0/0/0

    Al Nat Router se le da la red:network 10.0.0.0 0.0.0.3

    ip router 0.0.0.0 0.0.0.0 serial0/0/0

    Luego de esto habilitamos SSH en los routers, as:

    Router#conf tEnter configuration commands, one per line. End with CNTL/Z.RO2(config)#hostname RO2

    RO2(config)#ip domain-name redesRO2(config)#crypto key generate rsaThe name for the keys will be: RO2.redes

  • 8/14/2019 simulacion packet tracer

    6/8

    Choose the size of the key modulus in the range of 360 to 2048 for yourGeneral Purpose Keys. Choosing a key modulus greater than 512 may takea few minutes.

    How many bits in the modulus [512]:% Generating 512 bit RSA keys, keys will be non-exportable...[OK]

    RO2(config)#ip ssh time-out 60RO2(config)#ip ssh authentication-retries 5RO2(config)#USErname redes password redesRO2(config)#line vty 0 4RO2(config-line)#transport input sshRO2(config-line)#login localRO2(config-line)#exitRO2(config)#endRO2#%SYS-5-CONFIG_I: Configured from console by console

    RO2#copy r sDestination filename [startup-config]?Building configuration...[OK]

    Ahora Pasamos a Configurar el NAT.

    Router>enaRouter#conf tEnter configuration commands, one per line. End with CNTL/Z.Router(config)#ip nat pool itsena 209.165.1.1 209.165.1.5 netmask 255.255.255.0Router(config)#access-list 1 permit 192.168.0.0 0.0.255.255Router(config)#ip nat inside source list 1 pool itsenaRouter(config)#exitRouter#%SYS-5-CONFIG_I: Configured from console by console

    Como es un enlace redundante se da otro pool de direcciones para el nat en el otro enlace.

    Router#conf t

    Enter configuration commands, one per line. End with CNTL/Z.Router(config)#ip nat pool itsena2 209.165.2.1 209.165.2.5 netmask 255.255.255.0Router(config)#access-list 2 permit 192.168.0.0 0.0.255.255Router(config)#ip nat inside source list 2 pool itsena2Router(config)#^ZRouter#copy r sDestination filename [startup-config]?Building configuration...

    Adems, se debe nombrar las interfaces inside y outside, en este mismo router:

  • 8/14/2019 simulacion packet tracer

    7/8

    Router#conf tEnter configuration commands, one per line. End with CNTL/Z.Router(config)#interface fastEthernet 0/0Router(config-if)#ip nat outsideRouter(config-if)#exit

    Router(config)#interface serial 0/0/0Router(config-if)#ip nat insideRouter(config-if)#exitRouter(config)#endRouter#%SYS-5-CONFIG_I: Configured from console by consoleRouter#copy r sDestination filename [startup-config]?Building configuration...

    Al implementar access-list:

    access-list 110 deny tcp any host 192.168.0.1 eq 22access-list 110 deny tcp any host 192.168.1.1 eq 22access-list 110 permit ip any any

  • 8/14/2019 simulacion packet tracer

    8/8