0% found this document useful (0 votes)
11 views5 pages

Examen Redes

Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
11 views5 pages

Examen Redes

Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 5

R1 Y R2

ENA SECRET CLASS---CONTRASEÑA DE ROUTER --------CREACION DE VLANS--------


BANNER MOTD "PROHIBIDO EL ACCESO A PERSONAL NO SW 11, S12 Y S13
AUTORIZADO"---MENSAJE DEL DIA VLAN 23
service password-encryption ---para proteger NAME FINANZAS
no ip domain-lookup ---para no buscar dominio VLAN 32
line con 0 NAME CONTABILIDAD
password CISCO VLAN 55
login NAME MANAGEMENT
logging synchroncus ---para que no salgan los mensajes
exec-timeout 0 0 ---LIMITA EL ACCESO AL S21
ROUTER(laborario) VLAN 68
line vty 0 4 NAME SISTEMAS
password CISCO VLAN73
login VLAN WIRELESS
logging synchronocus VLAN 99
exec-timeout 0 0 NAME MANAGEMENT
exit
------VLAN NATIVA------------ -------ACESO A LAS VLANS----------
SW 11, S12 Y S13 S11 S12 Y S13
INT VLAN 55 INT RANGE FA0/5 - 14
IP ADD 192.168.55.2 255.255.255.0 SWitchport MODE ACCESS
NO SH SWitchport ACCESS VLAN 23
EXIT
IP DEFALULT-GATEWAY 192.168.55.1 INT RANGE FA0/15 - 24
END SWitchport MODE ACCESS
WR SWitchport ACCESS VLAN 32

S21 S21
INT VLAN 99 INT RANGE FA0/1 - 23
IP ADD 172.16.99.2 255.255.255.0 SWitchport MODE ACCESS
NO SH SWITCHPORT ACCESS VLAN 68
EXIT EXIT
IP DEFALULT-GATEWAY 16.99.2.1 INT FA0/24
END SWitchport MODE ACCESS
WR SWITCHPORT ACCESS VLAN 73
---------MODO DE CADA VLANS-------------- ---------Inter-VLAN routing----------------
R1
S11 CONF T
CONG T INT G0/0
INT RANGE G0/1 - 2 NO SH
SWITCHPORT MODE TRUNK INT G0/0.23
SWITCHPORT TRUNK NATIVE VLAN 55 ENcapsulation dot1Q 23
SWITCHPORT TRUNK ALLWED VLAN 23,32, 55 ip add 192.168.23.1 255.255.255.0
int G0/0.32
INT RANGE F0/1 - 4 ENcapsulation dot1Q 32
SWITCHPORT MODE TRUNK ip add 192.168.32.1 255.255.255.0
SWITCHPORT TRUNK NATIVE VLAN 55 int G0/0.55
SWITCHPORT TRUNK ALLOWED VLAN 23,32, 55 ENcapsulation dot1Q 55 NATIVE
END ip add 192.168.55.1 255.255.255.0
WR END
WR
S12 ---------Inter-VLAN routing----------------
INT RANGE G0/1 R2
SWITCHPORT MODE TRUNK INT G0/0
SWITCHPORT TRUNK NATIVE VLAN 55 NO SH
SWITCHPORT TRUNK ALLOWED VLAN 23,32,55 INT G0/0.68
EXIT ENcapsulation dot1Q 68
INT RANGE F0/1 - 4 ip add 172.16.68.1 255.255.255.0
SWITCHPORT MODE TRUNK int G0/0.73
SWITCHPORT TRUNK NATIVE VLAN 55 ENcapsulation dot1Q 73
SWITCHPORT TRUNK ALLOWED VLAN 23,32,55 ip add 172.16.73.1 255.255.255.0
END int G0/0.99
WR ENcapsulation dot1Q 99 NATIVE
ip add 172.16.99.1 255.255.255.0
END
S13
INT RANGE G0/1 - 2 ------------------------DHCP------------------
SWITCHPORT MODE TRUNK R2
SWITCHPORT TRUNK NATIVE VLAN 55 ip dhcp excluded-address 172.16.68.1
SWITCHPORT TRUNK ALLOWED VLAN 23,32,55 ip dhcp pool SISTEMAS-VLAN68
EXIT network 172.16.68.0 255.255.255.0
default-router 172.16.68.1
S21 dns-server 7.8.9.10
INT RANGE G0/1 domain-name mexico.com
SWITCHPORT MODE TRUNK
SWITCHPORT TRUNK NATIVE VLAN 99
SWITCHPORT TRUNK ALLOWED VLAN 68,73,99
INT RANGE FA0/1 - 2
SWITCHPOINT MODE ACCESS
SWITCHPOINT ACCESS VLAN 68
END
WR

----------ASIGNACION DE SW COMO PUERTO RAIZ


---------SPANING TREE---------------- PRIMARIO------------
S11 S11
ena spanning-tree VLAN 1 ROOT PRIMARY
conf t spanning-tree VLAN 23 ROOT PRIMARY
spanning-tree mode rapid-pvst spanning-tree VLAN 32 ROOT PRIMARY
end spanning-tree VLAN 55 ROOT PRIMARY
wr

S12 ---------------ASIGNACION DE SW COMO PUERTO RAIZ


ENA SECUNDARIO---------------
CONF T S13
spanning-tree mode rapid-pvst spanning-tree VLAN 32 ROOT SECONDARY
end spanning-tree VLAN 23 ROOT SECONDARY
wr

----------------PORTFAST----------------------
S13 S13
ENA INT F0/5
CONF T spanning-tree PORTFAST
spanning-tree mode rapid-pvst EXIT
end INT F0/19
wr spanning-tree PORTFAST
EXIT
-----------------SSH---------------------
R1 BPDUGUARD
USERNAME ositobimbo secret murciélago INT F0/5
LINE VTY 0 4 spanning-tree BPDUGUARD ENABLE
NO PASSWORD EXIT
TRANSPORT INPUT SSH INT F0/19
LOGIN LOCAL spanning-tree BPDUGUARD ENABLE
EXIT EXIT
IP SSH VER 2
---------ETHERCHANNEL CON LACP---------
CONECTARSE REMOTAMENTE S11
IR A LA PC Y DARLE AL COMMAND PROMPT INT RANGE F0/1 - 4
SSH -L ositobimbo 192.168.23.1 (IP DEL ROUTER) CHANNEL-GROUP 1 MODE ACTIVE
EXIT

S12
INT RANGE F0/1 - 4
CHANNEL-GROUP 1 MODE ACTIVE
EXIT

-------------CONEXION REMOTA TELNET------------


IR A LA PC Y DARLE AL COMMAND PROMPT
NELNET 192.168.23.1 (IP DEL ROUTER)
-----------RUTAS ESTATICAS-------------------- -----------------WIFI ROUTER-------------------------------------------
R1 ----
IP DE SIGUIENTE SALTO (ES LA SIGUIENTE IP ) COLOCAR LA COMPUTORA QUE ESTE CONECTADA AL
IP ROUTE 172.16.68.0 255.255.255.0 10.0.1.1 ROUTER WIFI EN MODO DHCP
IP ROUTE 172.16.73.0 255.255.255.0 10.0.1.1 WEB BROWSER
IP ROUTE 172.16.99.0 255.255.255.0 10.0.1.1 192.168.0.1
usuario:admin
R2 contraseña:admin
IP ROUTE 192.168.23.0 255.255.255.0 10.0.1.2
IP ROUTE 192.168.32.0 255.255.255.0 10.0.1.2
IP ROUTE 192.168.55.0 255.255.255.0 10.0.1.2

-------------PUERTO DE INTERNET-------------------------
------------------CAMBIAR CONTRASEÑA DEL ROUTER----------- ir a la pestaña de setup
----------------- cambiar la pestañan de dhcp por static ip
ir a la pestaña de administration 172.16.73.2
router password:murcielago 255.255.255.0
AHI MISMO VE AL APARTA DE REMOTE MANAGEMENT Y 172.16.73.1
DALE EN ENABLED 7.8.9.10
GUARDAR CAMBIOS
usuario:admin BAJAR E IR A NETWORK SETUP
contraseña:murciélago NETWORK SETUP
ROUTE IP IP ADDRESS: 172.16.100.254
SUBNET MASK 255.255.255.240
STAR IP ADDRESS 192.168.0.1
MAXIMUM NUMBER OF USERS:12
STATIC DNS 1: 7.8.9.10
GUARDAR LOS CAMBIOS

------------CAMBIOS DE WIRELESS------------------ -------------OSPF------------------------------------


PESTAÑA DE WIRELESS OSPF
NETWORK NAME (SSID) REDWIFI
RADIO BAND 20MHZ R1
STANDARD CHANNEL: 6-2.437GHZ ENA
GUARDAR CAMBIOS CONF T
HOSTNAME R1
--------------SERGURIDAD DE WIRELESS---------- INT S0/0/0
PESTAÑA DE WIRELESS APARTADO DE WIRELESS SECURITY IP ADD 13.14.15.19 255.255.255.252
cambiar a WPA2Personal CLOCK RATE 64000
passphrase: cisco12345 BANDWIDTH 64
GUARDAR CAMBIOS NO SH
EXIT
-----------OSPF CON RED Y MASCARA INVERTIDA-------------- INT FA0/0
R1 IP ADD 123.45.128.1 255.255.192.0
ena NO SH
conf t EXIT
router ospf 55
router-id 1.1.1.1
passive-int default R2
no passive-int s0/0/0 ENA
network 12.45.128.0 0.0.63.255 area 0 CONF T
network 13.14.15.8 0.0.0.3 area 0 HOSTNAME R2
INT S0/0/0
---------OSPF CON IP DIRECTAMENTE------------------- IP ADD 13.14.15.10 255.255.255.252
R2 CLOCK RATE 128000
ena BANDWIDTH 128
conf t NO SH
router ospf 55 EXIT
router-id 2.2.2.2 INT S0/0/1
passive-int default IP ADD 206.1.89.18 255.255.255.248
no passive-int s0/0/0 BANDWIDTH 128
no passive-int s0/0/1 NO SH
network 13.14.15.10 0.0.0.0 area 0 EXIT
network 206.1.89.18 0.0.0.0 area 0
------------OSPF DIRECTO EN LAS INTERFASES----------- R3
R3 ENA
ena CONF T
conf t HOSTNAME R3
router ospf 55 INT S0/0/1
router-id 3.3.3.3 IP ADD 206.1.89.17 255.255.255.248
passive-int default CLOCK RATE 128000
no passive-int s0/0/1 BANDWIDTH 128
exit NO SH
int s0/0/1 EXIT
ip ospf 55 area 0 INT FA0/0
exit IP ADD 61.86.202.94 255.255.255.224
int fa0/0 NO SH
ip ospf 55 area 0 EXIT
exit

------------------------------TIPOS DE NAT-----------
BANNER MOTD "PROHIBIDO EL ACCESO A PERSONAL NO ----------------PASOS DE NAT estatico-------------------------
AUTORIZADO"
HOSTNAME R1 ip nat inside source static 10.0.1.253 143.75.3.1
INT G0/0 ip nat inside source static 10.0.1.252 143.75.3.2
IP ADD 10.0.1.254 255.255.255.0 interface gi0/0
NO SH ip nat inside
EXIT interface se0/0/0
INT S0/0/0 ip nat outside
IP ADD 204.1.2.2 255.255.255.252
NO SH
EXIT ----------------------NAT DINAMICO---------------------------
access-list 73 permit 10.0.1.0 0.0.0.255
BANNER MOTD "PROHIBIDO EL ACCESO A PERSONAL NO ip nat pool MEXICO 143.75.3.3 143.75.3.6 netmask
AUTORIZADO" 255.255.255.248
HOSTNAME ISP ip nat inside source list 73 pool MEXICO
INT S0/0/0
IP ADD 204.1.2.1 255.255.255.252 BORRAR NAT DINAMICO
NO SH no access-list 73 permit 10.0.1.0 0.0.0.255
EXIT no ip nat inside source list 73 pool MEXICO
INT G0/0 no ip nat pool MEXICO 143.75.3.3 143.75.3.6 netmask
IP ADD 7.7.7.1 255.255.255.0 255.255.255.248
NO SH
EXIT

-------------NAT OVERLOAD (ADDRESS POOL)---------------------


- -----------------CONFIGURACION DE PPP------------------------
access-list 73 permit 10.0.1.0 0.0.0.255 R1
ip nat pool MEXICO 143.75.3.3 143.75.3.6 netmask router ospf 1
255.255.255.248 network 192.168.10.0 0.0.0.255 area 0
ip nat inside source list 73 pool MEXICO overload network 10.1.1.0 0.0.0.3 area 0
end
BORRAR NAT OVERLOAD (ADDRESS POOL) debug ppp negotiation
NO access-list 73 permit 10.0.1.0 0.0.0.255 debug ppp packet
NO ip nat pool MEXICO 143.75.3.3 143.75.3.6 netmask conf t
255.255.255.248 interface s0/0/0
NO ip nat inside source list 73 pool MEXICO overload encapsulation ppp
end
---------------------NAT OVERLOAD (SINGLE ADDRESS)---------- undebug all
------- conf t
access-list 73 permit 10.0.1.0 0.0.0.255 username R1 password cisco
ip nat inside source list 73 interface se0/0/0 overload interface s0/0/0
ppp authentication pap
----------------CAMBIO DE SISTEMA OPERATIVO------------------ ppp pap sent-username R2 password cisco
---- exit
COPY FLASH TFTP IP DEL SERVIDOR----MANDAR ARCHIVOS
COPY TFTP FLASH IP DEL SERVIDOR----RECIBIR ARCHIVOS R2
BOot System Flash:c1900-universalk9-mz.SPA.155- router ospf 1
3.M4a.bin network 10.1.1.0 0.0.0.3 area 0
network 10.2.2.0 0.0.0.3 area 0
--------------------------------------PPP CHAP PAP-------------------- network 209.165.200.224 0.0.0.31 area 0
--------------------------------------------- end
----POINT TO POINT PROTOCOL---- debug ppp negotiation
----PUEDE TENER UTENTICACION---- debug ppp packet
----TIENE COMPRESION PARA AHORRA ANCHO DE BANDA-- conf t
-- interface s0/0/0
----MULTIENLACE---- encapsulation ppp
----CALIDAD DE ENLACE---- end
----CHAP ES MEJOR QUE PAP YA QUE AUTENTICA DE FORMA undebug all
BIDIRECCIONAL Y PAP NO ,ENCRIPTA Y PAP NO---- conf t
interface s0/0/1
R1 encapsulation ppp
INT S0/0/0 exit
ENCAPSULATION PPP interface s0/0/0
END encapsulation hdlc
WR exit
SH INT S0/0/0 interface s0/0/1
----AUTENTICACION CHAP--- encapsulation hdlc
USERNAME R2 SECRET cisco123 exit
int s0/0/0 interface s0/0/0
PPP AUTHENTICATION CHAP no encapsulation ppp
END exit
WR interface s0/0/1
no encapsulation ppp
exit
R2 interface s0/0/0
INT S0/0/0 encapsulation ppp
ENCAPSULATION PPP exit
END interface s0/0/1
WR encapsulation ppp
SH INT S0/0/0 exit
----AUTENTICACION CHAP--- username R2 password cisco
USERNAME R1 SECRET cisco123 interface s0/0/0
int s0/0/0 ppp authentication pap
PPP AUTHENTICATION CHAP ppp pap sent-username R1 password cisco
END exit
WR username R3 password cisco
interface s0/0/1
ppp authentication chap
R2 exit
enable
configure terminal
interface S0/0/1 R3
encapsulation ppp router ospf 1
ppp pap sent-username R3 password cisco123 network 192.168.30.0 0.0.0.255 area 0
ppp authentication pap network 10.2.2.0 0.0.0.3 area 0
exit exit
end interface s0/0/1
wr encapsulation ppp
EXIT
R3 username R2 password cisco
enable interface s0/0/1
configure terminal ppp authentication chap
interface Serial0/0/1 exit
encapsulation ppp
ppp pap sent-username R2 password cisco123
ppp authentication pap PPP CHAP PAP
exit
end
write memory

You might also like