Cisco 2801
the Goal i'm trying to achieve is having a Cisco outer 2801 (which is the internet ip: 75.150.67.105) open a port 3001 tcp to give internet to another cisco device with a IP of 172.16.8.240
interface FastEthernet0/0
ip address 75.150.67.105 255.255.255.252
no ip redirects
no ip unreachables
no ip proxy-arp
ip nat outside
ip virtual-reassembly in
zone-member security public
duplex auto
speed auto
crypto map vpn
I've try doing NAT, below is what i've try so far:
ip nat inside source static tcp 172.16.8.240 3001 FastEthernet0/0 3001
access-list 7 permit 172.16.8.0 0.0.0.255
thanks
Hi,
The statement will work in case the source port for the requests is 3001,but how will you ensure that the incoming requests come from that port.
ip nat inside source static tcp 172.16.8.240 3001 FastEthernet0/0 3001 .
Similar Messages
-
What's wrong? Verify and compare Cisco 2901 config after loading old config from Cisco 2801
Hi Cisco Community / Friends,
I am new to this site though I have cisco account for many years. I am a CCNA ,I passed my certification on January 2013 I seldom use and utilized my skills on networking becuase of my type of work. I am Project Eng'r working in a System integrator company . Anyway, I would like to ask assistance on the configurations of my Cisco router for this gov't projects.. Here's the situation.
We have a new project for the VSAT Comm'n of Coast Watch Station , The VSAT was installed 7 years ago. The VSAT was only used for a year by this Gov't agency because of subscription issue. Now, they wants to revive and use their VSAT facilities for the Coast watch monitoring. Now, some of this routers are working up to now and for some site are already defective so I need to replace the old 2801 router with a new equivalent model which is Cisco 2901. My plan was just to load the old config into the new Cisco 2901 router. However, after loading it to the new router, I am a little worried because I've got some errors received. I load the old config by copying the old files, edit it in notepad, and load the config using Secure CRT (terminal emulator). When I copy the old config of cisco 2801 to new router cisco 2901 , below are the command not recognized on Cisco 2901. What's wrong ? What are these commands for?
Appreciate your comments and help on this matter.. Thank You very much
Note: I Attached the original config from Cisco 2801 and the other file is the config after I load the config file to Cisco 2901.
(Errors see below)
CWS_4_Pandami(config-erm)#mmi polling-interval 60
^
% Invalid input detected at '^' marker.
CWS_4_Pandami(config-erm)#no mmi auto-configure
^
% Invalid input detected at '^' marker.
CWS_4_Pandami(config-erm)#no mmi pvc
^
% Invalid input detected at '^' marker.
CWS_4_Pandami(config-erm)#mmi snmp-timeout 180
^
% Invalid input detected at '^' marker.
CWS_4_Pandami(config-if)#interface GigabitEthernet0/1
CWS_4_Pandami(config-if)# description ===CWS4 SAT Modem===
CWS_4_Pandami(config-if)# bandwidth 256
CWS_4_Pandami(config-if)# ip address 192.168.42.1 255.255.255.0
CWS_4_Pandami(config-if)# duplex auto
CWS_4_Pandami(config-if)# speed auto
CWS_4_Pandami(config-if)# priority-group 1
^
% Invalid input detected at '^' marker.
CWS_4_Pandami(config)#access-list 100 permit ip any any dscp cs5
CWS_4_Pandami(config)#priority-list 1 protocol ip high list 100
^
% Invalid input detected at '^' marker.Hi
From Cisco's website:
The Modem Management Interface (MMI) is software that enables auto-provisioning for the Cisco 827 routers. The MMI uses a fixed PVC to communicate with the Proxy Element (PE) residing on the digital subscriber line access multiplexer (DSLAM). Using MMI, the Cisco 827 router updates the running image and downloads the prescribed configuration using a configuration file or configuration values in a provisioning information database.
The customer premise equipment (CPE) can be automatically configured using the Cisco DSL CPE download, but it can be configured only with the image provisioning feature.
So because this is your device, you don't want to use MMI anyways.
And "priority-list" is QoS. Probably that QoS-command is old and removed, because now QoS is configured using class-maps and policy-maps. -
How to install 2-port vic3 2fxs/DID and 2-port vic2 fxo on cisco 2801 router
Hello
I'm looking for information on how to install 2 newly purchased cards and keep running into dead links. The cards I bought are for a CISCO-2801-CCME/K9 with PVDM2-8, FL-CCME-25, SP Services 128F/256D cisco router:
vic3 2fxs/DID and a vic2 2fxo.
I keep finding documents on how to install these cards but all links are dead and leading to nowhere.
http://www.cisco.com/en/US/docs/routers/access/interfaces/ic/hardware/installation/guide/2port_FXS_DID_VIC.html#wp1065062
The 2 documents i'm looking for are: how to install a 2-port vic2 fxo cards on cisco 2801 router and how to install 2-port vic3 2fxs/DID cards on the same 2801 cisco router.
NOTE: I've never installed these cards and am not sure if:
Does my ios support both of these cards?
and which slots do I install those in the router.
I have 4 slots like this:
slot 0: This slot only accepts VIC's ***This could be used for the vic3 2fxs/DID card correct?
slot 1: Nothing written here ****What can i install in this slot?
slot 2: This slot only accepts VIC's and WIC's ***If I buy a WIC and install here which other slot can i install my VIC2-2FXO card in ?
slot 3: Nothing written here ***What can i install in this slot?
Any chance someone can help me out with this.
Thanks very muchOk
I was able to figure out what goes where and found out that the IOS i had c-2801-spservicesk9-mz.124-15.T10.bin with cme-full-4.1.0.2 tar didn't support the vic3 2fxs/DID card. I then found the one that works which is the c2801-spservicesk9-mz.124-22.YB5.bin.I am now able to see my new hardware interfaces. The question I have now is since the previous version ran with cme-full-4.1.0.2 tar i'm not sure if this needs to be changed since in the compatibility matrix i found this IOS c2801-spservicesk9-mz.124-22.YB5.bin to be compatible with cme-full-7.1.0.0 tar
Do i need to remove cme-full-4.1.0.2 tar and install the cme-full-7.1.0.0 tar?
If yes, i know how to install the cme-full-7.1.0.0 tar but how do i remove the other cme-full-4.1.0.2 tar file in order to be able to install the other version?
Thanks -
Cisco 2801 (Voice Gateway + CUE)
Hi there,
I got two questions:
1) When I try to login to Cisco 2801 I get the following lines: (I've already changed the default username and password!)
Cisco Router and Security Device Manager (SDM) is installed on this device.
This feature requires the one-time use of the username "cisco"
with the password "cisco". The default username and password have a privilege level of 15.
Please change these publicly known initial credentials using SDM or the IOS CLI.
Here are the Cisco IOS commands.
username <myuser> privilege 15 secret 0 <mypassword>
no username cisco
Replace <myuser> and <mypassword> with the username and password you want to use.
For more information about SDM please follow the instructions in the QUICK START
GUIDE for your router or go to http://www.cisco.com/go/sdm
2) Is there any configuration example to configure CUE on Cisco 2801 (AIM Module)?
Thanks.Hi there,
1. The lines you reference are the default message of the day banner on the ISR routers. To remove the message, go into configuration mode and enter the command "no banner motd"
2. Here's a sample configuration of configuring CME and CUE. The sample configuration should work on your 2801 ISR router. Feel free to give it a try and post here is you run into any issues or need clarification on anything.
http://www.cisco.com/en/US/products/sw/voicesw/ps5520/products_configuration_example09186a008037f2a9.shtml
Hope this helps.
Regards,
Michael. -
WIC1-AM on Cisco 2801 Routers malfunctioning
Hi, I wish i will find a permanent solution for my issue which i face for last 8 months.
I had purchased 5 Cisco 2801 routers to setup in our network which involves
branch offices and the head office. The branch offices are in different cities. We purchased these rounters with one WIC1-AM for each router keeping in mind to have a backup dialup line once the main link is down. The problem area is here. We have tested the Routers with
configurations for backup line in our Head office, it worked fine. But when we send them to some of the branch offices, it started malfunctioning. The dialup WIC plays crazy with us.Sometimes works for 10 minutes, and disconnects. One of the branches, the WIC never got up!!.
Only two branches is properly working now with backup line in WIC-1AM. We have tried the same configurations on the affected routers too, but the result was not hopeful.
On the same telphone lines, we were (and still) using zyxel prestige 100 MH router and is working perfectly without any single problem to note!
Thanks for any light to shed on this!Hello Mohamed,
can you post what you have configured on the router(s) that are working ok ? Also, which IOS version are you running on the routers that do not work ? Can you post the outbut of 'debug modem' ? This should give an indication of what is happening...
Regards,
GP -
hello
I have 2 Cisco 2801 running CME 4.3 and will be converter to SRST Routers, but they''ll have T1 card, because they used to has FXO card with 4 lines now they will have T1, but I wonder witch solution for auto attendant should I have for those routers especially the Unity Express.
ThanksBefore switching to CM, think twice, because you will gain a lot of complications, consts, and loose nice features and flexibility if you do that.
-
Cisco 2801 and VIC2-2E/M Card
Hi Experts,
One problem with my cisco 2801, when I have inserted the E&M card it is not supporting on the slot. The output of show diag is as attahced.
IOS is : c2801-ipbase-mz.124-1c.bin
Any help would be appreciated..
Thanks,
Hardik..You need a voice capable IOS feature set. The minimum is IP Voice for this card. Please see the following link for confirmation.
http://www.cisco.com/en/US/products/hw/modules/ps5365/products_data_sheet0900aecd801c595e.html
Hope this helps. If so, please rate the post.
Brandon -
Can I add these two VWIC2 modules on a Cisco 2801?
Hello all,
Can I add both of these modules on a Cisco 2801 running 12.4(3h)?
VWIC2-2MFT-T1/E1
and
VWIC2-2MFT-G703
Thank you,
NadeemThanks for the response, but it doesn't really address my question(s).
Obviously, if I were buying memory for the old iMac, I would buy the same speed as the one already in it. However, I am not buying memory, I already have this spare faster memory. Let me split the question in two:
1. Will the faster memory work on the slower iMac?
2. Can the faster memory damage the slower iMac? -
No service password recovery command on cisco 2801 router
HI,
we have a cisco 2801 router in class which has a disabled pasword recovery. We tried almost everything, we cannot get into ROMmon and the break sequence dosent work in any program (hyper terminal, putty, teraterm pro). We dont have any idea how to solve this problem.
Here is the log from hyperterminal:
System Bootstrap, Version 12.3(8r)T9, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 2004 by cisco Systems, Inc.
PLD version 0x10
GIO ASIC version 0x127
c2801 processor with 131072 Kbytes of main memory
Main memory is configured to 64 bit mode with parity disabled
Readonly ROMMON initialized
PASSWORD RECOVERY FUNCTIONALITY IS DISABLED
program load complete, entry point: 0x8000f000, size: 0xc100
Initializing ATA monitor library.......
program load complete, entry point: 0x8000f000, size: 0xc100
Initializing ATA monitor library.......
program load complete, entry point: 0x8000f000, size: 0xd49718
Self decompressing the image : #################################################
######## [OK]
--- TRIED BREAK SEQUENCE HERE but nothing happens ---
Smart Init is enabled
smart init is sizing iomem
ID MEMORY_REQ TYPE
0X003AA110 public buffer pools
0X00211000 public particle pools
0X0013 0X00035000 Card in slot 1
0X000021B8 Onboard USB
If any of the above Memory Requirements are
"UNKNOWN", you may be using an unsupported
configuration or there is a software problem and
system operation may be compromised.
Allocating additional 7692663 bytes to IO Memory.
PMem allocated: 117440512 bytes; IOMem allocated: 16777216 bytes
Restricted Rights Legend
Use, duplication, or disclosure by the Government is
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software - Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.
cisco Systems, Inc.
170 West Tasman Drive
San Jose, California 95134-1706
Cisco IOS Software, 2801 Software (C2801-IPBASE-M), Version 12.4(1c), RELEASE SO
FTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2005 by Cisco Systems, Inc.
Compiled Wed 26-Oct-05 08:42 by evmiller
Image text-base: 0x6007ECA0, data-base: 0x61480000
--- TRIED BREAK SEQUENCE HERE but nothing happens too ---
Port Statistics for unclassified packets is not turned on.
Cisco 2801 (revision 6.0) with 114688K/16384K bytes of memory.
Processor board ID FCZ102422KK
2 FastEthernet interfaces
2 Low-speed serial(sync/async) interfaces
DRAM configuration is 64 bits wide with parity disabled.
191K bytes of NVRAM.
62720K bytes of ATA CompactFlash (Read/Write)
Press RETURN to get started!
Thanks for help!I usually suffer from the same issue, but what works for me everytime is the other method that simulates break sequence. Can't find the documentation for it but this is how it goes:
Set the serial connection as follows in Putty:
Baud rate 1200
1 stop bit
8 data bits
no parity
no flow control
Turn off your router, then turn it back on and immediately press the spacebar for about 10-15 seconds. All you'll see is giberish. After that reset your console connection settings to the usual 9600 baud rate, and you'll find yourself in rommon mode. -
I'm trying to open a port in a Cisco 2801, the port 3001 to give internet access for a cisco switch which IP is 172.16.8.40
thanks in advance
cisco 2801 config
match access-group 110
class-map type inspect match-all vpn-traffic
match access-group 111
policy-map type inspect priv-pub-pmap
class type inspect all-private
inspect
class class-default
drop
policy-map type inspect pub-priv-pmap
class type inspect vpn-traffic
inspect
class class-default
drop
zone security private
zone security public
zone-pair security priv-pub source private destination public
service-policy type inspect priv-pub-pmap
zone-pair security pub-priv source public destination private
service-policy type inspect pub-priv-pmap
crypto isakmp policy 1
encr aes 256
authentication pre-share
group 2
lifetime 84600
crypto isakmp policy 5
encr 3des
hash md5
authentication pre-share
group 2
lifetime 84600
crypto isakmp client configuration group BFvpn
key vPnBr1TT@ny9687!
dns 192.168.2.10
pool vpn_ip
acl remotevpn
crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac
crypto ipsec transform-set aes-256-sha esp-aes 256 esp-sha-hmac
crypto dynamic-map vpn 65535
set transform-set ESP-3DES-MD5
crypto map vpn client authentication list AAA-VPN
crypto map vpn isakmp authorization list AAA-VPN
crypto map vpn client configuration address respond
crypto map vpn 65535 ipsec-isakmp dynamic vpn
interface FastEthernet0/0
ip address 75.150.67.105 255.255.255.252
no ip redirects
no ip unreachables
no ip proxy-arp
ip nat outside
ip virtual-reassembly in
zone-member security public
duplex auto
speed auto
crypto map vpn
interface FastEthernet0/1
ip address 172.16.250.1 255.255.255.252
no ip redirects
no ip unreachables
no ip proxy-arp
ip nat inside
ip virtual-reassembly in
zone-member security private
speed 100
full-duplex
interface FastEthernet0/3/0
switchport mode trunk
no ip address
interface FastEthernet0/3/1
no ip address
interface FastEthernet0/3/2
no ip address
interface FastEthernet0/3/3
no ip address
interface Vlan1
no ip address
interface Vlan413
ip address 170.163.128.202 255.255.255.252
no ip redirects
no ip unreachables
no ip proxy-arp
ip nat outside
ip virtual-reassembly in
zone-member security public
router eigrp 1
network 172.16.0.0
ip local policy route-map LocalPBR
ip local pool vpn_ip 172.16.251.10 172.16.251.20
ip forward-protocol nd
no ip http server
no ip http secure-server
ip nat inside source static tcp 172.16.8.40 3001 172.16.250.1 3001
ip nat inside source route-map NAT-HFC interface FastEthernet0/0 overload
ip nat inside source route-map NAT-OPT interface Vlan413 overload
ip route 0.0.0.0 0.0.0.0 75.150.67.106 track 3
ip route 0.0.0.0 0.0.0.0 170.163.128.201 5
ip access-list standard remotevpn
permit 172.16.0.0 0.15.255.255
ip sla 1
icmp-echo 75.150.67.106 source-interface FastEthernet0/0
frequency 30
ip sla schedule 1 life forever start-time now
ip sla 2
icmp-echo 170.163.128.201 source-interface Vlan413
frequency 30
ip sla schedule 2 life forever start-time now
access-list 1 permit 170.163.0.0 0.0.255.255
access-list 1 remark for Telnet & SNMP Restrictions
access-list 1 permit 172.16.8.0 0.0.3.255
access-list 7 permit 172.16.8.40
access-list 7 permit 172.16.8.41
access-list 7 permit 172.16.8.42
access-list 7 permit 172.16.8.43
access-list 10 permit 75.150.67.105
access-list 20 permit 170.163.128.202
access-list 102 deny ip any 10.0.0.0 0.255.255.255
access-list 102 deny ip any 172.16.0.0 0.15.255.255
access-list 102 deny ip any 192.168.0.0 0.0.255.255
access-list 102 permit ip 172.16.0.0 0.0.15.255 any
access-list 102 permit ip 172.16.0.0 0.15.255.255 any
access-list 110 permit ip any any
access-list 111 permit ip 172.16.251.0 0.0.0.255 172.16.0.0 0.15.255.255
access-list 111 deny ip any any
route-map LocalPBR permit 10
match ip address 10
set ip default next-hop 75.150.67.106
route-map LocalPBR permit 20
match ip address 20
set ip default next-hop 170.163.128.201
route-map NAT-HFC permit 10
match ip address 102
match interface FastEthernet0/0
route-map NAT-OPT permit 10
match ip address 102
match interface Vlan413
snmp-server community chimenet#3000 RO 1
snmp-server enable traps tty
tacacs-server host 170.163.248.63
tacacs-server host 170.163.248.64
tacacs-server directed-request
tacacs-server key 7 06050728414B071C1154405B5C54Hello Jherrera,
Trust you are doing great.
Could you please additionally configure "ip nat outside" under interface Fastethernet 0/1 and "ip nat inside" under interface vlan 413 and interface fa 0/0 and check if the its working.
Regards,
Mohit
**Please rate if you find this post helpfull -
VPN between RV042 and Cisco 2801
HI
Kindly help me out. I'm configuring a p2p vpn between a cisco 2801 with IOS 12.3 and a linksys RV042. I'm getting following error on Linksys and Cisco respectively.
[Tunnel Negotiation Info] >>> Initiator Send Main Mode 1st packet
Dec 19 02:40:42 2011
VPN Log
Received informational payload, type NO_PROPOSAL_CHOSEN
dst src state conn-id slot status
x.x.x.x x.x.x.x MM_NO_STATE 0 0 ACTIVE
Below are my config:
Linksys RV042:
Keying Mode: IKE with Preshared Key
Phase1 DH Group: Group2
Phase1 Encryption: 3DES
Phase1 Authentication: MD5
Phase1 SA Life Time: 28800
Perfect forward secrecy : enabled
Phase2 DH Group: Group2
Phase2 Encryption: 3DES
Phase2 Authentication: MD5
Phase2 SA Life Time: 28800
Preshared Key: xxxxxx
Cisco 2801:
crypto isakmp policy 11
encr 3des
authentication pre-share
group 2
lifetime 28800
crypto isakmp key xxxxxx address xxxxxx
no crypto isakmp ccm
crypto ipsec transform-set STRONGER esp-3des esp-md5-hmac
crypto map myvpn 10 ipsec-isakmp
set peer xxxxxx
set transform-set STRONGER
set pfs group2
match address 103
interface FastEthernet0/0
ip address 10.0.0.56 255.255.255.0
ip nat inside
ip virtual-reassembly
no ip route-cache
duplex auto
speed auto
no mop enabled
interface FastEthernet0/1
ip address xxxx xxxx
ip nat outside
ip virtual-reassembly
no ip route-cache
duplex auto
speed auto
crypto map myvpn
ip nat pool branch xxxxxx xxxxx netmask 255.255.255.240
ip nat inside source route-map nonat pool branch overload
access-list 103 permit ip 10.0.0.0 0.0.0.255 192.168.2.0 0.0.0.255
access-list 110 deny ip 10.0.0.0 0.0.0.255 192.168.2.0 0.0.0.255
access-list 110 permit ip 10.0.0.0 0.0.0.255 any
snmp-server community public RO
route-map nonat permit 10
match ip address 110
Rgards
SAMHi,
It looks like you are using the default hash for the crypto isakmp policy and that your connection is failing on the phase 1 negotiation. The default hash on the crypto isakmp policy is sha. On the 2801 try adding hash md5.
crypto isakmp policy 11
encr 3des
hash md5
authentication pre-share
group 2
lifetime 28800
Let me know if that helps.
Thank you,
Jason NIckle -
We have a 2801 with an existing T1 card. We would like to replace with a 2851.
Will the T1 card on the 2801 work on the 2851?Perform the "show diag" command instead. It will show you the part number of the T1 card.
For example:
WIC-1DSU-T1 (supported in the older 2600 series)
WIC-1DSU-T1-V2 (supported in the newer 2600xm and beyond)
WIC-1T
WIC-2T
VWIC-1MFT-T1
VWIC-2MFT-T1
VWIC2-2MFT-T1
You could also use the "relevant interfaces and modules" link under the 2800 series routers.
http://www.cisco.com/en/US/products/ps5854/products_relevant_interfaces_and_modules.html -
Fan Part Numbers for Cisco 2801, 2821 and 2851 fans
I have P/Ns for Cisco 2811 router fans as follows:
ACS-2811-FAN-1/2= and ACS-2811-FAN-3=
But I do not have part numbers for fans used in 2801, 2821 and 2851 routers.
Does anyone have these prt numbers?
It doesn't make sense to change the whole router for just a fan failure.Hi
for the 2821 and 2851 routers the fan is the same : ACS-2821-51-FANS=
for 2801 the whole chassis needs to be replaced -
Cisco 2801 PPP connection configuration
i need to configure cisco Router 2801 PPP internet connection
currently i have 100 MB ADSL connection.planning to implement cisco Router
2801 on our network.please help me to do configuration on cisco router as PPP connection.
my cyber subnetwork is 172.16.x.x
Nazeem.Hi there,
1. The lines you reference are the default message of the day banner on the ISR routers. To remove the message, go into configuration mode and enter the command "no banner motd"
2. Here's a sample configuration of configuring CME and CUE. The sample configuration should work on your 2801 ISR router. Feel free to give it a try and post here is you run into any issues or need clarification on anything.
http://www.cisco.com/en/US/products/sw/voicesw/ps5520/products_configuration_example09186a008037f2a9.shtml
Hope this helps.
Regards,
Michael. -
I am trying to get NAT working on a Cisco 2801 with HWIC-4ESW.
I have a 2801 that had a failed Fe0/1 port. The Fe0/1 port was used to give sub-interface Fe0/0.200 access to internet. We installed a HWIC-4ESW into the 2801. I have successfully moved the sub-interfaces ( 0/0.1 , 0/0.100 , and 0/0.200 ) from the Fe0/0 to the HWIC-4ESW. I have reconfigured the Fe0/0 to connect to my ISP. However, I cannot get traffic from vlan200 to pass to the internet over Fe0/0. I have a guest wireless network set for vlan 200. Clients get an IP address in the appropriate range (192.168.200.0), but they cannot get to the internet. Below I have included the results of "sh ip int brief" and some of the "sh run". I think that it is something simple, but I canot get it working.
Help would be appreciated.
Interface IP-Address OK? Method Status Protocol
FastEthernet0/0 ***.**.244.194 YES manual up up
FastEthernet0/0.200 unassigned YES unset deleted down
Service-Engine0/0 192.168.100.254 YES TFTP up up
FastEthernet0/1 unassigned YES NVRAM administratively down down
FastEthernet0/1/0 unassigned YES unset up up
FastEthernet0/1/1 unassigned YES unset up up
FastEthernet0/1/2 unassigned YES unset administratively down down
FastEthernet0/1/3 unassigned YES unset administratively down down
Serial0/3/0:0 unassigned YES unset down down
Serial0/3/0:1 unassigned YES unset down down
Serial0/3/0:2 unassigned YES unset down down
Serial0/3/0:3 unassigned YES unset down down
Serial0/3/0:4 unassigned YES unset down down
Serial0/3/0:5 unassigned YES unset down down
Serial0/3/0:6 unassigned YES unset down down
Serial0/3/0:7 unassigned YES unset down down
Serial0/3/0:8 unassigned YES unset down down
Serial0/3/0:9 unassigned YES unset down down
Serial0/3/0:10 unassigned YES unset down down
Serial0/3/0:11 unassigned YES unset down down
Serial0/3/0:12 unassigned YES unset down down
Serial0/3/0:13 unassigned YES unset down down
Serial0/3/0:14 unassigned YES unset down down
Serial0/3/0:15 unassigned YES unset down down
Serial0/3/0:23 unassigned YES NVRAM up up
Vlan1 192.168.1.254 YES NVRAM up up
Vlan100 192.168.100.254 YES NVRAM up up
Vlan200 192.168.200.254 YES NVRAM up up
NVI0 ***.12.244.194 YES unset administratively down down
ip source-route
no ip dhcp use vrf connected
ip dhcp excluded-address 192.168.100.1 192.168.100.99
ip dhcp excluded-address 192.168.100.200 192.168.100.254
ip dhcp excluded-address 192.168.200.1 192.168.200.99
ip dhcp excluded-address 192.168.200.200 192.168.200.254
ip dhcp pool Phones
network 192.168.100.0 255.255.255.0
option 150 ip 192.168.100.254
default-router 192.168.100.254
dns-server 192.168.1.8
ip dhcp pool guestwireless
network 192.168.200.0 255.255.255.0
default-router 192.168.200.254
dns-server 8.8.8.8 8.8.4.4
ip cef
no ip domain lookup
ip domain name pwa.com
ip name-server 8.8.8.8
ip name-server 8.8.4.4
controller T1 0/3/0
pri-group timeslots 1-16,24
controller T1 0/3/1
shutdown
gw-accounting aaa
gw-accounting syslog
interface FastEthernet0/0
description Guestwireless route to internet
ip address ***.**.244.194 255.255.255.240
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
interface Service-Engine0/0
ip unnumbered Vlan100
service-module ip address 192.168.100.200 255.255.255.0
service-module ip default-gateway 192.168.100.254
no cdp enable
interface FastEthernet0/1
no ip address
shutdown
duplex auto
speed auto
interface FastEthernet0/1/0
description trunk to switch
switchport mode trunk
duplex full
speed 100
interface FastEthernet0/1/1
description voice
switchport access vlan 100
interface FastEthernet0/1/2
shutdown
interface FastEthernet0/1/3
shutdown
interface Serial0/3/0:23
no ip address
encapsulation hdlc
isdn switch-type primary-ni
isdn incoming-voice voice
isdn supp-service name calling
no cdp enable
interface Vlan1
description Data
ip address 192.168.1.254 255.255.255.0
interface Vlan100
description voice vlan
ip address 192.168.100.254 255.255.255.0
h323-gateway voip bind srcaddr 192.168.100.254
interface Vlan200
description Guestwireless Data
ip address 192.168.200.254 255.255.255.0
ip nat inside
ip virtual-reassembly
ip forward-protocol nd
ip http server
ip http authentication local
ip http secure-server
ip http timeout-policy idle 60 life 86400 requests 10000
ip http path flash:
ip nat inside source list 10 interface FastEthernet0/0 overload
ip route 0.0.0.0 0.0.0.0 192.168.1.1
ip route 192.168.100.200 255.255.255.255 Service-Engine0/0
ip route 192.168.200.0 255.255.255.0 FastEthernet0/0
ip radius source-interface Vlan100
access-list 10 permit 192.168.200.0 0.0.0.255So, I just built this in the lab, and it seemed to work ok. I attached a sparse config, but it does let my host on the GuestWireless get the internet via NAT.
R2#sh ip nat translations vrf GuestWireless
Pro Inside global Inside local Outside local Outside global
icmp 17.12.244.194:5 192.168.200.1:5 1.1.1.1:5 1.1.1.1:5
R2#sh ip route vrf GuestWireless
Routing Table: GuestWireless
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route
Gateway of last resort is 17.12.244.195 to network 0.0.0.0
17.0.0.0/28 is subnetted, 1 subnets
C 17.12.244.192 is directly connected, FastEthernet0/0
C 192.168.200.0/24 is directly connected, Vlan200
S* 0.0.0.0/0 [1/0] via 17.12.244.195
Maybe you are looking for
-
Posting error in doing goods receipt
Hi,, I'm getting an error when try to do a goods receipt for 21.01.2010 "Posting only possible in periods 2009/03 and 0000/00 in company code 1000" I would need to change the posting date?but i'm not sure how to do and where ?please detailed me... Th
-
Connect a 4th gen iPad via tether?
I ordered a 4th gen iPad today (for work, wifi only) and I already have a 1st gen iPad at home. I use a late 2012 Mac-Mini at work and we do have wifi. However, where I am in the building there is no wifi due to the building itself (old TV station).
-
Calendar Event Invites - Time Zone Issue
Hi all! I just switched back to BlackBerry from iPhone, and love everything about it so far except one thing: time zone issues on calendar invites. My work uses an OS X hosted CalDAV server, and I was able to sync my existing calendars to it with
-
HT201335 How to do AirPlay mirroring with iPad mini and ATV2?
My iPad mini and my Apple TV 2 (both up to date) don't want to do AirPlay mirroring. Why? Regular AirPlay works. I can't even see the AirPlay button in the taskbar.
-
Is it possible to do this in JSTL / JSP - JavaBean with static properties ?
javaBean: public class Util { private static String s; public static void setS(String s) { this.s = s; } public static getS() { return s; } // some other static utilities needed to be called by other classes }JSP Page needs to output the value