Documentos de Académico
Documentos de Profesional
Documentos de Cultura
Ripv2 Nat DHCP CCNA2
Ripv2 Nat DHCP CCNA2
ATAUCURI
CONFIGURACIN DE RIPv2
Figura 1
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
RANGO DE
DIRECCIONES PRIVADA
Esttico
192.168.1.2
192.168.1.3
192.168.1.4
hasta
192.168.1.63
192.168.1.64
hasta
192.168.1.254
Dinmico
Por puerto
DIRECCIN
PBLICA DEL NAT
(Red 204.4.1.0/26)
204.4.1.2
204.4.1.3
204.4.1.4
hasta
204.4.1.14
204.4.1.15
DHCP
NO
NO
NO
SI
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
CONFIGURACIN DE ROUTER R1
version 12.4
!
hostname R1
!
ip subnet-zero
!
ip dhcp excluded-address 192.168.1.1 192.168.1.63
!
Configuracin
ip dhcp pool trujillo
del servidor
network 192.168.1.0 255.255.255.0
DHCP
default-router 192.168.1.1
dns-server 200.4.4.4
lease 2
!
no ip domain lookup
!
interface FastEthernet0/0
ip address 192.168.1.1 255.255.255.0
ip nat inside
ip virtual-reassembly
duplex auto
speed auto
!
interface FastEthernet0/1
ip address 21.2.2.1 255.255.255.252
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
!
ip classless
ip route 0.0.0.0 0.0.0.0 21.2.2.2
no ip http server
no ip http secure-server
!
ip nat pool lima 204.4.1.4 204.4.1.14 netmask 255.255.255.192 NAT dinmico
ip nat pool ica 204.4.1.15 204.4.1.15 netmask 255.255.255.192
NAT por puerto
NAT dinmico
ip nat inside source list 1 pool lima
NAT por puerto
ip nat inside source list 2 pool ica overload
ip nat inside source static 192.168.1.2 204.4.1.2
NAT esttico
ip nat inside source static 192.168.1.3 204.4.1.3
!
access-list 1 deny 192.168.1.3
NAT dinmico
access-list 1 deny 192.168.1.2
access-list 1 permit 192.168.1.0 0.0.0.63
access-list 2 deny 192.168.1.0 0.0.0.63
NAT por puerto
access-list 2 permit 192.168.1.0 0.0.0.255
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
!
line con 0
exec-timeout 0 0
logging synchronous
stopbits 1
line aux 0
stopbits 1
line vty 0 4
login
!
end
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
CONFIGURACIN DE ROUTER R2
version 12.4
!
hostname R2
!
ip subnet-zero
interface FastEthernet0/0
ip address 21.2.2.2 255.255.255.252
duplex auto
speed auto
!
interface FastEthernet0/1
ip address 20.1.1.2 255.255.255.252
duplex auto
speed auto
!
!
interface FastEthernet1/0
ip address 20.1.1.13 255.255.255.252
duplex auto
speed auto
!
interface FastEthernet1/1
ip address 20.1.1.21 255.255.255.252
duplex auto
speed auto
!
router rip
version 2
redistribute static
network 20.0.0.0
network 21.0.0.0
no auto-summary
!
ip classless
ip route 204.4.1.0 255.255.255.192 21.2.2.1
no ip http server
no ip http secure-server
!
line con 0
exec-timeout 0 0
logging synchronous
stopbits 1
line aux 0
stopbits 1
line vty 0 4
login
!
end
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE ROUTER R3
version 12.4
!
hostname R3
!
ip subnet-zero
!
interface FastEthernet0/0
ip address 20.1.1.1 255.255.255.252
duplex auto
speed auto
!
interface FastEthernet0/1
ip address 20.1.1.5 255.255.255.252
duplex auto
speed auto
!
router rip
version 2
network 20.0.0.0
no auto-summary
!
ip classless
no ip http server
no ip http secure-server
!
line con 0
exec-timeout 0 0
logging synchronous
stopbits 1
line aux 0
stopbits 1
line vty 0 4
login
!
end
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
CONFIGURACIN DE ROUTER R4
version 12.4
!
hostname R4
!
ip subnet-zero
!
interface FastEthernet0/0
ip address 20.1.1.6 255.255.255.252
duplex auto
speed auto
!
interface FastEthernet0/1
ip address 20.1.1.9 255.255.255.252
duplex auto
speed auto
!
interface FastEthernet1/0
ip address 20.1.1.22 255.255.255.252
duplex auto
speed auto
!
router rip
version 2
network 20.0.0.0
no auto-summary
!
ip classless
no ip http server
no ip http secure-server
!
line con 0
exec-timeout 0 0
logging synchronous
stopbits 1
line aux 0
stopbits 1
line vty 0 4
login
!
end
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
CONFIGURACIN DE ROUTER R5
version 12.4
!
hostname R5
!
ip subnet-zero
!
interface FastEthernet0/0
ip address 20.1.1.17 255.255.255.252
duplex auto
speed auto
!
interface FastEthernet0/1
ip address 20.1.1.14 255.255.255.252
duplex auto
speed auto
!
router rip
version 2
network 20.0.0.0
no auto-summary
!
ip classless
no ip http server
no ip http secure-server
!
line con 0
exec-timeout 0 0
logging synchronous
stopbits 1
line aux 0
stopbits 1
line vty 0 4
login
!
end
CONFIGURACIN DE RIPv2
CONFIGURACIN DE ROUTER R6
version 12.4
!
hostname R6
!
ip subnet-zero
!
interface FastEthernet0/0
ip address 20.1.1.10 255.255.255.252
duplex auto
speed auto
!
interface FastEthernet0/1
ip address 20.1.1.18 255.255.255.252
duplex auto
speed auto
!
interface FastEthernet1/0
ip address 21.2.2.5 255.255.255.252
duplex auto
speed auto
!
interface FastEthernet1/1
ip address 21.2.2.9 255.255.255.252
duplex auto
speed auto
!
router rip
version 2
redistribute static
network 20.0.0.0
network 21.0.0.0
no auto-summary
!
ip classless
ip route 200.1.1.0 255.255.255.128 21.2.2.6
ip route 200.1.1.128 255.255.255.128 21.2.2.10
no ip http server
no ip http secure-server
!
line con 0
exec-timeout 0 0
logging synchronous
stopbits 1
line aux 0
stopbits 1
line vty 0 4
login
!
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
R1#show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route
Gateway of last resort is 21.2.2.2 to network 0.0.0.0
21.0.0.0/30 is subnetted, 1 subnets
C
21.2.2.0 is directly connected, FastEthernet0/1
C 192.168.1.0/24 is directly connected, FastEthernet0/0
S* 0.0.0.0/0 [1/0] via 21.2.2.2
R1#
R2#show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route
Gateway of last resort is not set
204.4.1.0/26 is subnetted, 1 subnets
204.4.1.0 [1/0] via 21.2.2.1
21.0.0.0/30 is subnetted, 3 subnets
R
21.2.2.4 [120/2] via 20.1.1.22, 00:00:13, FastEthernet1/1
[120/2] via 20.1.1.14, 00:00:09, FastEthernet1/0
C
21.2.2.0 is directly connected, FastEthernet0/0
R
21.2.2.8 [120/2] via 20.1.1.22, 00:00:13, FastEthernet1/1
[120/2] via 20.1.1.14, 00:00:09, FastEthernet1/0
20.0.0.0/30 is subnetted, 6 subnets
C
20.1.1.20 is directly connected, FastEthernet1/1
R
20.1.1.16 [120/1] via 20.1.1.14, 00:00:09, FastEthernet1/0
R
20.1.1.4 [120/1] via 20.1.1.22, 00:00:13, FastEthernet1/1
[120/1] via 20.1.1.1, 00:00:26, FastEthernet0/1
C
20.1.1.0 is directly connected, FastEthernet0/1
C
20.1.1.12 is directly connected, FastEthernet1/0
R
20.1.1.8 [120/1] via 20.1.1.22, 00:00:15, FastEthernet1/1
200.1.1.0/25 is subnetted, 2 subnets
R
200.1.1.128 [120/2] via 20.1.1.22, 00:00:15, FastEthernet1/1
[120/2] via 20.1.1.14, 00:00:11, FastEthernet1/0
R
200.1.1.0 [120/2] via 20.1.1.22, 00:00:15, FastEthernet1/1
[120/2] via 20.1.1.14, 00:00:11, FastEthernet1/0
R2#
S
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
R3#show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route
Gateway of last resort is not set
204.4.1.0/26 is subnetted, 1 subnets
204.4.1.0 [120/1] via 20.1.1.2, 00:00:06, FastEthernet0/0
21.0.0.0/30 is subnetted, 3 subnets
R
21.2.2.4 [120/2] via 20.1.1.6, 00:00:19, FastEthernet0/1
R
21.2.2.0 [120/1] via 20.1.1.2, 00:00:06, FastEthernet0/0
R
21.2.2.8 [120/2] via 20.1.1.6, 00:00:19, FastEthernet0/1
20.0.0.0/30 is subnetted, 6 subnets
R
20.1.1.20 [120/1] via 20.1.1.6, 00:00:19, FastEthernet0/1
[120/1] via 20.1.1.2, 00:00:06, FastEthernet0/0
R
20.1.1.16 [120/2] via 20.1.1.6, 00:00:19, FastEthernet0/1
[120/2] via 20.1.1.2, 00:00:06, FastEthernet0/0
C
20.1.1.4 is directly connected, FastEthernet0/1
C
20.1.1.0 is directly connected, FastEthernet0/0
R
20.1.1.12 [120/1] via 20.1.1.2, 00:00:08, FastEthernet0/0
R
20.1.1.8 [120/1] via 20.1.1.6, 00:00:21, FastEthernet0/1
200.1.1.0/25 is subnetted, 2 subnets
R
200.1.1.128 [120/2] via 20.1.1.6, 00:00:21, FastEthernet0/1
R
200.1.1.0 [120/2] via 20.1.1.6, 00:00:21, FastEthernet0/1
R3#
R
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
R4#show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route
Gateway of last resort is not set
204.4.1.0/26 is subnetted, 1 subnets
204.4.1.0 [120/1] via 20.1.1.21, 00:00:17, FastEthernet1/0
21.0.0.0/30 is subnetted, 3 subnets
R
21.2.2.4 [120/1] via 20.1.1.10, 00:00:12, FastEthernet0/1
R
21.2.2.0 [120/1] via 20.1.1.21, 00:00:17, FastEthernet1/0
R
21.2.2.8 [120/1] via 20.1.1.10, 00:00:12, FastEthernet0/1
20.0.0.0/30 is subnetted, 6 subnets
C
20.1.1.20 is directly connected, FastEthernet1/0
R
20.1.1.16 [120/1] via 20.1.1.10, 00:00:12, FastEthernet0/1
C
20.1.1.4 is directly connected, FastEthernet0/0
R
20.1.1.0 [120/1] via 20.1.1.21, 00:00:17, FastEthernet1/0
[120/1] via 20.1.1.5, 00:00:24, FastEthernet0/0
R
20.1.1.12 [120/1] via 20.1.1.21, 00:00:17, FastEthernet1/0
C
20.1.1.8 is directly connected, FastEthernet0/1
200.1.1.0/25 is subnetted, 2 subnets
R
200.1.1.128 [120/1] via 20.1.1.10, 00:00:16, FastEthernet0/1
R
200.1.1.0 [120/1] via 20.1.1.10, 00:00:16, FastEthernet0/1
R4#
R
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
R5#show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route
Gateway of last resort is not set
204.4.1.0/26 is subnetted, 1 subnets
204.4.1.0 [120/1] via 20.1.1.13, 00:00:15, FastEthernet0/1
21.0.0.0/30 is subnetted, 3 subnets
R
21.2.2.4 [120/1] via 20.1.1.18, 00:00:15, FastEthernet0/0
R
21.2.2.0 [120/1] via 20.1.1.13, 00:00:15, FastEthernet0/1
R
21.2.2.8 [120/1] via 20.1.1.18, 00:00:15, FastEthernet0/0
20.0.0.0/30 is subnetted, 6 subnets
R
20.1.1.20 [120/1] via 20.1.1.13, 00:00:15, FastEthernet0/1
C
20.1.1.16 is directly connected, FastEthernet0/0
R
20.1.1.4 [120/2] via 20.1.1.18, 00:00:15, FastEthernet0/0
[120/2] via 20.1.1.13, 00:00:15, FastEthernet0/1
R
20.1.1.0 [120/1] via 20.1.1.13, 00:00:15, FastEthernet0/1
C
20.1.1.12 is directly connected, FastEthernet0/1
R
20.1.1.8 [120/1] via 20.1.1.18, 00:00:17, FastEthernet0/0
200.1.1.0/25 is subnetted, 2 subnets
R
200.1.1.128 [120/1] via 20.1.1.18, 00:00:17, FastEthernet0/0
R
200.1.1.0 [120/1] via 20.1.1.18, 00:00:17, FastEthernet0/0
R5#
R
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
R6#show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route
Gateway of last resort is not set
204.4.1.0/26 is subnetted, 1 subnets
204.4.1.0 [120/2] via 20.1.1.17, 00:00:13, FastEthernet0/1
[120/2] via 20.1.1.9, 00:00:02, FastEthernet0/0
21.0.0.0/30 is subnetted, 3 subnets
C
21.2.2.4 is directly connected, FastEthernet1/0
R
21.2.2.0 [120/2] via 20.1.1.17, 00:00:13, FastEthernet0/1
[120/2] via 20.1.1.9, 00:00:02, FastEthernet0/0
C
21.2.2.8 is directly connected, FastEthernet1/1
20.0.0.0/30 is subnetted, 6 subnets
R
20.1.1.20 [120/1] via 20.1.1.9, 00:00:02, FastEthernet0/0
C
20.1.1.16 is directly connected, FastEthernet0/1
R
20.1.1.4 [120/1] via 20.1.1.9, 00:00:02, FastEthernet0/0
R
20.1.1.0 [120/2] via 20.1.1.17, 00:00:13, FastEthernet0/1
[120/2] via 20.1.1.9, 00:00:02, FastEthernet0/0
R
20.1.1.12 [120/1] via 20.1.1.17, 00:00:14, FastEthernet0/1
C
20.1.1.8 is directly connected, FastEthernet0/0
200.1.1.0/25 is subnetted, 2 subnets
S
200.1.1.128 [1/0] via 21.2.2.10
S
200.1.1.0 [1/0] via 21.2.2.6
R6#
R
R7#show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route
Gateway of last resort is 21.2.2.5 to network 0.0.0.0
21.0.0.0/30 is subnetted, 1 subnets
21.2.2.4 is directly connected, FastEthernet0/1
200.1.1.0/25 is subnetted, 1 subnets
C
200.1.1.0 is directly connected, FastEthernet0/0
S* 0.0.0.0/0 [1/0] via 21.2.2.5
R7#
C
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
R8#show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route
Gateway of last resort is 21.2.2.9 to network 0.0.0.0
21.0.0.0/30 is subnetted, 1 subnets
21.2.2.8 is directly connected, FastEthernet0/1
200.1.1.0/25 is subnetted, 1 subnets
C
200.1.1.128 is directly connected, FastEthernet0/0
S* 0.0.0.0/0 [1/0] via 21.2.2.9
R8#
C
7.- VERIFICACIN
NAT esttico
Desde una PC con direccin 192.168.1.2 (ubicada en la LAN conectada al router R1) se
prueba conectividad al host 200.1.1.130, utilizando el comando ping 200.1.1.130. Se
observa en el router R1, la tabla del NAT con el comando show ip nat translation:
R1#show ip nat translation
Pro Inside global inside local
Outside local Outside global
icmp 204.4.1.2:42837 192.168.1.2:42837 200.1.1.130:42837 200.1.1.130:42837
icmp 204.4.1.2:43349 192.168.1.2:43349 200.1.1.130:43349 200.1.1.130:43349
icmp 204.4.1.2:43861 192.168.1.2:43861 200.1.1.130:43861 200.1.1.130:43861
icmp 204.4.1.2:44373 192.168.1.2:44373 200.1.1.130:44373 200.1.1.130:44373
icmp 204.4.1.2:44629 192.168.1.2:44629 200.1.1.130:44629 200.1.1.130:44629
--- 204.4.1.2
192.168.1.2
------- 204.4.1.3
192.168.1.3
----R1#
NAT dinmico
Para verificar el NAT dinmico, desde dos PC con direccin 192.168.1.55 y 192.168.1.37
(ubicada en la LAN conectada al router R1) se prueba conectividad al host 200.1.1.130, Se
observa en el router R1, la tabla del NAT con el comando show ip nat translation:
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012
CONFIGURACIN DE RIPv2
ddiaz1610@gmail.com / ddiaz@inictel-uni.edu.pe
http://www.danieldiaza.com
Lima, Abril de 2012