Está en la página 1de 2

PPP R3(config-if)#encapsulation ppp R3(config-if)#compress [predictor Especifica que se utilizar un algoritmo de compresin predictor.

| stac Especifica que se utilizar un algoritmo de compresin Stacker (LZS).] Compresin en PPP R3(config-if)#ppp quality 80 Monitoreo de la calidad del enlace no ppp quality Router(config-if)#ppp multilink Balanceo de carga a travs de enlaces no ppp multilink. debug ppp , debug ppp negotiation, debug ppp error, debug ppp authentication ppp authentication username name password password del otro router. Pap ppp pap sent_username nombre pass cisco Frame Relay show frame-relay map, show frame-relay lmi, show frame-relay pvc [interfaceinterface] [dlci], debug frame-relay lmi no frame-relay inverse-arp encapsulation frame-relay Establecimiento del ancho de banda Use el comando bandwidth kb frame-relay map protocol(ip) protocol-address(prox salto) dlci(local) [broadcast] [ietf] [cisco]. estatico frame-relay lmi-type [cisco | ansi | q933a] R1(config-if)#interface serial 0/0/0.103 point-to-point crea subinterfaz punto a punto para PVC 103 a R3 Ip add local R1(config-subif)#frame-relay interface-dlci 103. clear frame-relay-inarp Para borrar las asignaciones de Frame Relay creadas de forma dinmica mediante el ARP inverso, use el comando Seguridad service password-encryption security passwords min-length 10 evitar registros de lineas line aux no pass login telnet y ssh line vty 0 4 no transport input transport input telnet ssh ssh line vty 0 4 no transport input transport input ssh vty seguro line vty 0 4 exec-timeout 3 exit service tcp-keepalives-in service timestamps Configuracin de la seguridad de SSH hostname hostname Defina los parmetros de los routers ip domain-name cisco.com Defina el nombre de dominio crypto key generate rsa Genere claves asimtricas username student secret cisco Configure la autenticacin local y el vty line vty 0 4 transport input ssh login local ip ssh time-out (15)seconds ip ssh authentication-retries (2)integer Configure tiempos de espera de SSH (opcional) no service tcp-small-servers o no service udp-small-servers. BOOTP: use el comando no ip bootp server. Finger: use el comando no service finger. HTTP: use el comando no ip http server. SNMP: use el comando no snmp-server. Protocolo de descubrimiento de Cisco (CDP): use el comando no cdp run. Configuracin remota: use el comando no service config. Enrutamiento de origen: use el comando no ip source-route. Enrutamiento sin clase: use el comando no ip classless. Interfaces no utilizadas: use el comando shutdown. Prevencin de ataques SMURF: use el comando no ip directed-broadcast. Enrutamiento ad hoc: use el comando no ip proxy-arp. passive-interface default Rip sin autorizacin Key chain RIP_KEY o EIGRP_KEY Key 1 Key-string cisco Interfaz ip rip authentication mode md5 /ip authentication mode eigrp 1 mde Ip rip authentication key-chain RIP KEY/ ip authentication key-chain eigrp 1 EIGRP_KEY Ospf int -> ip ospf message-digest-key 1 md5 cisco Ip ospf authentication message-digest Router ospf 10 Area 0 authentication message-digest ;;;Auto secure service timestamps show processes no debug all terminal monitor ACL ACL estndar access-list nmero-de-lista-de-acceso deny permit remark origen [wildcard origen] [log] Router(config-if)#ip access-group {nmero de lista de acceso | nombre de lista de acceso} {in | out} Uso de las ACL para controlar el acceso VTY

Access-list 21 permit x.x.x.x x.x.x.x Access-list 21 deny any Line vty 0 4 Login Pass secrte Access-class 21 in ACL nombrada ip access-list [standard/extended]name 10 permit xxxx 20 deny xxxx ACL extendidas R1(config)#access-list number [permit/deny/remark] protocol source wildcard destination wildcard eq 23 21 80 telnwt ftp http Dhcp Ip dhcp excluded-address low-address high-address Ip dhcp pool pool-Name Network net netmask Default-router address Dns-server address Domain-name domain Lease arrendamiento show ip dhcp binding show ip dhcp server show ip dhcp pool. Interfaz ip address dhcp. interfaz ip helper-address NAT Estatica Ip nat inside source static local-ip global-ip Interfaz ip nat inside/outside Dinamica Ip nat pool name start-ip end-ip netmask [netmask} Access-list number permit source wildcard Ip nat inside source list numberaccesslist pool name Interfaz ip nat inside/outside Sobrecarga Access-list number permit source wildcard Ip nat inside source list number interface {interface} overload O ip nat pool name start-ip end-ip netmask {netmask} [ip nat inside sourse list number pool name overload] Intefaz ip nat inside/outside show ip nat statistics sh ip nat translations sh ip nat translations verbose clear ip nat translation * clear ip nat translation inside global-ip local-ip [outside local-ip global-ip] clear ip nat translation protocol inside global-ip global-port local-ip local-port [outside local-ip local-port global-ip global-port] debug ip nat IPV6 ipv6 address ipv6prefix/prefix-length eui-64 Ipv6 unicast-routing Interface ip add xxx x x Ipv6 add xxxxx/xx ipv6 router rip name RouterX(config-if)#ipv6 rip name enable RIP Router rip Net directamente conectadas Redistribute static No auto-summary (v2) IGRP Router igrp [numero de Sistema autonomo] Net directamente conectadas principal OSPF Router ospf sa Net conectadas wildcard area EIGRP Router eigrp SA Net directamente conectadas Net directamente conectadas wildcard Para subredes especificas Predeterminado a null0 o 0.0.0.0 Ip route 0.0.0.0 0.0.0.0 siquiente salto default Router(config)# ip route IP destino + mscara de red destino subred destino IP del siguiente salto interfaz de salida distancia administrativa

También podría gustarte