SOHO77, prova e riprova ma nisba

Tutto ciò che ha a che fare con la configurazione di apparati Cisco (e non rientra nelle altre categorie)

Moderatore: Federico.Lagni

Rispondi
Mich61
n00b
Messaggi: 14
Iscritto il: gio 01 dic , 2005 7:38 pm
Località: Roma

Rieccomi, dopo vari tentativi, sono riuscito ad "inculcare" una mezza configurazione al mio modem.

Non so, se è giusta, però almeno adesso mi pinga ma non riesco comunque ad entrare nella sua interfaccia html.

Inoltre, è inutile dire che non si collega, praticamente, si accende la spia CD lato ADSL, mentre sul lato ETHERNET le 3 spie lampeggiano.

Dove ho sbagliato?

Questa è la configurazione:

Current configuration : 2747 bytes
!
version 12.1
no service single-slot-reload-enable
no service pad
service timestamps debug datetime msec
service timestamps log uptime
service password-encryption
!
hostname Router
!
logging rate-limit console 10 except errors
enable secret 5 XXXXXXXXXXXX
enable password 7 XXXXXXXXXX
!
username XXXXXXX@adslfast password 7 XXXXXXXXXXX
ip subnet-zero
no ip source-route
no ip finger
ip domain-name libero.it
ip name-server 195.210.91.100
ip name-server 195.70.192.100
ip dhcp excluded-address 192.168.254.254
ip dhcp excluded-address 192.168.1.1
!
ip dhcp pool CLIENT
import all
network 192.168.254.0 255.255.255.0
default-router 192.168.254.254
dns-server 193.70.192.25 193.70.152.25
!
ip dhcp pool LOCAL
network 192.168.1.0 255.255.255.0
default-router 192.168.1.1
dns-server 195.210.91.100 195.70.192.100
!
ip dhcp-server 192.168.254.254
no ip dhcp-client network-discovery
!
!
!
interface Ethernet0
ip address 192.168.1.1 255.255.255.0
ip accounting output-packets
ip nat inside
no ip mroute-cache
no keepalive
!
interface ATM0
no ip address
no ip mroute-cache
shutdown
no atm ilmi-keepalive
pvc 8/35
encapsulation aal5snap
protocol ppp dialer
dialer pool-member 1
!
dsl operating-mode auto
hold-queue 224 in
!
interface Dialer0
ip address negotiated
no ip redirects
no ip unreachables
no ip proxy-arp
ip mtu 1492
ip nat outside
encapsulation ppp
dialer pool 1
dialer-group 1
no cdp enable
ppp chap hostname XXXXXXXX@adslfast
ppp chap password 7 XXXXXXXXXXXXXXX
ppp pap sent-username XXXX@adslfast password 7 XXXXXXXXXX
!
ip classless
ip route 0.0.0.0 0.0.0.0 Dialer0
no ip http server
!
ip nat inside source list 1 interface Dialer0 overload
ip nat inside source list 101 interface Dialer0 overload
ip nat inside source static tcp 192.168.254.2 4662 interface Dialer0 4662
ip nat inside source static udp 192.168.254.2 4672 interface Dialer0 4672
access-list 101 permit ip 192.168.254.0 0.0.0.255 any
access-list 101 deny ip any any
access-list 101 permit tcp any host 192.168.254.2 eq 4662
access-list 101 permit udp any host 192.168.254.2 eq 4672
access-list 101 permit ip 192.168.1.0 0.0.0.255 any
dialer-list 1 protocol ip permit
banner motd ^CC

Router CISCO SOHO77 Privato

-----------------------------------------------

Ogni accesso non autorizzato e' proibito
Unauthorized access is prohibited

-----------------------------------------------

^C
!
line con 0
exec-timeout 0 0
transport input none
stopbits 1
line vty 0 4
password 7 XXXXXXXX
login local
!
scheduler max-task-time 5000
Mich61
n00b
Messaggi: 14
Iscritto il: gio 01 dic , 2005 7:38 pm
Località: Roma

@Matteo

Gira e rigira, sono riuscito ad attivare l'interfaccia web.

Da li ho resettato il router, e ho eseguito una configurazione, che seppur minima, almeno è funzionante.

La configurazione in oggetto è questa:

!
version 12.1
no service single-slot-reload-enable
no service pad
service timestamps debug uptime
service timestamps log uptime
service password-encryption
!
!
hostname CISCO_SOHO_77
!
logging rate-limit console 10 except errors
enable secret *****
!
username Jaidu privilege 15 password *****
!
username CISCO_SOHO_77 password *****
!
ip subnet-zero
no ip finger
ip name-server 193.70.152.15
ip name-server 193.70.152.25
ip dhcp excluded-address 192.168.1.1
!
ip dhcp pool CLIENT
import all
network 192.168.1.0 255.255.255.0
default-router 192.168.1.1
lease 0 2
!
no ip dhcp-client network-discovery
vpdn enable
no vpdn logging
!
vpdn-group 1
request-dialin
protocol pppoe
!
interface Ethernet0
description CRWS Generated text. Please do not delete

this:192.168.1.1-255.255.255.0
ip address 192.168.1.1 255.255.255.0 secondary
ip address 10.10.10.1 255.255.255.0
ip adjust-mss 1452
ip nat inside
ip tcp adjust-mss 1452
no ip mroute-cache
!
interface ATM0
no ip address
no ip mroute-cache
no atm ilmi-keepalive
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 1
!
dsl operating-mode auto
hold-queue 224 in
!
interface Dialer1
ip address negotiated
ip mtu 1492
ip nat outside
encapsulation ppp
ip tcp adjust-mss 1452
dialer pool 1
dialer remote-name redback
dialer-group 1
ppp authentication chap pap callin
ppp chap hostname USERNAME
ppp chap password PASSWORD
ppp pap sent-username USERNAME password PASSWORD
ppp ipcp dns request
ppp ipcp wins request
!
ip classless
ip route 0.0.0.0 0.0.0.0 Dialer1
ip http server
!
ip nat inside source list 102 interface Dialer1

overload
access-list 23 permit 192.168.1.0 0.0.0.255
access-list 23 permit 10.10.10.0 0.0.0.255
access-list 102 permit ip 192.168.1.0 0.0.0.255 any
dialer-list 1 protocol ip permit
!
line con 0
exec-timeout 120 0
transport input none
stopbits 1
line vty 0 4
access-class 23 in
exec-timeout 120 0
login local
length 0
!
scheduler max-task-time 5000
end


Adesso, ogni consiglio è utile, in quanto posso metter mano a qualcosa che funziona.

Se vuoi puoi dirmi cosa togliere e cosa inserire ai fini della sicurezza e prchè no per migliorare la situazione.

Grazie per la risposta, a presto.

Per chi volesse usarla, questa configurazione è fatta dal router per LIBERO-INFOSTRADA con IP dinamico su rete 4Mbps PPPoA.

p.s. cosa è questa riga:

ip address 10.10.10.1 255.255.255.0

E se non serve, come faccio a toglierla?

Per quanto ne abbia capito, basta inserire la stessa riga con un NO davanti, è così?
Mich61
n00b
Messaggi: 14
Iscritto il: gio 01 dic , 2005 7:38 pm
Località: Roma

Per chi avesse lo stesso mio problema, di seguito posto la configurazione minima che cmq funziona con LIBERO-INFOSTRADA con abbo flat a 4Mbps.

!
version 12.1
no service single-slot-reload-enable
no service pad
service timestamps debug uptime
service timestamps log uptime
service password-encryption
!
!
hostname CISCO_SOHO_77
!
logging rate-limit console 10 except errors
enable secret XXXXXX
!
username Jaidu privilege 15 password XXXXXX
!
username CISCO_SOHO_77 password XXXXXX
!
ip subnet-zero
no ip finger
ip name-server 193.70.152.15
ip name-server 193.70.152.25
ip dhcp excluded-address 192.168.1.1
!
ip dhcp pool CLIENT
import all
network 192.168.1.0 255.255.255.0
default-router 192.168.1.1
lease 0 2
!
no ip dhcp-client network-discovery
vpdn enable
no vpdn logging
!
vpdn-group 1
request-dialin
protocol pppoe
!
interface Ethernet0
description CRWS Generated text. Please do not delete this:192.168.1.1-255.255.255.0
ip address 192.168.1.1 255.255.255.0 secondary
ip address 10.10.10.1 255.255.255.0
ip adjust-mss 1452
ip nat inside
ip tcp adjust-mss 1452
no ip mroute-cache
!
interface ATM0
no ip address
no ip mroute-cache
no atm ilmi-keepalive
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 1
!
dsl operating-mode auto
hold-queue 224 in
!
interface Dialer1
ip address negotiated
ip mtu 1492
ip nat outside
encapsulation ppp
ip tcp adjust-mss 1452
dialer pool 1
dialer remote-name redback
dialer-group 1
ppp authentication chap pap callin
ppp chap hostname XXXXXX@adslfast
ppp chap password XXXXXX
ppp pap sent-username XXXXXX@adslfast password XXXXXX
ppp ipcp dns request
ppp ipcp wins request
!
ip classless
ip route 0.0.0.0 0.0.0.0 Dialer1
ip http server
!
ip nat inside source list 102 interface Dialer1 overload
access-list 23 permit 192.168.1.0 0.0.0.255
access-list 23 permit 10.10.10.0 0.0.0.255
access-list 102 permit ip 192.168.1.0 0.0.0.255 any
dialer-list 1 protocol ip permit
!
line con 0
exec-timeout 120 0
transport input none
stopbits 1
line vty 0 4
access-class 23 in
exec-timeout 120 0
login local
length 0
!
scheduler max-task-time 5000
end
Rispondi