didigno ha scritto:Prova a postare la config dell'877 che proviamo a controllare

...giustamente
Segato qui e là, ma il concetto dovrebbe essere questo...
-------------
!
dot11 ssid XXXXXXXX
vlan 3
authentication open
authentication key-management wpa
guest-mode
wpa-psk ascii 7 XXXXXXXXXXXXXXXXXX
!
dot11 wpa handshake timeout 2000
no ip source-route
!
!
!
!
policy-map SDM-QoS-Policy-1
class Voip
set dscp ef
priority percent 33
police cir 64000 bc 600000 be 700000
conform-action transmit
exceed-action drop
!
bridge irb
!
interface Null0
no ip unreachables
!
interface ATM0
no ip address
no ip redirects
no ip unreachables
no ip proxy-arp
ip flow ingress
no atm ilmi-keepalive
!
interface ATM0.1 point-to-point
description $ES_WAN$
no ip redirects
no ip unreachables
no ip proxy-arp
ip flow ingress
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 1
!
!
interface FastEthernet0
description Rete_Locale
switchport mode trunk
!
interface FastEthernet1
description VOIP
switchport access vlan 2
!
interface FastEthernet2
!
interface FastEthernet3
!
interface Dot11Radio0
no ip address
no ip redirects
no ip unreachables
no ip proxy-arp
ip flow ingress
!
encryption vlan 3 mode ciphers tkip
!
ssid XXXXXXXXXX
!
parent 2 XXXXXXXXXXXXX
parent 3 XXXXXXXXXXXXX
parent timeout 900
speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0 54.0
channel 2437
station-role root
!
interface Dot11Radio0.1
no ip redirects
no ip unreachables
no ip proxy-arp
ip flow ingress
!
interface Dot11Radio0.3
encapsulation dot1Q 3 native
ip flow ingress
bridge-group 3
bridge-group 3 subscriber-loop-control
bridge-group 3 spanning-disabled
bridge-group 3 block-unknown-source
no bridge-group 3 source-learning
no bridge-group 3 unicast-flooding
!
interface Vlan1
description Rete_Locale
no ip address
ip tcp adjust-mss 1452
bridge-group 1
!
interface Vlan2
description VOIP
no ip address
ip tcp adjust-mss 1452
bridge-group 2
!
interface Vlan3
description Data_Center
no ip address
ip tcp adjust-mss 1452
bridge-group 3
!
!
interface BVI1
description $FW_INSIDE$
ip address 192.168.1.1 255.255.255.0
ip access-group 102 in
no ip redirects
no ip unreachables
no ip proxy-arp
ip nbar protocol-discovery
ip flow ingress
ip nat inside
ip virtual-reassembly
ip tcp adjust-mss 1452
!
interface BVI2
description $FW_INSIDE$
ip address 172.16.1.1 255.255.0.0
no ip redirects
no ip unreachables
no ip proxy-arp
ip nbar protocol-discovery
ip flow ingress
ip nat inside
ip virtual-reassembly
ip tcp adjust-mss 1452
!
interface BVI3
description $FW_INSIDE$
ip address 10.10.1.1 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
ip nbar protocol-discovery
ip flow ingress
ip nat inside
ip virtual-reassembly
ip tcp adjust-mss 1452
!
no ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 Dialer0
ip http server
ip http access-class 5
ip http authentication local
ip http secure-server
!
control-plane
!
bridge 1 protocol ieee
bridge 1 route ip
bridge 2 protocol ieee
bridge 2 route ip
bridge 3 protocol ieee
bridge 3 route ip
!
line con 0
login authentication local_authen
no modem enable
transport output telnet
line aux 0
login authentication local_authen
transport output telnet
line vty 0 4
access-class 100 in
authorization exec local_author
login authentication local_authen
length 0
transport input telnet ssh
!
scheduler max-task-time 5000
scheduler allocate 4000 1000
scheduler interval 500
sntp server 207.46.197.32
sntp server 192.43.244.18
end
-----------------
Thanks!