Abilitare la funzione firewall su Soho 97
Inviato: dom 17 dic , 2006 6:22 pm
Ciao a tutti,
spulcio da tempo il vs forum e con grande ammirazione per theirish che molte volte indirettamente con le sue risposte mi ha aiutato nelle mie peripezie nel mondo cisco.
Ho un cisco soho 97 comprato usato e correttamente (spero configurato) e
ora vorrei abilitare la funzione firewall sul predetto.
ho una bella collezione di Ios ma mi reputo per il momento soddisfatto con questa a parte che nn riesco a caricare sto benedetto firewall.
idee? dopve posso reperire la parte di conf relativa al firewall per il mio router?
ringraziandovi per l'aiuto e il tempo concessomi
Ora sta girando ocn la seguente configurazione:
alla fine del boot ho questi 2 errori (ma penso cmq trascurabili) viste le mie ricerche sul web:
boostrap:
^
||
||
riporto qui x' non funzionano i bbcode nel code:
no aaa new-model
^
% Invalid input detected at '^' marker.
%NAT: Error activating CNBAR on the interface Ethernet0
%NAT: Error activating CNBAR on the interface Dialer1
spulcio da tempo il vs forum e con grande ammirazione per theirish che molte volte indirettamente con le sue risposte mi ha aiutato nelle mie peripezie nel mondo cisco.
Ho un cisco soho 97 comprato usato e correttamente (spero configurato) e
ora vorrei abilitare la funzione firewall sul predetto.
ho una bella collezione di Ios ma mi reputo per il momento soddisfatto con questa a parte che nn riesco a caricare sto benedetto firewall.
idee? dopve posso reperire la parte di conf relativa al firewall per il mio router?
ringraziandovi per l'aiuto e il tempo concessomi

Ora sta girando ocn la seguente configurazione:
Codice: Seleziona tutto
Current configuration : 2670 bytes
!
version 12.3
no service pad
service timestamps debug uptime
service timestamps log uptime
service password-encryption
!
hostname **********
!
boot-start-marker
boot-end-marker
!
enable secret 5 ******************************
enable password 7 *************************************
!
ip subnet-zero
ip name-server 88.149.128.12
ip name-server 88.149.128.22
ip dhcp excluded-address 192.168.1.1
ip dhcp excluded-address 192.168.1.254
!
ip dhcp pool CLIENT
import all
network 192.168.1.0 255.255.255.0
default-router 192.168.1.254
lease 0 2
!
!
no aaa new-model
!
!
!
!
no crypto isakmp enable
!
!
!
interface Ethernet0
ip address 192.168.1.254 255.255.255.0
ip nat inside
hold-queue 100 out
!
interface ATM0
no ip address
dsl operating-mode auto
hold-queue 224 in
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 1
!
!
interface Dialer1
ip address **** 255.255.255.0
ip nat outside
encapsulation ppp
dialer pool 1
dialer-group 1
ppp chap hostname xxxxxxxxxxxx
ppp chap password 7 *****************
ppp pap sent-username *************** password 7 *****************
!
ip classless
ip route 0.0.0.0 0.0.0.0 Dialer1
no ip http server
no ip http secure-server
ip nat inside source list 1 interface Dialer1 overload
ip nat inside source static tcp 192.168.1.1 4713 interface Dialer1 4713
ip nat inside source static udp 192.168.1.1 4712 interface Dialer1 4712
ip nat inside source static tcp 192.168.1.1 5900 interface Dialer1 5900
ip nat inside source static tcp 192.168.1.1 6000 interface Dialer1 6000
ip nat inside source static tcp 192.168.1.1 4711 interface Dialer1 4711
ip nat inside source static tcp 192.168.1.1 80 interface Dialer1 80
ip nat inside source static tcp 192.168.1.1 21 interface Dialer1 21
ip nat inside source static tcp 192.168.1.1 6881 interface Dialer1 6881
ip nat inside source static tcp 192.168.1.1 6666 interface Dialer1 6666
ip nat inside source static tcp 192.168.1.1 6667 interface Dialer1 6667
ip nat inside source static tcp 192.168.1.1 6668 interface Dialer1 6668
ip nat inside source static tcp 192.168.1.1 2710 interface Dialer1 2710
!
!
access-list 1 permit 192.168.1.0 0.0.0.255
access-list 23 permit 192.168.1.0 0.0.0.255
dialer-list 1 protocol ip permit
!
control-plane
!
!
line con 0
exec-timeout 120 0
no modem enable
transport preferred all
transport output all
stopbits 1
line aux 0
transport preferred all
transport output all
stopbits 1
line vty 0 4
access-class 23 in
exec-timeout 120 0
password 7 104D061A0616000F0D3B7B72707A
login
length 0
transport preferred all
transport input all
transport output all
!
scheduler max-task-time 5000
!
end
alla fine del boot ho questi 2 errori (ma penso cmq trascurabili) viste le mie ricerche sul web:
boostrap:
Codice: Seleziona tutto
00:29:01: %SYS-5-RELOAD: Reload requested by console. Reload Reason: Reload comm
and.
System Bootstrap, Version 12.2(11r)YV3,
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 2004 by cisco Systems, Inc.
C800/SOHO series (Board ID: 22-128) platform with 65536 Kbytes of main memory
program load complete, entry point: 0x80013000, size: 0x54dc74
Self decompressing the image : #################################################
############################################# [OK]
Restricted Rights Legend
Use, duplication, or disclosure by the Government is
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software - Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.
cisco Systems, Inc.
170 West Tasman Drive
San Jose, California 95134-1706
Cisco IOS Software, SOHO97 Software (SOHO97-K9OY1-M), Version 12.3(7)T11, RELEAS
E SOFTWARE (fc3)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2005 by Cisco Systems, Inc.
Compiled Fri 15-Jul-05 09:00 by dchih
Image text-base: 0x800131C0, data-base: 0x809D0CBC
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
[email protected].
Cisco SOHO97 (MPC857DSL) processor (revision 0x500) with 58983K/6553K bytes of m
emory.
Processor board ID FCZ093341SF (1409697396), with hardware revision 0000
CPU rev number 7
1 Ethernet interface
1 ATM interface
128K bytes of NVRAM.
8192K bytes of processor board System flash (Read/Write)
2048K bytes of processor board Web flash (Read/Write)
no aaa new-model
^
% Invalid input detected at '^' marker.
%NAT: Error activating CNBAR on the interface Ethernet0
%NAT: Error activating CNBAR on the interface Dialer1
||
||
riporto qui x' non funzionano i bbcode nel code:
no aaa new-model
^
% Invalid input detected at '^' marker.
%NAT: Error activating CNBAR on the interface Ethernet0
%NAT: Error activating CNBAR on the interface Dialer1