You are on page 1of 5

Follow these steps to do, to protect you 85% Configure PC1:

R1At the privileged E EC !ode, copy the following code to direct " one#ti!e no service ti!est"!ps log d"teti!e !sec no service ti!est"!ps de$ug d"teti!e !sec no service p"ssword#encryption hostn"!e R1 en"$le secret 5 %1%!ERr%&c'()*E+,-ur.iF)/0eCi1 ip ssh version 1 interf"ce F"stEthernet121 ip "ddress 134/15/1/1&6 455/455/455/447 ip "ccess#group 51 out duple8 "uto speed "uto no shutdown interf"ce F"stEthernet121 no ip "ddress duple8 "uto speed "uto shutdown interf"ce 9eri"l12121 ip "ddress 134/61/1/1 455/455/455/454 cloc: r"te 4111111 interf"ce 9eri"l12121

no ip "ddress enc"psul"tion fr"!e#rel"y interf"ce 9eri"l12121/111 point#to#point ip "ddress 11/11/11/1 455/455/455/454 fr"!e#rel"y interf"ce#dlci 111 interf"ce ;l"n1 no ip "ddress shutdown router eigrp 111 networ: 134/15/1/1 networ: 134/61/1/1 networ: 11/1/1/1 no "uto#su!!"ry ip cl"ssless "ccess#list 51 deny 134/15/1/148 1/1/1/56 "ccess#list 51 per!it "ny $"nner !otd <CAuthori=ed Access >nly?<C logging tr"p de$ugging line con 1 e8ec#ti!eout 1 1 p"ssword cisco logging synchronous login line vty 1 7 e8ec#ti!eout 1 1 p"ssword cisco logging synchronous login line vty 5 15 e8ec#ti!eout 1 1 p"ssword cisco logging synchronous login ntp upd"te#c"lend"r end

R4: the direct one#ti!e privileged E EC !ode, copy the following code: no service ti!est"!ps log d"teti!e !sec no service ti!est"!ps de$ug d"teti!e !sec no service p"ssword#encryption hostn"!e R4 en"$le secret 5 %1%!ERr%&c'()*E+,-ur.iF)/0eCi1

usern"!e R6 p"ssword 1 ciscoch"p ip ssh version 1 ip n"!e#server 1/1/1/1 interf"ce F"stEthernet121 no ip "ddress duple8 "uto speed "uto shutdown interf"ce F"stEthernet121 no ip "ddress duple8 "uto speed "uto shutdown interf"ce 9eri"l12121 ip "ddress 134/61/1/5 455/455/455/454 enc"psul"tion ppp ppp "uthentic"tion ch"p ip n"t inside interf"ce 9eri"l12121 no ip "ddress no shutdown enc"psul"tion fr"!e#rel"y interf"ce 9eri"l12121/411 point#to#point ip "ddress 11/11/11/4 455/455/455/454 fr"!e#rel"y interf"ce#dlci 411 ip n"t inside interf"ce 9eri"l12121 ip "ddress 41&/155/411/4 455/455/455/454 ip "ccess#group F*RE@AAA in ip n"t outside interf"ce 9eri"l12121 no ip "ddress shutdown interf"ce ;l"n1 no ip "ddress shutdown router eigrp 111 redistri$ute st"tic networ: 11/1/1/1 networ: 134/61/1/1 no "uto#su!!"ry ip n"t inside source list 1 interf"ce 9eri"l12121 overlo"d ip cl"ssless ip route 1/1/1/1 1/1/1/1 9eri"l12121

"ccess#list 1 per!it 134/15/1/148 1/1/1/143 ip "ccess#list e8tended F*RE@AAA deny ic!p "ny "ny echo deny tcp "ny "ny e+ telnet deny tcp "ny "ny e+ www per!it ip "ny "ny $"nner !otd <CAuthori=ed Access >nly?<C logging tr"p de$ugging line con 1 e8ec#ti!eout 1 1 p"ssword cisco logging synchronous login line vty 1 7 e8ec#ti!eout 1 1 p"ssword cisco logging synchronous login line vty 5 15 e8ec#ti!eout 1 1 p"ssword cisco logging synchronous login end

R6: At the privileged E EC !ode, copy the following code to direct " one#ti!e no service ti!est"!ps log d"teti!e !sec no service ti!est"!ps de$ug d"teti!e !sec no service p"ssword#encryption hostn"!e R6 en"$le secret 5 %1%!ERr%&c'()*E+,-ur.iF)/0eCi1 usern"!e R4 p"ssword 1 ciscoch"p ip ssh version 1 ip n"!e#server 1/1/1/1 interf"ce F"stEthernet121 ip "ddress 134/15/1/14& 455/455/455/1&4 no shutdown duple8 "uto speed "uto interf"ce F"stEthernet121 no ip "ddress duple8 "uto

speed "uto shutdown interf"ce 9eri"l12121 ip "ddress 134/61/1/4 455/455/455/454 interf"ce 9eri"l12121 ip "ddress 134/61/1/5 455/455/455/454 enc"psul"tion ppp ppp "uthentic"tion ch"p cloc: r"te 4111111 interf"ce ;l"n1 no ip "ddress shutdown router eigrp 111 networ: 134/15/1/1 networ: 134/61/1/1 no "uto#su!!"ry ip cl"ssless ip dhcp e8cluded#"ddress 134/15/1/14& 134/15/1/161 ip dhcp pool R6BAA, networ: 134/15/1/148 455/455/455/1&4 def"ult#router 134/15/1/14& $"nner !otd <CAuthori=ed Access >nly?<C logging tr"p de$ugging line con 1 e8ec#ti!eout 1 1 p"ssword cisco logging synchronous login line vty 1 7 e8ec#ti!eout 1 1 p"ssword cisco logging synchronous login line vty 5 15 e8ec#ti!eout 1 1 p"ssword cisco logging synchronous login ntp upd"te#c"lend"r end

You might also like