You are on page 1of 8

*Menambah hostname

=>ISP-RTR1
en
conf t
hostname ISP-RTR1

=>LHQ-RTR1
en
conf t
hostname LHQ-RTR1

=>LHQ-RTR2
en
conf t
hostname LHQ-RTR2

=>LBRANCH-RTR1
en
conf t
hostname LBRANCH-RTR1

=>LHQ-FW1
en
Password:(langsung enter)
conf t
hostname LHQ-FW1

*Config Ip add
=>ISP-RTR1
en
conf t
int s0/0/0
no sh
ip add 202.107.7.1 255.255.255.252
ex
int s0/0/1
no sh
ip add 202.107.7.5 255.255.255.252
ex
int s0/1/0
no sh
ip add 202.107.7.9 255.255.255.252
end

show ip int brief (melihat Ip add)

=>LHQ-RTR1
en
conf t
int s0/0/0
no sh
ip add 202.107.7.2 255.255.255.252
ex
int gig0/0
no sh
ip add 10.0.0.5 255.255.255.252
ex
int gig0/1
no sh
ip add 10.0.0.1 255.255.255.252
ex
int gig0/2
ip add 10.0.0.21 255.255.255.248
ipv6 enable
ipv6 add fdec:cdef:2::1/64
sh ipv6 int brief (melihat ipv6)

=>LHQ-RTR2
en
conf t
Int Se0/0/0
ip add 202.107.7.6 255.255.255.252
ex
int gig0/0
no sh
ip add 10.0.0.13 255.255.255.252
ex
int gig 0/1
no sh
ip add 10.0.0.9 255.255.255.252
ex
int gig0/2
no sh
ip add 10.0.0.22 255.255.255.248
ipv6 enable
ipv6 add fdec:cdef:2::2/64
end

=>LHQ-FW1
en
conf t
hostname LHQ-FW1
int vlan2
ip add 10.0.0.23 255.255.255.248
ipv6 en
ipv6 add fdec:cdef:2::3/64
ex
int vlan1
ip add 192.168.1.1 255.255.255.0
ipv6 add fdec:cdef:4::1/64
ex
int e0/0
switchport access vlan 2
ex
int e0/1
switchport access vlan 2
ex
int e0/2
switchport access vlan 1
end

=>LBRANCH-FW1
en
conf t
int vlan2
ip add 20.254.254.2 255.255.255.0
ipv6 add fdec:cdef:3::2/64
ex
int vlan1
ip add 192.168.0.1 255.255.255.0
ipv6 add fdec:cdef:5::1/64
ex
int e0/0
switchport access vlan 2
ex
int e0/2
switchport access vlan 1
end

=>LDSW1
int gig 0/2
no switchport
ip add 10.0.0.14 255.255.255.252
ex

=>ISP-RTR1(Configure PPP CHAP dan menambahkan userame dan pw)


en
conf t
username LHQ-RTR1 password LKS
username LHQ-RTR2 password LKS
int s0/0/0
encapsulation ppp
ppp authentication chap
ex
int s0/0/1
encapsulation ppp
ppp authentication chap
end

=>LHQ-RTR1
*Configure PPP CHAP dan menambahkan userame dan pw pd LHQ-RTR1
en
conf t
int s0/0/0
encapsulation ppp
ppp authentication chap
ex
username ISP-RTR1 pass LKS
end

*config default static route


en
config terminal
ip route 0.0.0.0 0.0.0.0 202.107.7.1

*Membuat tunnel pd LHQ-RTR1


int tunnel0
ipv6 enable
ipv6 add fdec:cdef:1::1/64
tunnel source s0/0/0
tunnel destination 202.107.7.10
tunnel mode ipv6ip

*Menambahkan ospf pd LHQ-RTR1


ipv6 unicast-routing
ipv6 router ospf 1
redistribute connected
ex
int tunnel 0
ipv6 ospf 1 area 0

=>LBRANCH-RTR1 (config default static route pd LBRANCH-RTR1)


en
conf t
ip route 0.0.0.0 0.0.0.0 202.107.7.9

*Membuat tunnel pd LBRANCH-RTR1


int tunnel 0
ipv6 enable
ipv6 address fdec:cdef:1::2/64
tunnel source s0/0/0
tunnel destination 202.107.7.2
tunnel mode ipv6ip
do ping fdec:cdef:1::1

*Menambahkan ospf pd LBRANCH-RTR1


ipv6 unicast-routing
ipv6 router ospf 1
redistribute connected
ex
int tunnel 0
ipv6 ospf 1 area 0

*Untuk mengetahui ospf sudah neighbor


do show ipv6 ospf neigh

=>LHQ-FW1
ipv6 route outside ::/0 fdec:cdef:2::1

=>BRANCH-FW1
ipv6 route outside ::/0 fdec:cdef:3::1

=>LHQ-RTR1
router ospf 1
router-id 1.1.1.1
passive-interface default
10.0.0.0 0.0.0.3 area 0
network 10.0.0.4 0.0.0.3 area 0
no passive-interface g0/1
no passive-interface g0/0
default-information originate

=>LHQ-RTR2
router ospf 1
router-id 2.2.2.2
passive-interface default
network 10.0.0.8 0.0.0.3 area 0
network 10.0.0.12 0.0.0.3 area 0
no passive-interface g0/1
no passive-interface g0/0
default-information originate

=>LDSW1
ip routing
router ospf 1
router-id 3.3.3.3
passive-interface default
network 10.0.0.0 0.0.0.3 area 0
network 10.0.0.12 0.0.0.3 area 0
network 172.16.20.0 0.0.0.255 area 1
no passive-interface g0/1
no passive-interface g0/2

=>LDSW2
ip routing
router ospf 1
router-id 4.4.4.4
passive-interface default
network 10.0.0.8 0.0.0.3 area 0
network 10.0.0.4 0.0.0.3 area 0
network 172.16.20.0 0.0.0.255 area 1
no passive-interface g0/1
no passive-interface g0/2

=>LHQ-RTR1
*Membuat access-list VLAN20
en
conf t
ip access standard VLAN20
permit 172.16.20.0 0.0.0.255
ex

*Menetukan interface inside dan outside


int s0/0/0
ip nat outside
ex
int g0/0
ip nat inside
ex
int g0/1
ip nat inside
ex

*Membuat nat overload


ip nat inside source list VLAN20 interface s0/0/0 overload

#Switching Configuration
=>LDSW1
en
conf t
vtp version 2
vtp mo server
vtp do lombok.id
vtp pass LombokIndonesia

=>LDSW2
en
conf t
vtp version 2
vtp mo cl
vtp do lombok.id
vtp pass LombokIndonesia

=>LASW1
en
conf t
vtp version 2
vtp mo cl
vtp do lombok.id
vtp pass LombokIndonesia

=>LASW2
en
conf t
vtp version 2
vtp mo cl
vtp do lombok.id
vtp pass LombokIndonesia

do sh vtp status

=>LaSW1
en
conf t
vlan 10
name server
vlan 20
name Client

int ra fa0/1-2
sw mo tr

int ra fa0/24,fa0/10
sw mo acc
switchport acc vlan 20

=>LASW2
en
conf t
int ra fa0/1-2
sw mo tr
int fa0/2
sw mo acc
sw acc vlan 10

=>LDSW1
en
conf t
int ra fa0/1-2
sw trunk encap dot1q
sw mo tr

=>LDSW2
en
conf t
int ra fa0/1-2
sw trunk encap dot1q
sw mo tr

#catatan : encap dot1q dan lsl ( inter-switch link )


dot1q :open standard
lsl :cisco proprietary

#configurasi ip pada interface


=>LDSW1
int vlan 10
ip add 172.16.10.1 255.255.255.0
int vlan 20
ip add 172.16.20.1 255.255.255.0

=>LDSW2
int vlan 10
ip add 172.16.10.2 255.255.255.0
int vlan 20
ip add 172.16.20.2 255.255.255.0

=>LASW1
int vlan 10
ip add 172.16.10.3 255.255.255.0
int vlan 20
ip add 172.16.20.3 255.255.255.0

=>LASW2
int vlan 10
ip add 172.16.10.4
int vlan 20
ip add 172.16.20.4

=>LDSW1
int vlan 10
standby 2 ip 172.16.10.254

=>LDSW2
int vlan 10
standby 2 ip 172.16.10.254
standby priority 101
standby 2 preempt

#pengecekan
sh standby br

=>LDSW1
int vlan 20
standby 1 ip 172.16.20.254
standby priority 201
standby 1 preempt

=>LDSW2
int vlan 20
standby 1 ip 172.16.20.254
standby priority 200

=>LAPTOP1
config wireless on

=>LDSW 1
spanning-tree mo rapid-pvst

=>LDSW 2
spanning-tree mo rapid-pvst

=>LASW1
spanning-tree mo rapid-pvst
=>LASW2
spanning-tree mo rapid-pvst

=>LDSW1
spanning-tree vlan 10 root primary
spanning-tree vlan 20 root secondary

=>LDSW2
spanning-tree vlan 10 root primary
spanning-tree vlan 20 root secondary

=>LDSW1
int ra fa0/23-24
channel-protocol pagp
channel-group 1 mode auto
sw trunk encap dot1q
int port-channel 1
sw mo tr

=>LDSW2
int ra fa0/23-24
channel-protocol pagp
channel-group 1 mode desirable
sw trunk encap dot1q
int port-channel 1
sw mo tr

You might also like