You are on page 1of 2

enable

configure terminal
hostname Router2
no ip domain-lookup
banner motd %Authorized Access Only%
ip access-list extended militaryzone
permit ip 10.1.0.0 0.0.0.31 host 200.30.69.2
deny ip any host 200.30.69.2
permit ip host 10.1.0.31 host 200.30.69.3
permit ip host 10.1.0.32 host 200.30.69.3
permit ip host 10.1.0.33 host 200.30.69.3
permit ip host 10.1.0.34 host 200.30.69.3
permit ip host 10.1.0.35 host 200.30.69.3
deny ip any host 200.30.69.3
permit tcp 10.1.0.0 0.0.0.255 host 172.16.80.1 eq smtp
permit tcp 10.1.0.0 0.0.0.255 host 172.16.80.1 eq pop3
permit tcp 10.1.0.0 0.0.0.255 host 172.16.80.2 eq domain
permit tcp 10.1.0.0 0.0.0.255 host 172.16.80.3 eq www
permit udp host 10.1.0.253 host 200.30.69.10 eq 3306
ip access-list extended vlan20Entrada
permit tcp host 10.1.0.31 host 10.1.0.253 eq 3306
permit tcp 10.1.0.32 0.0.0.7 host 10.1.0.253 eq 3306
permit tcp host 10.1.0.40 host 10.1.0.253 eq 3306
permit tcp any any established
permit udp host 10.1.0.31 host 10.1.0.253 eq 3306
permit udp 10.1.0.32 0.0.0.7 host 10.1.0.253 eq 3306
permit udp host 10.1.0.40 host 10.1.0.253 eq 3306
permit tcp host 200.30.69.10 host 10.1.0.253 eq 3306
permit udp host 200.30.69.10 host 10.1.0.253 eq 3306
ip access-list extended vlan20Salida
deny ip host 10.1.0.253 172.16.80.0 0.0.0.255
deny ip host 10.1.0.253 200.30.69.0 0.0.0.15
permit ip any any
permit tcp any any established
permit udp host 10.1.0.253 eq 3306 host 200.30.69.10
interface gi0/1
ip access-group vlan20Salida in
exit
interface gi0/1.2
ip access-group vlan20Entrada out
exit
interface gi0/0
ip access-group militaryzone out
exit
int gi0/0
ip addr 192.168.10.6 255.255.255.252
no shut
interface gi0/1
no ip address
no shutdown
exit
interface gi0/1.1
encapsulation dot1Q 10
ip address 10.1.0.126 255.255.255.128
no shut
exit
interface gi0/1.2
encapsulation dot1Q 20
ip address 10.1.0.254 255.255.255.128
no shut
exit
router ospf 1
network 10.1.0.0 0.0.0.255 area 0
network 192.168.10.4 0.0.0.3 area 0
end
copy running-config startup-config
startup-config
reload
y

You might also like