You are on page 1of 4

!!!!!!!!!!!!!!

SWITCH:

enable
configure terminal
no cdp run
no ip domain lookup
hostname <NUME>

enable password cisco12345


enable secret cisco54321
service password-encryption

line console 0
password ciscoconpass
login
logging synchronous
exec-timeout 0 0
exit

line vty 0 15
password ciscovtypass
login
logging synchronous
exec-timeout 0 0
exit

banner motd "MESAJ"

do wr

ip domain-name <DOMENIU.COM>
username admin privilege 15 secret adminpass1
line vty 0 15
transport input ssh
login local
exit
crypto key generate rsa
!!!!!!! TE INTREABA CAT SA FIE CHEIA, II DAI 1024
ip ssh version 2
do wr

spanning-tree mode rapid-pvst

vlan 10
name DECANAT
exit
vlan 99
name MANAGEMENT
exit
interface vlan 99
ip add <IP> <SUBNET MASK>
no sh
exit

ip default-gateway <IP-UL DE PE ROUTER CE TINE DE VLAN 99>

interface range fa0/1-5


switchport mode access
switchport access vlan 10
switchport portsecurity
switchport portsecurity mac add sticky
switchport portsecurity max 2
switchport portsecurity violation shutdown
spanning-tree portfast
spanning-tree bpduguard enable
do wr
exit

interface range g0/1-2


switchport mode trunk
switchport trunk allowed vlan 10,99
do wr
exit

!!!!!!!!!!!!!ROUTER

enable
configure terminal
no cdp run
no ip domain lookup
hostname <NUME>

enable password cisco12345


enable secret cisco54321
service password-encryption

line console 0
password ciscoconpass
login
logging synchronous
exec-timeout 0 0
exit

line vty 0 15
password ciscovtypass
login
logging synchronous
exec-timeout 0 0
exit

banner motd "MESAJ"

do wr

ip domain-name <DOMENIU.COM>
username admin privilege 15 secret adminpass1
line vty 0 15
transport input ssh
login local
exit
crypto key generate rsa
!!!!!!! TE INTREABA CAT SA FIE CHEIA, II DAI 1024
ip ssh version 2
do wr

int g0/1
ip add <IP> <NETMASK>
desc <DESCRIERE>
no sh

int g0/1.10
encapsulation dont1q 10
ip add <IP> <NETMASK>
desc <DESCRIERE>
exit

ip dhcp pool <UN NUME>


network <NA> <SUBNET MASK>
default-router <PRIMUL IP DIN RANGE>
dns-server <FIE 8.8.8.8 FIE ITI DA EL IP-UL SRV DE DNS>
exit

ip dhcp excluded-address <IP-UL LOW> <IP-UL HIGH>


!! E UN INTERVAL DE UNDE PANA UNDE SA NU ALOCE>

!!!!!!!!!!!!! RUTARE:

!!!!!!!!!! OSPF
router ospf 1
router-id <UN NUMAR, DIFERIT PT FIECARE ROUTER>
default-information originate !!!!! CA SA PROPAGE RUTELE STATICE
passive-interface default !!! BLOCHEZI TOATE INTERFFETELE
no passive-interface g0/1 !!! DEBLOCHEZI INTERFETELE DE CARE
AI NEVOIE, IN GENERAL BLOCHEZI
INTERFETELE CE DAU SPRE UN LAN

network <NA> <WILDCARD> area 0


do wr
exit

!!!! RIP

router rip
no auto-summary
default-information originate
version 2
passive-interface default !!! BLOCHEZI TOATE INTERFFETELE
no passive-interface g0/1 !!! DEBLOCHEZI INTERFETELE DE CARE
AI NEVOIE, IN GENERAL BLOCHEZI
INTERFETELE CE DAU SPRE UN LAN

network <NA>

!!!!! EIGRP

router eigrp
no auto-summary
default-information originate
network <NA> <WILDCARD>
exit
do wr

!!!!!!!! RUTARE STATICA:


ip route <IP-DESTINATIE> <NETWORK MASK> <IP-ul VECIN SAAAU INTERFATA DE IESIRE>

!!!!!!!!!!!!!WILDCARD-UL SE CALCULEAZA ASA:


255.255.255.255-SUBNET-MASK = WILDCARD; EXEMPLU:
255.255.255.255 - 255.255.255.0 = 0.0.0.255

!!!!!!!!! DACA SERVER-UL DHCP NU E PE ROUTER, CUM FACI TOTUSI SA ISI IA IP ALEA?

!!!!!!!!!! PE INTERFATA CARE DA SPRE LAN-UL TAU ( SA ZICEM INT G0/1.10 DAI COMANDA
ASTA:
ip helper-address <IP-ul SEVERULUI>

You might also like