当前位置: 网站首页>>协议大全>>NAT协议>>

Cisco 6509 NAT配置

时间:2008-09-10 来源: 作者: 点击:
Console (enable) show config all begin ! # ***** ALL (DEFAULT and NON-DEFAULT) CONFIGURATION ***** ! ! #time: Sun Oct 21 2001, 21:36:49 ! #version 6.2(2) ! set password $2$FMFQ$HfZR5DUszVHIRhrz4h6V70 set enablepass $2$FMFQ$HfZR5DUszVHIRhrz4h6V70 set
  Console> (enable) show config all
  
  begin
  !
  # ***** ALL (DEFAULT and NON-DEFAULT) CONFIGURATION *****
  !
  !
  #time: Sun Oct 21 2001, 21:36:49
  !
  #version 6.2(2)
  !
  set password $2$FMFQ$HfZR5DUszVHIRhrz4h6V70
  set enablepass $2$FMFQ$HfZR5DUszVHIRhrz4h6V70
  set prompt Console>
  set length 24 default
  set logout 20
  set config mode binary
  set banner motd ^C^C
  !
  #test
  set test diaglevel minimal
  !
  #errordetection
  set errordetection inband disable
  set errordetection memory disable
  set errordetection portcounter enable
  !
  #system
  set system baud 9600
  set system modem disable
  set system name
  set system location
  set system contact
  set system countrycode
  set traffic monitor 100
  set system highavailability disable
  set system highavailability versioning disable
  set system core-dump disable
  set system core-file slot0:crashinfo
  set feature log-command enable
  set feature supmon enable
  !
  #power
  set power redundancy enable
  !
  #frame distribution method
  set port channel all distribution ip both
  !
  #mac address reduction
  set spantree macreduction disable
  !
  #default portcost mode
  set spantree defaultcostmode short
  !
  #snmp
  set snmp community read-only public
  set snmp community read-write private
  set snmp community read-write-all secret
  set snmp rmon disable
  set snmp rmonmemory 85
  set snmp trap disable module
  set snmp trap disable chassis
  set snmp trap disable bridge
  set snmp trap disable repeater
  set snmp trap disable vtp
  set snmp trap disable auth
  set snmp trap disable ippermit
  set snmp trap disable vmps
  set snmp trap disable entity
  set snmp trap disable config
  set snmp trap disable stpx
  set snmp trap disable syslog
  !
  #tacacs+
  set tacacs attempts 3
  set tacacs directedrequest disable
  set tacacs timeout 5
  !
  #radius
  set radius deadtime 0
  set radius timeout 5
  set radius retransmit 2
  !
  #kerberos
  !
  #authentication
  set authentication login tacacs disable console
  set authentication login tacacs disable telnet
  set authentication login tacacs disable http
  set authentication enable tacacs disable console
  set authentication enable tacacs disable telnet
  set authentication enable tacacs disable http
  set authentication login radius disable console
  set authentication login radius disable telnet
  set authentication login radius disable http
  set authentication enable radius disable console
  set authentication enable radius disable telnet
  set authentication enable radius disable http
  set authentication login local enable console
  set authentication login local enable telnet
  set authentication login local enable http
  set authentication enable local enable console
  set authentication enable local enable telnet
  set authentication enable local enable http
  set authentication login kerberos disable console
  set authentication login kerberos disable telnet
  set authentication login kerberos disable http
  set authentication enable kerberos disable console
  set authentication enable kerberos disable telnet
  set authentication enable kerberos disable http
  set authentication login attempt 3 console
  set authentication login attempt 3 telnet
  set authentication login lockout 0 console
  set authentication login lockout 0 telnet
  set authentication enable attempt 3 console
  set authentication enable attempt 3 telnet
  set authentication enable lockout 0 console
  set authentication enable lockout 0 telnet
  !
  #stp mode
  set spantree mode pvst+
  !
  #vtp
  set vtp domain hbu
  set vtp mode server
  set vtp v2 disable
  set vtp pruning disable
  set vtp pruneeligible 2-1000
  clear vtp pruning 1001-1005
  set vlan 1 name default type ethernet mtu 1500 said 100001 state active
  set vlan 99 name wh type ethernet mtu 1500 said 100099 state active
  set vlan 101 name xinzhongxin type ethernet mtu 1500 said 100101 state active
  set vlan 102 name laozhongxin type ethernet mtu 1500 said 100102 state active
  set vlan 103 name chukou type ethernet mtu 1500 said 100103 state active
  set vlan 510 name 02x type ethernet mtu 1500 said 100510 state active
  set vlan 511 name 02d type ethernet mtu 1500 said 100511 state active
  set vlan 512 name 04x type ethernet mtu 1500 said 100512 state active
  set vlan 513 name 06x type ethernet mtu 1500 said 100513 state active
  set vlan 514 name 06d type ethernet mtu 1500 said 100514 state active
  set vlan 515 name 09x type ethernet mtu 1500 said 100515 state active
  set vlan 516 name 09d type ethernet mtu 1500 said 100516 state active
  set vlan 517 name 12x type ethernet mtu 1500 said 100517 state active
  set vlan 518 name 12d type ethernet mtu 1500 said 100518 state active
  set vlan 1002 name fddi-default type fddi mtu 1500 said 101002 state active
  set vlan 1004 name fddinet-default type fddinet mtu 1500 said 101004 state acti
  set vlan 1005 name trnet-default type trbrf mtu 1500 said 101005 state active s
  set vlan 1003 name token-ring-default type trcrf mtu 1500 said 101003 state act
  set dot1q-all-tagged disable
  !
  #ip
  set feature mdg enable
  set feature psync-recovery no-powerdown
  set interface sc0 1 10.186.240.100/255.0.0.0 10.255.255.255
  
  set interface sc0 up
  set interface sl0 0.0.0.0 0.0.0.0
  set interface sl0 up
  set arp agingtime 1200
  set ip redirect enable
  set ip unreachable enable
  set ip fragmentation enable
  set ip alias default 0.0.0.0
  !
  #command alias
  !
  #vmps
  set vmps server retry 3
  set vmps server reconfirminterval 60
  set vmps downloadmethod tftp
  set vmps downloadserver 0.0.0.0 vmps-config-database.1
  set vmps state disable
  
  !
  #rcp
  set rcp username
  !
  #dns
  set ip dns disable
  !
  #spantree
  #uplinkfast groups
  set spantree uplinkfast disable
  #backbonefast
  set spantree backbonefast disable
  #portfast
  set spantree portfast bpdu-guard disable
  set spantree portfast bpdu-filter disable
  #bpdu-skewing
  set spantree bpdu-skewing disable
  #vlan 1003
  set spantree enable 1003
  set spantree fwddelay 4 1003
  set spantree hello 2 1003
  set spantree maxage 10 1003
  set spantree priority 32768 1003
  #vlan 1005
  set spantree enable 1005
  set spantree fwddelay 4 1005
  set spantree hello 2 1005
  set spantree maxage 10 1005
  set spantree priority 32768 1005
  #vlan(defaults)
  set spantree enable 1,99,101-103,510-518
  set spantree fwddelay 15 1,99,101-103,510-518
  set spantree hello 2 1,99,101-103,510-518
  set spantree maxage 20 1,99,101-103,510-518
  set spantree priority 32768 1,99,101-103,510-518
  !
  #syslog
  set logging console enable
  set logging telnet enable
  set logging server disable
  set logging level cdp 4 defa
------分隔线----------------------------
顶一下
(1)
50%
踩一下
(1)
50%
------分隔线----------------------------
最新评论 查看所有评论
发表评论 查看所有评论
请自觉遵守互联网相关的政策法规,严禁发布色情、暴力、反动的言论。
评价:
表情:
用户名: 密码: 验证码:
推荐内容
  • 组建NAT服务器组

    基于NAT的网络规划曾经有一个朋友问我,他们单位有一个100台机器的大机房,要实现每一...

  • PPPoE + NAT设置

    电信最近力推的ADSL是一种性能价格比较好的Internet接入方式,适用于只需访问Internet...

  • 在cisco2621路由器上配置NAT

    Router#sh run Building configuration... Current configuration: ! version 12.0 se...

  • cisco设备配置NAT

    ! version 12.0 service timestamps debug uptime service timestamps log uptime no ...

  • IPsec与NAT共存

    现在,网络安全和网络地址转换的应用已经十分广泛。单就其中任何一种技术来说,都是很...

  • NAT协议的原理

    IP地址耗尽促成了CIDR的开发,但CIDR开发的主要目的是为了有效的使用现有的internet地...