Cisco路由配置语句汇总

王朝other·作者佚名  2008-05-31
窄屏简体版  字體: |||超大  

启动接口,分配IP地址:

router

router enable

router#

router# configure terminal

router(config)#

router(config)# interface Type Port

router(config-if)# no shutdown

router(config-if)# ip address IP-Address Subnet-Mask

router(config-if)# ^z

配置RIP路由协议:30秒更新一次

router(config)# router rip

router(config-if)# network Network-Number

router(config-if)# ^z

配置IGRP路由协议:90秒更新一次

router(config)# router igrp AS-Number

router(config-if)# network Network-Number

router(config-if)# ^z

配置Novell IPX路由协议:Novell RIP 60秒更新一次

router(config)# ipx routing [node address]

router(config)# ipx maximum-paths Paths

router(config)# interface Type Port

router(config-if)# ipx network Network-Number [encapsulation encapsulation-type] [secondary]

router(config-if)# ^z

配置DDR:

router(config)# dialer-list Group-Number protocol Protocol-Type permit [list ACL-Number]

router(config)# interface bri 0

router(config-if)# dialer-group Group-Number

router(config-if)# dialer map Protocol-Type Next-Hop-Address name Hostname Telphone-Number

router(config-if)# ^z

配置ISDN:

router(config)# isdn swith-type Swith-Type

router(config-if)# ^z

配置Frame Relay:

router(config-if)# encapsulation frame-relay [cisco ietf ]

router(config-if)# frame-relay lmi-type [ansi cisco q933a ]

router(config-if)# bandwidth kilobits

router(config-if)# frame-relay invers-arp [ Protocol ] [dlci ]

router(config)# frame-relay Protocol Protocol-Address DLCI [ Broadcast ] [ ietf cisco ] [ payload-compress packet-by-packet ]

--

router(config-if)# keepalive Number

--

router(config-if)# frame-lelay local-dlci Number

--

router(config-if)# interface Type Port.Subininterface-Number [ multipoint point-to-point ]

router(config-subif)# ip unnumbered Interface

router(config-subif)# frame-lelay local-dlci Number

--

router(config-if)# ^z

配置标准ACL:

router(config)# Access-list Access-List-Number [ permit deny ] source [ source-mask ]

router(config)# interface Type Port

router(config-if)# ip access-group Access-List-Number [ in out ]

router(config-if)# ^z

配置扩展ACL:

router(config)# access-list Access-List-Number [ permit deny ] [ Protocol Protocol-Number ] source source-wildcard [ Source-Port ] destination destination-wildcard [ Destination-Port ] [ established ]

router(config)# interface Type Port

router(config-if)# ip access-group Access-List-Number [ in out ]

router(config-if)# ^z

配置命名ACL:

router(config)# ip access-list [ standard extended ] ACL-Name

router(config [ std- ext- ] nacl)# [ permit deny ] [ IP-Access-List-Test-Conditions ]

router(config [ std- ext- ] nacl)# no [ permit deny ] [ IP-Access-List-Test-Conditions ]

router(config [ std- ext- ] nacl)# ^z

router(config)# interface Type Port

router(config-if)# ip access-group [ACL-Name 1~199 ] [ in out ]

router(config-if)# ^z

配置DCE时钟:

router# show controllers Type Port

router(confin-if)# clock rate 64000

router(config-if)# ^z

配置PPP协议:

router(config)# username Name passWord Set-Password-Here

router(config)# interface Type Port

router(config-if)# encapsulation ppp

router(config-if)# ppp outhentication [ chap chap pap pap chap pap ]

router(config-if)# ppp pap sent-username Name password Password

router(config-if)# ^z

PAP单向认证配置实例:

验证方:

router-server(config)# username Client password 12345

router-server(config)# interface serial 0

router-server(config-if)# encapsulation ppp

router-server(config-if)# ppp authentication pap

router-server(config-if)# ^z

被验证方:

router-client(config-if)# encapsulation ppp

router-client(config-if)# ppp pap sent-username Client password 12345

router-client(config-if)# ^z

PAP双向认证配置实例:

路由器 A:

routerA(config)# username B password 12345

routerA(config)# interface serial 0

routerA(config-if)# encapsulation ppp

routerA(config-if)# ppp authentication pap

routerA(config-if)# ppp pap sent-username A password 54321

routerA(config-if)# ^z

路由器 B:

routerB(config)# username A password 54321

routerB(config)# interface serial 1

routerB(config-if)# encapsulation ppp

routerB(config-if)# ppp authentication pap

routerB(config-if)# ppp pap sent-username B password 12345

routerB(config-if)# ^z

CHAP单向认证配置实例:

验证方:

router-server(config)# username router-client password 12345

router-server(config)# interface serial 0

router-server(config-if)# encapsulation ppp

router-server(config-if)# ppp authentication chap

router-server(config-if)# ^z

被验证方:

router-client(config-if)# encapsulation ppp

router-client(config-if)# ppp authentication chap

router-client(config-if)# ppp chap hostname router-client

router-client(config-if)# ppp chap password 12345

router-client(config-if)# ^z

CHAP双向认证配置实例:

路由器 A:

routerA(config)# username routerB password 12345

routerA(config)# interface serial 0

routerA(config-if)# encapsulation ppp

routerA(config-if)# ppp authentication chap

routerA(config-if)# ppp chap hostname routerA

routerA(config-if)# ppp chap password 54321

routerA(config-if)# ^z

路由器 B:

routerB(config)# username routerA password 54321

routerB(config)# interface serial 1

routerB(config-if)# encapsulation ppp

routerB(config-if)# ppp authentication chap

routerB(config-if)# ppp chap hostname routerB

routerB(config-if)# ppp chap password 12345

routerB(config-if)# ^z

Telnet使用:

routerA# terminal monitor

routerA# telnet IP-Address [ Router-Name ]

routerB# [ exit logout ]

routerB# ++再按

routerA# show sessions

routerA# Connect-Number

routerA# disconnect IP-Address [ Router-Name ]

routerA# show user

routerA# clear line [ 0 1 2 3 4 ]

禁止任何Telnet到本机:

router(config)# line vty 0 4

rou

 
 
 
免责声明:本文为网络用户发布,其观点仅代表作者个人观点,与本站无关,本站仅提供信息存储服务。文中陈述内容未经本站证实,其真实性、完整性、及时性本站不作任何保证或承诺,请读者仅作参考,并请自行核实相关内容。
 
 
© 2005- 王朝網路 版權所有 導航