Software Guide
Page 21
... in the following sections: • Viewing the Default Configuration • Information Needed for configuring the basic parameters of service (QoS) features. For more information on how to the Internet. The Cisco Secure Router 520 Series routers complement the Cisco Unified Communications 500 Series router and the Cisco Smart Business Communications System (SBCS) portfolio. Features not...
... in the following sections: • Viewing the Default Configuration • Information Needed for configuring the basic parameters of service (QoS) features. For more information on how to the Internet. The Cisco Secure Router 520 Series routers complement the Cisco Unified Communications 500 Series router and the Cisco Smart Business Communications System (SBCS) portfolio. Features not...
Software Guide
Page 22
... Translation has been assigned. For bridged RFC 1483, you may obtain a static IP address from your login name - To view the default configuration, follow these steps: Step 1 Use the default username cisco and the default password cisco to access the router • If you may use DHCP to obtain your... has already been performed. PPP password to access your network. • If you plan to connect over an ADSL line: Cisco Secure Router 520 Series Software Configuration Guide 1-2 OL-14210-01 For each PVC determine the type of AAL5 encapsulation supported. PPP client name to ...
... Translation has been assigned. For bridged RFC 1483, you may obtain a static IP address from your login name - To view the default configuration, follow these steps: Step 1 Use the default username cisco and the default password cisco to access the router • If you may use DHCP to obtain your... has already been performed. PPP password to access your network. • If you plan to connect over an ADSL line: Cisco Secure Router 520 Series Software Configuration Guide 1-2 OL-14210-01 For each PVC determine the type of AAL5 encapsulation supported. PPP client name to ...
Software Guide
Page 24
... Router Router(config)# Step 3 enable secret password Example: Router(config)# enable secret cr1ny5ho Router(config)# Step 4 no ip domain-lookup Example: Router(config)# no ip domain-lookup Router(config)# Purpose Enters global configuration mode, when using a remote terminal, use the following: telnet router ...parameters for your router are automatically configured as part of the default VLAN and as such, they are connecting to the router using the console port. Configure WAN Interfaces The Cisco Secure Router 520 Ethernet-to-Ethernet routers have one Fast Ethernet interface for WAN...
... Router Router(config)# Step 3 enable secret password Example: Router(config)# enable secret cr1ny5ho Router(config)# Step 4 no ip domain-lookup Example: Router(config)# no ip domain-lookup Router(config)# Purpose Enters global configuration mode, when using a remote terminal, use the following: telnet router ...parameters for your router are automatically configured as part of the default VLAN and as such, they are connecting to the router using the console port. Configure WAN Interfaces The Cisco Secure Router 520 Ethernet-to-Ethernet routers have one Fast Ethernet interface for WAN...
Software Guide
Page 26
...(config)# interface atm0 Router(config-if)# Purpose Identifies and enters the configuration mode for the static IP address and provides default routing information. Configure the Wireless Interface The wireless interface enables connection to global configuration mode. For more... information about configuring a wireless connection, see the Cisco IOS Release 12.3 documentation set. Cisco Secure Router 520 Series Software Configuration ...
...(config)# interface atm0 Router(config-if)# Purpose Identifies and enters the configuration mode for the static IP address and provides default routing information. Configure the Wireless Interface The wireless interface enables connection to global configuration mode. For more... information about configuring a wireless connection, see the Cisco IOS Release 12.3 documentation set. Cisco Secure Router 520 Series Software Configuration ...
Software Guide
Page 30
... file generated when you have properly configured static routing, enter the show ip route command and look for the IP packets. IS-IS level-2 1-10 Cisco Secure Router 520 Series Software Configuration Guide OL-14210-01 Specifically, the packets are manually ...IS level-1, L2 - For complete information on the Cisco Secure Router 520 Series router is optional. They are sent to another device with a new route. Configuring static routes on the static routing commands, see Appendix B, "Concepts." ip classless (default) ip route 192.168.1.0 255.255.255.0 10.10.10...
... file generated when you have properly configured static routing, enter the show ip route command and look for the IP packets. IS-IS level-2 1-10 Cisco Secure Router 520 Series Software Configuration Guide OL-14210-01 Specifically, the packets are manually ...IS level-1, L2 - For complete information on the Cisco Secure Router 520 Series router is optional. They are sent to another device with a new route. Configuring static routes on the static routing commands, see Appendix B, "Concepts." ip classless (default) ip route 192.168.1.0 255.255.255.0 10.10.10...
Software Guide
Page 31
...Example: Router(config-router)# version 2 Router(config-router)# Step 3 network ip-address Example: Router(config-router)# network 192.168.1.1 Router(config-router)# ...config-router)# Specifies a list of last resort is not set 10.0.0.0/24 is subnetted, 1 subnets C 10.108.1.0 is directly connected, ...520 Series Software Configuration Guide 1-11 per-user static route o - The Cisco routers can configure either of these steps to be applied, using the address of the network of RIP version 1 or 2. Chapter 1 Basic Router Configuration Configuring Dynamic Routes ia - candidate default...
...Example: Router(config-router)# version 2 Router(config-router)# Step 3 network ip-address Example: Router(config-router)# network 192.168.1.1 Router(config-router)# ...config-router)# Specifies a list of last resort is not set 10.0.0.0/24 is subnetted, 1 subnets C 10.108.1.0 is directly connected, ...520 Series Software Configuration Guide 1-11 per-user static route o - The Cisco routers can configure either of these steps to be applied, using the address of the network of RIP version 1 or 2. Chapter 1 Basic Router Configuration Configuring Dynamic Routes ia - candidate default...
Software Guide
Page 32
...EX - candidate default, U - This allows subprefix routing information to see the Cisco IOS Release 12.3 documentation set 10.0.0.0/24 is subnetted, 1 subnets C 10.108.1.0 is directly connected, Loopback0 R 3.0.0.0/8 [120/1] via 2.2.2.1, 00:00:02, Ethernet0/0 1-12 Cisco Secure Router 520 Series Software ...configuration. ! static, R - BGP D - IS-IS summary, L1 - Configuration Example The following configuration example shows RIP version 2 enabled in IP network 10.0.0.0 and 192.168.1.0. RIP, M - IS-IS, su - IS-IS level-2 ia - ODR, P - router rip version...
...EX - candidate default, U - This allows subprefix routing information to see the Cisco IOS Release 12.3 documentation set 10.0.0.0/24 is subnetted, 1 subnets C 10.108.1.0 is directly connected, Loopback0 R 3.0.0.0/8 [120/1] via 2.2.2.1, 00:00:02, Ethernet0/0 1-12 Cisco Secure Router 520 Series Software ...configuration. ! static, R - BGP D - IS-IS summary, L1 - Configuration Example The following configuration example shows RIP version 2 enabled in IP network 10.0.0.0 and 192.168.1.0. RIP, M - IS-IS, su - IS-IS level-2 ia - ODR, P - router rip version...
Software Guide
Page 40
... default minimum is also used for cloning virtual access. Exits configuration mode for the Fast Ethernet interface and returns to PPP for the data packets being transmitted and received. Complete the following steps to it. The maximum for Ethernet is obtained through PPP/IPCP (IP Control Protocol) address negotiation. Cisco Secure Router 520 Series...
... default minimum is also used for cloning virtual access. Exits configuration mode for the Fast Ethernet interface and returns to PPP for the data packets being transmitted and received. Complete the following steps to it. The maximum for Ethernet is obtained through PPP/IPCP (IP Control Protocol) address negotiation. Cisco Secure Router 520 Series...
Software Guide
Page 41
... dialer 0 Router(config)# Sets the IP route for the default gateway for either static or dynamic address translations. Packets that enter the router through the specified interface dialer group. You can be set , see the Cisco IOS Security Command Reference. Step 8 ...possible address translation. Tip Using a dialer group controls access to Challenge Handshake Authentication Protocol (CHAP). OL-14210-01 Cisco Secure Router 520 Series Software Configuration Guide 3-5 Routing Protocols. For details about this command and additional parameters that match a standard access...
... dialer 0 Router(config)# Sets the IP route for the default gateway for either static or dynamic address translations. Packets that enter the router through the specified interface dialer group. You can be set , see the Cisco IOS Security Command Reference. Step 8 ...possible address translation. Tip Using a dialer group controls access to Challenge Handshake Authentication Protocol (CHAP). OL-14210-01 Cisco Secure Router 520 Series Software Configuration Guide 3-5 Routing Protocols. For details about this command and additional parameters that match a standard access...
Software Guide
Page 44
... Punted packets: 0 Expired translations: 0 Cisco Secure Router 520 Series Software Configuration Guide 3-8 OL-14210-01 NAT is on LAN, we have used a private IP address. The VLAN interface has an IP address of 192.168.1.1 with a subnet mask of the configuration file for inside source list 1 interface dialer 0 overload ip classless (default) ip route 10.10.25...
... Punted packets: 0 Expired translations: 0 Cisco Secure Router 520 Series Software Configuration Guide 3-8 OL-14210-01 NAT is on LAN, we have used a private IP address. The VLAN interface has an IP address of 192.168.1.1 with a subnet mask of the configuration file for inside source list 1 interface dialer 0 overload ip classless (default) ip route 10.10.25...
Software Guide
Page 49
... details about this command and additional parameters that the IP address for ATM is obtained through PPP/IPCP (IP Control Protocol) address negotiation. Step 5 Step 6...group 1 Router(config-if)# Assigns the dialer interface to a specific destination subnetwork. The default minimum is 128 bytes. Specifies the dialer pool to use to connect to a dialer ...dialer interface (numbered 0-255), and enters into interface configuration mode. OL-14210-01 Cisco Secure Router 520 Series Software Configuration Guide 4-3 Step 4 encapsulation encapsulation-type Example: Router(config-if)#...
... details about this command and additional parameters that the IP address for ATM is obtained through PPP/IPCP (IP Control Protocol) address negotiation. Step 5 Step 6...group 1 Router(config-if)# Assigns the dialer interface to a specific destination subnetwork. The default minimum is 128 bytes. Specifies the dialer pool to use to connect to a dialer ...dialer interface (numbered 0-255), and enters into interface configuration mode. OL-14210-01 Cisco Secure Router 520 Series Software Configuration Guide 4-3 Step 4 encapsulation encapsulation-type Example: Router(config-if)#...
Software Guide
Page 50
... 10.10.25.0 255.255.255.0 dialer 0 Router(config)# Sets the IP route for the default gateway for any additional dialer interfaces or dialer pools needed. Example: Router(config-if)# exit Router(config)# Step 9 dialer-list ... For details about this command and additional parameters that can be set , see the Cisco IOS IP Command Reference, Volume 1 of 4: Routing Protocols. Packets are then forwarded through the specified interface dialer group. Cisco Secure Router 520 Series Software Configuration Guide 4-4 OL-14210-01 Repeat these steps for the dialer 0 interface...
... 10.10.25.0 255.255.255.0 dialer 0 Router(config)# Sets the IP route for the default gateway for any additional dialer interfaces or dialer pools needed. Example: Router(config-if)# exit Router(config)# Step 9 dialer-list ... For details about this command and additional parameters that can be set , see the Cisco IOS IP Command Reference, Volume 1 of 4: Routing Protocols. Packets are then forwarded through the specified interface dialer group. Cisco Secure Router 520 Series Software Configuration Guide 4-4 OL-14210-01 Repeat these steps for the dialer 0 interface...
Software Guide
Page 55
... NAT Configuration Example Command Step 10 exit Purpose Exits configuration mode for inside ip virtual-reassembly (default) ! For more general information on NAT concepts, see the Cisco IOS Release 12.3 documentation set. interface Dialer0 ip address negotiated OL-14210-01 Cisco Secure Router 520 Series Software Configuration Guide 4-9 See Chapter 1, "Basic Router Configuration," for a client in...
... NAT Configuration Example Command Step 10 exit Purpose Exits configuration mode for inside ip virtual-reassembly (default) ! For more general information on NAT concepts, see the Cisco IOS Release 12.3 documentation set. interface Dialer0 ip address negotiated OL-14210-01 Cisco Secure Router 520 Series Software Configuration Guide 4-9 See Chapter 1, "Basic Router Configuration," for a client in...
Software Guide
Page 56
...: 0 4-10 Cisco Secure Router 520 Series Software Configuration Guide OL-14210-01 ip nat pool pool1 192.168.1.0 192.168.2.0 netmask 0.0.0.255 ip nat inside source ...list 1 interface Dialer0 overload ! Verifying Your Configuration Use the show ip nat statistics Total active translations: 0 (0 static, 0 dynamic; 0 extended) Outside interfaces: ATM0 Inside interfaces: Vlan1 Hits: 0 Misses: 0 CEF Translated packets: 0, CEF Punted packets: 0 Expired translations: 0 Dynamic mappings: -- ip classless (default...
...: 0 4-10 Cisco Secure Router 520 Series Software Configuration Guide OL-14210-01 ip nat pool pool1 192.168.1.0 192.168.2.0 netmask 0.0.0.255 ip nat inside source ...list 1 interface Dialer0 overload ! Verifying Your Configuration Use the show ip nat statistics Total active translations: 0 (0 static, 0 dynamic; 0 extended) Outside interfaces: ATM0 Inside interfaces: Vlan1 Hits: 0 Misses: 0 CEF Translated packets: 0, CEF Punted packets: 0 Expired translations: 0 Dynamic mappings: -- ip classless (default...
Software Guide
Page 58
...Router(config)# ip name-server 192.168.11.12 Router(config)# Step 3 ip dhcp excluded-address low-address [high-address] Example: Router(config)# ip dhcp excluded-address 192.168.9.0 Specifies IP addresses that the router uses to DHCP clients. Cisco Secure Router 520 Series Software ...• Configure VLANs Note The procedures in global configuration mode: Step 1 Command ip domain name name Example: Router(config)# ip domain name smallbiz.com Router(config)# Purpose Identifies the default domain that the DHCP server should not assign to complete unqualified hostnames (names without...
...Router(config)# ip name-server 192.168.11.12 Router(config)# Step 3 ip dhcp excluded-address low-address [high-address] Example: Router(config)# ip dhcp excluded-address 192.168.9.0 Specifies IP addresses that the router uses to DHCP clients. Cisco Secure Router 520 Series Software ...• Configure VLANs Note The procedures in global configuration mode: Step 1 Command ip domain name name Example: Router(config)# ip domain name smallbiz.com Router(config)# Purpose Identifies the default domain that the DHCP server should not assign to complete unqualified hostnames (names without...
Software Guide
Page 59
... of the router database. OL-14210-01 Cisco Secure Router 520 Series Software Configuration Guide 5-3 The name argument can be a string or an integer. Step 7 default-router address [address2...address8] Specifies up to 8 DNS servers available to 8 default routers for a DHCP client. Chapter 5 ... Router(dhcp-config)# network 10.10.0.0 255.255.255.0 Router(dhcp-config)# Defines subnet number (IP) address for a DHCP client. Example: Router(dhcp-config)# domain-name cisco.com Router(dhcp-config)# Step 10 exit Example: Router(dhcp-config)# exit Router(config)# Exits DHCP ...
... of the router database. OL-14210-01 Cisco Secure Router 520 Series Software Configuration Guide 5-3 The name argument can be a string or an integer. Step 7 default-router address [address2...address8] Specifies up to 8 DNS servers available to 8 default routers for a DHCP client. Chapter 5 ... Router(dhcp-config)# network 10.10.0.0 255.255.255.0 Router(dhcp-config)# Defines subnet number (IP) address for a DHCP client. Example: Router(dhcp-config)# domain-name cisco.com Router(dhcp-config)# Step 10 exit Example: Router(dhcp-config)# exit Router(config)# Exits DHCP ...
Software Guide
Page 60
... described in this chapter. ip dhcp excluded-address 192.168.9.0 ! ip dhcp pool dpool1 import all network 10.10.0.0 255.255.255.0 default-router 10.10.10.10 dns-server 192.168.35.2 domain-name cisco.com ! Configure DHCP Chapter...8226; show ip dhcp server statistics Memory usage 15419 Address pools 1 Database agents 0 Automatic bindings 0 Manual bindings 0 Expired bindings 0 Malformed messages 0 Secure arp entries 0 Message BOOTREQUEST DHCPDISCOVER DHCPREQUEST DHCPDECLINE DHCPRELEASE DHCPINFORM Received 0 0 0 0 0 0 Leased addresses 0 Cisco Secure Router 520 Series Software...
... described in this chapter. ip dhcp excluded-address 192.168.9.0 ! ip dhcp pool dpool1 import all network 10.10.0.0 255.255.255.0 default-router 10.10.10.10 dns-server 192.168.35.2 domain-name cisco.com ! Configure DHCP Chapter...8226; show ip dhcp server statistics Memory usage 15419 Address pools 1 Database agents 0 Automatic bindings 0 Manual bindings 0 Expired bindings 0 Malformed messages 0 Secure arp entries 0 Message BOOTREQUEST DHCPDISCOVER DHCPREQUEST DHCPDECLINE DHCPRELEASE DHCPINFORM Received 0 0 0 0 0 0 Leased addresses 0 Cisco Secure Router 520 Series Software...
Software Guide
Page 66
... IPsec server pushes the IPsec policies to act as internal IP addresses, internal subnet masks, DHCP server addresses, WINS server addresses, and split-tunneling flags, to the central site. Note The Cisco Easy VPN client feature supports configuration of multiple VPN tunnels,... server; Client mode is the default configuration and allows only devices at the client site to access resources at the central site (where the Cisco ASA Series concentrator is acting as a supported Cisco Secure Router 520 Series router. Cisco Secure Router 520 Series Software Configuration Guide 6-2 OL...
... IPsec server pushes the IPsec policies to act as internal IP addresses, internal subnet masks, DHCP server addresses, WINS server addresses, and split-tunneling flags, to the central site. Note The Cisco Easy VPN client feature supports configuration of multiple VPN tunnels,... server; Client mode is the default configuration and allows only devices at the client site to access resources at the central site (where the Cisco ASA Series concentrator is acting as a supported Cisco Secure Router 520 Series router. Cisco Secure Router 520 Series Software Configuration Guide 6-2 OL...
Software Guide
Page 69
... Command Reference. Example: Router(config)# crypto map dynmap client configuration address respond Router(config)# OL-14210-01 Cisco Secure Router 520 Series Software Configuration Guide 6-5 Exits IKE group policy configuration mode, and enters global configuration mode. Specifies a ...config-isakmp-group)# Step 5 exit Example: Router(config-isakmp-group)# exit Router(config)# Step 6 ip local pool {default | poolname} [low-ip-address [high-ip-address]] Example: Router(config)# ip local pool dynpool 30.30.30.20 30.30.30.30 Router(config)# Purpose Specifies group domain ...
... Command Reference. Example: Router(config)# crypto map dynmap client configuration address respond Router(config)# OL-14210-01 Cisco Secure Router 520 Series Software Configuration Guide 6-5 Exits IKE group policy configuration mode, and enters global configuration mode. Specifies a ...config-isakmp-group)# Step 5 exit Example: Router(config-isakmp-group)# exit Router(config)# Step 6 ip local pool {default | poolname} [low-ip-address [high-ip-address]] Example: Router(config)# ip local pool dynpool 30.30.30.20 30.30.30.30 Router(config)# Purpose Specifies group domain ...
Software Guide
Page 72
... mode for the interface to each interface through which you want the crypto map applied. See the Cisco IOS Security Command Reference for the crypto map entry. Cisco Secure Router 520 Series Software Configuration Guide 6-8 OL-14210-01 However, the public interface still allows the rest of ...isakmp dynamic dynmap Router(config)# Apply the Crypto Map to the Physical Interface The crypto maps must be applied to which IP Security (IPsec) traffic flows. With the default configurations, the router provides secure connectivity by encrypting the traffic sent between remote sites.
... mode for the interface to each interface through which you want the crypto map applied. See the Cisco IOS Security Command Reference for the crypto map entry. Cisco Secure Router 520 Series Software Configuration Guide 6-8 OL-14210-01 However, the public interface still allows the rest of ...isakmp dynamic dynmap Router(config)# Apply the Crypto Map to the Physical Interface The crypto maps must be applied to which IP Security (IPsec) traffic flows. With the default configurations, the router provides secure connectivity by encrypting the traffic sent between remote sites.