Friday, March 3, 2017

Superlab Cisco #41

Assalamualaikum wr.wb

Alhamdulillah saya diberi kesempatan untuk membagikan ilmu lagi kali ini kita mencoba sesuatu yang baru  yaitu Superlab Cisco #41 hari ini semangatkan? harus semangat ok!!,ini masih belum selesai masih banyak lagi yang mau saya bagikan, cukup basa basinya sekarang langsung saja berikut topologinya dan file pkt bisa di downloaddisini
 pertama kita konfigurasi ip address di router 1
Router1(config)#int fa0/0
Router1(config-if)#no sh
Router1(config-if)#ip addr 10.10.10.1 255.255.255.0
Router1(config-if)#int se2/0
Router1(config-if)#no sh
Router1(config-if)#ip addr 12.12.12.1 255.255.255.0
Router1(config-if)#clock rate 56000
kemudian kita konfigurasi routing protokolnya yaitu eigrp dan bgp
Router1(config)#router eigrp 10
Router1(config-router)#net 10.0.0.0
Router1(config-router)#redistribute bgp 10 metric 1 1 1 1 1
Router1(config-router)#ex
kemudian kita konfigurasi routing protokol bgp
Router1(config)#router bgp 10
Router1(config-router)#bgp router-id 1.1.1.1
Router1(config-router)#neighbor 12.12.12.2 remote-as 20
Router1(config-router)#redistribute eigrp 10
Router1(config-router)#no synchronization
kemudian kita konfigurasi di router 2,ip addresnya dahulu kemudian konfgiurasi routing protokolnya
Router2(config)#int se2/0
Router2(config-if)#no sh
Router2(config-if)#ip addr 12.12.12.2 255.255.255.0
Router2(config-if)#clock rate 56000
Router2(config-if)#int fa0/0
Router2(config-if)#no sh
Router2(config-if)#ip addr 20.20.20.2 255.255.255.0
Router2(config-if)#int se3/0
Router2(config-if)#no sh
Router2(config-if)#ip addr 23.23.23.2 255.255.255.0
Router2(config-if)#clock rate 56000
kemudian konfigurasi routing protokolnya
Router2(config)#router ospf 10
Router2(config-router)#net 20.20.20.0 0.0.0.255 ar 0
Router2(config-router)#redistribute bgp 20 metric 1 subnets
kemudian yang bgp
Router2(config)#router bgp 20
Router2(config-router)#bgp router-id 2.2.2.2
Router2(config-router)#neighbor 12.12.12.1 remote-as 10
Router2(config-router)#neighbor 23.23.23.3 remote-as 30
Router2(config-router)#redistribute ospf 10 match external 1 external 2
Router2(config-router)#redistribute connected
Router2(config-router)#no synchronization
kemudian di router3 kita konfiguras sama dengan diatas
Router3(config)#int se2/0
Router3(config-if)#no sh
Router3(config-if)#ip addr 23.23.23.3 255.255.255.0
Router3(config-if)#int se3/0
Router3(config-if)#no sh
Router3(config-if)#ip addr 34.34.34.3 255.255.255.0
Router3(config-if)#clock rate 56000
Router3(config-if)#int fa1/0
Router3(config-if)#no sh
Router3(config-if)#ip addr 33.33.33.3 255.255.255.0
kemudian konfigurasi routing protokolnya
Router3(config)#router eigrp 10
Router3(config-router)#redistribute bgp 30 metric 1 1 1 1 1
Router3(config-router)#net 33.0.0.0
Router3(config-router)#net 34.0.0.0
Router3(config-router)#ex

Router3(config)#router bgp 30
Router3(config-router)#bgp router-id 3.3.3.3
Router3(config-router)#neighbor 23.23.23.2 remote-as 20
Router3(config-router)#redistribute eigrp 10
Router3(config-router)#no synchronization
Router3(config-router)#ex
 kemudian konfigurasi pada bagian topologi dibawah ini
kemudian konfigurasi di cntral-ofice server sepirti gambar berikut,penting kita save dulu konfigurasi kita soalnya nanti mungkin akan  terjadi hal-hal yang tidak di inginkan
kemudian konfigurasi di router 819GW
Router819#cellular 0 gsm profile create 1 pt.idn.com pap idn idn
MODEM_ACTIVATION_IN_PROGRESS: Cellular0 modem is under activating.
Router819#conf t
Router819(config)#int cel 0
Router819(config-if)#ip addr 172.16.1.2 255.255.255.0
kemudiankitaa kofigurasi sw1 disini kita akanmenonaktifkan mode switch pada interfaces tertentu
Switch1(config)#int fa0/1
Switch1(config-if)#no sw
Switch1(config-if)#ip addr 33.33.33.5 255.255.255.0
Switch1(config-if)#int fa0/2
Switch1(config-if)#no sw
Switch1(config-if)#ip addr 30.30.30.1 255.255.255.0
Switch1(config-if)#ex
kemudian konfigurasi routing protokolnya
Switch1(config)#ip routing
Switch1(config)#router eigrp 10
Switch1(config-router)#net 33.33.33.0
Switch1(config-router)#net 30.30.30.0
kemudian konfigurasi router asa-nya,buat uswrname dan password untuk dapat mengakses ssl
ciscoasa(config)#username idn password idn123
kemudian konfigurasi borkmak manajer di router asa ikuti scrennshot dibawah ini

kemudian aktifkan web vpn-nya
ciscoasa(config)#webvpn
ciscoasa(config-webvpn)#enable inside
INFO: WebVPN and DTLS are enabled on 'inside'.
ciscoasa(config-webvpn)#ex
konfigurasi vpn grop policy
ciscoasa(config)#group-policy political internal
ciscoasa(config)#group-policy political attributes
ciscoasa(config-group-policy)#vpn-tunnel-protocol ssl-clientless
ciscoasa(config-group-policy)#webvpn
ciscoasa(config-group-webvpn)#url-list value IDNWEB
ciscoasa(config-group-webvpn)#tunnel-group idn type remote-access
ciscoasa(config)#tunnel-group idn general-attributes
ciscoasa(config-tunnel-general)#default-group-policy political
ciscoasa(config-tunnel-general)#username idn attributes
ciscoasa(config-username)#vpn-group-policy political
ciscoasa(config-username)#ex
 kemudian kita konfigurasi standard access di router2
Router2(config)#access-list 10 deny host 10.10.10.2
Router2(config)#access-list 10 permit any
Router2(config)#int fa0/0
Router2(config-if)#ip access-group 10 out
Router2(config-if)#ex
 kemudian kita cek
 yang terakhir konfigurasi extended acces
Router2(config)#access-list 100 deny tcp host 10.10.10.3 host 20.20.20.3 eq www
Router2(config)#access-list 100 permit ip any any
Router2(config)#int se2/0
Router2(config-if)#ip access-group 100 in
kemudian kita cek

sekian terimakasih
 

Artikel Terkait

Superlab Cisco #41
4/ 5
Oleh

Berlangganan

Suka dengan artikel di atas? Silakan berlangganan gratis via email