This email address is being protected from spambots. You need JavaScript enabled to view it.
+212 661 233 909
Prerequisites:
Cisco c3725-adventerprisek9-mz124-25.image
See if your version support IPSEC - Cisco Feature Navigator : http://tools.cisco.com/ITDIT/CFN/
Objectif : To send L2 traffic over Internet, to have VLAN-to-VLAN connection between multi-sites with:
ISP Network components :
Customer Network :
We will configure the Frame-Relay in point-to-point mode:
Right Clic, and
DLCI Configuration: (Marrakech ==> Casa ==> Rabat ==> Tanger)
Port 1 | Marrakech | Marrakech ==> Casa | 1:102 |
Port 2 | Casa |
Casa ==> Marrakech |
2:201 2:203 |
Port 3 | Rabat | Rabat ==> Casa Rabat ==> Tanger |
3:302 3:304 |
Port 4 | Tanger | Tanger ==> Rabat | 4:403 |
Marrakech Router connected to Switch FR Port 1
Marrakech(Config)#interface Serial0/0 Marrakech(Config-if)#no ip address Marrakech(Config-if)#encapsulation frame-relay Marrakech(Config-if)#serial restart-delay 0 Marrakech(Config-if)#no shutdown Marrakech(Config-if)#exit Marrakech(Config)#interface Serial0/0.12 point-to-point Marrakech(Config-if)#ip address 10.1.1.1 255.255.255.252 Marrakech(Config-if)#frame-relay interface-dlci 102 Marrakech(Config-if)#exit
Casa Router connected to Switch FR Port 2
Casa(Config)#interface Serial0/0 Casa(Config-if)#no ip address Casa(Config-if)#encapsulation frame-relay Casa(Config-if)#serial restart-delay 0 Casa(Config-if)#no shutdown Casa(Config-if)#exit Casa(Config)#interface Serial0/0.21 point-to-point Casa(Config-if)#ip address 10.1.1.2 255.255.255.252 Casa(Config-if)#frame-relay interface-dlci 201 Casa(Config-if)#exit Casa(Config-if)#interface Serial0/0.23 point-to-point Casa(Config-if)#ip address 10.1.1.5 255.255.255.252 Casa(Config-if)#frame-relay interface-dlci 203
Rabat Router connected to Switch FR Port 3
Rabat(Config)#interface Serial0/0 Rabat(Config-if)#no ip address Rabat(Config-if)#encapsulation frame-relay Rabat(Config-if)#serial restart-delay 0 Rabat(Config-if)#no shutdown Rabat(Config-if)#exit Rabat(Config)#interface Serial0/0.32 point-to-point Rabat(Config-if)#ip address 10.1.1.6 255.255.255.252 Rabat(Config-if)#frame-relay interface-dlci 302 Rabat(Config-if)#exit Rabat(Config-if)#interface Serial0/0.34 point-to-point Rabat(Config-if)#ip address 10.1.1.9 255.255.255.252 Rabat(Config-if)#frame-relay interface-dlci 304
Tanger Router connected to Switch FR Port 4
Tanger(Config)#interface Serial0/0 Tanger(Config-if)#no ip address Tanger(Config-if)#encapsulation frame-relay Tanger(Config-if)#serial restart-delay 0 Tanger(Config-if)#no shutdown Tanger(Config-if)#exit Tanger(Config)#interface Serial0/0.43 point-to-point Tanger(Config-if)#ip address 10.1.1.10 255.255.255.252 Tanger(Config-if)#frame-relay interface-dlci 403 Tanger(Config-if)#exit
Tanger(Config)#interface Fastethernet0/0 Tanger(Config-if)#ip address 10.1.39.1 255.255.255.252 Tanger(Config-if)#no shutdown Tanger(Config-if)#exit
Marrakech(Config)#interface Fastethernet0/0 Marrakech(Config-if)#ip address 10.1.24.1 255.255.255.252 Marrakech(Config-if)#no shutdown Marrakech(Config-if)#exit
TangerMed(Config)#interface Fastethernet0/0 TangerMed(Config-if)#ip address 10.1.39.2 255.255.255.252 TangerMed(Config-if)#no shutdown TangerMed(Config-if)#exit TangerMed(Config)#interface Serial0/0 TangerMed(Config-if)#ip address 209.65.39.1 255.255.255.252 TangerMed(Config-if)#no shutdown TangerMed(Config-if)#exit
CentreMrk(Config)#interface Fastethernet0/0 CentreMrk(Config-if)#ip address 10.1.24.2 255.255.255.252 CentreMrk(Config-if)#no shutdown CentreMrk(Config-if)#exit CentreMrk(Config)#interface Serial0/0 CentreMrk(Config-if)#ip address 209.65.24.1 255.255.255.252 CentreMrk(Config-if)#no shutdown CentreMrk(Config-if)#exit
AgenceVoyage(Config)#interface Fastethernet0/0 AgenceVoyage(Config-if)#ip address 192.168.24.1 255.255.255.0 AgenceVoyage(Config-if)#no shutdown AgenceVoyage(Config-if)#exit AgenceVoyage(Config)#interface Serial0/0 AgenceVoyage(Config-if)#ip address 209.65.24.2 255.255.255.252 AgenceVoyage(Config-if)#no shutdown AgenceVoyage(Config-if)#exit
AgencePort(Config)#interface Fastethernet0/0 AgencePort(Config-if)#ip address 192.168.39.2 255.255.255.0 AgencePort(Config-if)#no shutdown AgencePort(Config-if)#exit AgencePort(Config)#interface Serial0/0 AgencePort(Config-if)#ip address 209.65.39.2 255.255.255.252 AgencePort(Config-if)#no shutdown AgencePort(Config-if)#exit
SWMrkt(Config)#interface Vlan 1 SWMrkt(Config-if)#ip address 192.168.24.200 255.255.255.0 SWMrkt(Config-if)#no shutdown SWMrkt(Config-if)#exit
SWPort(Config)#interface Vlan 1 SWPort(Config-if)#ip address 192.168.39.200 255.255.255.0 SWPort(Config-if)#no shutdown SWPort(Config-if)#exit
PC1[C:\>]ip 192.168.24.20/24 192.168.24.1
PC2[C:\>]ip 192.168.39.20/24 192.168.39.1
Casa(Config)#interface Loopback2 Casa(Config-if)#ip address 2.2.2.2 255.255.255.255 Casa(Config-if)#exit Casa(Config)#router ospf 10 Casa(Config-router)#router-id 2.2.2.2 Casa(Config-router)#log-adjacency-changes Casa(Config-router)#area 2224 nssa no-summary Casa(Config-router)#network 2.2.2.2 0.0.0.0 area 0 Casa(Config-router)#network 10.1.1.4 0.0.0.3 area 0 Casa(Config-router)#network 10.1.1.0 0.0.0.3 area 2224 Casa(Config-router)#exit
Rabat(Config)#interface Loopback3 Rabat(Config-if)#ip address 3.3.3.3 255.255.255.255 Rabat(Config-if)#exit Rabat(Config)#router ospf 10 Rabat(Config-router)#router-id 3.3.3.3 Rabat(Config-router)#log-adjacency-changes Rabat(Config-router)#area 3739 nssa no-summary Rabat(Config-router)#network 3.3.3.3 0.0.0.0 area 0 Rabat(Config-router)#network 10.1.1.4 0.0.0.3 area 0 Rabat(Config-router)#network 10.1.1.8 0.0.0.3 area 3739 Rabat(Config-router)#exit
Marrakech(Config)#interface Loopback1 Marrakech(Config-if)#ip address 1.1.1.1 255.255.255.255 Marrakech(Config-if)#exit Marrakech(Config)#router ospf 10 Marrakech(Config-router)#router-id 1.1.1.1 Marrakech(Config-router)#log-adjacency-changes Marrakech(Config-router)#area 2224 nssa Marrakech(Config-router)#network 1.1.1.1 0.0.0.0 area 2224 Marrakech(Config-router)#network 10.1.1.0 0.0.0.3 area 2224 Marrakech(Config-router)#exit
Tanger(Config)#interface Loopback4 Tanger(Config-if)#ip address 4.4.4.4 255.255.255.255 Tanger(Config-if)#exit Tanger(Config)#router ospf 10 Tanger(Config-router)#router-id 4.4.4.4 Tanger(Config-router)#log-adjacency-changes Tanger(Config-router)#area 3739 nssa Tanger(Config-router)#network 4.4.4.4 0.0.0.0 area 3739 Tanger(Config-router)#network 10.1.1.8 0.0.0.3 area 3739 Tanger(Config-router)#exit
Marrakech(Config)#router eigrp 24 Marrakech(Config-router)#network 10.1.24.0 0.0.0.3 Marrakech(Config-router)#no auto-summary Marrakech(Config-router)#exit
Tanger(Config)#router eigrp 39 Tanger(Config-router)#network 10.1.39.0 0.0.0.3 Tanger(Config-router)#no auto-summary Tanger(Config-router)#exit
CentreMrk(Config)#router eigrp 24 CentreMrk(Config-router)#network 10.1.24.0 0.0.0.3 CentreMrk(Config-router)#no auto-summary CentreMrk(Config-router)#exit
TangerMed(Config)#router eigrp 39 TangerMed(Config-router)#network 10.1.39.0 0.0.0.3 TangerMed(Config-router)#no auto-summary TangerMed(Config-router)#exit
CentreMrk(Config)#ip route 209.65.24.0 255.255.255.252 serial0/0
TangerMed(Config)#ip route 209.65.39.0 255.255.255.252 serial0/0
AgenceVoyage(Config)#ip route 0.0.0.0 0.0.0.0 serial0/0
AgencePort(Config)#ip route 0.0.0.0 0.0.0.0 serial0/0
CentreMrk(Config)#ip route 0.0.0.0 0.0.0.0 10.1.24.1
TangerMed(Config)#ip route 0.0.0.0 0.0.0.0 10.1.39.1
Marrakech(Config)#ip access-list standard 10 Marrakech(Config-std-nacl)#10 permit 10.1.24.0 0.0.0.3 Marrakech(Config-std-nacl)#exit Marrakech(Config)#route-map EIGRP_OSPF permit 10 Marrakech(Config-route-map)#set metric 102400 1000 128 1 1500 Marrakech(Config-route-map)#match ip address 10 Marrakech(Config-route-map)#exit Marrakech(Config)#router eigrp 24 Marrakech(Config-router)#redistribute ospf 10 route-map EIGRP_OSPF Marrakech(Config-router)#exit Marrakech(Config)#router ospf 10 Marrakech(Config-router)#redistribute eigrp 24 subnets Marrakech(Config-router)#exit
Tanger(Config)#ip access-list standard 10 Tanger(Config-std-nacl)#10 permit 10.1.39.0 0.0.0.3 Tanger(Config-std-nacl)#exit Tanger(Config)#route-map EIGRP_OSPF permit 10 Tanger(Config-route-map)#set metric 102400 1000 128 1 1500 Tanger(Config-route-map)#match ip address 10 Tanger(Config-route-map)#exit Tanger(Config)#router eigrp 39 Tanger(Config-router)#redistribute ospf 10 route-map EIGRP_OSPF Tanger(Config-router)#exit Tanger(Config)#router ospf 10 Tanger(Config-router)#redistribute eigrp 39 subnets Tanger(Config-router)#exit
NB : set metric 102400 1000 128 1 1500
Bandwidth – 102400 Kb/s;
Delay – 1000 (In ten of microseconds);
Reliability – 128;
Loading – 1;
MTU – 1500.
CentreMrk(Config)#route-map STATIC_EIGRP permit 10 CentreMrk(Config-route-map)#match interface Serial0/0 CentreMrk(Config-route-map)#exit CentreMrk(Config)#router eigrp 24 CentreMrk(Config-router)#redistribute connected route-map STATIC_EIGRP CentreMrk(Config-router)#exit
TangerMed(Config)#route-map STATIC_EIGRP permit 10 TangerMed(Config-route-map)#match interface Serial0/0 TangerMed(Config-route-map)#exit TangerMed(Config)#router eigrp 39 TangerMed(Config-router)#redistribute connected route-map STATIC_EIGRP TangerMed(Config-router)#exit
NB: We can't ping from PC1 to Public Address in Tanger ==> Configuration of NAT
AgenceVoyage(Config)#interface fastethernet0/0 AgenceVoyage(Config-if)#ip nat inside AgenceVoyage(Config-if)#exit AgenceVoyage(Config)#interface Serial0/0 AgenceVoyage(Config-if)#ip nat outside AgenceVoyage(Config-if)#exit AgenceVoyage(Config)#access-list 101 remark [Control NAT Translation] AgenceVoyage(Config)#access-list 101 permit ip 192.168.24.0 0.0.0.255 any AgenceVoyage(Config)#ip nat inside source list 101 interface serial 0/0 overload
AgenceMed(Config)#interface fastethernet0/0 AgenceMed(Config-if)#ip nat inside AgenceMed(Config-if)#exit AgenceMed(Config)#interface Serial0/0 AgenceMed(Config-if)#ip nat outside AgenceMed(Config-if)#exit AgenceMed(Config)#access-list 101 remark [Control NAT Translation] AgenceMed(Config)#access-list 101 permit ip 192.168.39.0 0.0.0.255 any AgenceMed(Config)#ip nat inside source list 101 interface serial 0/0 overload