0% found this document useful (0 votes)
10 views18 pages

Paso A Paso de Ccna 2

The document outlines the configuration steps for CCNA 2, including IP addressing, interface settings for routers and switches, VLAN configurations, DHCP setup, HSRP, and static routing. It provides detailed commands for configuring various network devices and ensuring security through port security settings. Additionally, it specifies the exclusion of certain IP addresses for DHCP and the setup of routing protocols for network redundancy.
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
10 views18 pages

Paso A Paso de Ccna 2

The document outlines the configuration steps for CCNA 2, including IP addressing, interface settings for routers and switches, VLAN configurations, DHCP setup, HSRP, and static routing. It provides detailed commands for configuring various network devices and ensuring security through port security settings. Additionally, it specifies the exclusion of certain IP addresses for DHCP and the setup of routing protocols for network redundancy.
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 18

Paso a Paso de ccna 2

Cambiamos el nombre de todos

Enable

Configure terminal

Hostname

DIRECCIONAMIENTO IP
INTERFACES WAN (SERIALES)
UTILICE LA PRIMER DIRECCIÓN IP UTILIZABLE EN CABLE DCE DEL ROUTER EDI-CENTRAL, EN EL
RESTO DE LOS DISPOSITIVOS QUE SE CONECTEN PUNTO A PUNTO, UTILIZAR LA PRIMER DIRECCIÓN
UTILIZABLE EN AL LADO IZQUIERDO.

Interface serial 0/1/0

Ip address 192.168.255.229 255.255.255.252

No shutdown

Exit

Interface gigabitethernet 0/0/0

Ip add 192.168.255.226 255.255.255.252

No shutdown

Exit

Nos vamos al router sucursal

Interface serial 0/1/0

Ip address 192.168.255.230 255.255.255.252

No shutdown

Exit

Interface gigabitethernet 0/0/1

Ip add 192.168.255.226 233.255.255.252


No shutdown

Exit

SWICTH PRINCIPAL

Interface gigabitethernet 1/0/24

No switchport

Ip add 192.168.255.234 255.255.255.252

No shutdown

Exit

Interface gigabitethernet 1/0/23

No switchport

Ip add 192.168.255.237 255.255.255.252

No shutdown

Exit

Interface gigabitethernet 1/0/1

No switchport

Ip add 172.31.10.1 255.255.254.0

No shutdown

Exit

SWICTH BACKUP

Interface gigabitethernet 0/0/1

Ip add 192.168.255.238 255.255.255.252

No shutdown

Exit

SWICTH MULTIPLAYER
Interface gigabitethernet 1/0/1

No switchport

Ip add 10.50.100.1 255.255.252.0

No shutdown

Exit

Interface gigabitethernet 1/0/2

No switchport

Ip add 192.168.255.225 255.255.255.0

No shutdown

Exit

PARA EL DHCP HACEMOS LO SIGUIENTE

Interface gigabitethernet 1/0/1

Ip HELPER-ADDRESS 192.168.255.226

Exit

INTERFACES LAN Y VLAN


UTILICE EN TODOS LOS CASOS LA PRIMER DIRECCION UTILIZABLE
CONFIGURAR LAS SUB-INTERFACES EN EL O LOS ROUTER QUE CORRESPONDA
VLAN 4 CONTA 172.20.4.0 /24 2001:ACAD:AFA:4::/64 P 5-10
VLAN 5 RRHH 172.20.5.0 /24 2001:ACAD:AFA:5::/64 P 11-15
VLAN 6 REGIS 172.20.6.0 /24 2001:ACAD:AFA:6::/64 P 16-24
VLAN 255 ADMIN 172.20.255.0/28 2001:ACAD:AFA:255::/64

EDI-CENTRAL

Interface gigabitethernet 0/0/1.4

Description CONTA

Encapsulation dot1q 4

Ip address 172.20.4.1 255.255.255.0


Ipv6 address 2001:ACAD:AFA:4::1/64

EXIT

Interface gigabitethernet 0/0/1.5

Description RRHH

Encapsulation dot1q 5

Ip address 172.20.5.1 255.255.255.0

Ipv6 address 2001:ACAD:AFA:5::1/64

EXIT

Interface gigabitethernet 0/0/1.6

Description REGIS

Encapsulation dot1q 6

Ip address 172.20.6.1 255.255.255.0

Ipv6 address 2001:ACAD:AFA:6::1/64

EXIT

Interface gigabitethernet 0/0/1.255

Description ADMIN

Encapsulation dot1q 255 NATIVE

Ip address 172.20.255.1 255.255.255.240

Ipv6 address 2001:ACAD:AFA:255::1/64

EXIT

CONFIGUAR ETHERCHANNEL SEGÚN SE INDICA EN EL PACKET TRACER.

CONFIGURAR QUE EL CEN-1 SEA EL PUENTE RAIZ DE LA VLAN 6 UTILIZANDO LA PRIORIDAD MAS
BAJA
CONFIGURAR QUE EL CEN-2 SEA EL PUENTE RAIZ DE LA VLAN 4 UTILIZANDO LA PRIORIDAD MAS
BAJA
CONFIGURAR QUE EL CEN-3 SEA EL PUENTE RAIZ DE LA VLAN 5 UTILIZANDO LA PRIORIDAD MAS
BAJA

Cen-3 / Cen-1

Interface range fastethernet 0/1-2


Shutdown

Channel-group 5 mode desirable

No shutdown

Exit

Interface port-channel 5

Switchport mode trunk

Switchport trunk native vlan 255

Switchport trunk allowed vlan 4,5,6,255

exit

Cen-1 / Cen-2

Interface range fastethernet 0/3-4

Shutdown

Channel-group 2 mode active

No shutdown

Exit

Interface port-channel 2

Switchport mode trunk

Switchport trunk native vlan 255

Switchport trunk allowed vlan 4,5,6,255

exit

CEN-1

Interface gigabitethernet 0/1

Switchport mode trunk

Switchport trunk native vlan 255

Switchport trunk allowed vlan 4,5,6,255

exit

EDI-CENTRAL
Interface gigabitethernet 0/1

NO SHUTDOWN

SEGURIDAD PARA TODOS LOS PUESTOS DE LAS VLAN


MAXIMO DE DIRECCIONES MAC-ADDRESS 5
MODE DE VIOLACIÓN PROTEGIDO
APRENDER LAS DIRECCIONES MEDIANTE STICKY
CONFIGURAR UNA IP Y GATEWAY A CADA UNO DE LOS SWITCHES SEGÚN SE INDICA EN EL
PACKET TRACER

CEN-3
VLAN 4

NAME CONTA

VLAN 5

NAME RRHH

VLAN 6

NAME REGIS

VLAN 255

NAME ADMIN

EXIT

INTERFACE VLAN 255

IP ADDRESS 172.20.255.13 255.255.255.240

NO SHUTDOWN

EXIT

IP DEFAULT-GATEWAY 172.20.255.1

INTER RANGE FASTETHERNET 0/5-10

SWITCHPORT MODE ACCESS

SWITCHPORT ACCESS VLAN 4

SWITCHPORT PORT-SECURITY

SWITCHPORT PORT-SECURITY MAXIMUM 5

SWITCHPORT PORT-SECURITY VIOLATION


SWITCHPORT PORT-SECURITY MAC-ADDRESS STICKY

EXIT

INTER RANGE FASTETHERNET 0/11-15

SWITCHPORT MODE ACCESS

SWITCHPORT ACCESS VLAN 5

SWITCHPORT PORT-SECURITY

SWITCHPORT PORT-SECURITY MAXIMUM 5

SWITCHPORT PORT-SECURITY VIOLATION

SWITCHPORT PORT-SECURITY MAC-ADDRESS STICKY

EXIT

INTER RANGE FASTETHERNET 0/16-24

SWITCHPORT MODE ACCESS

SWITCHPORT ACCESS VLAN 6

SWITCHPORT PORT-SECURITY

SWITCHPORT PORT-SECURITY MAXIMUM 5

SWITCHPORT PORT-SECURITY VIOLATION

SWITCHPORT PORT-SECURITY MAC-ADDRESS STICKY

EXIT

SPANNING-TREE VLAN 5 PRIORITY 0

INTERFACE RANGE FASTETHERNET 0/5-24

SPANNING-TRE PORFAST

CEN-1
VLAN 4

NAME CONTA

VLAN 5

NAME RRHH

VLAN 6
NAME REGIS

VLAN 255

NAME ADMIN

EXIT

INTERFACE VLAN 255

IP ADDRESS 172.20.255.14 255.255.255.240

NO SHUTDOWN

EXIT

IP DEFAULT-GATEWAY 172.20.255.1

INTER RANGE FASTETHERNET 0/5-10

SWITCHPORT MODE ACCESS

SWITCHPORT ACCESS VLAN 4

SWITCHPORT PORT-SECURITY

SWITCHPORT PORT-SECURITY MAXIMUM 5

SWITCHPORT PORT-SECURITY VIOLATION

SWITCHPORT PORT-SECURITY MAC-ADDRESS STICKY

EXIT

INTER RANGE FASTETHERNET 0/11-15

SWITCHPORT MODE ACCESS

SWITCHPORT ACCESS VLAN 5

SWITCHPORT PORT-SECURITY

SWITCHPORT PORT-SECURITY MAXIMUM 5

SWITCHPORT PORT-SECURITY VIOLATION

SWITCHPORT PORT-SECURITY MAC-ADDRESS STICKY

EXIT

INTER RANGE FASTETHERNET 0/16-24

SWITCHPORT MODE ACCESS

SWITCHPORT ACCESS VLAN 6


SWITCHPORT PORT-SECURITY

SWITCHPORT PORT-SECURITY MAXIMUM 5

SWITCHPORT PORT-SECURITY VIOLATION

SWITCHPORT PORT-SECURITY MAC-ADDRESS STICKY

EXIT

SPANNING-TREE VLAN 6 PRIORITY 0

INTERFACE RANGE FASTETHERNET 0/5-24

SPANNING-TRE PORFAST

CEN-2
VLAN 4

NAME CONTA

VLAN 5

NAME RRHH

VLAN 6

NAME REGIS

VLAN 255

NAME ADMIN

EXIT

INTERFACE VLAN 255

IP ADDRESS 172.20.255.12 255.255.255.240

NO SHUTDOWN

EXIT

IP DEFAULT-GATEWAY 172.20.255.1

INTER RANGE FASTETHERNET 0/5-10

SWITCHPORT MODE ACCESS


SWITCHPORT ACCESS VLAN 4

SWITCHPORT PORT-SECURITY

SWITCHPORT PORT-SECURITY MAXIMUM 5

SWITCHPORT PORT-SECURITY VIOLATION

SWITCHPORT PORT-SECURITY MAC-ADDRESS STICKY

EXIT

INTER RANGE FASTETHERNET 0/11-15

SWITCHPORT MODE ACCESS

SWITCHPORT ACCESS VLAN 5

SWITCHPORT PORT-SECURITY

SWITCHPORT PORT-SECURITY MAXIMUM 5

SWITCHPORT PORT-SECURITY VIOLATION

SWITCHPORT PORT-SECURITY MAC-ADDRESS STICKY

EXIT

INTER RANGE FASTETHERNET 0/16-24

SWITCHPORT MODE ACCESS

SWITCHPORT ACCESS VLAN 6

SWITCHPORT PORT-SECURITY

SWITCHPORT PORT-SECURITY MAXIMUM 5

SWITCHPORT PORT-SECURITY VIOLATION

SWITCHPORT PORT-SECURITY MAC-ADDRESS STICKY

EXIT

SPANNING-TREE VLAN 4 PRIORITY 0

INTERFACE RANGE FASTETHERNET 0/5-24

SPANNING-TRE PORFAST

SE PONEN LAS PC Y LA ULTIMO PUERTO EN TODAS

DHCP V4
CONFIGURAR UN POOL PARA CADA UNA DE LAS REDES LAN Y VLAN
EXCLUIR LAS PRIMERAS 5 IP DE TODA RED Y LAS DE LOS SERVIDORES SI LOS HUBIERE
EL DOMINIO PARA LAS REDES ES ccna.com

Pool SUCURSAL1
Pool CONTA
Pool RRHH
Pool REGIS
Pool PRINCIPAL

EDI CENTRAL POOL

IP DHCP POOL CONTA

NETWORK 172.20.4.0 255.255.255.0

DEFAULT ROUTER 172.20.4.1

DNS 10.1.2.254

DOMAIN NAME ccna.com

IP DHCP POOL RRHH

NETWORK 172.20.5.0 255.255.255.0

DEFAULT ROUTER 172.20.5.1

DNS 10.1.2.254

DOMAIN NAME ccna.com

IP DHCP POOL REGIS

NETWORK 172.20.6.0 255.255.255.0

DEFAULT ROUTER 172.20.6.1

DNS 10.1.2.254

DOMAIN NAME ccna.com

IP DHCP POOL PRINCIPAL

NETWORK 172.31.10.0 255.255.254.0

DEFAULT ROUTER 172.31.10.1

DNS 10.1.2.254

DOMAIN NAME ccna.com


IP DHCP POOL SUCURSAL1

NETWORK 10.50.100.0 255.255.252.0

DEFAULT-ROUTER 10.50.100.1 255.255.255.252.0

DNS 10.1.2.254

DOMAIN-NAME ccna.com

Excluir IP edi central

IP DHCP EXCLUDED-ADDRESS 172.20.4.1 172.20.4.5

IP DHCP EXCLUDED-ADDRESS 172.20.5.1 172.20.5.5

IP DHCP EXCLUDED-ADDRESS 172.20.6.1 172.20.6.5

IP DHCP EXCLUDED-ADDRESS 10.50.100.1 10.50.100.5

IP DHCP EXCLUDED-ADDRESS 172.31.10.1 172.31.10.5

IP DHCP EXCLUDED-ADDRESS 10.50.103.254

IP DHCP EXCLUDED-ADDRESS 10.1.2.253

IP DHCP EXCLUDED-ADDRESS 10.1.2.254

IPV6 UNICAST-ROUTING

HSRP ( standby #1) EN LOS ROUTER BACKUP Y SUCURSAL 2


CONFIGURE EL HSRP EN LOS ROUTER (SUCURSAL2 Y BACKUP), DONDE EL ROUTER SURCUSAL2
ES EL PRINCIPAL, PRIORIDAD 150
UTILIZAR EN EL ROUTER SUCURSAL2 LA SEGUNDA IP UTILIZABLE
UTILIZAR EN EL ROUTER BACKUP LA TERCER IP UTILIZABLE

SUCURSAL 2

INTERFACE GIGABITEHTERNET 0/0/0

IP ADDRESS 10.1.2.2 255.255.255.0

STANBY VERSION 2

STANDBY 1 IP 10.1.2.1

STANDBY 1 PRIORITY 150


STANDBY 1 PREEMPT

NO SHUTDOWN

BACKUP

INTERFACE GIGABITEHTERNET 0/0/0

IP ADDRESS 10.1.2.3 255.255.255.0

STANDBY VERSION 2

STANDBY 1 IP 10.1.2.1

NO SHUTDOWN

ENRUTAMIENTO ESTÁTICO
SI BIEN ES CIERTO PARA EL ENRUTAMIENTO ESTÁTICO SE PUEDE UTILIZAR LA INTERFAZ DE
SALIDA O LA IP DEL SIGUIENTE SALTO, PARA ESTE EXAMEN USAREMOS EN TODOS LOS CASOS LA
DIRECCIÓN DEL SIGUIENTE SALTO

BACKUP
IP ROUTING

IP ROUTE 172.31.10.0 255.255.254.0 192.168.255.237

IP ROUTE 192.168.255.232 255.255.255.252 192.168.255.237

IP ROUTE 192.168.255.228 255.255.255.252 192.168.255.237

IP ROUTE 172.20.4.0 255.255.255.0 192.168.255.237

IP ROUTE 172.20.5.0 255.255.255.0 192.168.255.237

IP ROUTE 172.20.6.0 255.255.255.0 192.168.255.237

IP ROUTE 172.20.255.0 255.255.255.240 192.168.255.237

IP ROUTE 192.168.255.224 255.255.255.252 192.168.255.237

IP ROUTE 10.50.100.0 255.255.252.0 192.168.255.237

PRINCIPAL
IP ROUTING

IP ROUTE 10.1.2.0 255.255.255.0 192.168.255.233


IP ROUTE 10.1.2.0 255.255.255.0 192.168.255.238

IP ROUTE 192.168.255.228 255.255.255.252 192.168.255.233

IP ROUTE 172.20.4.0 255.255.255.0 192.168.255.233

IP ROUTE 172.20.5.0 255.255.255.0 192.168.255.233

IP ROUTE 172.20.6.0 255.255.255.0 192.168.255.233

IP ROUTE 172.20.255.0 255.255.255.240 192.168.255.233

IP ROUTE 192.168.255.224 255.255.255.252 192.168.255.233

IP ROUTE 10.50.100.0 255.255.252.0 192.168.255.233

SUCURSAL 2
IP ROUTING

IP ROUTE 172.31.10.0 255.255.254.0 192.168.255.234

IP ROUTE 172.20.4.0 255.255.255.0 192.168.255.229

IP ROUTE 172.20.5.0 255.255.255.0 192.168.255.229

IP ROUTE 172.20.6.0 255.255.255.0 192.168.255.229

IP ROUTE 172.20.255.0 255.255.255.240 192.168.255.229

IP ROUTE 192.168.255.224 255.255.255.252 192.168.255.229

IP ROUTE 10.50.100.0 255.255.252.0 192.168.255.229

EDI-CENTRAL
IP ROUTING

IP ROUTE 172.31.10.0 255.255.254.0 192.168.255.230

IP ROUTE 192.168.255.232 255.255.255.252 192.168.255.230

IP ROUTE 192.168.255.236 255.255.255.252 192.168.255.230

IP ROUTE 10.50.100.0 255.255.252.0 192.168.255.230

IP ROUTE 10.1.2.0 255.255.255.0 192.168.255.225

SUCURSAL 1
IP ROUTING

IP ROUTE 172.20.4.0 255.255.255.0 192.168.255.226

IP ROUTE 172.20.5.0 255.255.255.0 192.168.255.226

IP ROUTE 172.20.6.0 255.255.255.0 192.168.255.226

IP ROUTE 172.20.255.0 255.255.255.240 192.168.255.226

IP ROUTE 192.168.255.228 255.255.255.252 192.168.255.226

IP ROUTE 192.168.255.232 255.255.255.252 192.168.255.226

IP ROUTE 192.168.255.236 255.255.255.252 192.168.255.226

IP ROUTE 10.1.2.0 255.255.255.0 192.168.255.226

IP ROUTE 172.31.10.0 255.255.254.0 192.168.255.226

CONFIGURACIÓN DE LOS SERVIDORES


SERVIDOR HTTP: CONFIGURAR LA ULTIMA IP UTILIZABLE
EN EL CASO DE ESTE SERVIDOR. SOLO SE LE DEBE DE CONFIGURAR EL DIRECCIONAMIENTO IP
CORRESPONDIENTE. NO SE DEBE CONFIGURAR LA PÁGINA WEB

SERVIDOR DNS: CONFIGURAR CON LA ULTIMA IP UTILIZABLE , CONFIGURAR EN ESTE SERVIDOR


LA PAGINA WEB: www.ccna.com

SERVIDOR TFTP: CONFIGURAR CON LA PENULTIMA IP UTILIZABLE

SERVIDOR WEB

IP CONFIG

10.50.103.254 255.255.252.0

10.50.100.1

DNS:10.1.2.254

SERVIDOR DNS

10.1.2.254

255.255.255.0
10.1.2.1

DNS: 10.1.2.254

WWW.CCNA.COM ADDRESS 10.50.103.254 ON

SERVIDOR TFP

10.1.2.253

255.255.255.0

10.1.2.1

10.1.2.254

CONFIGURAR EN SW-PUBLICO
CONFGURAR UN IP DE LA VLAN 1 Y SU GATEWAY
CAMBIAR EL IOS, INSTALAR Y CARGAR LA VERSIÓN 15.0 QUE ESTA EN EL SERVIDOR TFTP

SW-PUBLICO
INTERFACE VLAN 1

IP ADDRESS 172.31.11.254 255.255.254.0

NO SHUTDOWN

EXIT

IP DEFAULT-GATEWAY 172.31.10.1

PING 10.1.2.1

SHOW VERSION

ME DA LA VERSION 12.2

COPY TFTP: FLASH:

ADDRESS OR NAME OF REMOTE HOST []? 10.1.2.253

SOURCE FILENAME [] ? (NOS VAMOS AL SERVIDOR DE TFTP | SERVICIOS |BUSCO EL ARCHIVO 150
(c2960-Lanbasek9-mz.150-2.SE4.bin)
DESTINATION FILENAME (LE DAMOS ENTER PORQUE LO QUEREMOS AHÍ MISMO)

CONFIGURACION GLOBAL

BOOT SYSTEM (Y EL NOMBRE DEL ARCHIVO) (c2960-Lanbasek9-mz.150-2.SE4.bin)

EXIT

RELOAD

EDI-CENTRAL

Interface gigabitethernet 1/0/1

IP HELPER-ADDRESS 192.168.255.229

CONFIGURACIÓN DE ROUTER INALÁMBRICO


CONFIGURAR CON:
RED 192.168.200.0/24
SSID:CCAA
PASSWORD ACCESO INALAMBRICO:53CU3511 EN EL MODO MAS SEGURO
PASSORD ACCESO ADMINISTRATIVO: 55HADMIN

LO CONECTAMOS CON CABLE DE INTERNET


SETUP :

IP 192.168.200.1

255.255.255.0

Start IP ADDRESS= 2

Disabled y luego enabled.

Save Changes.

SSID: CCAA

SECURITY=
WPA PERSONAL

PASSWORD= 53CU3511
Save Changes.

ADMINISTRATION

PASSWORD: 55HADMIN

Save Changes.

CONFIGURAR EN LOS SW1 Y SW2,


RAPID STP , PARA QUE LOS ENLACES ENTRE LOS SWITCH LEVANTEN INMEDIATAMENTE.
CONFIGURAR EN LOS PUERTOS DONDE ESTAN LA PC´s PORTFAST CON SEGURIDAD

SW-1

SPANNING TREE MODE RAPID-PVST

INTERFACE FASTETHERNET 0/3

SPANNIG-TREE PORTFAST

SW-2

SPANNING TREE MODE RAPID-PVST

INTERFACE FASTETHERNET 0/3

SPANNIG-TREE PORTFAST

LE DAMOS GUARDAR Y VOLVEMOS ABRIR


Y DEBERIA DE DARNOS UN 93

You might also like

pFad - Phonifier reborn

Pfad - The Proxy pFad of © 2024 Garber Painting. All rights reserved.

Note: This service is not intended for secure transactions such as banking, social media, email, or purchasing. Use at your own risk. We assume no liability whatsoever for broken pages.


Alternative Proxies:

Alternative Proxy

pFad Proxy

pFad v3 Proxy

pFad v4 Proxy