Gtwy_salida a Internet

download Gtwy_salida a Internet

If you can't read please download the document

description

*

Transcript of Gtwy_salida a Internet

sdproyectos#sh runBuilding configuration...Current configuration : 6790 bytes!! No configuration change since last restart!version 12.4service timestamps debug datetime msecservice timestamps log datetime msecno service password-encryption!hostname sdproyectos!boot-start-markerboot system flash:c3825-adventerprisek9-mz.124-11.XW9.binboot-end-marker!logging buffered 1000000enable secret 5 $1$7wVy$sxN60UEj61N1WsKzEhI4U1!aaa new-model!!aaa authentication login default localaaa authentication login SD_VPN_xauth localaaa authorization exec default local aaa authorization network SD_VPN_group local !!aaa session-id commonclock timezone MEX_TC -6clock summer-time HdeVerano recurring 1 Sun Apr 2:00 last Sun Oct 2:00network-clock-participate wic 0 network-clock-participate wic 2 network-clock-select 1 E1 0/2/0!ip cef!!!!no ip domain lookupip host members.dyndns.org 204.13.248.112ip ddns update method updateDyn HTTP add http://sdproyectos:[email protected]/nic/update?system=dyndns&hostname=sdproyectos.go.dyndns.org&myip= interval maximum 0 20 0 0!!multilink bundle-name authenticated! isdn switch-type primary-qsig!voice-card 0 no dspfarm!!!!!!!!!!!!!!!!!!! !crypto isakmp policy 1 encr 3des authentication pre-share group 2crypto isakmp key covafTEST address 200.57.32.111!crypto isakmp client configuration group SDGrp key s1d1tel2010 pool SD_POOL acl 100 max-users 5 max-logins 5 netmask 255.255.255.0 banner ^CCVPN MAKETA ACCIVAL !!! ^C!!crypto ipsec transform-set covafvpnl2l esp-3des esp-sha-hmac crypto ipsec transform-set SDSet esp-3des esp-sha-hmac !crypto dynamic-map SD_DYNMAP 1 set transform-set SDSet reverse-route!!crypto map SD_CMAP client authentication list SD_VPN_xauthcrypto map SD_CMAP isakmp authorization list SD_VPN_groupcrypto map SD_CMAP client configuration address respondcrypto map SD_CMAP 65535 ipsec-isakmp dynamic SD_DYNMAP !crypto map covaf 10 ipsec-isakmp set peer 200.57.32.111 set transform-set covafvpnl2l match address 101!!!username siditel secret 5 $1$Oxn7$Lol6i/IzNTwazykDbzjnQ/archive log config hidekeys!!controller E1 0/0/0 framing NO-CRC4 clock source internal line-termination 75-ohm pri-group timeslots 1-31 service mgcp description ENLACE QSIG AL MITEL!controller E1 0/2/0 framing NO-CRC4 clock source line primary line-termination 75-ohm ds0-group 1 timeslots 1-15,17-31 type r2-digital r2-compelled ani cas-custom 1 unused-abcd 0 1 1 1 country telmex seizure-ack-time 30 disconnect-tone category 2 signal-end-to-end answer-signal group-b 1 caller-digits 4 dnis-digits min 4 max 13 ani-digits min 0 max 10 dnis-complete answer-guard-time 750 ani-timeout 10 groupa-callerid-end description PSTN_E1 a traves de Grabadora(TARJETA) Cables 5y6!controller E1 0/2/1 framing NO-CRC4 line-termination 75-ohm ds0-group 1 timeslots 1-15,17-31 type r2-digital r2-compelled ani cas-custom 1 country telmex seizure-ack-time 30 category 2 answer-signal group-b 1 dnis-digits min 4 max 13 dnis-complete ani-timeout 10 timer interdigit incoming 1000 groupa-callerid-end description PSTN_E1(2) a traves de Grabadora(GATEWAY) Cables 3y4!!class-map match-any VoIP match ip dscp ef match protocol rtp audio class-map match-any VoIP_Signaling match ip dscp af31 match ip dscp cs3 match access-group name SCCP match access-group name H323!!policy-map Voice-QoS class VoIP priority percent 60 set dscp ef class VoIP_Signaling bandwidth percent 12 set dscp af31 class class-default fair-queue random-detect!!!!!interface GigabitEthernet0/0 ip address 10.203.160.250 255.255.255.0 ip nat inside ip virtual-reassembly duplex auto speed 100 media-type rj45 h323-gateway voip interface h323-gateway voip bind srcaddr 10.203.160.250 service-policy output Voice-QoS!interface GigabitEthernet0/1 no ip address no ip redirects no ip unreachables ip nat outside ip virtual-reassembly ip tcp adjust-mss 1452 duplex auto speed auto media-type rj45 pppoe enable group global pppoe-client dial-pool-number 1!interface Serial0/0/0:15 no ip address encapsulation hdlc isdn switch-type primary-qsig isdn timer T310 120000 isdn overlap-receiving isdn protocol-emulate network isdn incoming-voice voice no cdp enable!interface Dialer1 ip ddns update hostname sdproyectos.go.dyndns.org ip ddns update updateDyn host members.dyndns.org ip address negotiated no ip redirects no ip unreachables ip nat outside ip virtual-reassembly encapsulation ppp ip tcp adjust-mss 1452 dialer pool 1 dialer-group 1 no cdp enable ppp authentication chap callin ppp chap hostname 1406344 ppp chap password 0 tuxtla ppp pap sent-username 1406344 password 0 tuxtla crypto map SD_CMAP!ip local pool SD_POOL 10.203.165.10 10.203.165.15ip route 0.0.0.0 0.0.0.0 Dialer1ip route 10.10.10.0 255.255.255.0 Dialer1ip route 10.205.180.0 255.255.255.0 10.203.160.254!! ip http serverno ip http secure-serverip nat inside source route-map SD_RMAP interface Dialer1 overloadip nat outside source static 10.10.10.254 201.103.11.140!ip access-list extended H323 permit tcp any any range 1718 1720 permit tcp any any eq 1731ip access-list extended SCCP permit tcp any any eq 2000!access-list 100 permit ip 10.203.160.0 0.0.0.255 anyaccess-list 101 permit ip 10.203.160.0 0.0.0.255 10.10.10.0 0.0.0.255access-list 101 permit ip 10.205.180.0 0.0.0.255 10.10.10.0 0.0.0.255access-list 101 deny ip 10.203.160.0 0.0.0.255 host 10.203.165.10access-list 101 deny ip 10.203.160.0 0.0.0.255 host 10.203.165.11access-list 101 deny ip 10.203.160.0 0.0.0.255 host 10.203.165.12access-list 101 deny ip 10.203.160.0 0.0.0.255 host 10.203.165.13access-list 101 deny ip 10.203.160.0 0.0.0.255 host 10.203.165.14access-list 101 deny ip 10.203.160.0 0.0.0.255 host 10.203.165.15access-list 101 permit ip 10.203.160.0 0.0.0.255 anyaccess-list 110 deny ip 10.203.160.0 0.0.0.255 10.10.10.0 0.0.0.255access-list 110 deny ip 10.205.180.0 0.0.0.255 10.10.10.0 0.0.0.255access-list 110 permit ip 10.203.160.0 0.0.0.255 anyaccess-list 110 permit ip 10.205.180.0 0.0.0.255 anydialer-list 1 protocol ip permit!!!route-map SD_RMAP permit 1 match ip address 101!route-map nonat permit 10 match ip address 110!!!!control-plane!!!voice-port 0/0/0:15!voice-port 0/2/0:1!voice-port 0/2/1:1!! !!!!!!line con 0line aux 0line vty 0 3 exec-timeout 120 0 transport input telnetline vty 4 exec-timeout 120 0 transport input telnetparser view first secret 5 $1$IP6c$0HA7PyjLTIq2DtVVQKNKt0 commands exec include show running-config commands exec include all show!!scheduler allocate 20000 1000ntp source GigabitEthernet0/0ntp master 1!webvpn cef!end