- Joined
- Dec 18, 2003
- Location
- Lorain, ohio
ok, i'm trying to optimise my config for my 1760 so any help would rock
Building configuration...
Current configuration : 5332 bytes
!
version 12.4
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone
service timestamps log datetime msec localtime show-timezone
service password-encryption
service sequence-numbers
!
hostname peanutbutter
!
boot-start-marker
boot system flash c1700-entbasek9-mz.124-25d.bin
boot-end-marker
!
security authentication failure rate 3 log
security passwords min-length 6
logging buffered 51200 debugging
logging console critical
enable secret 5 xxxxxx
enable password 7 xxxxx
!
aaa new-model
!
!
aaa authentication login default local
aaa authorization exec default local
!
aaa session-id common
clock timezone PCTime -5
clock summer-time PCTime date Apr 6 2003 2:00 Oct 26 2003 2:00
no ip source-route
ip cef
!
!
no ip dhcp use vrf connected
ip dhcp excluded-address 192.168.1.1 192.168.1.99
!
ip dhcp pool Internal-net
import all
network 192.168.1.0 255.255.255.0
default-router 192.168.1.1
dns-server 8.8.8.8
lease 4
!
!
no ip bootp server
ip name-server 8.8.8.8
ip name-server 209.142.152.253
ip name-server 207.230.192.254
ip ddns update method ccp_ddns1
HTTP
add http://ssssss:[email protected]/nic/update?system=dyndns&hostname=<h>&myip=<a>
!
ip ddns update method ccpddns1
!
vpdn enable
!
!
!
crypto pki trustpoint TP-self-signed-754190214
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-754190214
revocation-check none
rsakeypair TP-self-signed-754190214
!
!
username xxxx privilege 15 password 7 xxxxxx
!
!
!
!
!
interface Null0
no ip unreachables
!
interface ATM0/0
no ip address
no ip redirects
no ip unreachables
no ip proxy-arp
no atm ilmi-keepalive
dsl operating-mode auto
!
interface ATM0/0.1 point-to-point
no ip redirects
no ip unreachables
no ip proxy-arp
pvc 8/35
pppoe-client dial-pool-number 1
!
!
interface FastEthernet0/0
description $FW_INSIDE$
ip address 192.168.1.1 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
ip nat inside
ip tcp adjust-mss 1452
no ip mroute-cache
speed auto
!
interface Dialer0
description $FW_OUTSIDE$
ip ddns update ccp_ddns1
ip address negotiated
no ip redirects
no ip unreachables
no ip proxy-arp
ip mtu 1492
ip nat outside
encapsulation ppp
ip tcp adjust-mss 1452
dialer pool 1
dialer-group 1
ppp authentication pap callin
ppp pap sent-username xxxxx password 7 xxxxxxxx
ppp ipcp dns request accept
ppp ipcp route default
ppp ipcp address accept
!
ip forward-protocol nd
!
ip http server
ip http access-class 1
ip http secure-server
ip nat inside source list Internal_Net interface Dialer0 overload
ip nat inside source static tcp 192.168.1.50 3389 interface Dialer0 3389
!
ip access-list extended Internal_Net
remark internal network
remark CCP_ACL Category=2
permit ip 192.168.1.0 0.0.0.255 any
!
logging trap debugging
access-list 1 remark HTTP Access-class list
access-list 1 remark CCP_ACL Category=1
access-list 1 permit 192.168.1.0 0.0.0.255
access-list 1 deny any
dialer-list 1 protocol ip permit
no cdp run
!
control-plane
!
banner login ^Cillegal usage of this router is prohibited by law. please disconnect if unauthorized ^C
!
line con 0
password 7 xxxxxxxxxx
transport output telnet
line aux 0
transport output telnet
line vty 0 4
password 7 xxxxxxxx
transport input telnet ssh
!
scheduler allocate 4000 1000
scheduler interval 500
ntp clock-period 17208560
ntp source Dialer0
ntp server 63.240.161.99 source dialer0 prefer
end
i know in my config, i do want to set aux0 for no transport mode, i want to gussy up the banner a little ( i have a pre made one i'll put on soon), and clean up a few things here and there, however, in regards to my PPPoE setup how does that look?
Building configuration...
Current configuration : 5332 bytes
!
version 12.4
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone
service timestamps log datetime msec localtime show-timezone
service password-encryption
service sequence-numbers
!
hostname peanutbutter
!
boot-start-marker
boot system flash c1700-entbasek9-mz.124-25d.bin
boot-end-marker
!
security authentication failure rate 3 log
security passwords min-length 6
logging buffered 51200 debugging
logging console critical
enable secret 5 xxxxxx
enable password 7 xxxxx
!
aaa new-model
!
!
aaa authentication login default local
aaa authorization exec default local
!
aaa session-id common
clock timezone PCTime -5
clock summer-time PCTime date Apr 6 2003 2:00 Oct 26 2003 2:00
no ip source-route
ip cef
!
!
no ip dhcp use vrf connected
ip dhcp excluded-address 192.168.1.1 192.168.1.99
!
ip dhcp pool Internal-net
import all
network 192.168.1.0 255.255.255.0
default-router 192.168.1.1
dns-server 8.8.8.8
lease 4
!
!
no ip bootp server
ip name-server 8.8.8.8
ip name-server 209.142.152.253
ip name-server 207.230.192.254
ip ddns update method ccp_ddns1
HTTP
add http://ssssss:[email protected]/nic/update?system=dyndns&hostname=<h>&myip=<a>
!
ip ddns update method ccpddns1
!
vpdn enable
!
!
!
crypto pki trustpoint TP-self-signed-754190214
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-754190214
revocation-check none
rsakeypair TP-self-signed-754190214
!
!
username xxxx privilege 15 password 7 xxxxxx
!
!
!
!
!
interface Null0
no ip unreachables
!
interface ATM0/0
no ip address
no ip redirects
no ip unreachables
no ip proxy-arp
no atm ilmi-keepalive
dsl operating-mode auto
!
interface ATM0/0.1 point-to-point
no ip redirects
no ip unreachables
no ip proxy-arp
pvc 8/35
pppoe-client dial-pool-number 1
!
!
interface FastEthernet0/0
description $FW_INSIDE$
ip address 192.168.1.1 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
ip nat inside
ip tcp adjust-mss 1452
no ip mroute-cache
speed auto
!
interface Dialer0
description $FW_OUTSIDE$
ip ddns update ccp_ddns1
ip address negotiated
no ip redirects
no ip unreachables
no ip proxy-arp
ip mtu 1492
ip nat outside
encapsulation ppp
ip tcp adjust-mss 1452
dialer pool 1
dialer-group 1
ppp authentication pap callin
ppp pap sent-username xxxxx password 7 xxxxxxxx
ppp ipcp dns request accept
ppp ipcp route default
ppp ipcp address accept
!
ip forward-protocol nd
!
ip http server
ip http access-class 1
ip http secure-server
ip nat inside source list Internal_Net interface Dialer0 overload
ip nat inside source static tcp 192.168.1.50 3389 interface Dialer0 3389
!
ip access-list extended Internal_Net
remark internal network
remark CCP_ACL Category=2
permit ip 192.168.1.0 0.0.0.255 any
!
logging trap debugging
access-list 1 remark HTTP Access-class list
access-list 1 remark CCP_ACL Category=1
access-list 1 permit 192.168.1.0 0.0.0.255
access-list 1 deny any
dialer-list 1 protocol ip permit
no cdp run
!
control-plane
!
banner login ^Cillegal usage of this router is prohibited by law. please disconnect if unauthorized ^C
!
line con 0
password 7 xxxxxxxxxx
transport output telnet
line aux 0
transport output telnet
line vty 0 4
password 7 xxxxxxxx
transport input telnet ssh
!
scheduler allocate 4000 1000
scheduler interval 500
ntp clock-period 17208560
ntp source Dialer0
ntp server 63.240.161.99 source dialer0 prefer
end
i know in my config, i do want to set aux0 for no transport mode, i want to gussy up the banner a little ( i have a pre made one i'll put on soon), and clean up a few things here and there, however, in regards to my PPPoE setup how does that look?