Jump to content

Cisco 831 - ADSL over PPPoE - Config Problem


Der letzte Beitrag zu diesem Thema ist mehr als 180 Tage alt. Bitte erstelle einen neuen Beitrag zu Deiner Anfrage!

Empfohlene Beiträge

Hallo!

 

hab jetzt alles aktiviert und folgendes kommt heraus!

Poste mal das gesamte Logging, vom start weg:

 

System Bootstrap, Version 12.2(8r)YN, RELEASE SOFTWARE (fc1)

TAC Support: Cisco – Shortcut to Technical Support

Copyright © 2002 by cisco Systems, Inc.

C800/SOHO series (Board ID: 29-129) platform with 49152 Kbytes of main memory

 

program load complete, entry point: 0x80013000, size: 0x560460

Self decompressing the image : ############################################################################################################### [OK]

Cisco Internetwork Operating System Software

IOS C831 Software (C831-K9O3Y6-M), Version 12.3(2)XC, EARLY DEPLOYMENT RELEASE SOFTWARE (fc1)

Synched to technology version 12.3(1.6)T

Compiled Thu 25-Sep-03 09:06 by ealyon

Image text-base: 0x800131E8, data-base: 0x80AE4BD4

 

CISCO C831 (MPC857DSL) processor (revision 0x300) with 44237K/4915K bytes of memory.

Processor board ID AMB080401ES (2729475442), with hardware revision 0000

CPU rev number 7

Bridging software.

2 Ethernet/IEEE 802.3 interface(s)

4 FastEthernet/IEEE 802.3 interface(s)

128K bytes of non-volatile configuration memory.

12288K bytes of processor board System flash (Read/Write)

2048K bytes of processor board Web flash (Read/Write)

ê

Í

*Mar 1 00:00:06.135: %LINK-3-UPDOWN: Interface FastEthernet1, changed state to up

*Mar 1 00:00:06.135: %LINK-3-UPDOWN: Interface FastEthernet2, changed state to up

*Mar 1 00:00:06.135: %LINK-3-UPDOWN: Interface FastEthernet3, changed state to up

*Mar 1 00:00:06.139: %LINK-3-UPDOWN: Interface FastEthernet4, changed state to up

*Mar 1 00:00:06.139: %LINK-3-UPDOWN: Interface Ethernet1, changed state to up

*Mar 1 00:00:07.219: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet1, changed state to up

*Mar 1 00:00:07.219: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet2, changed state to up

*Mar 1 00:00:07.223: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet3, changed state to up

*Mar 1 00:00:07.223: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet4, changed state to up

*Mar 1 00:00:07.223: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet1, changed state to up

*Mar 1 00:00:17.627: %LINK-3-UPDOWN: Interface Ethernet0, changed state to up

00:00:18: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0, changed state to up

00:00:18: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet1, changed state to up

00:00:19: %CRYPTO-6-ISAKMP_ON_OFF: ISAKMP is ON

00:00:19: %LINK-3-UPDOWN: Interface FastEthernet2, changed state to down

00:00:19: %LINK-3-UPDOWN: Interface FastEthernet4, changed state to down

00:00:20: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet2, changed state to down

00:00:20: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet4, changed state to down

00:00:22: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet1, changed state to down

00:00:22: %SYS-5-CONFIG_I: Configured from memory by console

00:00:22: %FW-6-INIT: Firewall inspection startup completed; beginning operation.

00:00:24: %SYS-5-RESTART: System restarted --

Cisco Internetwork Operating System Software

IOS C831 Software (C831-K9O3Y6-M), Version 12.3(2)XC, EARLY DEPLOYMENT RELEASE SOFTWARE (fc1)

Synched to technology version 12.3(1.6)T

TAC Support: Cisco – Shortcut to Technical Support

Copyright © 1986-2003 by cisco Systems, Inc.

Compiled Thu 25-Sep-03 09:06 by ealyon

00:00:24: %SNMP-5-COLDSTART: SNMP agent on host coesterROUTER is undergoing a cold start

00:00:28: %LINK-3-UPDOWN: Interface Virtual-Access1, changed state to up

00:00:29: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet1, changed state to up

00:00:29: %LINEPROTO-5-UPDOWN: Line protocol on Interface Virtual-Access1, changed state to up

Link zu diesem Kommentar

"Ié ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERM IT)

00:10:09: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing inter esting (ip PERMIT)

00:10:12: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:10:14: Di0 DDR: ip (s=62.99.165.154, d=81.223.58.1), 48 bytes, outgoing interesting (ip PERMIT)

00:10:14: Di0 DDR: ip (s=62.99.165.154, d=192.5.41.41), 76 bytes, outgoing interesting (ip PERMIT)

00:10:16: Di0 DDR: ip (s=62.99.165.154, d=81.223.58.1), 48 bytes, outgoing interesting (ip PERMIT)

00:10:19: Di0 DDR: ip (s=62.99.165.154, d=81.223.58.1), 48 bytes, outgoing interesting (ip PERMIT)

00:10:19: Di0 DDR: ip (s=62.99.165.154, d=192.5.41.209), 76 bytes, outgoing interesting (ip PERMIT)

00:10:22: Di0 DDR: ip (s=62.99.165.154, d=81.223.58.1), 48 bytes, outgoing interesting (ip PERMIT)

00:10:24: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:10:27: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:10:29: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:10:32: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:10:34: Di0 DDR: ip (s=62.99.165.154, d=81.223.58.1), 48 bytes, outgoing interesting (ip PERMIT)

00:10:37: Di0 DDR: ip (s=62.99.165.154, d=81.223.58.1), 48 bytes, outgoing interesting (ip PERMIT)

00:10:39: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:10:42: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:10:50: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:10:53: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:10:55: Di0 DDR: ip (s=62.99.165.154, d=81.223.58.1), 48 bytes, outgoing interesting (ip PERMIT)

00:10:58: Di0 DDR: ip (s=62.99.165.154, d=81.223.58.1), 48 bytes, outgoing interesting (ip PERMIT)

00:11:07: Di0 DDR: ip (s=62.99.165.154, d=81.223.58.1), 48 bytes, outgoing interesting (ip PERMIT)

00:11:10: Di0 DDR: ip (s=62.99.165.154, d=81.223.58.1), 48 bytes, outgoing interesting (ip PERMIT)

00:11:12: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:11:16: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:11:17: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:11:18: Di0 DDR: ip (s=62.99.165.154, d=192.5.41.41), 76 bytes, outgoing interesting (ip PERMIT)

00:11:20: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:11:22: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:11:23: Di0 DDR: ip (s=62.99.165.154, d=192.168.0.46), 48 bytes, outgoing interesting (ip PERMIT)

00:11:23: Di0 DDR: ip (s=62.99.165.154, d=192.5.41.209), 76 bytes, outgoing interesting (ip PERMIT)

00:11:25: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:11:26: Di0 DDR: ip (s=62.99.165.154, d=192.168.0.46), 48 bytes, outgoing interesting (ip PERMIT)

00:11:27: Di0 DDR: ip (s=62.99.165.154, d=81.223.83.3), 48 bytes, outgoing interesting (ip PERMIT)

00:11:28: Di0 DDR: ip (s=62.99.165.154, d=192.168.0.46), 48 bytes, outgoing interesting (ip PERMIT)

00:11:29: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet1, changed state to down

00:11:49: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet1, changed state to up

00:11:50: Di0 DDR: ip (s=62.99.165.155, d=195.34.133.22), 63 bytes, outgoing interesting (ip PERMIT)

Link zu diesem Kommentar

Ich hab die config jetzt noch mal geändert, und zwar so!

Ich habe das Dailer Interface aufs Ethernet1 gehängt.

Ist das jetzt so richtig oder habe ich da jetzt einen falschen Gedankengang?

 

interface Ethernet0

description LAN Interface intern

ip address 10.177.100.254 255.255.255.0

ip access-group LAN_in in

ip nat inside

no cdp enable

hold-queue 32 in

!

interface Ethernet1

description WAN Internet via Inode$ETH-WAN$

no ip address

ip access-group WAN_in in

ip nat outside

ip inspect myfw out

no ip route-cache

no ip mroute-cache

duplex auto

pppoe enable group global

pppoe-client dial-pool-number 1

no cdp enable

crypto map cm-cryptomap

!

interface FastEthernet1

no ip address

duplex auto

speed auto

!

interface FastEthernet2

no ip address

duplex auto

speed auto

!

interface FastEthernet3

no ip address

duplex auto

speed auto

!

interface FastEthernet4

no ip address

duplex auto

speed auto

!

interface Dialer0

ip address 62.99.165.154 255.255.255.248

ip mtu 1492

ip nat outside

encapsulation ppp

dialer pool 1

dialer-group 1

no cdp enable

ppp authentication chap pap callin

ppp chap hostname adsl.@inode.at

ppp chap password 7 123455

ppp pap sent-username adsl.@inode.at password 7 12345

ppp ipcp dns request

ppp ipcp wins request

 

Vielen Bin für jeden Tip dankbar

 

mfg

 

Jörg

Link zu diesem Kommentar

Hallo!

 

Mach ich was falsch, es kommt leider nicht mehr!

 

Console hab ich über das Programm Putty auf Com1 aufgebaut!

 

Hier das log:

 

01:21:29: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet1, changed sta te to up

01:21:59: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet1, changed state to down

01:22:06: %SEC-6-IPACCESSLOGP: list LAN_in denied udp 0.0.0.0(68) -> 255.255.255.255(67), 1 packet

01:22:29: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet1, changed state to up

01:22:50: %LINK-3-UPDOWN: Interface FastEthernet3, changed state to up

01:22:51: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet3, changed state to up

01:23:06: %SEC-6-IPACCESSLOGP: list LAN_in denied udp 10.177.100.253(67) -> 255.255.255.255(68), 1 packet

Link zu diesem Kommentar

Hallo!

 

Ich poste jetzt noch mal meine aktuelle config, die Verbindung wird derzeit immer noch nicht

aufgebaut, hab ich noch irgendwo einen anderen Fehler?

 

!version 12.3

no service pad

service timestamps debug uptime

service timestamps log uptime

service password-encryption

no service dhcp

!

hostname ROUTER

!

no logging buffered

clock timezone UTC1 1

aaa new-model

 

!

aaa authentication login default local

aaa authorization exec default local

aaa authorization network vpn_group_1 local

aaa session-id common

ip subnet-zero

ip host COE-E0 62.99.165.154

!

ip inspect name myfw cuseeme timeout 3600

ip inspect name myfw ftp timeout 3600

ip inspect name myfw rcmd timeout 3600

ip inspect name myfw realaudio timeout 3600

ip inspect name myfw smtp timeout 3600

ip inspect name myfw tftp timeout 30

ip inspect name myfw udp timeout 15

ip inspect name myfw tcp timeout 3600

ip inspect name myfw h323 timeout 3600

ip inspect name myfw icmp

ip audit notify log

ip audit po max-events 100

no ftp-server write-enable

!

interface Ethernet0

description LAN Interface intern

ip address 10.177.100.254 255.255.255.0

ip access-group LAN_in in

ip nat inside

no cdp enable

hold-queue 32 in

!

interface Ethernet1

description WAN Internet via Inode$ETH-WAN$

no ip address

ip access-group WAN_in in

ip nat outside

ip inspect myfw out

no ip route-cache

no ip mroute-cache

duplex auto

pppoe enable group global

pppoe-client dial-pool-number 1

no cdp enable

crypto map cm-cryptomap

!

interface FastEthernet1

no ip address

duplex auto

speed auto

!

interface FastEthernet2

no ip address

duplex auto

speed auto

!

interface FastEthernet3

no ip address

duplex auto

speed auto

!

interface FastEthernet4

no ip address

duplex auto

speed auto

!

interface Dialer0

ip address negotiated

ip access-group WAN_in in

ip mtu 1492

ip nat outside

encapsulation ppp

dialer pool 1

dialer-group 1

no cdp enable

ppp authentication chap pap callin

ppp chap hostname adsl.@inode.at

ppp chap password 7 1234

ppp pap sent-username adsl.@inode.at password 7 1234

ppp ipcp dns request

ppp ipcp wins request

!

ip local pool VPN-POOL 10.177.101.1

ip local pool VPN-POOL1 10.177.101.21 10.177.101.254

ip nat translation timeout 28800

ip nat translation tcp-timeout 28800

ip nat inside source route-map NAT-RMAP interface Dialer0 overload

ip nat inside source static tcp 10.177.100.4 80 interface Ethernet1 80

ip nat inside source static tcp 10.177.100.4 25 interface Ethernet1 25

ip nat inside source static 10.177.100.4 62.99.165.155

ip classless

ip route 0.0.0.0 0.0.0.0 Dialer0

ip http server

no ip http secure-server

!

ip access-list extended LAN_in

remark Enthernet IN LAN Ethernet0

remark SDM_ACL Category=17

permit tcp any any

permit icmp any any

permit udp any 10.177.100.0 0.0.0.255

permit udp any any eq domain

permit udp any any eq ntp

permit udp any eq 5631 any

permit udp any eq 5632 any

permit udp any any eq isakmp

permit ahp any any

permit esp any any

deny ip any any log

ip access-list extended NAT-LIST1

remark SDM_ACL Category=18

deny ip 10.177.100.0 0.0.0.7 192.56.xxx 0.0.0.255

deny ip 10.177.100.0 0.0.0.255 host 81.xxx

deny ip 10.177.100.0 0.0.0.255 host 80.xxx

deny ip 10.177.100.0 0.0.0.255 10.10.192.0 0.0.0.255

deny ip 10.177.100.0 0.0.0.255 10.177.101.0 0.0.0.255

deny ip 10.177.100.0 0.0.0.255 192.56xxx 0.0.0.255

permit ip 10.177.100.0 0.0.0.255 any

permit ip 10.177.100.0 0.0.0.255 host 62.99.165.153

permit ip 10.177.100.0 0.0.0.255 host 62.99.165.154

permit ip 10.177.100.0 0.0.0.255 host 62.99.165.155

Link zu diesem Kommentar

ip access-list extended WAN_in

remark Enthernet IN WAN Ethernet1

remark SDM_ACL Category=17

permit ahp host 81.xxx host 62.99.165.154

permit esp host 81.xxx host 62.99.165.154

permit udp host 81.xxx host 62.99.165.154 eq isakmp

permit udp host 81.xxx host 62.99.165.154 eq non500-isakmp

permit ip host 81.xxx 10.177.100.0 0.0.0.255

permit ahp host 81.xxx host 62.99.165.154

permit esp host 81.xxx host 62.99.165.154

permit udp host 81.xxx host 62.99.165.154 eq isakmp

permit udp host 81.xxx host 62.99.165.154 eq non500-isakmp

permit ahp host 194.xxx host 62.99.165.154

permit esp host 194.xxx host 62.99.165.154

permit udp host 194.xxx host 62.99.165.154 eq isakmp

permit udp host 194.xxx host 62.99.165.154 eq non500-isakmp

permit ahp host 80.xxx host 62.99.165.154

permit esp host 80.xxx host 62.99.165.154

permit udp host 80.xxx host 62.99.165.154 eq isakmp

permit udp host 80.xxx host 62.99.165.154 eq non500-isakmp

permit ip host 80.xxx 10.177.100.0 0.0.0.255

permit ip 10.177.101.0 0.0.0.255 any

permit udp host 195.58.161.122 eq domain any

permit udp host 195.58.160.194 eq domain any

permit udp host 195.34.133.22 eq domain any

permit udp host 195.34.133.21 eq domain any

permit ahp any host 62.99.165.154

permit esp any host 62.99.165.154

permit udp any host 62.99.165.154 eq isakmp

permit udp any host 62.99.165.154 eq non500-isakmp

permit tcp any host 62.99.165.154 eq smtp

permit tcp any host 62.99.165.154 eq www

permit tcp any host 62.99.165.155 eq smtp

permit tcp any host 62.99.165.155 eq www

permit udp any eq domain any

permit udp any eq ntp any

permit icmp any any echo-reply

permit ip host 80.xxx any

permit ip host 81.xxx any

permit udp 10.177.101.0 0.0.0.255 host 10.177.100.1 eq domain

permit udp 10.177.101.0 0.0.0.255 host 10.177.100.1 range netbios-ns netbios-dgm

permit tcp 10.177.101.0 0.0.0.255 host 10.177.100.1

permit tcp 10.10.192.0 0.0.0.255 host 10.177.100.1 gt 1023

permit ip 10.10.192.0 0.0.0.255 10.177.100.0 0.0.0.255

permit ip 192.56.14.0 0.0.0.255 10.177.100.0 0.0.0.7

deny ip any any log

ip access-list extended dns-servers

ip access-list extended firewall

ip access-list extended group-lock

ip access-list extended idletime

ip access-list extended inacl

ip access-list extended include-local-lan

ip access-list extended key-exchange

ip access-list extended protocol

ip access-list extended save-password

ip access-list extended service

ip access-list extended timeout

ip access-list extended tunnel-password

ip access-list extended wins-servers

dialer-list 1 protocol ip permit

no cdp run

route-map NAT-RMAP permit 10

match ip address NAT-LIST1

!

banner login ^CC Zugang nur fuer authorisierte User, ansonst ist dies eine strafbare Handlung! ^C

!

line con 0

exec-timeout 120 0

no modem enable

stopbits 1

line aux 0

line vty 0 4

exec-timeout 120 0

length 0

!

scheduler max-task-time 5000

sntp server 192.5.41.41

sntp server 192.5.41.209

!

end

Link zu diesem Kommentar

Hallo!

 

dialer-list 1 protocol ip permit --> hab ich aber eingetragen

 

ip access-list extended timeout

ip access-list extended tunnel-password

ip access-list extended wins-servers

-------> dialer-list 1 protocol ip permit

no cdp run

route-map NAT-RMAP permit 10

match ip address NAT-LIST1

 

 

 

coesterROUTER#sh int eth1

Ethernet1 is up, line protocol is up

Hardware is PQUICC_FEC, address is 000f.231d.d397 (bia 000f.231d.d397)

Description: WAN Internet via Inode$ETH-WAN$

MTU 1500 bytes, BW 10000 Kbit, DLY 1000 usec,

reliability 255/255, txload 1/255, rxload 1/255

Encapsulation ARPA, loopback not set

Keepalive set (10 sec)

Full-duplex, 10Mb/s

ARP type: ARPA, ARP Timeout 04:00:00

Last input never, output 00:00:03, output hang never

Last clearing of "show interface" counters never

Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0

Queueing strategy: fifo

Output queue: 0/40 (size/max)

5 minute input rate 0 bits/sec, 0 packets/sec

5 minute output rate 0 bits/sec, 0 packets/sec

0 packets input, 0 bytes, 0 no buffer

Received 0 broadcasts, 0 runts, 0 giants, 0 throttles

0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored

0 input packets with dribble condition detected

2148 packets output, 128880 bytes, 0 underruns

0 output errors, 0 collisions, 1 interface resets

0 babbles, 0 late collision, 0 deferred

0 lost carrier, 0 no carrier

0 output buffer failures, 0 output buffers swapped out

 

coesterROUTER#sh int dialer0

Dialer0 is up (spoofing), line protocol is up (spoofing)

Hardware is Unknown

Internet address will be negotiated using IPCP

MTU 1500 bytes, BW 56 Kbit, DLY 20000 usec,

reliability 255/255, txload 1/255, rxload 1/255

Encapsulation PPP, loopback not set

DTR is pulsed for 1 seconds on reset

Last input never, output never, output hang never

Last clearing of "show interface" counters 04:33:55

Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0

Queueing strategy: weighted fair

Output queue: 0/1000/64/0 (size/max total/threshold/drops)

Conversations 0/0/16 (active/max active/max total)

Reserved Conversations 0/0 (allocated/max allocated)

Available Bandwidth 42 kilobits/sec

5 minute input rate 0 bits/sec, 0 packets/sec

5 minute output rate 0 bits/sec, 0 packets/sec

0 packets input, 0 bytes

0 packets output, 0 bytes

Link zu diesem Kommentar
Der letzte Beitrag zu diesem Thema ist mehr als 180 Tage alt. Bitte erstelle einen neuen Beitrag zu Deiner Anfrage!

Schreibe einen Kommentar

Du kannst jetzt antworten und Dich später registrieren. Falls Du bereits ein Mitglied bist, logge Dich jetzt ein.

Gast
Auf dieses Thema antworten...

×   Du hast formatierten Text eingefügt.   Formatierung jetzt entfernen

  Only 75 emoji are allowed.

×   Dein Link wurde automatisch eingebettet.   Einbetten rückgängig machen und als Link darstellen

×   Dein vorheriger Inhalt wurde wiederhergestellt.   Editor-Fenster leeren

×   Du kannst Bilder nicht direkt einfügen. Lade Bilder hoch oder lade sie von einer URL.

×
×
  • Neu erstellen...