1、Cisco 路由配置语句汇总Cisco 路由配置语句汇总 启动接口,分配 IP 地址: router router enable router# router# configure terminal router(config)# router(config)# interface Type Port router(config-if)# no shutdown router(config-if)# ip address IP-Address Subnet-Mask router(config-if)# z 配置 RIP路由协议:30 秒更新一次 router(config)# router
2、rip router(config-if)# network Network-Number router(config-if)# z 配置 IGRP路由协议:90 秒更新一次 router(config)# router igrp AS-Number router(config-if)# network Network-Number router(config-if)# z 配置 Novell IPX路由协议:Novell RIP 60 秒更新一次 router(config)# ipx routing node address router(config)# ipx maximum-path
3、s Paths router(config)# interface Type Port router(config-if)# ipx network Network-Number encapsulation encapsulation-type secondary router(config-if)# z 配置 DDR: router(config)# dialer-list Group-Number protocol Protocol-Type permit list ACL-Number router(config)# interface bri 0 router(config-if)#
4、dialer-group Group-Number router(config-if)# dialer map Protocol-Type Next-Hop-Address name Hostname Telphone-Number router(config-if)# z 配置 ISDN: router(config)# isdn swith-type Swith-Type router(config-if)# z 配置 Frame Relay: router(config-if)# encapsulation frame-relay cisco | ietf router(config-i
5、f)# frame-relay lmi-type ansi | cisco | q933a router(config-if)# bandwidth kilobits router(config-if)# frame-relay invers-arp Protocol dlci router(config-if)# z 配置标准 ACL: router(config)# access-list Access-List-Number permit | deny source source-mask router(config)# interface Type Port router(config
6、-if)# ip access-group Access-List-Number in | out router(config-if)# z 配置扩展 ACL: router(config)# access-list Access-List-Number permit | deny Protocol | Protocol-Number source source-wildcard Source-Port destination destination-wildcard Destination-Port established router(config)# interface Type Por
7、t router(config-if)# ip access-group Access-List-Number in | out router(config-if)# z 配置命名 ACL: router(config)# ip access-list standard | extended ACL-Name router(config std- | ext- nacl)# permit | deny IP-Access-List-Test-Conditions router(config std- | ext- nacl)# no permit | deny IP-Access-List-T
8、est-Conditions router(config std- | ext- nacl)# z router(config)# interface Type Port router(config-if)# ip access-group ACL-Name | 1199 in | out router(config-if)# z 配置 DCE时钟: router# show controllers Type Port router(confin-if)# clock rate 64000 router(config-if)# z 配置 PPP协议: router(config)# usern
9、ame Name password Set-Password-Here router(config)# interface Type Port router(config-if)# encapsulation ppp router(config-if)# ppp outhentication chap | chap pap | pap chap | pap router(config-if)# ppp pap sent-username Name password Password router(config-if)# z PAP单向认证配置实例: 验证方: router-server(con
10、fig)# username Client password 12345 router-server(config)# interface serial 0 router-server(config-if)# encapsulation ppp router-server(config-if)# ppp authentication pap router-server(config-if)# z 被验证方: router-client(config-if)# encapsulation ppp router-client(config-if)# ppp pap sent-username Cl
11、ient password 12345 router-client(config-if)# z PAP双向认证配置实例: 路由器 A: routerA(config)# username B password 12345 routerA(config)# interface serial 0 routerA(config-if)# encapsulation ppp routerA(config-if)# ppp authentication pap routerA(config-if)# ppp pap sent-username A password 54321 routerA(confi
12、g-if)# z 路由器 B: routerB(config)# username A password 54321 routerB(config)# interface serial 1 routerB(config-if)# encapsulation ppp routerB(config-if)# ppp authentication pap routerB(config-if)# ppp pap sent-username B password 12345 routerB(config-if)# z CHAP单向认证配置实例: 验证方: router-server(config)# u
13、sername router-client password 12345 router-server(config)# interface serial 0 router-server(config-if)# encapsulation ppp router-server(config-if)# ppp authentication chap router-server(config-if)# z 被验证方: router-client(config-if)# encapsulation ppp router-client(config-if)# ppp authentication chap
14、 router-client(config-if)# ppp chap hostname router-client router-client(config-if)# ppp chap password 12345 router-client(config-if)# z CHAP双向认证配置实例: 路由器 A: routerA(config)# username routerB password 12345 routerA(config)# interface serial 0 routerA(config-if)# encapsulation ppp routerA(config-if)#
15、 ppp authentication chap routerA(config-if)# ppp chap hostname routerA routerA(config-if)# ppp chap password 54321 routerA(config-if)# z 路由器 B: routerB(config)# username routerA password 54321 routerB(config)# interface serial 1 routerB(config-if)# encapsulation ppp routerB(config-if)# ppp authentic
16、ation chap routerB(config-if)# ppp chap hostname routerB routerB(config-if)# ppp chap password 12345 routerB(config-if)# z Telnet使用: routerA# terminal monitor routerA# telnet IP-Address Router-Name routerB# exit | logout routerB# +再按 routerA# show sessions routerA# Connect-Number routerA# disconnect
17、 IP-Address Router-Name routerA# show user routerA# clear line 0 | 1 | 2 | 3 | 4 禁止任何 Telnet到本机: router(config)# line vty 0 4 router(config-line)# access-class ACL-Number router(config)# z 设置主机名: router(config)# hostname Set-Hostname router(config)# z router(config)# z 设置用户模式密码: router(config)# line
18、 console 0 router(config-line)# login router(config-line)# password Set-Password router(config-line)# z 设置 Telnet密码: router(config)# line vty 0 4 router(config-line)# login router(config-line)# password Set-Password router(config-line)# z 设置特权模式密码: router(config)# enable password Set-Password router
19、(config)# enable secret Set-Password router(config)# z 给所有密码加密: router(config)# service password-ancryption Set-Password-Here router(config)# no service password-ancryption router(config)# z 设置登录 Banner: router(config)# banner motd 分隔符 Set-Banner-InFORMation-Here 分隔符 设置接口的描述信息: router(config-if)# de
20、scription Set-Port-InFORMation-Here router(config)# z CDP的控制: router(config-if)# cdp enable router(config-if)# no cdp enable router(config)# cdp run router(config)# no cdp run Ping的使用: router# ping IP-Address router# ping Protocol ip: Protocol-Type Target IP address:IP-Address Repeat count 5: Datagr
21、am size 100: Timeout in seconds 2: Extended commands n:y Sweep range of sizes n: Tracke的使用: router# trace IP-Address Host-Name 为 Cisco 4000路由器指定媒体类型: router(config-if)# media-type 10baset router(config-if)# z 更改路由器启动顺序: router(config)# boot system flash IOS-FileName router(config)# boot system tftp IOS-FileName TFTP-IP-Address router(config)# boot system rom router(config)# z