Sie sind auf Seite 1von 18

VERIFICACION DE LA CONFIGURACION

SHOW CONFIGURATION ACTIVA:


root@LadrilleriaDiamante# run show configuration | display set
set version 10.4R10.7
set system host-name LadrilleriaDiamante
set system authentication-order tacplus
set system root-authentication encrypted-password "$1$F5zGQmxV$Pvd5Bl8bzbR8VZWlQRFQc0"
set system name-server 200.62.191.11
set system name-server 200.62.191.12
set system name-server 200.24.191.12
set system name-server 200.24.191.11
set system tacplus-server 200.14.241.43 secret "$9$Ka.WLNwYoGUH-V4aUDPf369pu1LX7"
set system tacplus-server 200.14.241.43 source-address 190.223.31.117
set system tacplus-server 200.14.241.30 secret "$9$Ka.WLNwYoGUH-V4aUDPf369pu1LX7"
set system tacplus-server 200.14.241.30 source-address 190.223.31.117
set system tacplus-options service-name telmex-junos
set system accounting events login
set system accounting events change-log
set system accounting events interactive-commands
set system accounting destination tacplus server 200.14.241.43 secret "$9$Ka.WLNwYoGUHV4aUDPf369pu1LX7"
set system accounting destination tacplus server 200.14.241.43 single-connection
set system accounting destination tacplus server 200.14.241.43 source-address 190.223.31.117
set system accounting destination tacplus server 200.14.241.30 secret "$9$Ka.WLNwYoGUHV4aUDPf369pu1LX7"
set system accounting destination tacplus server 200.14.241.30 single-connection
set system accounting destination tacplus server 200.14.241.30 source-address 190.223.31.117
set system login user NOC uid 2000
set system login user NOC class super-user
set system login user NOC authentication encrypted-password
"$1$5y2pORRA$uPvrt6gmSMPKqK7tHP82G."
set system login user remote uid 2001
set system login user remote class super-user
set system services ssh
set system services telnet
set interfaces fe-0/0/0 speed 100m
set interfaces fe-0/0/0 link-mode full-duplex
set interfaces fe-0/0/0 fastether-options no-auto-negotiation
set interfaces fe-0/0/0 unit 0 description Interface-WAN-INTERNET-CID1556989LadrilleriaDiamante
set interfaces fe-0/0/0 unit 0 family inet address 190.223.31.117/28 primary
set interfaces fe-0/0/1 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/1 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces fe-0/0/2 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/2 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces fe-0/0/3 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/3 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces fe-0/0/4 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/4 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces fe-0/0/5 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/5 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces fe-0/0/6 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/6 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces fe-0/0/7 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/7 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces vlan unit 10 description Interface-LAN-CID1556989-1.5Mbps-Premium
set interfaces vlan unit 10 family inet address 200.24.166.145/29 primary

set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set

interfaces vlan unit 10 family inet address 192.168.1.1/24


routing-options static route 0.0.0.0/0 next-hop 190.223.31.113
security nat source pool Pool_IP_PUBLICA address 200.24.166.145/32 to 200.24.166.145/32
security nat source rule-set NAT-to-POOL from interface vlan.10
security nat source rule-set NAT-to-POOL to interface fe-0/0/0.0
security nat source rule-set NAT-to-POOL rule DYNNAT match source-address 192.168.1.0/29
security nat source rule-set NAT-to-POOL rule DYNNAT then source-nat pool Pool_IP_PUBLICA
security nat destination pool SERVER1 address 192.168.1.2/32
security nat destination pool SERVER1 address port 389
security nat destination pool SERVER2 address 192.168.1.2/32
security nat destination pool SERVER2 address port 4090
security nat destination pool SERVER3 address 192.168.1.2/32
security nat destination pool SERVER3 address port 3389
security nat destination pool SERVER4 address 192.168.1.3/32
security nat destination pool SERVER4 address port 1433
security nat destination pool SERVER5 address 192.168.1.3/32
security nat destination pool SERVER5 address port 1434
security nat destination pool SERVER6 address 192.168.1.3/32
security nat destination pool SERVER6 address port 4090
security nat destination pool SERVER7 address 192.168.1.4/32
security nat destination pool SERVER7 address port 1194
security nat destination pool SERVER8 address 192.168.1.4/32
security nat destination pool SERVER8 address port 110
security nat destination pool SERVER9 address 192.168.1.4/32
security nat destination pool SERVER9 address port 25
security nat destination pool SERVER10 address 192.168.1.2/32
security nat destination pool SERVER10 address port 1435
security nat destination pool SERVER11 address 192.168.1.5/32
security nat destination pool SERVER11 address port 1433
security nat destination pool SERVER12 address 192.168.1.5/32
security nat destination pool SERVER12 address port 1434
security nat destination pool SERVER13 address 192.168.1.5/32
security nat destination pool SERVER13 address port 389
security nat destination pool SERVER14 address 192.168.1.5/32
security nat destination pool SERVER14 address port 4090
security nat destination pool SERVER15 address 192.168.1.5/32
security nat destination pool SERVER15 address port 3389
security nat destination pool SERVER16 address 192.168.1.5/32
security nat destination pool SERVER16 address port 1194
security nat destination pool SERVER17 address 192.168.1.5/32
security nat destination pool SERVER17 address port 110
security nat destination pool SERVER18 address 192.168.1.5/32
security nat destination pool SERVER18 address port 25
security nat destination pool SERVER19 address 192.168.1.5/32
security nat destination pool SERVER19 address port 1435
security nat destination pool SERVER20 address 192.168.1.6/32
security nat destination pool SERVER20 address port 1433
security nat destination pool SERVER21 address 192.168.1.6/32
security nat destination pool SERVER21 address port 1434
security nat destination pool SERVER22 address 192.168.1.6/32
security nat destination pool SERVER22 address port 389
security nat destination pool SERVER23 address 192.168.1.6/32
security nat destination pool SERVER23 address port 4090
security nat destination pool SERVER24 address 192.168.1.6/32
security nat destination pool SERVER24 address port 3389
security nat destination pool SERVER25 address 192.168.1.6/32
security nat destination pool SERVER25 address port 1194
security nat destination pool SERVER26 address 192.168.1.6/32
security nat destination pool SERVER26 address port 110
security nat destination pool SERVER27 address 192.168.1.6/32

set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set

security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security

nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat

destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination

pool SERVER27 address port 25


pool SERVER28 address 192.168.1.6/32
pool SERVER28 address port 1435
pool SERVER29 address 192.168.1.4/32
pool SERVER29 address port 1433
pool SERVER30 address 192.168.1.4/32
pool SERVER30 address port 1434
pool SERVER31 address 192.168.1.4/32
pool SERVER31 address port 389
pool SERVER32 address 192.168.1.4/32
pool SERVER32 address port 4090
pool SERVER33 address 192.168.1.4/32
pool SERVER33 address port 3389
pool SERVER34 address 192.168.1.4/32
pool SERVER34 address port 1435
rule-set 1 from interface fe-0/0/0.0
rule-set 1 rule 1 match destination-address 200.24.166.146/32
rule-set 1 rule 1 match destination-port 389
rule-set 1 rule 1 then destination-nat pool SERVER1
rule-set 1 rule 2 match destination-address 200.24.166.146/32
rule-set 1 rule 2 match destination-port 4090
rule-set 1 rule 2 then destination-nat pool SERVER2
rule-set 1 rule 3 match destination-address 200.24.166.146/32
rule-set 1 rule 3 match destination-port 3389
rule-set 1 rule 3 then destination-nat pool SERVER3
rule-set 1 rule 4 match destination-address 200.24.166.147/32
rule-set 1 rule 4 match destination-port 1433
rule-set 1 rule 4 then destination-nat pool SERVER4
rule-set 1 rule 5 match destination-address 200.24.166.147/32
rule-set 1 rule 5 match destination-port 1434
rule-set 1 rule 5 then destination-nat pool SERVER5
rule-set 1 rule 6 match destination-address 200.24.166.147/32
rule-set 1 rule 6 match destination-port 4090
rule-set 1 rule 6 then destination-nat pool SERVER6
rule-set 1 rule 7 match destination-address 200.24.166.148/32
rule-set 1 rule 7 match destination-port 1194
rule-set 1 rule 7 then destination-nat pool SERVER7
rule-set 1 rule 8 match destination-address 200.24.166.148/32
rule-set 1 rule 8 match destination-port 110
rule-set 1 rule 8 then destination-nat pool SERVER8
rule-set 1 rule 9 match destination-address 200.24.166.148/32
rule-set 1 rule 9 match destination-port 25
rule-set 1 rule 9 then destination-nat pool SERVER9
rule-set 1 rule 10 match destination-address 200.24.166.146/32
rule-set 1 rule 10 match destination-port 1435
rule-set 1 rule 10 then destination-nat pool SERVER10
rule-set 1 rule 11 match destination-address 200.24.166.149/32
rule-set 1 rule 11 match destination-port 1433
rule-set 1 rule 11 then destination-nat pool SERVER11
rule-set 1 rule 12 match destination-address 200.24.166.149/32
rule-set 1 rule 12 match destination-port 1434
rule-set 1 rule 12 then destination-nat pool SERVER12
rule-set 1 rule 13 match destination-address 200.24.166.149/32
rule-set 1 rule 13 match destination-port 389
rule-set 1 rule 13 then destination-nat pool SERVER13
rule-set 1 rule 14 match destination-address 200.24.166.149/32
rule-set 1 rule 14 match destination-port 4090
rule-set 1 rule 14 then destination-nat pool SERVER14
rule-set 1 rule 15 match destination-address 200.24.166.149/32
rule-set 1 rule 15 match destination-port 3389

set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set

security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security

nat destination rule-set 1 rule 15 then destination-nat pool SERVER15


nat destination rule-set 1 rule 16 match destination-address 200.24.166.149/32
nat destination rule-set 1 rule 16 match destination-port 1194
nat destination rule-set 1 rule 16 then destination-nat pool SERVER16
nat destination rule-set 1 rule 17 match destination-address 200.24.166.149/32
nat destination rule-set 1 rule 17 match destination-port 110
nat destination rule-set 1 rule 17 then destination-nat pool SERVER17
nat destination rule-set 1 rule 18 match destination-address 200.24.166.149/32
nat destination rule-set 1 rule 18 match destination-port 25
nat destination rule-set 1 rule 18 then destination-nat pool SERVER18
nat destination rule-set 1 rule 19 match destination-address 200.24.166.149/32
nat destination rule-set 1 rule 19 match destination-port 1435
nat destination rule-set 1 rule 19 then destination-nat pool SERVER19
nat destination rule-set 1 rule 20 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 20 match destination-port 1433
nat destination rule-set 1 rule 20 then destination-nat pool SERVER20
nat destination rule-set 1 rule 21 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 21 match destination-port 1434
nat destination rule-set 1 rule 21 then destination-nat pool SERVER21
nat destination rule-set 1 rule 22 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 22 match destination-port 389
nat destination rule-set 1 rule 22 then destination-nat pool SERVER22
nat destination rule-set 1 rule 23 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 23 match destination-port 4090
nat destination rule-set 1 rule 23 then destination-nat pool SERVER23
nat destination rule-set 1 rule 24 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 24 match destination-port 3389
nat destination rule-set 1 rule 24 then destination-nat pool SERVER24
nat destination rule-set 1 rule 25 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 25 match destination-port 1194
nat destination rule-set 1 rule 25 then destination-nat pool SERVER25
nat destination rule-set 1 rule 26 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 26 match destination-port 110
nat destination rule-set 1 rule 26 then destination-nat pool SERVER26
nat destination rule-set 1 rule 27 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 27 match destination-port 25
nat destination rule-set 1 rule 27 then destination-nat pool SERVER27
nat destination rule-set 1 rule 28 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 28 match destination-port 1435
nat destination rule-set 1 rule 28 then destination-nat pool SERVER28
nat destination rule-set 1 rule 29 match destination-address 200.24.166.148/32
nat destination rule-set 1 rule 29 match destination-port 1433
nat destination rule-set 1 rule 29 then destination-nat pool SERVER29
nat destination rule-set 1 rule 30 match destination-address 200.24.166.148/32
nat destination rule-set 1 rule 30 match destination-port 1434
nat destination rule-set 1 rule 30 then destination-nat pool SERVER30
nat destination rule-set 1 rule 31 match destination-address 200.24.166.148/32
nat destination rule-set 1 rule 31 match destination-port 389
nat destination rule-set 1 rule 31 then destination-nat pool SERVER31
nat destination rule-set 1 rule 32 match destination-address 200.24.166.148/32
nat destination rule-set 1 rule 32 match destination-port 4090
nat destination rule-set 1 rule 32 then destination-nat pool SERVER32
nat destination rule-set 1 rule 33 match destination-address 200.24.166.148/32
nat destination rule-set 1 rule 33 match destination-port 3389
nat destination rule-set 1 rule 33 then destination-nat pool SERVER33
nat destination rule-set 1 rule 34 match destination-address 200.24.166.148/32
nat destination rule-set 1 rule 34 match destination-port 1435
nat destination rule-set 1 rule 34 then destination-nat pool SERVER34
nat proxy-arp interface fe-0/0/0.0 address 200.24.166.146/32 to 200.24.166.150/32
zones security-zone Lan interfaces vlan.10 host-inbound-traffic system-services all

set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set

security zones security-zone Lan interfaces vlan.10 host-inbound-traffic protocols all


security zones security-zone Wan interfaces fe-0/0/0.0 host-inbound-traffic system-services all
security zones security-zone Wan interfaces fe-0/0/0.0 host-inbound-traffic protocols all
security policies from-zone Lan to-zone Wan policy permit-all match source-address any
security policies from-zone Lan to-zone Wan policy permit-all match destination-address any
security policies from-zone Lan to-zone Wan policy permit-all match application any
security policies from-zone Lan to-zone Wan policy permit-all then permit
security policies from-zone Wan to-zone Lan policy permit-all match source-address any
security policies from-zone Wan to-zone Lan policy permit-all match destination-address any
security policies from-zone Wan to-zone Lan policy permit-all match application any
security policies from-zone Wan to-zone Lan policy permit-all then permit
security policies default-policy permit-all
security alg dns disable
security alg ftp disable
security alg h323 disable
security alg mgcp disable
security alg msrpc disable
security alg sunrpc disable
security alg real disable
security alg rsh disable
security alg rtsp disable
security alg sccp disable
security alg sip disable
security alg sql disable
security alg talk disable
security alg tftp disable
security alg pptp disable
vlans vlan10-LAN description "Vlan de Datos"
vlans vlan10-LAN vlan-id 10
vlans vlan10-LAN l3-interface vlan.10

[edit]
root@LadrilleriaDiamante#

SHOW CONFIGURATION CANDIDATO:

root@LadrilleriaDiamante# run show configuration | display set | no-more


set version 10.4R10.7
set system host-name LadrilleriaDiamante
set system authentication-order tacplus
set system root-authentication encrypted-password "$1$F5zGQmxV$Pvd5Bl8bzbR8VZWlQRFQc0"
set system name-server 200.62.191.11
set system name-server 200.62.191.12
set system name-server 200.24.191.12
set system name-server 200.24.191.11
set system tacplus-server 200.14.241.43 secret "$9$Ka.WLNwYoGUH-V4aUDPf369pu1LX7"
set system tacplus-server 200.14.241.43 source-address 190.223.31.117
set system tacplus-server 200.14.241.30 secret "$9$Ka.WLNwYoGUH-V4aUDPf369pu1LX7"
set system tacplus-server 200.14.241.30 source-address 190.223.31.117
set system tacplus-options service-name telmex-junos
set system accounting events login
set system accounting events change-log
set system accounting events interactive-commands
set system accounting destination tacplus server 200.14.241.43 secret "$9$Ka.WLNwYoGUHV4aUDPf369pu1LX7"
set system accounting destination tacplus server 200.14.241.43 single-connection
set system accounting destination tacplus server 200.14.241.43 source-address 190.223.31.117

set system accounting destination tacplus server 200.14.241.30 secret "$9$Ka.WLNwYoGUHV4aUDPf369pu1LX7"


set system accounting destination tacplus server 200.14.241.30 single-connection
set system accounting destination tacplus server 200.14.241.30 source-address 190.223.31.117
set system login user NOC uid 2000
set system login user NOC class super-user
set system login user NOC authentication encrypted-password
"$1$5y2pORRA$uPvrt6gmSMPKqK7tHP82G."
set system login user remote uid 2001
set system login user remote class super-user
set system services ssh
set system services telnet
set interfaces fe-0/0/0 speed 100m
set interfaces fe-0/0/0 link-mode full-duplex
set interfaces fe-0/0/0 fastether-options no-auto-negotiation
set interfaces fe-0/0/0 unit 0 description Interface-WAN-INTERNET-CID1556989LadrilleriaDiamante
set interfaces fe-0/0/0 unit 0 family inet address 190.223.31.117/28 primary
set interfaces fe-0/0/1 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/1 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces fe-0/0/2 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/2 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces fe-0/0/3 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/3 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces fe-0/0/4 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/4 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces fe-0/0/5 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/5 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces fe-0/0/6 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/6 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces fe-0/0/7 unit 0 family ethernet-switching port-mode access
set interfaces fe-0/0/7 unit 0 family ethernet-switching vlan members vlan10-LAN
set interfaces vlan unit 10 description Interface-LAN-CID1556989-1.5Mbps-Premium
set interfaces vlan unit 10 family inet address 200.24.166.145/29 primary
set interfaces vlan unit 10 family inet address 192.168.1.1/24
set routing-options static route 0.0.0.0/0 next-hop 190.223.31.113
set security nat source pool Pool_IP_PUBLICA address 200.24.166.145/32 to 200.24.166.145/32
set security nat source rule-set NAT-to-POOL from interface vlan.10
set security nat source rule-set NAT-to-POOL to interface fe-0/0/0.0
set security nat source rule-set NAT-to-POOL rule DYNNAT match source-address 192.168.1.0/29
set security nat source rule-set NAT-to-POOL rule DYNNAT then source-nat pool Pool_IP_PUBLICA
set security nat destination pool SERVER1 address 192.168.1.2/32
set security nat destination pool SERVER1 address port 389
set security nat destination pool SERVER2 address 192.168.1.2/32
set security nat destination pool SERVER2 address port 4090
set security nat destination pool SERVER3 address 192.168.1.2/32
set security nat destination pool SERVER3 address port 3389
set security nat destination pool SERVER4 address 192.168.1.3/32
set security nat destination pool SERVER4 address port 1433
set security nat destination pool SERVER5 address 192.168.1.3/32
set security nat destination pool SERVER5 address port 1434
set security nat destination pool SERVER6 address 192.168.1.3/32
set security nat destination pool SERVER6 address port 4090
set security nat destination pool SERVER7 address 192.168.1.4/32
set security nat destination pool SERVER7 address port 1194
set security nat destination pool SERVER8 address 192.168.1.4/32
set security nat destination pool SERVER8 address port 110
set security nat destination pool SERVER9 address 192.168.1.4/32
set security nat destination pool SERVER9 address port 25
set security nat destination pool SERVER10 address 192.168.1.2/32

set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set

security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security

nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat

destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination

pool SERVER10 address port 1435


pool SERVER11 address 192.168.1.5/32
pool SERVER11 address port 1433
pool SERVER12 address 192.168.1.5/32
pool SERVER12 address port 1434
pool SERVER13 address 192.168.1.5/32
pool SERVER13 address port 389
pool SERVER14 address 192.168.1.5/32
pool SERVER14 address port 4090
pool SERVER15 address 192.168.1.5/32
pool SERVER15 address port 3389
pool SERVER16 address 192.168.1.5/32
pool SERVER16 address port 1194
pool SERVER17 address 192.168.1.5/32
pool SERVER17 address port 110
pool SERVER18 address 192.168.1.5/32
pool SERVER18 address port 25
pool SERVER19 address 192.168.1.5/32
pool SERVER19 address port 1435
pool SERVER20 address 192.168.1.6/32
pool SERVER20 address port 1433
pool SERVER21 address 192.168.1.6/32
pool SERVER21 address port 1434
pool SERVER22 address 192.168.1.6/32
pool SERVER22 address port 389
pool SERVER23 address 192.168.1.6/32
pool SERVER23 address port 4090
pool SERVER24 address 192.168.1.6/32
pool SERVER24 address port 3389
pool SERVER25 address 192.168.1.6/32
pool SERVER25 address port 1194
pool SERVER26 address 192.168.1.6/32
pool SERVER26 address port 110
pool SERVER27 address 192.168.1.6/32
pool SERVER27 address port 25
pool SERVER28 address 192.168.1.6/32
pool SERVER28 address port 1435
pool SERVER29 address 192.168.1.4/32
pool SERVER29 address port 1433
pool SERVER30 address 192.168.1.4/32
pool SERVER30 address port 1434
pool SERVER31 address 192.168.1.4/32
pool SERVER31 address port 389
pool SERVER32 address 192.168.1.4/32
pool SERVER32 address port 4090
pool SERVER33 address 192.168.1.4/32
pool SERVER33 address port 3389
pool SERVER34 address 192.168.1.4/32
pool SERVER34 address port 1435
rule-set 1 from interface fe-0/0/0.0
rule-set 1 rule 1 match destination-address 200.24.166.146/32
rule-set 1 rule 1 match destination-port 389
rule-set 1 rule 1 then destination-nat pool SERVER1
rule-set 1 rule 2 match destination-address 200.24.166.146/32
rule-set 1 rule 2 match destination-port 4090
rule-set 1 rule 2 then destination-nat pool SERVER2
rule-set 1 rule 3 match destination-address 200.24.166.146/32
rule-set 1 rule 3 match destination-port 3389
rule-set 1 rule 3 then destination-nat pool SERVER3
rule-set 1 rule 4 match destination-address 200.24.166.147/32

set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set

security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security

nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat
nat

destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination
destination

rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set
rule-set

1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1

rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule
rule

4 match destination-port 1433


4 then destination-nat pool SERVER4
5 match destination-address 200.24.166.147/32
5 match destination-port 1434
5 then destination-nat pool SERVER5
6 match destination-address 200.24.166.147/32
6 match destination-port 4090
6 then destination-nat pool SERVER6
7 match destination-address 200.24.166.148/32
7 match destination-port 1194
7 then destination-nat pool SERVER7
8 match destination-address 200.24.166.148/32
8 match destination-port 110
8 then destination-nat pool SERVER8
9 match destination-address 200.24.166.148/32
9 match destination-port 25
9 then destination-nat pool SERVER9
10 match destination-address 200.24.166.146/32
10 match destination-port 1435
10 then destination-nat pool SERVER10
11 match destination-address 200.24.166.149/32
11 match destination-port 1433
11 then destination-nat pool SERVER11
12 match destination-address 200.24.166.149/32
12 match destination-port 1434
12 then destination-nat pool SERVER12
13 match destination-address 200.24.166.149/32
13 match destination-port 389
13 then destination-nat pool SERVER13
14 match destination-address 200.24.166.149/32
14 match destination-port 4090
14 then destination-nat pool SERVER14
15 match destination-address 200.24.166.149/32
15 match destination-port 3389
15 then destination-nat pool SERVER15
16 match destination-address 200.24.166.149/32
16 match destination-port 1194
16 then destination-nat pool SERVER16
17 match destination-address 200.24.166.149/32
17 match destination-port 110
17 then destination-nat pool SERVER17
18 match destination-address 200.24.166.149/32
18 match destination-port 25
18 then destination-nat pool SERVER18
19 match destination-address 200.24.166.149/32
19 match destination-port 1435
19 then destination-nat pool SERVER19
20 match destination-address 200.24.166.150/32
20 match destination-port 1433
20 then destination-nat pool SERVER20
21 match destination-address 200.24.166.150/32
21 match destination-port 1434
21 then destination-nat pool SERVER21
22 match destination-address 200.24.166.150/32
22 match destination-port 389
22 then destination-nat pool SERVER22
23 match destination-address 200.24.166.150/32
23 match destination-port 4090
23 then destination-nat pool SERVER23
24 match destination-address 200.24.166.150/32

set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set
set

security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security
security

nat destination rule-set 1 rule 24 match destination-port 3389


nat destination rule-set 1 rule 24 then destination-nat pool SERVER24
nat destination rule-set 1 rule 25 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 25 match destination-port 1194
nat destination rule-set 1 rule 25 then destination-nat pool SERVER25
nat destination rule-set 1 rule 26 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 26 match destination-port 110
nat destination rule-set 1 rule 26 then destination-nat pool SERVER26
nat destination rule-set 1 rule 27 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 27 match destination-port 25
nat destination rule-set 1 rule 27 then destination-nat pool SERVER27
nat destination rule-set 1 rule 28 match destination-address 200.24.166.150/32
nat destination rule-set 1 rule 28 match destination-port 1435
nat destination rule-set 1 rule 28 then destination-nat pool SERVER28
nat destination rule-set 1 rule 29 match destination-address 200.24.166.148/32
nat destination rule-set 1 rule 29 match destination-port 1433
nat destination rule-set 1 rule 29 then destination-nat pool SERVER29
nat destination rule-set 1 rule 30 match destination-address 200.24.166.148/32
nat destination rule-set 1 rule 30 match destination-port 1434
nat destination rule-set 1 rule 30 then destination-nat pool SERVER30
nat destination rule-set 1 rule 31 match destination-address 200.24.166.148/32
nat destination rule-set 1 rule 31 match destination-port 389
nat destination rule-set 1 rule 31 then destination-nat pool SERVER31
nat destination rule-set 1 rule 32 match destination-address 200.24.166.148/32
nat destination rule-set 1 rule 32 match destination-port 4090
nat destination rule-set 1 rule 32 then destination-nat pool SERVER32
nat destination rule-set 1 rule 33 match destination-address 200.24.166.148/32
nat destination rule-set 1 rule 33 match destination-port 3389
nat destination rule-set 1 rule 33 then destination-nat pool SERVER33
nat destination rule-set 1 rule 34 match destination-address 200.24.166.148/32
nat destination rule-set 1 rule 34 match destination-port 1435
nat destination rule-set 1 rule 34 then destination-nat pool SERVER34
nat proxy-arp interface fe-0/0/0.0 address 200.24.166.146/32 to 200.24.166.150/32
zones security-zone Lan interfaces vlan.10 host-inbound-traffic system-services all
zones security-zone Lan interfaces vlan.10 host-inbound-traffic protocols all
zones security-zone Wan interfaces fe-0/0/0.0 host-inbound-traffic system-services all
zones security-zone Wan interfaces fe-0/0/0.0 host-inbound-traffic protocols all
policies from-zone Lan to-zone Wan policy permit-all match source-address any
policies from-zone Lan to-zone Wan policy permit-all match destination-address any
policies from-zone Lan to-zone Wan policy permit-all match application any
policies from-zone Lan to-zone Wan policy permit-all then permit
policies from-zone Wan to-zone Lan policy permit-all match source-address any
policies from-zone Wan to-zone Lan policy permit-all match destination-address any
policies from-zone Wan to-zone Lan policy permit-all match application any
policies from-zone Wan to-zone Lan policy permit-all then permit
policies default-policy permit-all
alg dns disable
alg ftp disable
alg h323 disable
alg mgcp disable
alg msrpc disable
alg sunrpc disable
alg real disable
alg rsh disable
alg rtsp disable
alg sccp disable
alg sip disable
alg sql disable
alg talk disable
alg tftp disable

set
set
set
set

security alg pptp disable


vlans vlan10-LAN description "Vlan de Datos"
vlans vlan10-LAN vlan-id 10
vlans vlan10-LAN l3-interface vlan.10

[edit]
root@LadrilleriaDiamante#

SHOW VERSION:

SHOW SYSTEM SOFTWARE:

SHOW SYSTEM STORAGE:

SHOW CHASSIS HARDWARE:

SHOW ROUTE:

PING WAN:

PING LAN

MONITOR INTERFACE
WAN:

LAN:

SHOW INTERFACE STATISTICS


WAN:

LAN:

SHOW INTERFACE EXTENSIVE | MATCH ERROR


WAN:

LAN:

OTRAS CAPTURAS

Das könnte Ihnen auch gefallen