Sie sind auf Seite 1von 9

-------------------------------------------------------------------------

<Zambia Weights and Measures Agency>


<Lusaka>

Access to this device or the attached networks is prohibited


without express written permission.

Violators may face both criminal and civil lawsuits.

PLEASE LOG OFF IMMEDIATELY IF YOU HAPPEN TO BE HERE ACCIDENTALLY


-------------------------------------------------------------------------

User Access Verification

Username: Zwma
Password:
ZWMA#show run
Building configuration...

Current configuration : 6347 bytes


!
version 12.4
service nagle
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone
service timestamps log datetime msec localtime show-timezone
service password-encryption
service sequence-numbers
!
hostname ZWMA
!
boot-start-marker
boot-end-marker
!
security authentication failure rate 5 log
logging snmp-authfail
logging userinfo
logging buffered 16384
enable secret 5 $1$PzLJ$5M0RNwAAg3/HM3DSB33Mr.
enable password 7 070C285F4D064B55464A
!
no aaa new-model
dot11 syslog
no ip source-route
ip cef
!
!
no ip dhcp use vrf connected
!
ip dhcp pool binding
!
ip dhcp pool internal
!
!
no ip bootp server
no ip domain lookup
!
multilink bundle-name authenticated
!
crypto pki trustpoint TP-self-signed-1439690677
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-1439690677
revocation-check none
rsakeypair TP-self-signed-1439690677
!
!
crypto pki certificate chain TP-self-signed-1439690677
certificate self-signed 01
3082023C 308201A5 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 31343339 36393036 3737301E 170D3138 30343035 31313530
31385A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D31 34333936
39303637 3730819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100ACE9 0A7EA208 737F5E81 471ADA7C 1278C5F0 83D2391C F13D0CA0 4CE58928
3C8FD2DF 55A76F66 11E5A940 6B1AFACE E409D8AE 6D3E66EF 8C9C2455 8CECF565
7528A055 F4019DC5 C3289542 F91F2B7C 76627064 4CEA106B BFAAE157 DF0C6269
947F9014 EF8B6976 D3437B78 0694E818 46777DD0 B761586E 02C02F5D 0424C30D
9B010203 010001A3 64306230 0F060355 1D130101 FF040530 030101FF 300F0603
551D1104 08300682 045A574D 41301F06 03551D23 04183016 80142080 C65C100F
6445829E 70147A67 B2C86E47 D4E2301D 0603551D 0E041604 142080C6 5C100F64
45829E70 147A67B2 C86E47D4 E2300D06 092A8648 86F70D01 01040500 03818100
30CE8FAC 3D6D0612 A512373D 01ABD331 56D4FAA0 30B53FE6 671B0740 3A93B258
2FCD0B18 6743FB24 EBC56844 F755C098 02BAECF9 FA7B2C7F BEC941E0 8DD9CCE4
18EDFEC1 480CB84B 124C19D3 00EB2793 C9B0FFE3 4EBF9CA9 25E63886 44BB5199
AEDA2115 37C7ACEC 725BE7EA 5985BAB6 72431934 D41E14B1 15A80133 05EBA8ED
quit
!
!
username Zwma privilege 15 secret 5 $1$AUZg$PHj/BZcQ06R7vbG/a5qVF.
archive
log config
hidekeys
!
!
!
!
ip tcp path-mtu-discovery
ip ssh maxstartups 5
ip ssh authentication-retries 5
ip ssh logging events
ip ssh version 2
bridge irb
!
!
!
interface FastEthernet0/0
description POINT TO POINT
ip address 41.222.21.111 255.255.255.0
ip access-group 35 in
no ip redirects
no ip unreachables
no ip proxy-arp
ip accounting access-violations
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
no cdp enable
!
interface FastEthernet0/1
description Facing My LAN
ip address 192.168.1.1 255.255.255.0
ip verify unicast reverse-path
no ip redirects
no ip unreachables
no ip proxy-arp
ip flow ingress
ip flow egress
ip nat inside
ip virtual-reassembly
duplex auto
speed auto
!
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 41.222.21.254
!
ip flow-top-talkers
top 50
sort-by bytes
match input-interface FastEthernet0/0
!
ip http server
ip http authentication local
ip http secure-server
ip nat inside source list 150 interface FastEthernet0/0 overload
ip nat inside source static tcp 41.222.21.111 8081 interface FastEthernet0/0 8081
ip nat inside source static tcp 41.222.21.111 8082 interface FastEthernet0/0 8082
ip nat inside source static tcp 41.222.21.111 3389 interface FastEthernet0/0 3389
ip nat inside source static tcp 41.222.21.111 80 interface FastEthernet0/0 80
ip nat inside source static tcp 41.222.21.111 443 interface FastEthernet0/0 443
ip nat inside source static tcp 41.222.21.111 25 interface FastEthernet0/0 25
ip nat inside source static tcp 41.222.21.111 110 interface FastEthernet0/0 110
ip nat inside source static tcp 41.222.21.111 143 interface FastEthernet0/0 143
ip nat inside source static tcp 41.222.21.111 465 interface FastEthernet0/0 465
ip nat inside source static tcp 41.222.21.111 585 interface FastEthernet0/0 585
ip nat inside source static tcp 41.222.21.111 993 interface FastEthernet0/0 993
ip nat inside source static tcp 41.222.21.111 995 interface FastEthernet0/0 995
ip nat inside source static tcp 41.222.21.111 23 interface FastEthernet0/0 23
ip nat inside source static 192.168.1.2 41.222.21.111
!
logging trap debugging
logging facility local5
access-list 10 deny 172.16.0.1
access-list 12 deny 10.1.1.4
access-list 15 permit 192.43.244.18
access-list 15 remark NTP peers
access-list 15 permit 196.12.12.231
access-list 20 remark SNMP ACL
access-list 20 remark AfC-UK Range
access-list 20 permit 195.206.163.177
access-list 20 remark AfC-TZ Range
access-list 20 permit 41.222.63.0 0.0.0.128
access-list 20 remark iConnect Range
access-list 20 permit 196.12.12.64 0.0.0.63
access-list 20 permit 196.12.12.128 0.0.0.63
access-list 20 permit 192.168.1.0 0.0.0.255
access-list 35 permit 41.222.21.111
access-list 150 permit ip 192.168.1.0 0.0.0.255 any
snmp-server community afr1! RO 20
snmp-server enable traps tty
no cdp run
!
!
!
!
!
!
control-plane
!
!
banner login ^C
-------------------------------------------------------------------------
<Zambia Weights and Measures Agency>
<Lusaka>

Access to this device or the attached networks is prohibited


without express written permission.

Violators may face both criminal and civil lawsuits.

PLEASE LOG OFF IMMEDIATELY IF YOU HAPPEN TO BE HERE ACCIDENTALLY


-------------------------------------------------------------------------^C
!
line con 0
exec-timeout 15 0
password 7 020B0B58
logging synchronous
login local
transport preferred none
line aux 0
exec-timeout 15 0
login
transport input all
line vty 0 4
exec-timeout 15 0
privilege level 15
password 7 082C434D
logging synchronous
login local
transport preferred none
transport input telnet ssh
!
scheduler allocate 20000 1000
ntp clock-period 17178357
ntp access-group peer 15
ntp update-calendar
ntp server 192.43.244.18
ntp server 196.12.12.231 prefer
end

ZWMA#config terminal
Enter configuration commands, one per line. End with CNTL/Z.
ZWMA(config)#acess-list 35 deny 41.222.21.111 any
^
% Invalid input detected at '^' marker.

ZWMA(config)#access-list 35 deny 41.222.21.111 any


^
% Invalid input detected at '^' marker.

ZWMA(config)#access-list 35 deny 41.222.21.111


ZWMA(config)#exit
ZWMA#
000028: *Apr 5 11:58:13.664 UTC: %SYS-5-CONFIG_I: Configured from console by Zwma
on console
ZWMA#show run
Building configuration...

Current configuration : 6383 bytes


!
version 12.4
service nagle
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone
service timestamps log datetime msec localtime show-timezone
service password-encryption
service sequence-numbers
!
hostname ZWMA
!
boot-start-marker
boot-end-marker
!
security authentication failure rate 5 log
logging snmp-authfail
logging userinfo
logging buffered 16384
enable secret 5 $1$PzLJ$5M0RNwAAg3/HM3DSB33Mr.
enable password 7 070C285F4D064B55464A
!
no aaa new-model
dot11 syslog
no ip source-route
ip cef
!
!
no ip dhcp use vrf connected
!
ip dhcp pool binding
!
ip dhcp pool internal
!
!
no ip bootp server
no ip domain lookup
!
multilink bundle-name authenticated
!
crypto pki trustpoint TP-self-signed-1439690677
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-1439690677
revocation-check none
rsakeypair TP-self-signed-1439690677
!
!
crypto pki certificate chain TP-self-signed-1439690677
certificate self-signed 01
3082023C 308201A5 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 31343339 36393036 3737301E 170D3138 30343035 31313530
31385A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D31 34333936
39303637 3730819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100ACE9 0A7EA208 737F5E81 471ADA7C 1278C5F0 83D2391C F13D0CA0 4CE58928
3C8FD2DF 55A76F66 11E5A940 6B1AFACE E409D8AE 6D3E66EF 8C9C2455 8CECF565
7528A055 F4019DC5 C3289542 F91F2B7C 76627064 4CEA106B BFAAE157 DF0C6269
947F9014 EF8B6976 D3437B78 0694E818 46777DD0 B761586E 02C02F5D 0424C30D
9B010203 010001A3 64306230 0F060355 1D130101 FF040530 030101FF 300F0603
551D1104 08300682 045A574D 41301F06 03551D23 04183016 80142080 C65C100F
6445829E 70147A67 B2C86E47 D4E2301D 0603551D 0E041604 142080C6 5C100F64
45829E70 147A67B2 C86E47D4 E2300D06 092A8648 86F70D01 01040500 03818100
30CE8FAC 3D6D0612 A512373D 01ABD331 56D4FAA0 30B53FE6 671B0740 3A93B258
2FCD0B18 6743FB24 EBC56844 F755C098 02BAECF9 FA7B2C7F BEC941E0 8DD9CCE4
18EDFEC1 480CB84B 124C19D3 00EB2793 C9B0FFE3 4EBF9CA9 25E63886 44BB5199
AEDA2115 37C7ACEC 725BE7EA 5985BAB6 72431934 D41E14B1 15A80133 05EBA8ED
quit
!
!
username Zwma privilege 15 secret 5 $1$AUZg$PHj/BZcQ06R7vbG/a5qVF.
archive
log config
hidekeys
!
!
!
!
ip tcp path-mtu-discovery
ip ssh maxstartups 5
ip ssh authentication-retries 5
ip ssh logging events
ip ssh version 2
bridge irb
!
!
!
interface FastEthernet0/0
description POINT TO POINT
ip address 41.222.21.111 255.255.255.0
ip access-group 35 in
no ip redirects
no ip unreachables
no ip proxy-arp
ip accounting access-violations
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
no cdp enable
!
interface FastEthernet0/1
description Facing My LAN
ip address 192.168.1.1 255.255.255.0
ip verify unicast reverse-path
no ip redirects
no ip unreachables
no ip proxy-arp
ip flow ingress
ip flow egress
ip nat inside
ip virtual-reassembly
duplex auto
speed auto
!
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 41.222.21.254
!
ip flow-top-talkers
top 50
sort-by bytes
match input-interface FastEthernet0/0
!
ip http server
ip http authentication local
ip http secure-server
ip nat inside source list 150 interface FastEthernet0/0 overload
ip nat inside source static tcp 41.222.21.111 8081 interface FastEthernet0/0 8081
ip nat inside source static tcp 41.222.21.111 8082 interface FastEthernet0/0 8082
ip nat inside source static tcp 41.222.21.111 3389 interface FastEthernet0/0 3389
ip nat inside source static tcp 41.222.21.111 80 interface FastEthernet0/0 80
ip nat inside source static tcp 41.222.21.111 443 interface FastEthernet0/0 443
ip nat inside source static tcp 41.222.21.111 25 interface FastEthernet0/0 25
ip nat inside source static tcp 41.222.21.111 110 interface FastEthernet0/0 110
ip nat inside source static tcp 41.222.21.111 143 interface FastEthernet0/0 143
ip nat inside source static tcp 41.222.21.111 465 interface FastEthernet0/0 465
ip nat inside source static tcp 41.222.21.111 585 interface FastEthernet0/0 585
ip nat inside source static tcp 41.222.21.111 993 interface FastEthernet0/0 993
ip nat inside source static tcp 41.222.21.111 995 interface FastEthernet0/0 995
ip nat inside source static tcp 41.222.21.111 23 interface FastEthernet0/0 23
ip nat inside source static 192.168.1.2 41.222.21.111
!
logging trap debugging
logging facility local5
access-list 10 deny 172.16.0.1
access-list 12 deny 10.1.1.4
access-list 15 permit 192.43.244.18
access-list 15 remark NTP peers
access-list 15 permit 196.12.12.231
access-list 20 remark SNMP ACL
access-list 20 remark AfC-UK Range
access-list 20 permit 195.206.163.177
access-list 20 remark AfC-TZ Range
access-list 20 permit 41.222.63.0 0.0.0.128
access-list 20 remark iConnect Range
access-list 20 permit 196.12.12.64 0.0.0.63
access-list 20 permit 196.12.12.128 0.0.0.63
access-list 20 permit 192.168.1.0 0.0.0.255
access-list 35 permit 41.222.21.111
access-list 35 deny 41.222.21.111
access-list 150 permit ip 192.168.1.0 0.0.0.255 any
snmp-server community afr1! RO 20
snmp-server enable traps tty
no cdp run
!
!
!
!
!
!
control-plane
!
!
banner login ^C
-------------------------------------------------------------------------
<Zambia Weights and Measures Agency>
<Lusaka>

Access to this device or the attached networks is prohibited


without express written permission.

Violators may face both criminal and civil lawsuits.

PLEASE LOG OFF IMMEDIATELY IF YOU HAPPEN TO BE HERE ACCIDENTALLY


-------------------------------------------------------------------------^C
!
line con 0
exec-timeout 15 0
password 7 020B0B58
logging synchronous
login local
transport preferred none
line aux 0
exec-timeout 15 0
login
transport input all
line vty 0 4
exec-timeout 15 0
privilege level 15
password 7 082C434D
logging synchronous
login local
transport preferred none
transport input telnet ssh
!
scheduler allocate 20000 1000
ntp clock-period 17178357
ntp access-group peer 15
ntp update-calendar
ntp server 192.43.244.18
ntp server 196.12.12.231 prefer
end

ZWMA#config terminal
Enter configuration commands, one per line. End with CNTL/Z.
ZWMA(config)#access-list 35 deny 41.222.21.111 any
^
% Invalid input detected at '^' marker.
ZWMA(config)#deny ip nat inside source static tcp 41.222.21.111 23 interface F$
deny ip nat inside source static tcp 41.222.21.111 23 interface FastEthernet 0/0 ^
23

% Invalid input detected at '^' marker.

ZWMA(config)#no ip nat inside source static tcp 41.222.21.111 23 interface Fas$


ZWMA(config)#exit

Das könnte Ihnen auch gefallen