CCNA4: Commands

WAN Technologies

CiscoNetworkingAcademy Program

CCNA 4: WAN Technologies v3.1.1

1Module 1: Scaling IP Addresses

1.1NAT and PAT

1.1.1Configuring static NAT

1.1.2Configuring dynamic NAT

1.1.3Configuring NAT Overload (PAT)

1.1.4Verifying NAT and PAT configuration

1.1.5Troubleshooting NAT and PAT configuration

1.2DHCP

1.2.1Configuring DHCP Operation

1.2.2Verifying DHCP Operation

1.2.3Troubleshooting DHCP Configuration

2Module 3: Point-to-Point Protocol (PPP)

2.1Configuring HDLC Encapsulation

2.2Troubleshooting a Serial Interface

2.3Configuring PPP Encapsulation

2.4Configuring PPP Authentication

2.5Verifying the Serial PPP Encapsulation Configuration

2.6Troubleshooting the Serial PPP Encapsulation Configuration

3Module 3: ISDN and DDR

3.1Configuring ISDN BRI

3.2Configuring ISDN PRI

3.3Verifying the ISDN Configuration

3.4Troubleshooting the ISDN Configuration

3.5Defining Static Routes for DDR

3.6Specifying Interesting Traffic for DDR

3.7Configuring DDR Dialer Information

3.8Configuring Dialer Profiles

3.9Verifying the DDR Configuration

4Module 5: Frame Relay

4.1Basic Frame Relay Configuration

4.2Verifying Operation and Confirming Connectivity

4.3Configuring Subinterfaces

4.4Configuring Optional Commands

1Module 1: Scaling IP Addresses

1.1NAT and PAT

1.1.1Configuring static NAT

Router(config)#ip nat inside source static local-ip global-ip

Router(config)#interface type number//inside interface

Router(config-if)#ip nat inside

Router(config-if)#interface type number//outside interface

Router(config-if)#ip nat outside

Example:

Router(config)#ip nat inside source static 10.1.1.2 179.9.8.80

Router(config)#interface eth0//inside interface

Router(config-if)#ip nat inside

Router(config-if)#interface ser0//outside interface

Router(config-ifip nat outside

1.1.2Configuring dynamic NAT

Router(config)#ip nat pool name start-ip end-ip {netmask netmask | prefix-length prefix-length}

Router(config)#access-listaccess-list-numberpermit source [source-wildcard]

Router(config)#ip nat inside source list access-list-number pool name

Router(config)#interface type number//inside interface

Router(config-if)#ip nat inside

Router(config-if)#interface type number//outside interface

Router(config-if)#ip nat outside

Example:

Router(config)#ip nat pool nat-pool1 179.9.8.80 179.9.8.95 netmask 255.255.255.0

Router(config)#access-list 1 permit 10.0.0.0 0.0.255.255

Router(config)#ip nat inside source list 1 pool nat-pool1

Router(config)#interface eth0//inside interface

Router(config-if)#ip nat inside

Router(config-if)#interface ser0//outside interface

Router(config-if)#ip nat outside

1.1.3Configuring NAT Overload (PAT)

Router(config)#listaccess-list-numberpermit source [source-wildcard]

Router(config)#ip nat inside source list access-list-number interface interface overload

Router(config)#ip nat pool name ip-address{netmasknetmask | prefix-length prefix-length}

Router(config)#ip nat inside source list access-list-number pool name overload

Router(config)#interface type number//inside interface

Router(config-if)#ip nat inside

Router(config-if)#interface type number//outside interface

Router(config-if)#ip nat outside

Example:

Router(config)#access-list 1 permit 10.0.0.0 0.0.255.255

Router(config)#ip nat inside source list 1 interface serial0 overload

Router(config)#ip nat pool nat-pool2 179.9.8.20 netmask 255.255.255.240

Router(config)#ip nat inside source list 1 pool nat-pool2 overload

Router(config)#interface eth0//inside interface

Router(config-if)#ip nat inside

Router(config-if)#interface ser0//outside interface

Router(config-if)#ip nat outside

1.1.4Verifying NAT and PAT configuration

clear ip nat translation

clear ip nat translation inside global-ip local-ip [outside local-ip global-ip]

clear ip nat translation protocol inside global-ip global-port local-ip local-port [outside local-ip local-port global-ip global-port]

show ip nat translations

show ip nat statistics

1.1.5Troubleshooting NAT and PAT configuration

debug ip nat

debug ip nat detailed

1.2DHCP

1.2.1Configuring DHCP Operation

Router(config)#ip dhcp pool name

Router(config-dhcp)#network network-number [mask|/prefix-length]

Router(config-dhcp)#domain-name domain

Router(config-dhcp)#dns-server address [address2…address8]

Router(config-dhcp)#netbios-name-server address [address2…address8]

Router(config-dhcp)#default-routeraddress [address2…address8]

Router(config-dhcp)#lease {days[hours][minutes] | infinite}

Router(config)#ip dhcp excluded-address ip-address [end-ip-address]

If dhcp-client and dhcp-server are not on the same segment, and separated by a router, the DHCPDISCOVER broadcasts are blocked. By using the helper address feature, a router can be configured to accept a broadcast request for a UDP service and then forward it as a unicast to a specific IP address.

Example: Router(config-if)#ip helper-address address

1.2.2Verifying DHCP Operation

Router#show ip dhcp binding [address]

Router#show ip dhcp conflict [address]

Router#show ip dhcp database [url]

Router#show ip dhcp server statistics

1.2.3Troubleshooting DHCP Configuration

Router#debug ip dhcp server

Router#debug ip dhcp server events

Router#debug ip dhcp server packets

Router#debug ip dhcp server linkage

2Module 3: Point-to-Point Protocol (PPP)

In module 2: no commands

2.1Configuring HDLC Encapsulation

Router(config-if)#encapsulation hdlc

2.2Troubleshooting a Serial Interface

Router#show interface s0

Router#show controllers s0

Router#debug serial interface

Router#debug arp

Router#debug frame-relay lmi

Router#debug frame-relay events

Router#debug ppp negotiation

Router#debug ppp packet

Router#debug ppp errors

Router#debug ppp chap

2.3Configuring PPP Encapsulation

Router#config terminal

Router(config)#interface serial 0

Router(config-if)#encapsulation ppp

Router(config-if)#compress [predictor | stac]

Router(config-if)#ppp quality number_1-100

Router(config-if)#ppp multilink

2.4Configuring PPP Authentication

Router(config)#hostname name//case sensitive

Router(config)#username name password password

//Router(config)#service password-encryption

Router(config-if)#encapsulation ppp

Router(config-if)#ppp authentication {chap | chap pap | pap chap | pap}

Router#show interface s0

Router(config-if)#ppp chap hostname hostname

Router(config-if)#ppp chap password secret

2.5Verifying the Serial PPP Encapsulation Configuration

Router#show interfaces

Router#debug ppp authentication

Router#undebug all

2.6Troubleshooting the Serial PPP Encapsulation Configuration

Router#debug ppp {packet | negotiation |error | chap}

3Module 3: ISDN and DDR

3.1Configuring ISDN BRI

Router(config)#isdn switch-type switch-type//basic-ni for national ISDN

Router(config-if)#isdn switch-type switch-type//this interface only

Router(config)#interface bri interface-number

Router(config-if)#isdn spid1 spid-number [ldn]//ldn: local dial number

Router(config-if)#isdn spid2 spid-number [ldn]

Router(config)#isdn switch-type none

Example:

Router(config)#isdn switch-type basic-ni

Router(config)#interface bri 0/0

Router(config-if)#isdn spid1 51055540000001 5554000

Router(config-if)#isdn spid1 51055540010001 5554001

3.2Configuring ISDN PRI

Routers connect to PRI by using T1/E1, there is no “interface pri”!

Router(config)#isdn switch-type switch-type//primary-ni for national ISDN

Router(config)#controller {t1 | e1} {slot/port}

Router(config-controller)#framing {sf | esf}//for T1

Router(config-controller)#framing {crc4 | no-crc4} [australia]//for E1

Router(config-controller)#linecode {ami | b8zs | hdb3 }

Router(config-controller)#pri-group [timeslots range]

Router(config)#interface serial {slot/port: | unit:} {23 | 15}

Attention: S0/0.23 refers to a subinterface (for example: frame relay, vlans)

S0/0:23 refers to a channel (PRI)

3.3Verifying the ISDN Configuration

Router#show isdn status

Router#show interfaces bri0/0

Router#show isdn active

Router#show dialer

3.4Troubleshooting the ISDN Configuration

Router#debug isdn q921

Router#debug isdn q931

3.5Defining Static Routes for DDR

Router(config)#ip route net-prefix mask {address | interface} [distance] [permanent]

Example:

Router(config)#ip route 10.40.0.0 255.255.0.0 10.1.0.1

Router(config)#ip route 0.0.0.0 0.0.0.0 10.1.0.2//default route

3.6Specifying Interesting Traffic for DDR

Router(config)#dialer-list dialer-group-num protocol protocol-name {permit | deny | list access-list-number}

Example:

Router(config)#dialer-list 1 protocol ip permit//without access-list, all ip traffic

Router(config)#dialer-list 1 protocol ip list 101//with access-list

Router(config)#access-list 101 deny tcp any any eq ftp//no ftp

Router(config)#access-list 101 deny tcp any any eq telnet//no telnet

Router(config)#access-list 101 permit ip any any//all other ip

3.7Configuring DDR Dialer Information

Router(config)#username username password password

Router(config)#interface bri interface-number

Router(config-if)#encapsulation ppp

Router(config-if)#ppp authentication chap

Router(config-if)#ip address ip-address subnet

Router(config-if)#dialer-group group-number//same number as with dialer-list

Router(config-if)#dialer map protocol next-hop-address [name hostname]

[speed 56 | 64] [broadcast] dial-string

Example:

Remote(config-if)#dialer map ip 129.30.255.253 name Gent 5551000

Router(config-if)#dialer idle-timeout seconds

3.8Configuring Dialer Profiles

Router(config)#interface dialer dialer-number

Router(config-if)#ip address ip-address subnet

Router(config-if)#encapsulation ppp

Router(config-if)#ppp authentication chap

Router(config-if)#dialer remote-name remote-name

Router(config-if)#dialer string ldn

Router(config-if)#dialer pool pool-number

Router(config-if)#dialer group group-number

Router(config)#interface bri0/0

Router(config-if)#dialer pool-member numberpriority priority-number

3.9Verifying the DDR Configuration

Router#show dialer interface interface

Router#show isdn active

Router#debug ppp authentication

Router#debug ppp negotiation

Router#debug ppp error

4Module 5: Frame Relay

4.1Basic Frame Relay Configuration

Router(config)#interface serial interface-number

Router(config-if)#ip address ip-address subnet

Router(config-if)#encapsulation frame-relay [cisco | ietf]

Router(config-if)#frame-relay lmi-type {ansi | cisco | q933i}//11.1 or earlier

Router(config-if)#bandwith kilobits

Router(config-if)#frame-relay inverse-arp [protocol] [dlci]

Router(config-if)#no shutdown

4.2Verifying Operation and Confirming Connectivity

Router#show frame-relay pvc

Router#show interfaces serial

Router#show frame-relay map

Router#show frame-relay lmi

4.3Configuring Subinterfaces

Router(config)#interface serial number

Router(config-if)#no ip address

Router(config-if)#interface serial number.subinterface-number {multipoint | point-to-point}

Router(config-if)#ip unnumbered interface//point-to-point and using ip

Router(config-if)#frame-relay interface-dlci dlci-number

4.4Configuring Optional Commands

Router(config-if)#frame-relay map protocol protocol-address dlci [broadcast] [ietf |cisco | payload-compress packet-by-packet] //when inverse arp disabled

Router(config-if)#keepalive number

Router(config-if)#frame-relay local-dlci number

CCNA 4 CommandsPage 1 of 11Created by Tijl De Troyer