SW1
ena
conf t
hostname SW1
ip domain name tcrmbo.nl
enable secret encisco
username admin password vtycisco
crypto key generate rsa
2048
ip ssh version 2
banner motd #tekst#
line vty 0 15
transport input ssh
login local
exit
vlan 10
name secretariaat
exit
vlan 20
name financieel
exit
vlan 88
name beheer
exit
interface range fa0/1-10
switchport mode acces
switchport acces vlan10
exit
interface range fa0/11-24
switchport mode acces
switchport acces vlan20
exit
interface vlan 88
ip address 192.168.88.2 255.255.255.0
exit
interface gi0/2
switchpoort mode acces
switchpoort acces vlan 88
exit
interface range fa0/1-24
switchport mode access
switchport port-security maximun 1
switchport port-security violation shutdown
switchport port-security mac-address sticky
exit
interface gi0/1
switchport mode trunk
end
wr
MLS
ena
conf t
hostname mls
ip routing
ip domain name tcrmbo.nl
enable secret encisco
username admin password vtycisco
crypto key generate rsa
2048
ip ssh version 2
banner motd #tekst#
line vty 0 15
transport input ssh
login local
exit
ip dhcp excluded-address 192.168.10.1 192.168.10.9
ip dhcp excluded-address 192.168.20.1 192.168.20.9
ip dhcp pool SEC
network 192.168.10.0 255.255.255.0
dns-server 207.180.244.225
default-router 192.168.10.1
exit
ip dhcp pool FIN
network 192.168.20.0 255.255.255.0
dns-server 207.180.244.225
default-router 192.168.20.1
exit
vlan 10
name secretariaat
exit
vlan 20
name financieel
exit
vlan 88
name beheer exit
access-list 10 deny 192.168.20.0 0.0.0.255
access-list 10 permit any
interface vlan 10
ip access-group 10 out
exit
access-list 20 deny 192.168.10.0 0.0.0.255
access-list 20 permit any
interface vlan 20
ip access-group 20 out
exit
access-list 88 deny 192.168.10.0 0.0.0.255
access-list 88 deny 192.168.20.0 0.0.0.255
access-list 88 permit any
interface vlan 88
ip access-group 88 out
exit
interface vlan 10
ip address 192.168.10.1 255.255.255.0
exit
interface vlan 20
ip address 192.168.20.1 255.255.255.0
exit
interface vlan 88
ip address 192.168.88.1 255.255.255.0
exit
interface gi1/0/1
no switchport
ip address 192.168.0.2 255.255.255.252
noshutdown
exit
interface gi1/0/2
switchport mode trunk
switchport trunk encapsuliation dot1q
noshutdown
exit
end
wr
CE
ena
conf t
hostname CE
ip route 0.0.0.0 0.0.0.0 gi0/1
ip route 192.168.0.0 255.255.0.0 gi0/0
ip domain-name tcrmbo.nl
enable secret encisco
ip nat inside source list 1 interface gi0/1
interface gi0/0
ip address 192.168.0.1 255.255.255.252
exit
interface gi0/1
ip address dhcp
ip nat outside
no shutdown
exit
interface gi0/0
ip nat inside
no shutdown
exit
acces-list 1 permit 192.168.0.0 0.0.255.255
exit
ip domain-name tcrmbo.nl
end
wr
Alle pc's dhcp en beheer aparte ip invullen
IP nat inside