cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1822
Views
0
Helpful
17
Replies

Cisco 881 router in a subnet

naveen230
Level 1
Level 1

I have a cisco 800 series router and its connected to a subnet (10.2.1.XXX local network address) and is connected to the Internet.How can I configure the LAN interfaces(FE0 to FE3) to be able to connect to the internet?Now I'm able to assign a 192.168.X.X address to internal devices connected to router but it isn't connected to Internet!

 

.Here is the summary of the configurations I did,

 

interface Vlan1

ip address 192.168.1.1 255.255.255.0

ip dhcp excluded-address 192.168.1.1 192.168.1.30

ip dhcp pool mypool

  network 192.168.1.0 255.255.255.0

  default-router 192.168.1.1

  dns-server 8.8.8.8

 interface FastEthernet4
ip address dhcp
p nat outside
 no shutdown

The router is picking the address 10.2.1.74(connected to internet) and a host device is having address 192.168.1.31 but it isn't connected to Internet.

Also I tried adding this,

ip nat inside source list 1 fastethernet4 overload

 

Please provide with a suggestion as I'm new to this!

Naveen

2 Accepted Solutions

Accepted Solutions

Hello,

 

here is the config you need (important parts in bold).

The ip dhcp excluded address had a type, make sure it is .168 and not .169.

 

version 15.5
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname Router
!
boot-start-marker
boot-end-marker
!
!
enable secret 5 $1$vj0L$Vr9N06SezranvjdQ/gLK/1
!
no aaa new-model
ethernet lmi ce
!
ip dhcp excluded-address 192.168.1.1 192.168.1.30
!
ip dhcp pool my pool
network 192.168.1.0 255.255.255.0
default-router 192.168.1.1
dns-server 8.8.8.8 8.8.4.4

lease 3
!
ip cef
no ipv6 cef
!
multilink bundle-name authenticated
!
license udi pid C881-K9 sn FJC2210L07Y
!
interface FastEthernet0
no ip address
!
interface FastEthernet1
no ip address
!
interface FastEthernet2
no ip address
!
interface FastEthernet3
no ip address
!
interface FastEthernet4
ip address dhcp
ip nat outside
ip virtual-reassembly in
duplex auto
speed auto
!
interface Vlan1
ip address 192.168.1.1 255.255.255.0
ip nat inside
!
ip forward-protocol nd
no ip http server
no ip http secure-server
!
ip route 0.0.0.0 0.0.0.0 FastEthernet4 dhcp
!
ip nat inside source list 1 interface FastEthernet4 overload
!
access-list 1 permit 192.168.1.0
!
control-plane
!
mgcp behavior rsip-range tgcp-only
mgcp behavior comedia-role none
mgcp behavior comedia-check-media-src disable
mgcp behavior comedia-sdp-force disable
!
mgcp profile default
!
line con 0
no modem enable
line aux 0
line vty 0 4
login
transport input none
!
scheduler allocate 20000 1000
!
end

View solution in original post

Hello,

 

you mean your computers have IP addresses in the 10.2.x.x range ? Can you at least ping 8.8.8.8 from the router ?

 

Anything can be routed, but you need a layer 3 interface which is the default gateway for your clients. The network also needs to be added to the access list that is used for NAT, e.g.;

 

interface VLAN10

ip address 10.2.1.1 255.255.255.0

ip nat inside

 

access-list 1 permit 10.2.1.0 0.0.0.255

 

 

View solution in original post

17 Replies 17

Reza Sharifi
Hall of Fame
Hall of Fame

Can you post the output of "sh run"?

HTH

Building configuration...

Current configuration : 1477 bytes
!
! Last configuration change at 20:57:12 UTC Tue Apr 3 2018
!
version 15.5
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname Router
!
boot-start-marker
boot-end-marker
!
!
enable secret 5 $1$vj0L$Vr9N06SezranvjdQ/gLK/1
!
no aaa new-model
ethernet lmi ce
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!


!
ip dhcp excluded-address 192.169.1.1 192.169.1.30
!
ip dhcp pool my pool
network 192.168.1.0 255.255.255.0
default-router 192.168.1.1
dns-server 8.8.8.8
!
!
!
ip cef
no ipv6 cef
!
!
!
!
!
multilink bundle-name authenticated
!
!
!
!
!
!
!
license udi pid C881-K9 sn FJC2210L07Y
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
interface FastEthernet0
no ip address
!
interface FastEthernet1
no ip address
!
interface FastEthernet2
no ip address
!
interface FastEthernet3
no ip address
!
interface FastEthernet4
ip address dhcp
ip nat outside
ip virtual-reassembly in
duplex auto
speed auto
!
interface Vlan1
ip address 192.168.1.1 255.255.255.0
!
ip forward-protocol nd
no ip http server
no ip http secure-server
!
!
ip nat inside source list 1 interface FastEthernet4 overload
!
!
!
control-plane
!
!
!
mgcp behavior rsip-range tgcp-only
mgcp behavior comedia-role none
mgcp behavior comedia-check-media-src disable
mgcp behavior comedia-sdp-force disable
!
mgcp profile default
!
!
!
!
!
!
!
line con 0
no modem enable
line aux 0
line vty 0 4
login
transport input none
!
scheduler allocate 20000 1000
!
end

johnd2310
Level 8
Level 8

Hi,

What device is connected to interface fa4?

 

Thanks

John

**Please rate posts you find helpful**

Fa4 is connected to the internet through a cable

EduardR
Level 1
Level 1

I think you almost have everything done... Just some minor tweaks:

 

You must configure the NAT for the inside interfaces (Fe0 to Fe3)

interface fastethernet 0
  ip nat inside
interface fastethernet 1
  ip nat inside
interface fastethernet 2
  ip nat inside
interface fastethernet 3
  ip nat inside

You define the NAT for the outside interface

interface fastethernet 4
  ip nat outside

Use your nat definition:

ip nat pool NAME 10.2.1.74 10.2.1.74 prefix 24 <--- i think...

Indicate the translation:

ip nat inside source list 1 pool NAME overload
access-list 1 permit 192.168.1.0  0.0.0.255

 

Also, i think you need a route to the outside... something like:

ip route 0.0.0.0 0.0.0.0 <IP OF THE INTERNET NEXT HOP>

ANd with that i think you can connect your endpoints to the internet.

 

Thanks for the reply followed your instructions and got

 

Router(config)#interface FastEthernet0
Router(config-if)#ip nat inside
^
% Invalid input detected at '^' marker.

naveen230
Level 1
Level 1

Hello everyone,

 

thanks for the reply guys,

here 10.2.1.74 is the address assigned for FA4(WAN) USING DHCP.Just to be clear!

thanks for the reply guys,

here 10.2.1.74 is the address assigned for FA4(WAN) USING DHCP.Just to be clear!

 

and I want the other interfaces(FE0 to FE3) to have the same IP 10.2.X.X and connected to internet as well(like a switch)!

 

Is is possible?

Hello,

 

here is the config you need (important parts in bold).

The ip dhcp excluded address had a type, make sure it is .168 and not .169.

 

version 15.5
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname Router
!
boot-start-marker
boot-end-marker
!
!
enable secret 5 $1$vj0L$Vr9N06SezranvjdQ/gLK/1
!
no aaa new-model
ethernet lmi ce
!
ip dhcp excluded-address 192.168.1.1 192.168.1.30
!
ip dhcp pool my pool
network 192.168.1.0 255.255.255.0
default-router 192.168.1.1
dns-server 8.8.8.8 8.8.4.4

lease 3
!
ip cef
no ipv6 cef
!
multilink bundle-name authenticated
!
license udi pid C881-K9 sn FJC2210L07Y
!
interface FastEthernet0
no ip address
!
interface FastEthernet1
no ip address
!
interface FastEthernet2
no ip address
!
interface FastEthernet3
no ip address
!
interface FastEthernet4
ip address dhcp
ip nat outside
ip virtual-reassembly in
duplex auto
speed auto
!
interface Vlan1
ip address 192.168.1.1 255.255.255.0
ip nat inside
!
ip forward-protocol nd
no ip http server
no ip http secure-server
!
ip route 0.0.0.0 0.0.0.0 FastEthernet4 dhcp
!
ip nat inside source list 1 interface FastEthernet4 overload
!
access-list 1 permit 192.168.1.0
!
control-plane
!
mgcp behavior rsip-range tgcp-only
mgcp behavior comedia-role none
mgcp behavior comedia-check-media-src disable
mgcp behavior comedia-sdp-force disable
!
mgcp profile default
!
line con 0
no modem enable
line aux 0
line vty 0 4
login
transport input none
!
scheduler allocate 20000 1000
!
end

Thanks for the suggestion,

 

I followed the instructions but still devices connected to FE0-FE3 not connected to Internet.Is it because the router is connected to private network(10.2..x.x addresses) and its not possible to route? (asked in other forums)

 

N

Hello,

 

you mean your computers have IP addresses in the 10.2.x.x range ? Can you at least ping 8.8.8.8 from the router ?

 

Anything can be routed, but you need a layer 3 interface which is the default gateway for your clients. The network also needs to be added to the access list that is used for NAT, e.g.;

 

interface VLAN10

ip address 10.2.1.1 255.255.255.0

ip nat inside

 

access-list 1 permit 10.2.1.0 0.0.0.255

 

 

All devices connected to internet have 10.2.x.x address because its a private network.And i'm able to ping 8.8.8.8 on the router and its successful.But on the device connected to router through FE0 to FE3 not able to ping google.com. 

 

yes 10.2.1.1 is the default gateway for the clients.

Hi Naveen,
1) Did the devices connected to interface fa0 - fa3 receive IP addresses from the DHCP pool (192.168.1.x)?
2) If yes, could you ping 192.168.1.1 from those devices? How about 10.2.1.1?
3) If no, please post the output of "show vlan-switch brief". If you made many changes, please post "sh run" as well.

HTH,
Meheretab
HTH,
Meheretab

10.2.1.1 is the gateway already used Can I use the same for this router bacause

 

FE4 has IP address 10.2.1.74

 

and when I configure

 

interface Vlan1

ip address 10.2.1.1 255.255.255.0

 

I get IP address conflicts!

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Innovations in Cisco Full Stack Observability - A new webinar from Cisco