11-20-2012 06:48 AM - edited 03-07-2019 10:09 AM
I am trying to configure the wireless on my cisco 857W. The clients associates with router but they can't go on internet.
Building configuration...
Current configuration : 4123 bytes
!
! Last configuration change at 12:45:15 CET Sun Nov 18 2012 by simone
! NVRAM config last updated at 12:51:44 CET Sun Nov 18 2012 by simone
!
version 12.4
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname core_ro
!
boot-start-marker
boot-end-marker
!
enable password 7 020E1E43535457
!
no aaa new-model
clock timezone CET 1
!
crypto pki trustpoint TP-self-signed-3805617950
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3805617950
revocation-check none
rsakeypair TP-self-signed-3805617950
!
!
crypto pki certificate chain TP-self-signed-3805617950
certificate self-signed 01
3082024D 308201B6 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 33383035 36313739 3530301E 170D3132 31303231 32313239
31345A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D33 38303536
31373935 3030819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100AED6 ED37054A 28C831D5 86860EB2 9DC3C3FC 7CAC8AE9 52E80D33 1C0B1B7B
1B3A0344 9EA03A2C 61F20937 91BE62FD 4F9F9814 909BA453 1576C28F 8736DAA7
98D89DBB DBA57215 A3E3597F 439D80D4 A6E35FFA 94960830 2E8E8595 1A74929E
0A7B9129 C9643B13 FD6FECED 1D6F911D 03D267B7 5260AA49 622A4EFD A68F2723
30630203 010001A3 75307330 0F060355 1D130101 FF040530 030101FF 30200603
551D1104 19301782 15636F72 655F726F 2E636F72 655F726F 2E6C6F63 616C301F
0603551D 23041830 16801481 7EC52C0F F8BB8F9E AE90265D 025E2F8A BC08E630
1D060355 1D0E0416 0414817E C52C0FF8 BB8F9EAE 90265D02 5E2F8ABC 08E6300D
06092A86 4886F70D 01010405 00038181 00435DCF 77A65039 8D57270C E0CBE389
A376A63E 1975F2E0 7F2892AC 3C853421 B43D2722 87D4CDBA DFC2295E AB1369F0
7C2CE353 F026BF8A AB7A5FE6 B14CA429 153EE635 703895BE A2E4DD17 29A23440
B4F2027F 48796076 7B104092 40E86AAE D4CF6BF5 F985BCFF B8131890 5C28CF9E
C3F1C4B1 FCA594C1 B9B6C55C 919B3084 B8
quit
!
dot11 ssid wlan2
!
no ip dhcp use vrf connected
!
ip dhcp pool 192.168.1.0/24
network 192.168.0.0 255.255.255.0
default-router 192.168.0.254
dns-server 213.205.32.70 213.205.36.70
!
!
ip cef
ip auth-proxy max-nodata-conns 3
ip admission max-nodata-conns 3
ip domain name core_ro.local
ip name-server 213.205.32.70
ip name-server 213.205.36.70
!
!
!
username simone password 7 055A545E791D175C4A
!
!
archive
log config
hidekeys
!
!
!
!
!
interface ATM0
no ip address
no atm ilmi-keepalive
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 1
!
dsl operating-mode auto
!
interface FastEthernet0
!
interface FastEthernet1
!
interface FastEthernet2
!
interface FastEthernet3
!
interface Dot11Radio0
no ip address
shutdown
!
ssid wlan2
!
speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0 54.0
station-role root
!
interface Vlan1
ip address 192.168.0.254 255.255.255.0
ip nat inside
ip virtual-reassembly
!
interface Dialer0
ip address negotiated
ip mtu 1492
ip nat outside
ip virtual-reassembly
encapsulation ppp
ip tcp header-compression
ip tcp adjust-mss 1452
dialer pool 1
no cdp enable
ppp authentication chap callin
ppp chap hostname xxxxxxxxxx
ppp chap password 7 082A441C5F0C51
ppp pap sent-username xxxxxxxxxxxxxxxx password 7 000F1B54524E5F
ppp ipcp dns request
ppp ipcp wins request
!
interface Dialer1
no ip address
shutdown
!
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 Dialer0
ip route 0.0.0.0 0.0.0.0 ATM0
ip route 0.0.0.0 0.0.0.0 Dialer1
!
no ip http server
no ip http secure-server
ip nat inside source list 1 interface Dialer1 overload
ip nat inside source list 101 interface Dialer0 overload
!
access-list 101 permit ip 192.168.0.0 0.0.0.255 any
dialer-list 1 protocol ip permit
!
control-plane
!
banner login ^CUnhautorized access prohibited!^C
!
line con 0
no modem enable
line aux 0
line vty 0 4
password 7 130D0D0A535E5C
login local
transport input ssh
!
scheduler max-task-time 5000
sntp server 193.204.114.233
end
Thanks for support.
Simone
Solved! Go to Solution.
11-21-2012 07:10 AM
Hi Simone,
Try this configurations.
interface Dot11Radio0
no ip address 192.168.2.254 255.255.255.0
bridge-group 1
bridge-group 1 spanning-disabled
!
interface Vlan1
no ip address 192.168.0.254 255.255.255.0
ip virtual-reassembly
bridge-group 1
!
interface Vlan10
ip address 192.168.0.254 255.255.255.0
ip nat inside
ip virtual-reassembly
ip mask-reply
ip directed-broadcast
ip nat inside
ip virtual-reassembly
!
ip nat inside source list 102 interface Dialer0 overload
interface BVI1
ip address 192.168.2.254 255.255.255
ip verify unicast reverse-path
ip mask-reply
ip directed-broadcast
ip nat inside
ip virtual-reassembly
!
ip nat inside source list 102 interface Dialer0 overload
!
bridge 1 protocol ieee
!
bridge 1 route ip
Regards
Najaf
11-21-2012 07:27 AM
Hi Simon,
Try this
config terminal
bridge irb
Also check the NAT trasaction as specified above. After applying the new config get me the running congiuration.
Regards
Najaf
11-22-2012 08:14 AM
Hi Simone,
Good to know that the solution is working. Also as part of tidy up you could remove these two lines as ACL 101 is covering the same subnet.
no access-list 102 permit ip 192.168.2.0 0.0.0.255 any
no ip nat inside source list 102 interface Dialer0 overload
Regards
Najaf
11-20-2012 08:16 AM
Hi Simone,
Is the internet working from the router itself? i mean are you able to ping yahoo.com or google.com from the router CLI?
Regards
Najaf
11-20-2012 08:22 AM
Hi, yes it work from the router.
Thanks
Simone
11-21-2012 03:19 AM
Hi Simone,
Try removing below commands
no ip route 0.0.0.0 0.0.0.0 Dialer1
no ip nat inside source list 1 interface Dialer1 overload
Also confirm if internet works from the pc which is connected through the ethernet port of the router. Verify if NATing is working fine on the router with show ip nat translations
Can you please provide the output of ping and trace to 4.2.2.2 from a wireless client along with posting the output of ipconfig/all from wireless client.
Regards
Najaf
11-21-2012 05:33 AM
Hi,
i removed the commands.
Internet works from the ethernet port.
core_ro#show ip nat translations
Pro Inside global Inside local Outside local Outside global
tcp 94.37.xx.xx:1037 192.168.0.3:1037 178.255.155.20:5938 178.255.155.20:5938
tcp 94.37.xx.xx:1137 192.168.0.3:1137 173.194.70.125:443 173.194.70.125:443
tcp 94.37.xx.xx:1214 192.168.0.3:1214 74.201.86.29:443 74.201.86.29:443
tcp 94.37.xx.xx:1217 192.168.0.3:1217 173.194.70.125:5222 173.194.70.125:5222
tcp 94.37.xx.xx:1229 192.168.0.3:1229 173.194.70.125:5222 173.194.70.125:5222
tcp 94.37.xx.xx:1282 192.168.0.3:1282 77.67.3.151:80 77.67.3.151:80
tcp 94.37.xx.xx:1344 192.168.0.3:1344 173.194.35.8:443 173.194.35.8:443
tcp 94.37.xx.xx:1438 192.168.0.3:1438 173.194.35.33:443 173.194.35.33:443
C:\Users\simone.g>ping 4.2.2.2
Esecuzione di Ping 4.2.2.2 con 32 byte di dati:
Richiesta scaduta.
Richiesta scaduta.
Richiesta scaduta.
Richiesta scaduta.
Statistiche Ping per 4.2.2.2:
Pacchetti: Trasmessi = 4, Ricevuti = 0,
Persi = 4 (100% persi),
C:\Users\simone.g>tracert 4.2.2.2
Traccia instradamento verso 4.2.2.2 su un massimo di 30 punti di passaggio
1 1 ms 1 ms 1 ms 192.168.2.254
2 * * * Richiesta scaduta.
3 * * * Richiesta scaduta.
4 * * * Richiesta scaduta.
5 * * * Richiesta scaduta.
6 * * * Richiesta scaduta.
7 * * * Richiesta scaduta.
8 * * * Richiesta scaduta.
9 * * * Richiesta scaduta.
10 * * * Richiesta scaduta.
11 * * * Richiesta scaduta.
12 * * * Richiesta scaduta.
13 * * * Richiesta scaduta.
14 * * * Richiesta scaduta.
15 * * * Richiesta scaduta.
16 * * * Richiesta scaduta.
17 * * * Richiesta scaduta.
18 * * * Richiesta scaduta.
19 * * * Richiesta scaduta.
20 * * * Richiesta scaduta.
21 * * * Richiesta scaduta.
22 * * * Richiesta scaduta.
23 * * * Richiesta scaduta.
24 * * * Richiesta scaduta.
25 * * * Richiesta scaduta.
26 * * * Richiesta scaduta.
27 * * * Richiesta scaduta.
28 * * * Richiesta scaduta.
29 * * * Richiesta scaduta.
30 * * * Richiesta scaduta.
Traccia completata.
C:\Users\simone.g>ipconfig /all
Configurazione IP di Windows
Nome host . . . . . . . . . . . . . . : VSTR1220
Suffisso DNS primario . . . . . . . . :
Tipo nodo . . . . . . . . . . . . . . : Misto
Routing IP abilitato. . . . . . . . . : No
Proxy WINS abilitato . . . . . . . . : No
Scheda LAN wireless Connessione rete wireless 2:
Stato supporto. . . . . . . . . . . . : Supporto disconnesso
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapt
er
Indirizzo fisico. . . . . . . . . . . : 78-E4-00-58-D3-A0
DHCP abilitato. . . . . . . . . . . . : Sì
Configurazione automatica abilitata : Sì
Scheda LAN wireless Connessione rete wireless:
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : Mini card WLAN wireless Dell 1397
Indirizzo fisico. . . . . . . . . . . : 78-E4-00-58-D3-A0
DHCP abilitato. . . . . . . . . . . . : Sì
Configurazione automatica abilitata : Sì
Indirizzo IPv6 locale rispetto al collegamento . : fe80::110:abac:a49e:26c9%1
1(Preferenziale)
Indirizzo IPv4. . . . . . . . . . . . : 192.168.2.3(Preferenziale)
Subnet mask . . . . . . . . . . . . . : 255.255.255.0
Lease ottenuto. . . . . . . . . . . . : mercoledì 21 novembre 2012 13:57:46
Scadenza lease . . . . . . . . . . . : giovedì 22 novembre 2012 13:57:45
Gateway predefinito . . . . . . . . . : 192.168.0.254
Server DHCP . . . . . . . . . . . . . : 192.168.2.254
IAID DHCPv6 . . . . . . . . . . . : 226026496
DUID Client DHCPv6. . . . . . . . : 00-01-00-01-13-BF-14-1D-B8-AC-6F-76-9E-2D
Server DNS . . . . . . . . . . . . . : 213.205.32.70
213.205.36.70
NetBIOS su TCP/IP . . . . . . . . . . : Attivato
Scheda Ethernet Connessione alla rete locale (LAN):
Stato supporto. . . . . . . . . . . . : Supporto disconnesso
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : Realtek PCIe GBE Family Controller
Indirizzo fisico. . . . . . . . . . . : B8-AC-6F-76-9E-2D
DHCP abilitato. . . . . . . . . . . . : Sì
Configurazione automatica abilitata : Sì
Scheda Ethernet VMware Network Adapter VMnet1:
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : VMware Virtual Ethernet Adapter for V
Mnet1
Indirizzo fisico. . . . . . . . . . . : 00-50-56-C0-00-01
DHCP abilitato. . . . . . . . . . . . : No
Configurazione automatica abilitata : Sì
Indirizzo IPv6 locale rispetto al collegamento . : fe80::ac59:183:26ff:a945%2
9(Preferenziale)
Indirizzo IPv4. . . . . . . . . . . . : 192.168.201.1(Preferenziale)
Subnet mask . . . . . . . . . . . . . : 255.255.255.0
Gateway predefinito . . . . . . . . . :
IAID DHCPv6 . . . . . . . . . . . : 570445910
DUID Client DHCPv6. . . . . . . . : 00-01-00-01-13-BF-14-1D-B8-AC-6F-76-9E-2D
Server DNS . . . . . . . . . . . . . : fec0:0:0:ffff::1%1
fec0:0:0:ffff::2%1
fec0:0:0:ffff::3%1
NetBIOS su TCP/IP . . . . . . . . . . : Attivato
Scheda Ethernet VMware Network Adapter VMnet8:
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : VMware Virtual Ethernet Adapter for V
Mnet8
Indirizzo fisico. . . . . . . . . . . : 00-50-56-C0-00-08
DHCP abilitato. . . . . . . . . . . . : No
Configurazione automatica abilitata : Sì
Indirizzo IPv6 locale rispetto al collegamento . : fe80::c144:e76e:f265:14d8%
30(Preferenziale)
Indirizzo IPv4. . . . . . . . . . . . : 192.168.194.1(Preferenziale)
Subnet mask . . . . . . . . . . . . . : 255.255.255.0
Gateway predefinito . . . . . . . . . :
IAID DHCPv6 . . . . . . . . . . . : 620777558
DUID Client DHCPv6. . . . . . . . : 00-01-00-01-13-BF-14-1D-B8-AC-6F-76-9E-2D
Server DNS . . . . . . . . . . . . . : fec0:0:0:ffff::1%1
fec0:0:0:ffff::2%1
fec0:0:0:ffff::3%1
NetBIOS su TCP/IP . . . . . . . . . . : Attivato
Scheda Tunnel Reusable ISATAP Interface {0C68935B-0240-4875-86C3-49FE3C48AEFA}:
Stato supporto. . . . . . . . . . . . : Supporto disconnesso
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : Microsoft ISATAP Adapter
Indirizzo fisico. . . . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP abilitato. . . . . . . . . . . . : No
Configurazione automatica abilitata : Sì
Scheda Tunnel isatap.{1AAF9115-CB7C-4F8A-9AC6-A50492D0D342}:
Stato supporto. . . . . . . . . . . . : Supporto disconnesso
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : Microsoft ISATAP Adapter #3
Indirizzo fisico. . . . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP abilitato. . . . . . . . . . . . : No
Configurazione automatica abilitata : Sì
Scheda Tunnel isatap.{1E52F3E5-68FD-4265-9B54-C705B6326E25}:
Stato supporto. . . . . . . . . . . . : Supporto disconnesso
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : Microsoft ISATAP Adapter #4
Indirizzo fisico. . . . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP abilitato. . . . . . . . . . . . : No
Configurazione automatica abilitata : Sì
Scheda Tunnel isatap.{B4907C1A-7925-43F0-9AA4-55D7DC5366D5}:
Stato supporto. . . . . . . . . . . . : Supporto disconnesso
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : Microsoft ISATAP Adapter #6
Indirizzo fisico. . . . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP abilitato. . . . . . . . . . . . : No
Configurazione automatica abilitata : Sì
Scheda Tunnel Teredo Tunneling Pseudo-Interface:
Stato supporto. . . . . . . . . . . . : Supporto disconnesso
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Indirizzo fisico. . . . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP abilitato. . . . . . . . . . . . : No
Configurazione automatica abilitata : Sì
Scheda Tunnel isatap.{FB699A92-DBCB-44F2-AABF-847540797F4D}:
Stato supporto. . . . . . . . . . . . : Supporto disconnesso
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : Microsoft ISATAP Adapter #7
Indirizzo fisico. . . . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP abilitato. . . . . . . . . . . . : No
Configurazione automatica abilitata : Sì
Scheda Tunnel isatap.fastwebnet.it:
Stato supporto. . . . . . . . . . . . : Supporto disconnesso
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Indirizzo fisico. . . . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP abilitato. . . . . . . . . . . . : No
Configurazione automatica abilitata : Sì
Thanks
Simone
11-21-2012 06:02 AM
Hi,
Scheda LAN wireless Connessione rete wireless:
Suffisso DNS specifico per connessione:
Descrizione . . . . . . . . . . . . . : Mini card WLAN wireless Dell 1397
Indirizzo fisico. . . . . . . . . . . : 78-E4-00-58-D3-A0
DHCP abilitato. . . . . . . . . . . . : Sì
Configurazione automatica abilitata : Sì
Indirizzo IPv6 locale rispetto al collegamento . : fe80::110:abac:a49e:26c9%1
1(Preferenziale)
Indirizzo IPv4. . . . . . . . . . . . : 192.168.2.3(Preferenziale)
Subnet mask . . . . . . . . . . . . . : 255.255.255.0
Lease ottenuto. . . . . . . . . . . . : mercoledì 21 novembre 2012 13:57:46
Scadenza lease . . . . . . . . . . . : giovedì 22 novembre 2012 13:57:45
Gateway predefinito . . . . . . . . . : 192.168.0.254
Server DHCP . . . . . . . . . . . . . : 192.168.2.254
IAID DHCPv6 . . . . . . . . . . . : 226026496
DUID Client DHCPv6. . . . . . . . : 00-01-00-01-13-BF-14-1D-B8-AC-6F-76-9E-2D
The default gateway must be in the same subnet as the host and it is not here.furthermore it seems there is another DHCP server than your cisco device and this one gave you the IP address but with a wrong gateway.
Regards.
Alain
Don't forget to rate helpful posts.
11-21-2012 06:19 AM
Now i put the default-gateway on the same subnet, but i can't go on internet:
Building configuration...
Current configuration : 4335 bytes
!
! Last configuration change at 15:12:09 CET Wed Nov 21 2012 by simone
! NVRAM config last updated at 15:08:11 CET Wed Nov 21 2012 by simone
!
version 12.4
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname core_ro
!
boot-start-marker
boot-end-marker
!
enable password 7 020E1E43535457
!
no aaa new-model
clock timezone CET 1
!
crypto pki trustpoint TP-self-signed-3805617950
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3805617950
revocation-check none
rsakeypair TP-self-signed-3805617950
!
!
crypto pki certificate chain TP-self-signed-3805617950
certificate self-signed 01
3082024D 308201B6 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 33383035 36313739 3530301E 170D3132 31303231 32313239
31345A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D33 38303536
31373935 3030819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100AED6 ED37054A 28C831D5 86860EB2 9DC3C3FC 7CAC8AE9 52E80D33 1C0B1B7B
1B3A0344 9EA03A2C 61F20937 91BE62FD 4F9F9814 909BA453 1576C28F 8736DAA7
98D89DBB DBA57215 A3E3597F 439D80D4 A6E35FFA 94960830 2E8E8595 1A74929E
0A7B9129 C9643B13 FD6FECED 1D6F911D 03D267B7 5260AA49 622A4EFD A68F2723
30630203 010001A3 75307330 0F060355 1D130101 FF040530 030101FF 30200603
551D1104 19301782 15636F72 655F726F 2E636F72 655F726F 2E6C6F63 616C301F
0603551D 23041830 16801481 7EC52C0F F8BB8F9E AE90265D 025E2F8A BC08E630
1D060355 1D0E0416 0414817E C52C0FF8 BB8F9EAE 90265D02 5E2F8ABC 08E6300D
06092A86 4886F70D 01010405 00038181 00435DCF 77A65039 8D57270C E0CBE389
A376A63E 1975F2E0 7F2892AC 3C853421 B43D2722 87D4CDBA DFC2295E AB1369F0
7C2CE353 F026BF8A AB7A5FE6 B14CA429 153EE635 703895BE A2E4DD17 29A23440
B4F2027F 48796076 7B104092 40E86AAE D4CF6BF5 F985BCFF B8131890 5C28CF9E
C3F1C4B1 FCA594C1 B9B6C55C 919B3084 B8
quit
!
dot11 ssid wlan2
authentication open
guest-mode
!
no ip dhcp use vrf connected
!
ip dhcp pool 192.168.1.0/24
network 192.168.0.0 255.255.255.0
default-router 192.168.0.254
dns-server 213.205.32.70 213.205.36.70
!
ip dhcp pool wlan2
network 192.168.2.0 255.255.255.0
default-router 192.168.2.254
dns-server 213.205.32.70 213.205.36.70
!
!
ip cef
ip auth-proxy max-nodata-conns 3
ip admission max-nodata-conns 3
ip domain name core_ro.local
ip name-server 213.205.32.70
ip name-server 213.205.36.70
!
!
!
username simone password 7 055A545E791D175C4A
!
!
archive
log config
hidekeys
!
!
!
!
!
interface ATM0
no ip address
no atm ilmi-keepalive
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 1
!
dsl operating-mode auto
!
interface FastEthernet0
!
interface FastEthernet1
!
interface FastEthernet2
!
interface FastEthernet3
!
interface Dot11Radio0
ip address 192.168.2.254 255.255.255.0
!
ssid wlan2
!
speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0 54.0
station-role root
!
interface Vlan1
ip address 192.168.0.254 255.255.255.0
ip nat inside
ip virtual-reassembly
!
interface Dialer0
ip address negotiated
ip mtu 1492
ip nat outside
ip virtual-reassembly
encapsulation ppp
ip tcp header-compression
ip tcp adjust-mss 1452
dialer pool 1
no cdp enable
ppp authentication chap callin
ppp chap hostname simone.gioia1978
ppp chap password 7 082A441C5F0C51
ppp pap sent-username simone.gioia1978 password 7 000F1B54524E5F
ppp ipcp dns request
ppp ipcp wins request
!
interface Dialer1
no ip address
shutdown
!
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 Dialer0
ip route 0.0.0.0 0.0.0.0 ATM0
!
no ip http server
no ip http secure-server
ip nat inside source list 101 interface Dialer0 overload
ip nat inside source list 102 interface Dot11Radio0 overload
!
access-list 101 permit ip 192.168.0.0 0.0.0.255 any
access-list 102 permit ip 192.168.2.0 0.0.0.255 any
dialer-list 1 protocol ip permit
!
control-plane
!
banner login ^CUnhautorized access prohibited!^C
!
line con 0
no modem enable
line aux 0
line vty 0 4
password 7 130D0D0A535E5C
login local
transport input ssh
!
scheduler max-task-time 5000
sntp server 193.204.114.233
end
Thanks
Simone
11-21-2012 06:28 AM
Hi,
no ip route 0.0.0.0 0.0.0.0 ATM0
no ip nat inside source list 102 interface Dot11Radio0 overload
try again and tell us.
Regards.
Alain
Don't forget to rate helpful posts.
11-21-2012 06:38 AM
Doesn't work.
core_ro#show running-config
Building configuration...
Current configuration : 4244 bytes
!
! Last configuration change at 15:35:34 CET Wed Nov 21 2012 by simone
! NVRAM config last updated at 15:31:02 CET Wed Nov 21 2012 by simone
!
version 12.4
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname core_ro
!
boot-start-marker
boot-end-marker
!
enable password 7 020E1E43535457
!
no aaa new-model
clock timezone CET 1
!
crypto pki trustpoint TP-self-signed-3805617950
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3805617950
revocation-check none
rsakeypair TP-self-signed-3805617950
!
!
crypto pki certificate chain TP-self-signed-3805617950
certificate self-signed 01
3082024D 308201B6 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 33383035 36313739 3530301E 170D3132 31303231 32313239
31345A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D33 38303536
31373935 3030819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100AED6 ED37054A 28C831D5 86860EB2 9DC3C3FC 7CAC8AE9 52E80D33 1C0B1B7B
1B3A0344 9EA03A2C 61F20937 91BE62FD 4F9F9814 909BA453 1576C28F 8736DAA7
98D89DBB DBA57215 A3E3597F 439D80D4 A6E35FFA 94960830 2E8E8595 1A74929E
0A7B9129 C9643B13 FD6FECED 1D6F911D 03D267B7 5260AA49 622A4EFD A68F2723
30630203 010001A3 75307330 0F060355 1D130101 FF040530 030101FF 30200603
551D1104 19301782 15636F72 655F726F 2E636F72 655F726F 2E6C6F63 616C301F
0603551D 23041830 16801481 7EC52C0F F8BB8F9E AE90265D 025E2F8A BC08E630
1D060355 1D0E0416 0414817E C52C0FF8 BB8F9EAE 90265D02 5E2F8ABC 08E6300D
06092A86 4886F70D 01010405 00038181 00435DCF 77A65039 8D57270C E0CBE389
A376A63E 1975F2E0 7F2892AC 3C853421 B43D2722 87D4CDBA DFC2295E AB1369F0
7C2CE353 F026BF8A AB7A5FE6 B14CA429 153EE635 703895BE A2E4DD17 29A23440
B4F2027F 48796076 7B104092 40E86AAE D4CF6BF5 F985BCFF B8131890 5C28CF9E
C3F1C4B1 FCA594C1 B9B6C55C 919B3084 B8
quit
!
dot11 ssid wlan2
authentication open
guest-mode
!
no ip dhcp use vrf connected
!
ip dhcp pool 192.168.1.0/24
network 192.168.0.0 255.255.255.0
default-router 192.168.0.254
dns-server 213.205.32.70 213.205.36.70
!
ip dhcp pool wlan2
network 192.168.2.0 255.255.255.0
default-router 192.168.2.254
dns-server 213.205.32.70 213.205.36.70
!
!
ip cef
ip auth-proxy max-nodata-conns 3
ip admission max-nodata-conns 3
ip domain name core_ro.local
ip name-server 213.205.32.70
ip name-server 213.205.36.70
!
!
!
username simone password 7 055A545E791D175C4A
!
!
archive
log config
hidekeys
!
!
!
!
!
interface ATM0
no ip address
no atm ilmi-keepalive
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 1
!
dsl operating-mode auto
!
interface FastEthernet0
!
interface FastEthernet1
!
interface FastEthernet2
!
interface FastEthernet3
!
interface Dot11Radio0
ip address 192.168.2.254 255.255.255.0
!
ssid wlan2
!
speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0 54.0
station-role root
!
interface Vlan1
ip address 192.168.0.254 255.255.255.0
ip nat inside
ip virtual-reassembly
!
interface Dialer0
ip address negotiated
ip mtu 1492
ip nat outside
ip virtual-reassembly
encapsulation ppp
ip tcp header-compression
ip tcp adjust-mss 1452
dialer pool 1
no cdp enable
ppp authentication chap callin
ppp chap hostname simone.gioia1978
ppp chap password 7 082A441C5F0C51
ppp pap sent-username simone.gioia1978 password 7 000F1B54524E5F
ppp ipcp dns request
ppp ipcp wins request
!
interface Dialer1
no ip address
shutdown
!
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 Dialer0
!
no ip http server
no ip http secure-server
ip nat inside source list 101 interface Dialer0 overload
!
access-list 101 permit ip 192.168.0.0 0.0.0.255 any
access-list 102 permit ip 192.168.2.0 0.0.0.255 any
dialer-list 1 protocol ip permit
!
control-plane
!
banner login ^CUnhautorized access prohibited!^C
!
line con 0
no modem enable
line aux 0
line vty 0 4
password 7 130D0D0A535E5C
login local
transport input ssh
!
scheduler max-task-time 5000
sntp server 193.204.114.233
end
Thanks
Simone
11-21-2012 07:00 AM
Hi,
no access-list 101 permit ip 192.168.0.0 0.0.0.255 any
access-list 101 permit ip 192.168.0.0 0.0.0.255 any
access-list 101 permit ip 192.168.2.0 0.0.0.255 any
Regards.
Alain
Don't forget to rate helpful posts.
11-21-2012 07:08 AM
It doesn't work...
Current configuration : 4296 bytes
!
! Last configuration change at 16:03:10 CET Wed Nov 21 2012 by simone
! NVRAM config last updated at 15:31:02 CET Wed Nov 21 2012 by simone
!
version 12.4
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname core_ro
!
boot-start-marker
boot-end-marker
!
enable password 7 020E1E43535457
!
no aaa new-model
clock timezone CET 1
!
crypto pki trustpoint TP-self-signed-3805617950
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3805617950
revocation-check none
rsakeypair TP-self-signed-3805617950
!
!
crypto pki certificate chain TP-self-signed-3805617950
certificate self-signed 01
3082024D 308201B6 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 33383035 36313739 3530301E 170D3132 31303231 32313239
31345A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D33 38303536
31373935 3030819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100AED6 ED37054A 28C831D5 86860EB2 9DC3C3FC 7CAC8AE9 52E80D33 1C0B1B7B
1B3A0344 9EA03A2C 61F20937 91BE62FD 4F9F9814 909BA453 1576C28F 8736DAA7
98D89DBB DBA57215 A3E3597F 439D80D4 A6E35FFA 94960830 2E8E8595 1A74929E
0A7B9129 C9643B13 FD6FECED 1D6F911D 03D267B7 5260AA49 622A4EFD A68F2723
30630203 010001A3 75307330 0F060355 1D130101 FF040530 030101FF 30200603
551D1104 19301782 15636F72 655F726F 2E636F72 655F726F 2E6C6F63 616C301F
0603551D 23041830 16801481 7EC52C0F F8BB8F9E AE90265D 025E2F8A BC08E630
1D060355 1D0E0416 0414817E C52C0FF8 BB8F9EAE 90265D02 5E2F8ABC 08E6300D
06092A86 4886F70D 01010405 00038181 00435DCF 77A65039 8D57270C E0CBE389
A376A63E 1975F2E0 7F2892AC 3C853421 B43D2722 87D4CDBA DFC2295E AB1369F0
7C2CE353 F026BF8A AB7A5FE6 B14CA429 153EE635 703895BE A2E4DD17 29A23440
B4F2027F 48796076 7B104092 40E86AAE D4CF6BF5 F985BCFF B8131890 5C28CF9E
C3F1C4B1 FCA594C1 B9B6C55C 919B3084 B8
quit
!
dot11 ssid wlan2
authentication open
guest-mode
!
no ip dhcp use vrf connected
!
ip dhcp pool 192.168.1.0/24
network 192.168.0.0 255.255.255.0
default-router 192.168.0.254
dns-server 213.205.32.70 213.205.36.70
!
ip dhcp pool wlan2
network 192.168.2.0 255.255.255.0
default-router 192.168.2.254
dns-server 213.205.32.70 213.205.36.70
!
!
ip cef
ip auth-proxy max-nodata-conns 3
ip admission max-nodata-conns 3
ip domain name core_ro.local
ip name-server 213.205.32.70
ip name-server 213.205.36.70
!
!
!
username simone password 7 055A545E791D175C4A
!
!
archive
log config
hidekeys
!
!
!
!
!
interface ATM0
no ip address
no atm ilmi-keepalive
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 1
!
dsl operating-mode auto
!
interface FastEthernet0
!
interface FastEthernet1
!
interface FastEthernet2
!
interface FastEthernet3
!
interface Dot11Radio0
ip address 192.168.2.254 255.255.255.0
!
ssid wlan2
!
speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0 54.0
station-role root
!
interface Vlan1
ip address 192.168.0.254 255.255.255.0
ip nat inside
ip virtual-reassembly
!
interface Dialer0
ip address negotiated
ip mtu 1492
ip nat outside
ip virtual-reassembly
encapsulation ppp
ip tcp header-compression
ip tcp adjust-mss 1452
dialer pool 1
no cdp enable
ppp authentication chap callin
ppp chap hostname simone.gioia1978
ppp chap password 7 082A441C5F0C51
ppp pap sent-username simone.gioia1978 password 7 000F1B54524E5F
ppp ipcp dns request
ppp ipcp wins request
!
interface Dialer1
no ip address
shutdown
!
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 Dialer0
!
no ip http server
no ip http secure-server
ip nat inside source list 101 interface Dialer0 overload
!
access-list 101 permit ip 192.168.0.0 0.0.0.255 any
access-list 101 permit ip 192.168.2.0 0.0.0.255 any
access-list 102 permit ip 192.168.2.0 0.0.0.255 any
dialer-list 1 protocol ip permit
!
control-plane
!
banner login ^CUnhautorized access prohibited!^C
!
line con 0
no modem enable
line aux 0
line vty 0 4
password 7 130D0D0A535E5C
login local
transport input ssh
!
scheduler max-task-time 5000
sntp server 193.204.114.233
end
Thanks
Simone
11-21-2012 07:10 AM
Hi Simone,
Try this configurations.
interface Dot11Radio0
no ip address 192.168.2.254 255.255.255.0
bridge-group 1
bridge-group 1 spanning-disabled
!
interface Vlan1
no ip address 192.168.0.254 255.255.255.0
ip virtual-reassembly
bridge-group 1
!
interface Vlan10
ip address 192.168.0.254 255.255.255.0
ip nat inside
ip virtual-reassembly
ip mask-reply
ip directed-broadcast
ip nat inside
ip virtual-reassembly
!
ip nat inside source list 102 interface Dialer0 overload
interface BVI1
ip address 192.168.2.254 255.255.255
ip verify unicast reverse-path
ip mask-reply
ip directed-broadcast
ip nat inside
ip virtual-reassembly
!
ip nat inside source list 102 interface Dialer0 overload
!
bridge 1 protocol ieee
!
bridge 1 route ip
Regards
Najaf
11-21-2012 07:23 AM
Hi Najaf,
when i type interface bvI1 i receive:
Integrated Routing and Bridging is not configured!
Thanks
Simone
11-21-2012 07:27 AM
Hi Simon,
Try this
config terminal
bridge irb
Also check the NAT trasaction as specified above. After applying the new config get me the running congiuration.
Regards
Najaf
11-22-2012 08:03 AM
Hi Najaf,
great! It's work now.
Also NAT is working fine.
Thanks for your support.
Now i try to set a encryption key with wpa........
Regards
Simone
Current configuration : 4849 bytes
!
! Last configuration change at 16:54:48 CET Thu Nov 22 2012
! NVRAM config last updated at 16:48:35 CET Thu Nov 22 2012
!
version 12.4
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname core_ro
!
boot-start-marker
boot-end-marker
!
enable password 7 020E1E43535457
!
no aaa new-model
clock timezone CET 1
!
crypto pki trustpoint TP-self-signed-3805617950
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3805617950
revocation-check none
rsakeypair TP-self-signed-3805617950
!
!
crypto pki certificate chain TP-self-signed-3805617950
certificate self-signed 01
3082024D 308201B6 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 33383035 36313739 3530301E 170D3132 31303231 32313239
31345A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D33 38303536
31373935 3030819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100AED6 ED37054A 28C831D5 86860EB2 9DC3C3FC 7CAC8AE9 52E80D33 1C0B1B7B
1B3A0344 9EA03A2C 61F20937 91BE62FD 4F9F9814 909BA453 1576C28F 8736DAA7
98D89DBB DBA57215 A3E3597F 439D80D4 A6E35FFA 94960830 2E8E8595 1A74929E
0A7B9129 C9643B13 FD6FECED 1D6F911D 03D267B7 5260AA49 622A4EFD A68F2723
30630203 010001A3 75307330 0F060355 1D130101 FF040530 030101FF 30200603
551D1104 19301782 15636F72 655F726F 2E636F72 655F726F 2E6C6F63 616C301F
0603551D 23041830 16801481 7EC52C0F F8BB8F9E AE90265D 025E2F8A BC08E630
1D060355 1D0E0416 0414817E C52C0FF8 BB8F9EAE 90265D02 5E2F8ABC 08E6300D
06092A86 4886F70D 01010405 00038181 00435DCF 77A65039 8D57270C E0CBE389
A376A63E 1975F2E0 7F2892AC 3C853421 B43D2722 87D4CDBA DFC2295E AB1369F0
7C2CE353 F026BF8A AB7A5FE6 B14CA429 153EE635 703895BE A2E4DD17 29A23440
B4F2027F 48796076 7B104092 40E86AAE D4CF6BF5 F985BCFF B8131890 5C28CF9E
C3F1C4B1 FCA594C1 B9B6C55C 919B3084 B8
quit
!
dot11 ssid wlan2
authentication open
guest-mode
!
no ip dhcp use vrf connected
!
ip dhcp pool 192.168.1.0/24
network 192.168.0.0 255.255.255.0
default-router 192.168.0.254
dns-server 213.205.32.70 213.205.36.70
!
ip dhcp pool wlan2
network 192.168.2.0 255.255.255.0
default-router 192.168.2.254
dns-server 213.205.32.70 213.205.36.70
!
!
ip cef
ip auth-proxy max-nodata-conns 3
ip admission max-nodata-conns 3
ip domain name core_ro.local
ip name-server 213.205.32.70
ip name-server 213.205.36.70
!
!
!
username simone password 7 055A545E791D175C4A
!
!
archive
log config
hidekeys
!
!
!
bridge irb
!
!
interface ATM0
no ip address
no atm ilmi-keepalive
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 1
!
dsl operating-mode auto
!
interface FastEthernet0
!
interface FastEthernet1
!
interface FastEthernet2
!
interface FastEthernet3
!
interface Dot11Radio0
no ip address
!
ssid wlan2
!
speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0 54.0
station-role root
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 spanning-disabled
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
!
interface Vlan1
no ip address
ip nat inside
ip virtual-reassembly
bridge-group 1
!
interface Vlan10
ip address 192.168.0.254 255.255.255.0
ip mask-reply
ip directed-broadcast
ip nat inside
ip virtual-reassembly
!
interface Dialer0
ip address negotiated
ip mtu 1492
ip nat outside
ip virtual-reassembly
encapsulation ppp
ip tcp header-compression
ip tcp adjust-mss 1452
dialer pool 1
no cdp enable
ppp authentication chap callin
ppp chap hostname simone.gioia1978
ppp chap password 7 082A441C5F0C51
ppp pap sent-username simone.gioia1978 password 7 000F1B54524E5F
ppp ipcp dns request
ppp ipcp wins request
!
interface Dialer1
no ip address
shutdown
!
interface BVI1
ip address 192.168.2.254 255.255.255.0
ip verify unicast reverse-path
ip mask-reply
ip directed-broadcast
ip nat inside
ip virtual-reassembly
!
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 Dialer0
!
no ip http server
no ip http secure-server
ip nat inside source list 101 interface Dialer0 overload
ip nat inside source list 102 interface Dialer0 overload
!
access-list 101 permit ip 192.168.0.0 0.0.0.255 any
access-list 101 permit ip 192.168.2.0 0.0.0.255 any
access-list 102 permit ip 192.168.2.0 0.0.0.255 any
dialer-list 1 protocol ip permit
!
control-plane
!
bridge 1 protocol ieee
bridge 1 route ip
banner login ^CUnhautorized access prohibited!^C
!
line con 0
no modem enable
line aux 0
line vty 0 4
password 7 130D0D0A535E5C
login local
transport input ssh
!
scheduler max-task-time 5000
sntp server 193.204.114.233
end
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide