EasyManua.ls Logo

Cisco CISCO851-K9 - 851 Integrated Services Router User Manual

Cisco CISCO851-K9 - 851 Integrated Services Router
196 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Page #1 background imageLoading...
Page #1 background image
Corporate Headquarters
Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134-1706
USA
http://www.cisco.com
Tel: 408 526-4000
800 553-NETS (6387)
Fax: 408 526-4100
Cisco 850 Series and Cisco 870 Series
Access Routers Software
Configuration
Guide
Text Part Number: OL-5332-01

Table of Contents

Question and Answer IconNeed help?

Do you have a question about the Cisco CISCO851-K9 - 851 Integrated Services Router and is the answer not in the manual?

Cisco CISCO851-K9 - 851 Integrated Services Router Specifications

General IconGeneral
ModelCISCO851-K9
Device TypeRouter
Enclosure TypeDesktop
Connectivity TechnologyWired
Flash Memory32 MB
Data Link ProtocolEthernet, Fast Ethernet
Authentication MethodRADIUS, TACACS+
WirelessNo
VPN SupportYes
FirewallYes
Operating SystemCisco IOS
Weight2.2 lbs
LAN Ports4 x 10/100
Routing ProtocolBGP, EIGRP, OSPF
Encryption AlgorithmDES, AES, 3DES
Compliant StandardsIEEE 802.1D, IEEE 802.1Q
FeaturesDHCP support, NAT support, VPN support, VLAN support
Interfaces1 x console - RJ-45 - management, 4 x Fast Ethernet - RJ-45 - LAN, 1 x Fast Ethernet - RJ-45 - WAN
Dimensions10.1 in x 7.9 in x 1.8 in

Summary

Preface

Audience

Identifies the intended audience for the configuration guide.

Document Organization

Outlines the structure and content of the guide for easy navigation.

Document Conventions

Details the formatting, symbols, and command syntax conventions used.

Related Documentation

Lists other Cisco publications providing related information on routers.

Obtaining Documentation and Service Requests

Provides information on obtaining documentation and submitting service requests.

Basic Router Configuration

Interface Port Labels

Lists supported interfaces and their associated port labels on routers.

Viewing Default Router Configuration

Explains how to view the router's default configuration on startup.

Information Needed for Configuration

Lists essential information required prior to network configuration.

Configuring Basic Router Parameters

Covers configuring global parameters, interfaces, and command-line access.

Configuring Static Routes

Describes how to manually configure fixed routing paths through the network.

Configuring Dynamic Routes

Explains how network protocols adjust paths automatically based on traffic/topology.

Configuring RIP Routing Protocol

Details the steps to configure the Routing Information Protocol (RIP).

Configuring Enhanced IGRP

Explains how to configure the Enhanced Interior Gateway Routing Protocol (EIGRP).

Sample Network Deployments

Ethernet-Based Network Deployments

Provides configuration examples for Ethernet-based network deployments.

DSL-Based Network Deployments

Provides configuration examples for DSL-based network deployments.

Configuring PPP over Ethernet with NAT

Configuring Virtual Private Dialup Network (VPDN) Group Number

Enables communication through the router using a single IP address.

Configuring Fast Ethernet WAN Interfaces

Configures the router's Fast Ethernet WAN interfaces for PPPoE.

Configuring the Dialer Interface

Configures a dialer interface for handling client traffic and PPPoE sessions.

Configuring Network Address Translation (NAT)

Sets up NAT to translate private IP addresses to public ones.

PPPoE with NAT Configuration Example

Shows a sample configuration file for the PPPoE scenario with NAT.

Verifying PPPoE and NAT Configuration

Details commands to verify the PPPoE and NAT configuration.

Configuring PPP over ATM with NAT

Configuring the Dialer Interface for ATM

Configures a dialer interface for PPPoA sessions on ATM interfaces.

Configuring the ATM WAN Interface

Details steps to configure the ATM interface for WAN connection.

Configuring ADSL Signaling

Covers the default configuration settings for ADSL signaling.

Configuring SHDSL Signaling

Details the steps to configure SHDSL signaling for the DSL controller.

Configuring NAT for ATM WAN

Sets up NAT for the ATM WAN interface with dynamic translation.

PPPoA with NAT Configuration Example

Shows a sample configuration file for the PPPoA scenario with NAT.

Configuring a LAN with DHCP and VLANs

DHCP Overview

Explains DHCP's role in automatic IP address allocation for clients.

Configuring DHCP Server

Details steps to configure the router to act as a DHCP server.

Configuring VLANs

Describes how to configure VLANs to segment networks into logical groups.

Assigning Switch Ports to VLANs

Explains how to assign specific switch ports to configured VLANs.

Verifying VLAN Configuration

Provides commands to view and verify the configured VLAN setup.

Configuring a VPN Using Easy VPN and an IPSec Tunnel

Configure the IKE Policy

Sets up the Internet Key Exchange (IKE) policy for VPN negotiation.

Configure Group Policy Information

Defines attributes to be downloaded to the remote VPN client.

Apply Mode Configuration to the Crypto Map

Applies mode configuration to the crypto map for IKE queries.

Enable Policy Lookup via AAA

Enables policy lookup through the Authentication, Authorization, and Accounting (AAA) model.

Configure IPSec Transforms and Protocols

Defines acceptable combinations of IPSec security protocols and algorithms.

Configure IPSec Crypto Method and Parameters

Configures dynamic crypto map entries for IPSec negotiation.

Apply the Crypto Map to the Physical Interface

Applies crypto maps to interfaces for evaluating IPSec traffic.

Create an Easy VPN Remote Configuration

Sets up the Easy VPN remote configuration and assigns it to the outgoing interface.

Verifying Easy VPN Configuration

Shows commands to verify the configured Easy VPN settings.

Configuring VPNs Using an IPSec Tunnel and Generic Routing Encapsulation

GRE Tunnels Overview

Explains GRE tunnels for VPNs between routers and remote devices.

Configuring the IKE Policy for VPN

Sets up the Internet Key Exchange (IKE) policy for VPN negotiation.

Configuring Group Policy Information for VPN

Defines attributes to be downloaded to the remote VPN client.

Enabling Policy Lookup via AAA for VPN

Enables policy lookup through AAA for VPN configurations.

Configuring IPSec Transforms and Protocols for VPN

Defines acceptable combinations of IPSec security protocols and algorithms.

Configuring IPSec Crypto Method and Parameters for VPN

Configures crypto map entries for IPSec negotiation.

Applying Crypto Map to Physical Interface for VPN

Applies crypto maps to interfaces for evaluating IPSec traffic.

Configuring a GRE Tunnel

Details steps to configure a GRE tunnel for VPN connections.

Configuring a Simple Firewall

Configuring Access Lists for Firewall

Creates access lists to prevent unauthorized traffic from reaching the network.

Configuring Inspection Rules

Defines firewall inspection rules for TCP, UDP, and application protocols.

Applying ACLs and Inspection Rules to Interfaces

Applies access lists and inspection rules to network interfaces.

Simple Firewall Configuration Example

Shows a sample configuration file for a simple firewall scenario.

Configuring a Wireless LAN Connection

Configuring the Root Radio Station

Creates and configures the root radio station for the wireless LAN.

Configuring Bridging on VLANs

Configures integrated routing and bridging on VLANs for wireless connectivity.

Configuring Radio Station Subinterfaces

Configures subinterfaces for each root station on the wireless interface.

Wireless LAN Configuration Example

Shows a sample configuration file for a wireless LAN scenario.

Sample Configuration

Sample Configuration Overview

Shows a consolidated sample configuration integrating previous chapters' features.

Additional Configuration Options

Configuring Security Features

Covers authentication, authorization, and accounting (AAA) for router security.

Configuring Dial Backup and Remote Management

Details dial backup and remote management capabilities for router connectivity.

Troubleshooting Router Issues

Provides guidance on identifying and resolving router problems.

Configuring Security Features

Authentication, Authorization, and Accounting (AAA)

Explains AAA as the primary framework for implementing router security features.

Configuring AutoSecure

Simplifies security configuration by disabling vulnerable services and enabling defenses.

Configuring Access Lists (ACLs)

Details how to permit or deny network traffic based on IP addresses and protocols.

Configuring a CBAC Firewall

Configures a stateful firewall by inspecting packets and monitoring connection states.

Configuring Cisco IOS Firewall IDS

Enhances firewall protection by taking action on policy-violating packets.

Configuring VPNs

Covers site-to-site and remote access VPNs using IPSec and GRE.

Configuring Dial Backup and Remote Management

Dial Backup Feature Activation Methods

Details the three methods available to activate the dial backup feature.

Dial Backup Feature Limitations

Lists the limitations and support summaries for the dial backup feature.

Configuring Dial Backup and Remote Management via Console/Auxiliary Port

Explains how to configure dial backup and remote management using console/aux ports.

Configuring Dial Backup and Remote Management via ISDN S/T Port

Details configuring dial backup and remote management using the ISDN S/T port.

Troubleshooting

Troubleshooting Getting Started

Provides initial steps and connection requirements for troubleshooting.

Before Contacting Support

Lists information to have ready before contacting Cisco or a reseller.

ADSL Connection Troubleshooting

Provides steps to verify and troubleshoot ADSL connection issues.

SHDSL Connection Troubleshooting

Offers guidance on verifying and troubleshooting SHDSL connection problems.

ATM Troubleshooting Commands

Lists essential commands for troubleshooting ATM interfaces.

Software Upgrade Methods

Describes various methods available for upgrading router software.

Recovering a Lost Password

Provides steps to recover lost enable or enable-secret passwords.

Managing Router with SDM

Introduces the Cisco SDM tool for router configuration and monitoring.

Cisco IOS Software Basic Skills

Configuring Router from a PC

Explains how to configure the router using terminal emulation software on a PC.

Understanding Cisco IOS Command Modes

Describes the hierarchical structure of Cisco IOS command modes.

Getting Help with Commands

Explains how to use the question mark (?) and arrow keys for command assistance.

Setting Enable Passwords

Details commands for setting secure and unencrypted passwords for EXEC mode.

Entering Global Configuration Mode

Guides users on how to enter global configuration mode for router changes.

Using Commands Effectively

Provides tips on abbreviating commands and handling CLI errors.

Saving Configuration Changes

Explains how to save running configuration changes to NVRAM.

Cisco IOS Software Basics Summary

Summarizes key Cisco IOS software basics and command usage tips.

Where to Go Next

Directs users to relevant chapters for further configuration tasks.

Concepts

ADSL Technology Overview

Explains ADSL technology for high-speed data transmission over phone lines.

SHDSL Technology Overview

Describes SHDSL technology for symmetrical high-speed data transmission.

Network Protocols Overview

Explains how network protocols enable data transfer between sources and destinations.

Routing Protocol Options

Lists and briefly describes available routing protocols like RIP and EIGRP.

PPP Authentication Protocols

Explains PAP and CHAP for authenticating PPP sessions.

TACACS+ Protocol

Describes TACACS+ for remote access authentication and security services.

Network Interfaces

Details supported network interface protocols like Ethernet and ATM.

Dial Backup Concept

Explains dial backup for providing protection against WAN downtime.

Network Address Translation (NAT) Concept

Describes NAT's mechanism for privately addressed networks to access registered networks.

Easy IP (Phase 1) Concept

Combines NAT and PPP/IPCP for automatic WAN IP address negotiation.

Easy IP (Phase 2) Concept

Combines DHCP server and relay for IP network configuration.

Quality of Service (QoS) Parameters

Describes QoS parameters for providing better service to selected network traffic.

Access Lists Concept

Explains how access lists approximate session filtering.

ROM Monitor

Entering the ROM Monitor

Guides users on how to access the ROM monitor via console port.

ROM Monitor Commands

Lists available commands to interact with the ROM monitor.

ROM Monitor Command Descriptions

Describes the syntax and usage of common ROM monitor commands.

Disaster Recovery with TFTP Download

Details loading software via TFTP from ROM monitor for disaster recovery.

Configuration Register

Explains the virtual configuration register and its function.

Console Download

Describes downloading software or config files via the console port.

ROM Monitor Debug Commands

Lists ROM monitor debugging commands for analyzing system issues.

Exiting the ROM Monitor

Explains how to exit ROM monitor mode and boot the Cisco IOS image.

Common Port Assignments

TCP and UDP Port Assignments

Lists currently assigned TCP and UDP port numbers for network services.

Related product manuals