Tuesday, November 1, 2016

konfigurasi ACL Standar

konfigurasi ACL Standar
A. Topologi

B. Langkah-Langkah Konfigurasi

    masukkan ip server 
    address = 20.20.20.2
    subnet mask = 255.255.255.0

1. router 0

Router>enable
Router#configure terminal
Router(config)#interface FastEthernet0/0
Router(config-if)#ip address 10.10.10.1 255.255.255.0
Router(config-if)#no shutdown
Router(config-if)#exit

Router(config)#interface FastEthernet0/1
Router(config-if)#ip address 192.168.10.1 255.255.255.0
Router(config-if)#no shutdown
Router(config-if)#exit

Router(config)#interface Ethernet0/1/0
Router(config-if)#ip address 192.168.20.1 255.255.255.0
Router(config-if)#no shutdown
Router(config-if)#exit

Router(config)#router ospf 1
Router(config-router)#net 10.10.10.0 0.0.0.255 area 0
Router(config-router)#net 20.20.20.0 0.0.0.255 area 0
Router(config-router)#net 192.168.10.0 0.0.0.255 area 0
Router(config-router)#net 192.168.20.0 0.0.0.255 area 0
Router(config-router)#exit

2. router 1

Router>enable
Router#configure terminal
Router(config)#interface FastEthernet0/0
Router(config-if)#ip address 20.20.20.1 255.255.255.0
Router(config-if)#no shutdown
Router(config-if)#exit

Router(config)#interface FastEthernet0/1
Router(config-if)#ip address 10.10.10.2 255.255.255.0
Router(config-if)#no shutdown
Router(config-if)#exit

Router(config)#router ospf 1
Router(config-router)#net 10.10.10.0 0.0.0.255 area 0
Router(config-router)#net 20.20.20.0 0.0.0.255 area 0
Router(config-router)#net 192.168.10.0 0.0.0.255 area 0
Router(config-router)#net 192.168.20.0 0.0.0.255 area 0
Router(config-router)#exit

-----tambahkan perintah di bawah ini untuk mengaktifkan ACL

Router(config)#access-list 1 deny 192.168.10.0 0.0.0.255
Router(config)#access-list 1 permit any
Router(config)#int fa0/1
Router(config-if)#ip access-group 1 out
Router(config-if)#exit


C. Hasil Testing
    1. ping pc1 ke server harus reply



    2. ping pc 2 ke server harus destination 


0 comments:

Post a Comment