Перейти к содержанию

Базовая настройка (проверка)

Базовая настройка (проверка)


  • HQ1
HQ1#show ip int brief
Interface                  IP-Address      OK? Method Status                Protocol
FastEthernet0/0            unassigned      YES NVRAM  up                    up     
FastEthernet0/0.1000       10.0.100.1      YES NVRAM  up                    up     
FastEthernet0/0.1200       172.16.20.1     YES NVRAM  up                    up     
FastEthernet0/0.1300       30.78.21.1      YES NVRAM  up                    up     
FastEthernet0/1            unassigned      YES NVRAM  up                    up     
FastEthernet0/1.10         172.16.3.1      YES manual up                    up     
FastEthernet0/1.20         30.78.87.1      YES manual up                    up     
Loopback0                  1.1.1.1         YES NVRAM  up                    up        

HQ1#show ipv6 int brief
FastEthernet0/0            [up/up]
FastEthernet0/0.1000       [up/up]
FastEthernet0/0.1200       [up/up]
FastEthernet0/0.1300       [up/up]
    FE80::C002:7FF:FE2F:0
    2001:A:B:DEAD::1
FastEthernet0/1            [up/up]
FastEthernet0/1.10         [up/up]
    FE80::C002:7FF:FE2F:1
    2001:4::1
FastEthernet0/1.20         [up/up]
    FE80::C002:7FF:FE2F:1
    2001:3::1
Loopback0                  [up/up]
    FE80::C002:7FF:FE2F:0
    2001:A:B:1::1
  • SW1
SW1#show ip int brief
Interface              IP-Address      OK? Method Status                Protocol
GigabitEthernet0/0     unassigned      YES unset  up                    up
GigabitEthernet0/1     unassigned      YES unset  up                    up
GigabitEthernet0/2     unassigned      YES unset  down                  down
GigabitEthernet0/3     unassigned      YES unset  down                  down
GigabitEthernet1/0     unassigned      YES unset  up                    up
GigabitEthernet1/1     unassigned      YES unset  up                    up
GigabitEthernet1/2     unassigned      YES unset  down                  down
GigabitEthernet1/3     unassigned      YES unset  down                  down
GigabitEthernet2/0     unassigned      YES unset  up                    up
GigabitEthernet2/1     unassigned      YES unset  down                  down
GigabitEthernet2/2     unassigned      YES unset  down                  down
GigabitEthernet2/3     unassigned      YES unset  down                  down
GigabitEthernet3/0     unassigned      YES unset  down                  down
GigabitEthernet3/1     unassigned      YES unset  down                  down
GigabitEthernet3/2     unassigned      YES unset  down                  down
GigabitEthernet3/3     unassigned      YES unset  down                  down
Port-channel1          unassigned      YES unset  up                    up
Port-channel2          unassigned      YES unset  up                    up
Vlan1000               10.0.100.10     YES NVRAM  up                    up
  • SW2
SW2#show ip int brief
Interface              IP-Address      OK? Method Status                Protocol
GigabitEthernet0/0     unassigned      YES unset  up                    up
GigabitEthernet0/1     unassigned      YES unset  up                    up
GigabitEthernet0/2     unassigned      YES unset  up                    up
GigabitEthernet0/3     unassigned      YES unset  down                  down
GigabitEthernet1/0     unassigned      YES unset  down                  down
GigabitEthernet1/1     unassigned      YES unset  down                  down
GigabitEthernet1/2     unassigned      YES unset  down                  down
GigabitEthernet1/3     unassigned      YES unset  down                  down
GigabitEthernet2/0     unassigned      YES unset  up                    up
GigabitEthernet2/1     unassigned      YES unset  down                  down
GigabitEthernet2/2     unassigned      YES unset  down                  down
GigabitEthernet2/3     unassigned      YES unset  down                  down
GigabitEthernet3/0     unassigned      YES unset  down                  down
GigabitEthernet3/1     unassigned      YES unset  down                  down
GigabitEthernet3/2     unassigned      YES unset  down                  down
GigabitEthernet3/3     unassigned      YES unset  down                  down
Port-channel2          unassigned      YES unset  up                    up
Vlan1000               10.0.100.20     YES NVRAM  up                    up
  • SW3
SW3#show ip int brief
Interface              IP-Address      OK? Method Status                Protocol
GigabitEthernet0/0     unassigned      YES unset  down                  down
GigabitEthernet0/1     unassigned      YES unset  down                  down
GigabitEthernet0/2     unassigned      YES unset  up                    up
GigabitEthernet0/3     unassigned      YES unset  down                  down
GigabitEthernet1/0     unassigned      YES unset  up                    up
GigabitEthernet1/1     unassigned      YES unset  up                    up
GigabitEthernet1/2     unassigned      YES unset  down                  down
GigabitEthernet1/3     unassigned      YES unset  down                  down
GigabitEthernet2/0     unassigned      YES unset  up                    up
GigabitEthernet2/1     unassigned      YES unset  down                  down
GigabitEthernet2/2     unassigned      YES unset  down                  down
GigabitEthernet2/3     unassigned      YES unset  down                  down
GigabitEthernet3/0     unassigned      YES unset  down                  down
GigabitEthernet3/1     unassigned      YES unset  down                  down
GigabitEthernet3/2     unassigned      YES unset  down                  down
GigabitEthernet3/3     unassigned      YES unset  down                  down
Port-channel1          unassigned      YES unset  up                    up
Vlan1000               10.0.100.30     YES NVRAM  up                    up
  • SSH

  • Подключение к HQ1

    SW1#ssh 10.0.100.1
    Password:
    
    HQ1#
    
  • Подключение к HQ1 с пользователем radius

    SW1#ssh -l radius 10.0.100.1
    Password:
    
    HQ1>
    

    Не попадает сразу в привелигерованный режим.

    Проверка запросов к RADIUS серверу (на авторизацию запросы не поступают)

    HQ1#show aaa servers
    
    RADIUS: id 1, priority 1, host 172.16.20.20, auth-port 1812, acct-port 1813
         State: current UP, duration 1511s, previous duration 0s
         Dead: total time 0s, count 0
         Quarantined: No
         Authen: request 2, timeouts 1
                 Response: unexpected 0, server error 0, incorrect 0, time 104ms
                 Transaction: success 1, failure 0
         Author: request 0, timeouts 0
                 Response: unexpected 0, server error 0, incorrect 0, time 0ms
                 Transaction: success 0, failure 0
         Account: request 0, timeouts 0
                 Response: unexpected 0, server error 0, incorrect 0, time 0ms
                 Transaction: success 0, failure 0
         Elapsed time since counters last cleared: 25m
         Estimated Outstanding Access Transactions: 0
         Estimated Outstanding Accounting Transactions: 0
    

    Команда freeradius -X на SRV1 недоступна