Difference between revisions of "Device configuration for MupsBox"

From Mupssoft Wiki
Jump to navigation Jump to search
Line 64: Line 64:
  
 
<p>MupsBox will sort the data and display only the values found. These data can be exported to Excel for further processing.</p>
 
<p>MupsBox will sort the data and display only the values found. These data can be exported to Excel for further processing.</p>
 +
 +
<h2>'''Cisco - IOS L2 v12'''</h2>Minimum* configuration:
 +
 +
'''BASIC ETHERNET CONFIGURATION - SUMMARY STEPS'''
 +
 +
1.    Router> '''enable'''
 +
 +
2.    Router# '''configure terminal'''
 +
 +
3.    Router(config)# '''interface gigabitethernet''' 0/0
 +
 +
4.    Router(config-if)# '''ip adress''' 10.9.90.201 255.255.255.0
 +
 +
5.    Router(config-if)# '''ipv6 address''' 2001:db8:B40:4000::101/64
 +
 +
6.    Router(config-if)# '''no shutdown'''
 +
 +
7.    Router(config-if)# '''exit'''
 +
 +
8.    Router(config)# '''ip route 0.0.0.0 0.0.0.0''' 10.9.90.1
 +
 +
9.    Router(config)# '''ipv6 route''' ::/0 2001:db8:B40:4000::1
 +
 +
 +
 +
 +
 +
'''BASIC SSH CONFIGURATION - SUMMARY STEPS'''
 +
 +
10.    Router(config)# '''ip domain name''' domain.local
 +
 +
11.    Router(config)# '''hostname''' MBRouter
 +
 +
12.    MBRouter(config)# '''crypto key generate rsa modulus 1024'''
 +
 +
13.    MBRouter(config)# '''username''' ''root'' privilege 15 '''secret''' ''PassW0rd''
 +
 +
14.    MBRouter(config)# '''aaa new-model'''
 +
 +
15.    MBRouter(config)# '''line vty 0 4'''
 +
 +
16.    MBRouter(config-line)# '''transport input ssh'''
 +
 +
MBRouter(config-line)# '''exit'''
 +
 +
 +
 +
'''ADDITIONAL CONFIGURATION - SUMMARY STEPS'''
 +
 +
17.    MBRouter(config)# '''enable secret''' PassW0rd
 +
 +
18.    MBRouter(config)# '''service password-encryption'''
 +
 +
19.    MBRouter(config)# '''end'''
 +
 +
20.    MBRouter# '''copy running-config startup-config'''
 +
 +
  
  

Revision as of 23:43, 10 June 2021

Device Configuration

Introduction

This section is not a tutorial on configuration different manufacturers. Here you will find the minimum settings in the CLI (for access from MUPSBOX to devices).


Vendor Configuration

Cisco - IOS v15

Minimum* configuration:

BASIC ETHERNET CONFIGURATION - SUMMARY STEPS

1. Router> enable

2. Router# configure terminal

3. Router(config)# interface gigabitethernet 0/0

4. Router(config-if)# ip adress 10.9.90.201 255.255.255.0

5. Router(config-if)# ipv6 address 2001:db8:B40:4000::101/64

6. Router(config-if)# no shutdown

7. Router(config-if)# exit

8. Router(config)# ip route 0.0.0.0 0.0.0.0 10.9.90.1

9. Router(config)# ipv6 route ::/0 2001:db8:B40:4000::1



BASIC SSH CONFIGURATION - SUMMARY STEPS

10. Router(config)# ip domain name domain.local

11. Router(config)# hostname MBRouter

12. MBRouter(config)# crypto key generate rsa modulus 1024

13. MBRouter(config)# username root privilege 15 secret PassW0rd

14. MBRouter(config)# aaa new-model

15. MBRouter(config)# line vty 0 4

16. MBRouter(config-line)# transport input ssh

MBRouter(config-line)# exit


ADDITIONAL CONFIGURATION - SUMMARY STEPS

17. MBRouter(config)# enable secret PassW0rd

18. MBRouter(config)# service password-encryption

19. MBRouter(config)# end

20. MBRouter# copy running-config startup-config


MupsBox will sort the data and display only the values found. These data can be exported to Excel for further processing.

Cisco - IOS L2 v12

Minimum* configuration:

BASIC ETHERNET CONFIGURATION - SUMMARY STEPS

1. Router> enable

2. Router# configure terminal

3. Router(config)# interface gigabitethernet 0/0

4. Router(config-if)# ip adress 10.9.90.201 255.255.255.0

5. Router(config-if)# ipv6 address 2001:db8:B40:4000::101/64

6. Router(config-if)# no shutdown

7. Router(config-if)# exit

8. Router(config)# ip route 0.0.0.0 0.0.0.0 10.9.90.1

9. Router(config)# ipv6 route ::/0 2001:db8:B40:4000::1



BASIC SSH CONFIGURATION - SUMMARY STEPS

10. Router(config)# ip domain name domain.local

11. Router(config)# hostname MBRouter

12. MBRouter(config)# crypto key generate rsa modulus 1024

13. MBRouter(config)# username root privilege 15 secret PassW0rd

14. MBRouter(config)# aaa new-model

15. MBRouter(config)# line vty 0 4

16. MBRouter(config-line)# transport input ssh

MBRouter(config-line)# exit


ADDITIONAL CONFIGURATION - SUMMARY STEPS

17. MBRouter(config)# enable secret PassW0rd

18. MBRouter(config)# service password-encryption

19. MBRouter(config)# end

20. MBRouter# copy running-config startup-config



Cisco - ASA

Minimum* configuration. ASA Version 8.2(5):

BASIC ETHERNET CONFIGURATION - SUMMARY STEPS

1. Switch> enable

2. Switch# configure terminal

3. Switch(config)# interface gigabitethernet 0/0

4. Switch(config-if)# no switchport

5. Switch(config-if)# ip adress 10.9.90.201 255.255.255.0

6. Switch(config-if)# exit

7. Switch(config)# ip route 0.0.0.0 0.0.0.0 10.9.90.1


BASIC SSH CONFIGURATION - SUMMARY STEPS

8. Router(config)# ip domain name domain.local

9. Router(config)# hostname MBRouter

10. MBRouter(config)# crypto key generate rsa modulus 1024

11. MBRouter(config)# username root privilege 15 secret PassW0rd

12. MBRouter(config)# aaa new-model

13. MBRouter(config)# line vty 0 4

14. MBRouter(config-line)# transport input ssh

MBRouter(config-line)# exit


ADDITIONAL CONFIGURATION - SUMMARY STEPS

15. MBRouter(config)# enable secret PassW0rd

16. MBRouter(config)# service password-encryption

17. MBRouter(config)# end

18. MBRouter# copy running-config startup-config


MikroTik

Minimum configuration for RouterOS V6 (with "zero" configuration)

BASIC ETHERNET CONFIGURATION - SUMMARY STEPS

1. [admin@MikroTik] > ip address add address=172.17.22.4/24 interface=ether1

2. [admin@MikroTik] > ip route add gateway=172.17.22.1

3. [admin@MikroTik] > ipv6 address add address=2001:db8:b40:4002::4/64 interface=ether1

4. [admin@MikroTik] > ipv6 route add gateway=2001:db8:b40:4002::1

5. [admin@MikroTik] > system identity set name=MBMikroTik

6. [admin@MBMikroTik] > ip service disable telnet,ftp,www,api

7. [admin@MBMikroTik] > user add name=mupsbox password=PassW0rd group=full

8. [admin@MBMikroTik] > user remove admin

DLink DGS

Minimum* configuration:

BASIC ETHERNET CONFIGURATION - SUMMARY STEPS

1. DGS-1210-28MP/ME:5# config ipif System ipaddress 172.17.22.2/24

2. DGS-1210-28MP/ME:5#config ipif System ipv6 ipv6address 2001:db8:b40:4002::2/64

3. DGS-1210-28MP/ME:5# create iproute default 172.17.22.1

4. DGS-1210-28MP/ME:5# create ipv6route default 2001:db8:b40:4002::1

5. DGS-1210-28MP/ME:5# enable ssh

6. DGS-1210-28MP/ME:5# enable password encryption

7. DGS-1210-28MP/ME:5# create account admin mupsbox

8. DGS-1210-28MP/ME:5# save

Huawei AR100

Minimum* configuration:

BASIC ETHERNET CONFIGURATION - SUMMARY STEPS

1. <Huawei> system-view

2. [Huawei] interface GigabitEthernet 0/0/0

3. [Huawei-GigabitEthernet0/0/0] undo portswhich

4. [Huawei-GigabitEthernet0/0/0] ip address 172.17.22.5 255.255.255.0

5. [Huawei-GigabitEthernet0/0/0] quit

6. [Huawei] ip route-static 0.0.0.0 0.0.0.0 172.17.22.1

7. [Huawei] save


HP Procurve

Minimum* configuration:

BASIC ETHERNET CONFIGURATION - SUMMARY STEPS

1. ProCurve Switch 2510-48# config

2. ProCurve Switch 2510-48(config)# hostname MBHP-2510

3. MBHP-2510(config)# vlan 1

4. MBHP-2510(vlan-1)# ip address 172.17.44.2/24

5. MBHP-2510(vlan-1)# exit

6. MBHP-2510(config)# ip default-gateway 172.17.44.1


BASIC SSH CONFIGURATION - SUMMARY STEPS

7. MBHP-2510(config)# ip ssh

8. MBHP-2510(config)# crypto key generate ssh

9. MBHP-2510(config)# password manager

10. MBHP-2510(config)# aaa authentication login privilege-mode

11. MBHP-2510(config)# aaa authentication ssh login tacacs local

12. MBHP-2510(config)# aaa authentication ssh enable tacacs local

13. MBHP-2510(config)# write memory


Juniper SRX

Minimum* configuration:

BASIC CONFIGURATION - SUMMARY STEPS

1. root@% cli

2. root> configure

3. root# set system host-name MBSRX100b

4. root# set system root-authentication plain-text-password

New password: password

Retype new password: password

5. root# set system login user mupsbox class super-user authentication plain-text-password

6. root# commit


BASIC ETHERNET CONFIGURATION - SUMMARY STEPS

7. root@MBSRX100b# set interfaces fe-0/0/0 unit 0 family inet address 172.17.44.4/24

8. root@MBSRX100b# set routing-options static route 0.0.0.0/0 next-hop 172.17.44.1

9. root@MBSRX100b# delete security zones security-zone untrust interfaces fe-0/0/0

10. root@MBSRX100b# set security zones security-zone internal interfaces fe-0/0/0 host-inbound-traffic system-services ping

11. root@MBSRX100b# set security zones security-zone internal interfaces fe-0/0/0 host-inbound-traffic system-services ssh

12. root@MBSRX100b# commit


Juniper SSG

Minimum* configuration:

BASIC CONFIGURATION - SUMMARY STEPS

1. root-> set hostname MBSSG5

2.MBSSG5-> set admin name mupsbox

3. MBSSG5-> set admin password PassW0rd

4. MBSSG5-> set interface bgroup0 ip 172.17.44.5/24

5. MBSSG5-> set route 0.0.0.0/0 interface bgroup0 gateway 172.17.44.1

6. MBSSG5-> save

7. MBSSG5-> set interface bgroup0 manage ssh

8. MBSSG5-> set ssh enable