Cisco Router 871w configuration step by step, your way to success

Video Statistics and Information

Video
Captions Word Cloud
Reddit Comments
Captions
hello everyone today I'm going to show you how to set up your cisco router so you can connect to the internet and you can connect your station species to that router using wireless connection we've got a lot of things to cover and just let's get started and as you can see this this router has no configuration at all yeah yeah so what we going to do we're going to collect fast ethernet for that pork into the our Ethernet provider and use that in interface top-level radio dealers to connect stations wirelessly to the Internet of course you can use ports five Ethernet from zero to three and you can connect your computers using a wired network not wired network like servers printers or whatever you want to so what we're going to do we're going to create two villains one would be your private bill and second will be your cash villain so you can share that connection with your clients or customers depends how are you going to use the route and where so let's get started first of all we need to set up and villains give it a name so we're going to create truthiness private and castillon just to verify you can see you God - Dina just created beyond 100 and beyond 200 next step will be well we need to add some basic configuration to keep your network secure they're not really important well they actually that important but it you can skip that if to have the internet connection but it's a good practice to put them on the router so that your network may be more secure and since it's like a basic housekeeping so you know everything should be running nice and smooth if you need more details about all those commands I recommend go to the Cisco website and find why and what for we putting all those commands on the router but I will be able to be boring but and it's quite important stuff that command will show did on the daytime maybe saying local time so she if you comes to the if you come to the troubleshooting you will see when did this happen and you know what time so that would help you with troubleshooting that's why I recommend to put all those commands it's quite a interesting command in which you limit the length of the password and few more commands [Music] we need to create a domain name so we can use SSH so we can access aging to the router remotely we have to create and bridge because that will allows to connect our wireless access point which is built which is built into the router with our internal theorem that's why we're going to create and pull that command bridge by army and even as more security we can disable the CVT globally Oh actually we just disabled on their interface on the wireless limited things as well now we're going to create i've encryption to our wireless connection so all we have to do just go into the wireless interface actually not a few good come on remember like I said it will be quite a lot of typing so you have to be patient okay now we're going to pull that encryption so we should be able to connect to the in wireless access point from our PC encryption now we have to add a villain and now we've got our options going to go for ciphers and now you can choose type of encryption and we're going to use AES - CCM Oh - that's it wpa2 which is quite strong that's for our bid on 100 and exactly the same for our beyond 200 which is our internal network and now we're going to create SSID so it means are we going to advertise our wireless network and they will be - not very creative you can name the way you like and now we're going to connect that a network with our villain and I'll exactly the same for the second and wireless network I think you can create up to 10 wireless SSID on this particular router but I'm not 100% sure I never really used more than two or maybe three but okay so we got our SSI deeds ready so all we have to do next is advertised our wireless network so that would be visible you can scan for those networks using your device right mobile phone Wireless or laptop or and PC with wireless card so before we do that we have to we have to enable multi in multiple SSID on the interface and see one come on for that okay I say and now advertise each wireless networks so scan and then now we're going to set up a set up our networks wireless not to networks wireless networks and we're going to use the sub interfaces for that and oh before we do that actually we need to put a password and advertise like I said advertise our networks so one step back create SSID and now for the password and attaching on each wireless interface so that command will enable multi SSID so if we can advertise each wireless network and now we need to pull their authentication and the password and the possible you're going to use ASCII and now we need to put their password you can choose any password we are going to do I'm just going to put us get villain not very clearly but for the purposes of this video it will be good enough and exactly the same for the second interface for the civil actually for a second for the second the wireless network [Music] Oh God mr. sit and now exactly the same [Music] and now possible saying I'm very creative or deny okay so now we can verify you can see that for password we can and we are going to encrypt that password using service possible encryption are at the moment just to put this the video for that video I like this without an encryption but what we have to do we just need to enable service possible infection and that possible to be encrypted and you won't be able to see it that's internal that's the password she influenced its memorizing in the shutdown mode got our friction for each VLAN interface that's our SSID I'm going to fix that console as well can you see we got that okay so we saw that next step is regulation area is create a soft interfaces for each wireless network [Music] just let's do it so the creating shot interface for the villain 100 that number year could be any number II like I mean over here you could just put 0.1 Han or whatever you like but for I decided to use the same number as villain number but don't need to be the same now we need to put them encapsulation and here you need to put the exact being a number that's important here you need to put the right one right here you can just choose anything so you're going to put one on this and you've got a option and we going to go for native and now we're going to put the accessories so it means those two wireless interfaces won't be able to communicate between each other Sony was going to separate those two wireless networks so internal network won't be able to see our guest Network so you're going to pull the access list on the interface and later on we're going to create this access Lee to prevent happening so it means that the fishnet will won't be able to reach our internal network I'm going to label CDT now we need to collect our Wireless and in turn is our wireless network and with the bridge interface and add few salons to keep our network secure okay so that's done and now second wireless network here on the same idea in VLAN 200 I access lists to prevent and so those two networks one communicate here I'm happening action oh come on he's actually the same not really quick - striper soon and here we're going to use a bridge group to okay we're getting there now it's a lot of typing but when we go through this everything should be much easier in okay that's gone down that now we're going to create our vans interface villains as the I I can interface to come up and we're not going to put any IP address on that interface what we're going to do we're going to pull IP addresses on the on a VDI interfaces which we're going to create in a minute the same basic come on key ball in that book secure and we're going to put IP not inside because that would be our internal network so that's important to remember and you have to fold that you probably you don't need to put that come on but I'm going to do it anyway think it's enabled by default and now the very important ones and connect our gear and 100 with bridge group one and a similar for the billion two hundred and exactly the same here like we've done or they interface VLAN 100 I see not inside and this one will be British group too okay so we see what we've got so far also you can see you've got no stoolie interfaces and now they are connected with our be rounds mobile machine and somehow is for the IP addresses on the DVI interfaces so goes to the interfaces which are important that when you're going to put the IP address on each one and that would be our two networks what would be for our guest network and second one will be without internal network so we can just choose it any range of addresses the world which you like depends of your needs so just put that IP addresses should come up with it now IP address for that interface 101 what 24 button type properly that's it and we need to add that car commander not inside so that's interface this that is done and the same for the second interface and once again my peerless say my peanuts inside say fellas configuration okay so what we're going to do next I'm going to create access-list actually going to overload our Fast Ethernet fall so our internal network should be able to collect the internet using fast ethernet for and that one port on the router and exactly the same for the second lady I do want to type too much and now we're going to create access this okay last one one two there's access with these news to connect our internal lands to the internet ones for the wireless for the guests wireless network on the second one is for our wireless and LAN network just and and zero zero why cause Mars and so it means our internal network can connect to any outside IP address or IP address in action okay so that's done now I mentioned this area and how are we going to prevent and accessing wireless internal and external well guest and the internal network are we going to prevent so those two network wireless networks can't communicate so now we're going to exceed another tool the access list which will prevent communicating those two wireless networks di I do and for me anything else so that's dumb so that access list will prevent from [Music] accessing our internal network called internal to access our guest Network and the same for the opposite so needs our internal network can access guest metal and the Gastner guest network connect sites the internal network key that make sense Nina you right and permit and it to any network save now we can see a lot so far our interfaces our access list here access to the Internet and in freelancing to access from one wireless network in Tanana and all over the stage mr. Randol bridge antenna stations reach long I have a protocol lady advice long by the same for the second one to yeah please so we've got that now we have to create DHCP pull addresses same basic configuration nothing very special create not once so that's our guest Network DNS servers going to use in public the MM servants default router and the main name and lease seven days okay and the same for the internal pool of addresses who once again nice one [Music] see now being same and be for round two doc do that one to my name please okay and IP excluded addresses so you can reserve some addresses our devices if you need to it's always handy to have some stairs mmm okay okay tie it properly I like that ten Suzie Wong [Music] and [Music] okay something where we go now now in our fast ethernet full interface IP address DHCP so we're going to worry about a default route we should receive this information from our DHCP server loving come on it's handy to know default and now you can put in the name of the access place which is 100 you created the area either and one can unreachable monkey proxy I pee now outside this hour out outside interface now we have to turn on the interfaces no chance you and our radio interface okay so we go their IP address now we need to connect our wired collection of switch ports to our internal network so in two things range and 0ly switchboard amount access seven alone so let's access for the our internal network and connect those two parts with our billing 200 what we can do we can Spanish events spanning-tree portfast so it means globally we can enable portfast on the switch who thinks VPD and is completely became an obsession with me and turn on the radio interface which insolent dot r AV zero moshe welcome equate universe can come up a lot more things give the router name hmm you so you can see integrals interfaces you start coming up to finish ratio we go up up up you can turn off interface yield more in order to use it and in that description me not you say what one into that description one generating so you can see involved the configuration is done we should be able to connection anything right okay so what was that wireless password well that's it that's a lantern so that's how it possible so try to connect today we're going to put a name security ha and as you can see is non interface zero station associated as an authentication DPA version 2 so now we should be able to ping the Internet okay and you can see we contain so that's the whole thing we can add a security and we can add an encryption so we can collect wirelessly for the hour of our router but we have to create a username and password so right okay before we do that we can enable secret and in iOS 15 Cisco are there another two type of encryption not only md5 but knowledge too so if you put enable secret this is what we got script Mabel and now all the other options are gir and tight so any time for this where you can see the options md5 which used to be and you've got a script and the essay sha-256 we go for script and now you can split Cisco not very creative are good for that purposes my name is Forrest secret Cisco that's it and you see because we called the limo length you have to change that okay now possible was accepted and you can see that password is encrypted and it's really long way up and you got the type of encryption and you know the possible so that iOS 15 allows you to put that extra security okay so whoa now we can do the same for their username create username or create actually user and possible for that user using the same idea just put a lien and privilege that's the highest possible level same outlet pipe it script secret home knob not very creative it is my shame we have to have the longer one let me go for the same sisqó home love SSH okay so just let's test it oh yeah we are in and go to the VT y9 1 x ET line your options uniform law in local [Music] transport input of course page after page now we need to create keys [Music] so now I'm going to create keys thing will take a while from there we'll pause the video right we are back took a while but finally there okay so now we've got SS a tornado we can even change into version 2 as you can see we've got quite a lot of options where you to weaken and timeout and authentication retries means how many times you'll be kicked out of that SSH session and after how many seconds and while we got what kind of option is on IP that's a sage timeout thing it's in seconds and so you can put like 30 seconds okay and the sage authentications well put to okay and now we can encrypt our passwords wires past one so I'm going be sure this possible description that will there oh we can actually I'm done in EM Ltd even a dollar message right and think that's it just the look configuration you can see this encrypted password you can see our SSH settings version 2 timeout authentication retries theorem and now you can see the talk radio and decoder and bssid so meets our wireless networks advertised so you can see them [Music] into the faces and yeah access to our network remotely you can even add something for next time ten minutes so now you can see Taman default its default somebody should change it fifteen just for learning focuses now we should see ya and the Latinos I was born bummer [Music] I said coming on okay so words well one more thing which we can do is add clock seconds because right now it's not ready correct so we can literally just at NTP server and now before we do that you can even set up a time zone and then time summer time and the times of clock and we got your options time zone and we can use these or just the PC time and the zero and we can summertime the name some week a week launch time okay what I know they forgot about a day someday launch October now it should be okay and now I this entity service Oh just few you one fail run on it one or two normal just in case prefer and now you see the nine o'clock oh yeah something take a while oh yeah I paused the video that's it I wasn't too bad as you can see got a lot of time I know what I think that's it thank you for watching I hope you found this video helpful and if you liked it please subscribe and once again enjoy try to set up your own router use your own feelings and just practice as much as you can and just keep doing it and finally you can understand more and more about cisco routers and switches so goodnight and all the best on your career and hopefully I can pull more videos if you like more about other Cisco routers about other Cisco equipment I've got some ideas like I said if you like this video please put some comment below and if you need anything else or you got any questions just ask hopefully if I able to answer it definitely we will do thank you
Info
Channel: Grzegorz Trzosek
Views: 18,411
Rating: undefined out of 5
Keywords: Cisco Router 871w, NAT, VLAN
Id: fzrncP88ru4
Channel Id: undefined
Length: 80min 49sec (4849 seconds)
Published: Thu May 18 2017
Related Videos
Note
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.