Hi Guys,
I'm having trouble with the initial setup of a Cisco 877w - I've managed to setup the connection externally with no issues, the router itself can PING hostnames and IP addresses externally but internal hosts won't route out and I just can't see why. ANY help is much appreciated.
Config has been configured solely through CLI and is as follows (i've omitted the crypto key and usernames/passwords for obvious reasons):
Current configuration : 3551 bytes
!
version 12.4
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname
!
boot-start-marker
boot-end-marker
!
no logging message-counter syslog
enable secret 5
!
no aaa new-model
!
!
dot11 syslog
!
dot11 ssid
vlan 1
authentication open
authentication key-management wpa
guest-mode
wpa-psk ascii 7
!
ip cef
!
!
no ip dhcp use vrf connected
ip dhcp excluded-address 192.168.50.1 192.168.50.100
!
ip dhcp pool LOCAL_POOL
network 192.168.50.0 255.255.255.0
dns-server 8.8.8.8 8.8.4.4
default-router 192.168.50.1
!
!
ip domain name
!
multilink bundle-name authenticated
!
!
!
!
archive
log config
hidekeys
!
!
!
bridge irb
!
!
interface ATM0
no ip address
shutdown
no atm ilmi-keepalive
dsl operating-mode auto
!
interface FastEthernet0
!
interface FastEthernet1
!
interface FastEthernet2
!
interface FastEthernet3
description WLAN_Interface
switchport access vlan 10
!
interface Dot11Radio0
no ip address
!
encryption vlan 1 mode ciphers aes-ccm
!
ssid
!
speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0 54.0
station-role root
!
interface Dot11Radio0.1
encapsulation dot1Q 1 native
ip virtual-reassembly
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 spanning-disabled
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
!
interface Vlan1
no ip address
ip virtual-reassembly
bridge-group 1
!
interface Vlan10
description WAN Interface
no ip address
no ip redirects
no ip unreachables
no ip proxy-arp
ip virtual-reassembly
pppoe enable group global
pppoe-client dial-pool-number 1
!
interface Dialer1
ip address negotiated
ip access-group ACL-OUTSIDE-IN in
ip access-group ACL-INSIDE-OUT out
ip mtu 1492
ip nat outside
ip virtual-reassembly
encapsulation ppp
dialer pool 1
ppp authentication chap pap callin
ppp chap hostname
ppp chap password 7
ppp pap sent-username password 7
!
interface BVI1
ip address 192.168.50.1 255.255.255.0
ip nat inside
ip virtual-reassembly
!
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 Dialer1
!
!
no ip http server
no ip http secure-server
ip nat source list INSIDE_NETWORK interface Dialer1 overload
!
ip access-list standard INSIDE_NETWORK
permit 192.168.50.0 0.0.0.255
!
ip access-list extended ACL-INSIDE-OUT
permit ip any any
ip access-list extended ACL-OUTSIDE-IN
deny ip any any log
!
!
!
!
!
control-plane
!
bridge 1 protocol ieee
bridge 1 route ip
banner motd ^CC
Unauthorized access to this device is prohibited!
^C
!
line con 0
password 7
logging synchronous
no modem enable
line aux 0
line vty 0 4
password 7
logging synchronous
login
transport input ssh
!
scheduler max-task-time 5000
end