0% found this document useful (0 votes)
66 views12 pages

VPN Configuration Lab in Packet Tracer

Uploaded by

farouk.merdjana
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
66 views12 pages

VPN Configuration Lab in Packet Tracer

Uploaded by

farouk.merdjana
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd

vpn configuration lab using routers

in cisco packet tracer


In this tutorial we will learn how to configure and use vpn on [Link] will
learn to create a vpn tunnel between routers for safe communication.

Now as you can clearly see i have taken three routers here for showing vpn
configuration on [Link] is an example lab showing you how to configure
vpn tunnel using cisco packet tracer.

Total network take here are 4.


network [Link]/24

network [Link]/24
network [Link]/8

network [Link]/8

Now first thing we will do here in this lab is to assign ip address on each and every
interface of router and also assign ip address on computers taken here.

Advertisement

CONFIGURATION ON ROUTER R1:


Router>enable

Router#config t

Router(config)#host r1

r1(config)#int fa0/0

r1(config-if)#ip add [Link] [Link]

r1(config-if)#no shut

r1(config-if)#exit

r1(config)#int fa0/1

r1(config-if)#ip address [Link] [Link]

r1(config-if)#no shut

CONFIGURATION ON ROUTER R2:


Router>enable

Router#config t

Router(config)#host r2
r2(config)#int fa0/0

r2(config-if)#ip add [Link] [Link]

r2(config-if)#no shut

r2(config-if)#exit

r2(config)#int fa0/1

r2(config-if)#ip add [Link] [Link]

r2(config-if)#no shut

CONFIGURATION ON ROUTER R3:


Router>enable

Router#config t

Router(config)#host r3

r3(config)#int fa0/0

r3(config-if)#ip add [Link] [Link]

r3(config-if)#no shut

r3(config-if)#exit

r3(config)#int fa0/1

r3(config-if)#ip add [Link] [Link]

r3(config-if)#no shut

Advertisement
Now its time to do [Link] i am going to
configure default routing.

DEFAULT ROUTING CONFIGURATION ON ROUTER


R1:
r1>enable

r1#config t

Enter configuration commands, one per line. End with CNTL/Z.

r1(config)#ip route [Link] [Link] [Link]

r1(config)#

DEFAULT ROUTING CONFIGURATION ON ROUTER


r3:
r3>enable

r3#config t

Enter configuration commands, one per line. End with CNTL/Z.

r3(config)#ip route [Link] [Link] [Link]

r3(config)#

NOW CHECK THE CONNECTION BY PINGING EACH OTHER.

First we go to router r1 and ping with router r3:

r1#ping [Link]

Type escape sequence to abort.


Sending 5, 100-byte ICMP Echos to [Link], timeout is 2 seconds:

!!!!!

Success rate is 100 percent (5/5), round-trip min/avg/max = 26/28/33 ms

Advertisement

Now we go to router r3 and test network by pinging router r1 interface.

r3#ping [Link]

Type escape sequence to abort.

Sending 5, 100-byte ICMP Echos to [Link], timeout is 2 seconds:

!!!!!

Success rate is 100 percent (5/5), round-trip min/avg/max = 25/28/32 ms

you can clearly see both router pinging each other successfully.

NOW CREATE VPN TUNNEL


between R1 and R3:

FIRST CREATE A VPN TUNNEL ON ROUTER


R3:
r1#config t

r1(config)#interface tunnel 10

r1(config-if)#ip address [Link] [Link]


r1(config-if)#tunnel source fa0/1

r1(config-if)#tunnel destination [Link]

r1(config-if)#no shut

NOW CREATE A VPN TUNNEL ON ROUTER


R3:
r3#config t

r3(config)#interface tunnel 100

r3(config-if)#ip address [Link] [Link]

r3(config-if)#tunnel source fa0/0

r3(config-if)#tunnel destination [Link]

r3(config-if)#no shut

Now test communication between these two routers


again by pinging eah other:
1#ping [Link]

Type escape sequence to abort.

Sending 5, 100-byte ICMP Echos to [Link], timeout is 2 seconds:

!!!!!

Success rate is 100 percent (5/5), round-trip min/avg/max = 30/32/36 ms

r1#

r3#ping [Link]

Type escape sequence to abort.


Sending 5, 100-byte ICMP Echos to [Link], timeout is 2 seconds:

!!!!!

Success rate is 100 percent (5/5), round-trip min/avg/max = 33/45/83 ms

Now Do routing for created VPN Tunnel on Both Router


R and R3:

r1(config)#ip route [Link] [Link] [Link]

Advertisement

r3(config)#ip route [Link] [Link] [Link]

TEST VPN TUNNEL CONFIGURATION:


Now i am going to router R1 and test whether tunnel is created or not.

r1#show interfaces Tunnel 10

Tunnel10 is up, line protocol is up (connected)

Hardware is Tunnel

Internet address is [Link]/16

MTU 17916 bytes, BW 100 Kbit/sec, DLY 50000 usec,

reliability 255/255, txload 1/255, rxload 1/255

Encapsulation TUNNEL, loopback not set


Keepalive not set

Tunnel source [Link] (FastEthernet0/1), destination [Link]

Tunnel protocol/transport GRE/IP

Key disabled, sequencing disabled

Checksumming of packets disabled

Tunnel TTL 255

Fast tunneling enabled

Tunnel transport MTU 1476 bytes

Tunnel transmit bandwidth 8000 (kbps)

Tunnel receive bandwidth 8000 (kbps)

Last input never, output never, output hang never

Last clearing of "show interface" counters never

Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 1

Queueing strategy: fifo

Output queue: 0/0 (size/max)

5 minute input rate 32 bits/sec, 0 packets/sec

5 minute output rate 32 bits/sec, 0 packets/sec

52 packets input, 3508 bytes, 0 no buffer

Received 0 broadcasts, 0 runts, 0 giants, 0 throttles

0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort

0 input packets with dribble condition detected

52 packets output, 3424 bytes, 0 underruns

0 output errors, 0 collisions, 0 interface resets


0 unknown protocol drops

0 output buffer failures, 0 output buffers swapped out

Now going to Router R3 and test VPN Tunnel Creation:

r3#show interface Tunnel 100

Tunnel100 is up, line protocol is up (connected)

Hardware is Tunnel

Internet address is [Link]/16

MTU 17916 bytes, BW 100 Kbit/sec, DLY 50000 usec,

reliability 255/255, txload 1/255, rxload 1/255

Encapsulation TUNNEL, loopback not set

Keepalive not set

Tunnel source [Link] (FastEthernet0/0), destination [Link]

Tunnel protocol/transport GRE/IP

Key disabled, sequencing disabled

Checksumming of packets disabled

Tunnel TTL 255

Fast tunneling enabled

Tunnel transport MTU 1476 bytes

Tunnel transmit bandwidth 8000 (kbps)

Tunnel receive bandwidth 8000 (kbps)

Last input never, output never, output hang never


Last clearing of "show interface" counters never

Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 1

Queueing strategy: fifo

Output queue: 0/0 (size/max)

5 minute input rate 32 bits/sec, 0 packets/sec

5 minute output rate 32 bits/sec, 0 packets/sec

52 packets input, 3424 bytes, 0 no buffer

Received 0 broadcasts, 0 runts, 0 giants, 0 throttles

0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort

0 input packets with dribble condition detected

53 packets output, 3536 bytes, 0 underruns

0 output errors, 0 collisions, 0 interface resets

0 unknown protocol drops

HOW TO TRACE THE VPN TUNNEL PATH?

Advertisement

Now if you want to check what path vpn tunnel is using just go to any of the
computer i.e pc
and then ping anothr pc located in different [Link] then trace the path
using tracert.
Its result will show the path followed by VPN Tunnel created by you.

PC>ipconfig

FastEthernet0 Connection:(default port)

Link-local IPv6 Address.........: FE80::2E0:8FFF:FE0B:AEB2

IP Address......................: [Link]

Subnet Mask.....................: [Link]


Default Gateway.................: [Link]

PC>ping [Link]

Pinging [Link] with 32 bytes of data:

Reply from [Link]: bytes=32 time=61ms TTL=126

Reply from [Link]: bytes=32 time=55ms TTL=126

Reply from [Link]: bytes=32 time=55ms TTL=126

Reply from [Link]: bytes=32 time=57ms TTL=126

Ping statistics for [Link]:

Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 55ms, Maximum = 61ms, Average = 57ms

Advertisement

PC>tracert [Link]

Tracing route to [Link] over a maximum of 30 hops:

1 3 ms 0 ms 18 ms [Link]

2 35 ms 30 ms 30 ms [Link]

3 65 ms 59 ms 60 ms [Link]

Trace complete.

PC>

You might also like