IX2215
知人の薦めでヤフオクで落札。付属品なし。2台で送料込み5000円くらい。
2023年10月25日にオークション終了。26日夕方に代金支払い、29日午前着。
RJ45なシリアルコンソール=USBケーブルはAmazonで先に手配。
FWアップデート
申請しないと最新のファームウェアを手に入れられないので、PDFを印刷、捺印。
スキャンしたものをメール送信。
USBストレージからできなかったので、LAN経由で。
code:tmpwb.sh
python -m http.server port Router# config
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# ip dhcp enable
Router(config)# interface GigaEthernet0.0
Router(config-GigaEthernet0.0)# ip address dhcp receive-default
Router(config-GigaEthernet0.0)# ip tcp adjust-mss auto
Router(config-GigaEthernet0.0)# no shutdown
Router(config-GigaEthernet0.0)# exit
Router(config)# write memory
Building configuration...
% Warning: do NOT enter CNTL/Z while saving to avoid config corruption.
Router(config)# show ip dhcp-client summary
Interface GigaEthernet0.0
Client state is bound
Server ID is 192.168.1.1
Assigned address is 192.168.1.227/24
Time since address assigned is 39 seconds
% Downloading ...........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
HTTP transfer complete, 10939542 bytes, MD5 = 6918319dc7a1627ac039bb964431caba
% Check ...... done
% Erasing
Now erasing ix2215-ms-9.2.20.ldc .... done
% Update file name is ix2215-ms-10.8.21.ldc
% Writing ........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................... done
% Software update completed.
全般的な設定
config
hostname <IX2215のおなまえ>
username <おなまえ> password plain 1 <パスワード> administrator
OCN バーチャルコネクト対応(電話なし)
GE0にONUから、GE1にアクセスポイントからのLANケーブルを挿すパターン。(NEC公式)
ip ufs-cache max-entries 20000
ip ufs-cache enable
ip route default Tunnel0.0
ip dhcp enable
!
ipv6 ufs-cache max-entries 10000
ipv6 ufs-cache enable
ipv6 dhcp enable
!
proxy-dns ip enable
proxy-dns ip request both
!
ip dhcp profile dhcpv4-sv
dns-server 192.168.1.1
!
ipv6 dhcp client-profile dhcpv6-cl
information-request
option-request dns-servers
!
ipv6 dhcp server-profile dhcpv6-sv
dns-server dhcp
!
interface GigaEthernet0.0
no ip address
ipv6 enable
ipv6 dhcp client dhcpv6-cl
ipv6 nd proxy GigaEthernet1.0
no shutdown
!
interface GigaEthernet1.0
ip address 192.168.1.1/24
ip dhcp binding dhcpv4-sv
ipv6 enable
ipv6 dhcp server dhcpv6-sv
ipv6 nd ra enable
ipv6 nd ra other-config-flag
no shutdown
!
interface Tunnel0.0
tunnel mode map-e ocn
ip address map-e
ip tcp adjust-mss auto
ip napt enable
no shutdown
!
exit
!
ipv6 access-list block-list deny ip src any dest any
ipv6 access-list dhcpv6-list permit udp src any sport any dest any dport eq 546
ipv6 access-list dhcpv6-list permit udp src any sport any dest any dport eq 547
ipv6 access-list icmpv6-list permit icmp src any dest any
ipv6 access-list tunnel-list permit 4 src any dest any
ipv6 access-list other-list permit ip src any dest any
ipv6 access-list dynamic cache 65535
ipv6 access-list dynamic dflt-list access other-list
!
interface GigaEthernet0.0
ipv6 filter dhcpv6-list 1 in
ipv6 filter icmpv6-list 2 in
ipv6 filter tunnel-list 3 in
ipv6 filter block-list 100 in
ipv6 filter dhcpv6-list 1 out
ipv6 filter icmpv6-list 2 out
ipv6 filter tunnel-list 3 out
ipv6 filter dflt-list 100 out
exit
write memory
そのうち、OCNバーチャルコネクトのあれこれが終わってインターネットにつながるようになる。
参考文献