我有一个正在尝试桥接的 Cisco 860VAE-W。我之所以选择它,是因为我有兴趣了解一些有关 IOS 设备的知识——我刚开始学习这个非常原始的。
>show inventory
NAME: "C867VAE-W-A-K9", DESCR: "C867VAE-W-A-K9 chassis, Hw Serial#: GMK190700MQ, Hw Revision: 1.0"
PID: C867VAE-W-A-K9 , VID: V01 , SN: GMK190700MQ
我正在用一根摇摇晃晃的电线将它连接到澳大利亚 NBN( Superloop FTTN),但 VDSL2 似乎连接正常。
>show controller VDSL 0
Controller VDSL 0 is UP
Daemon Status: Up
XTU-R (DS) XTU-C (US)
Chip Vendor ID: 'BDCM' 'BDCM'
Chip Vendor Specific: 0x0000 0xB1BF
Chip Vendor Country: 0xB500 0xB500
Modem Vendor ID: 'CSCO' 'ALCB'
Modem Vendor Specific: 0x4602 0x0000
Modem Vendor Country: 0xB500 0x0F00
Serial Number Near: GMK190700MQ C867VAE 15.7(3)M4
Serial Number Far: AA1638FS1KT-23
Modem Version Near: 15.7(3)M4
Modem Version Far: 0xb1bf
Modem Status: TC Sync (Showtime!)
DSL Config Mode: VDSL2
Trained Mode: G.993.2 (VDSL2) Profile 17a
TC Mode: PTM
Selftest Result: 0x00
DELT configuration: disabled
DELT state: not running
Full inits: 1
Failed full inits: 0
Short inits: 0
Failed short inits: 2
Modem FW Version: 4.12L.08
Modem PHY Version: A2pv6F039x3.d24o
Trellis: ON ON
SRA: enabled enabled
SRA count: 1 1
Bit swap: enabled enabled
Bit swap count: 24 127
Line Attenuation: 27.5 dB 0.0 dB
Signal Attenuation: 0.0 dB 0.0 dB
Noise Margin: 6.9 dB 6.0 dB
Attainable Rate: 33699 kbits/s 9578 kbits/s
Actual Power: 12.7 dBm 7.4 dBm
Per Band Status: D1 D2 D3 U0 U1 U2 U3
Line Attenuation(dB): 22.3 49.5 63.9 15.2 38.7 N/A N/A
Signal Attenuation(dB): 27.4 48.9 64.2 15.2 38.1 56.0 N/A
Noise Margin(dB): 6.9 6.9 6.9 6.2 5.9 6.2 N/A
Total FECC: 77 208236
Total ES: 0 0
Total SES: 0 0
Total LOSS: 0 0
Total UAS: 155 155
Total LPRS: 0 0
Total LOFS: 0 0
Total LOLS: 0 0
DS Channel1 DS Channel0 US Channel1 US Channel0
Speed (kbps): 0 31192 0 9578
SRA Previous Speed: 0 0 0 0
Previous Speed: 0 0 0 0
Reed-Solomon EC: 0 77 948 208236
CRC Errors: 0 0 0 0
Header Errors: 0 0 0 0
Interleave (ms): 0.00 0.00 0.00 0.00
Actual INP: 2.01 44.00 4.00 42.00
Training Log : Stopped
Training Log Filename : flash:vdsllog.bin
我将 IOS 更新为15.7.3M4a,将 VDSL 固件更新为 ,A39x3并将 ROMMON 更新为15.3(3r)M3。
>show ver
Cisco IOS Software, C860 Software (C860VAEW-ADVSECURITYK9-M), Version 15.7(3)M4a, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2019 by Cisco Systems, Inc.
Compiled Mon 25-Mar-19 11:10 by prod_rel_team
ROM: System Bootstrap, Version 15.3(3r)M3, RELEASE SOFTWARE (fc1)
c867vae-w uptime is 19 minutes
System returned to ROM by reload at 23:02:44 AEST Wed Oct 30 2019
System image file is "flash:c860vaew-advsecurityk9-mz.SPA.157-3.M4a.bin"
Last reload type: Normal Reload
Last reload reason: Reload Command
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
export@cisco.com.
Cisco C867VAE-W-A-K9 (revision 1.0) with 385024K/32768K bytes of memory.
Processor board ID GMK190700MQ
1 DSL controller
1 Ethernet interface
3 FastEthernet interfaces
4 Gigabit Ethernet interfaces
1 ATM interface
1 terminal line
1 Virtual Private Network (VPN) Module
255K bytes of non-volatile configuration memory.
131072K bytes system flash allocated
Configuration register is 0x2102
我从whirlpool.net和该线程中的 IPoE 扭曲中获取了一个可能看起来很可能的设置,并且从那时起我一直在努力研究它startup-config:
!
version 15.7
no service pad
service timestamps debug datetime msec localtime show-timezone year
service timestamps log datetime msec localtime show-timezone year
no service password-encryption
!
hostname c867vae-w-a-k9
!
boot-start-marker
boot system flash:c860vaew-advsecurityk9-mz.SPA.157-3.M4a.bin
boot-end-marker
!
logging buffered 51200 warnings
!
no aaa new-model
wan mode dsl
clock timezone AEST 10 0
clock summer-time AEDT recurring 1 Sun Oct 2:00 1 Sun Apr 3:00
!
ip domain name local
ip cef
no ipv6 cef
!
crypto pki trustpoint TP-self-signed-3512251453
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3512251453
revocation-check none
rsakeypair TP-self-signed-3512251453
!
crypto pki certificate chain TP-self-signed-3512251453
certificate self-signed 01 nvram:IOS-Self-Sig#5.cer
!
archive
log config
logging enable
hidekeys
username <USERNAME> privilege 15 secret 5 <SECRET>
!
controller VDSL 0
operating mode vdsl2
firmware filename flash:VAEW_A_39x3_B39x3_24o.SSA.bin
sra
!
interface ATM0
no ip address
shutdown
no atm ilmi-keepalive
!
interface Ethernet0
description VDSL virtual interface for NBN FTTN
no ip address
no shutdown
bridge-group 1
!
interface FastEthernet0
description LAN FE0
no ip address
!
interface FastEthernet1
description LAN FE1
no ip address
!
interface FastEthernet2
description LAN FE2
no ip address
!
interface GigabitEthernet0
description LAN GE0 Connection to Orbi router
no ip address
!
interface GigabitEthernet1
description LAN GE1 Link for admin / monitoring
switchport access vlan 255
no ip address
!
interface GigabitEthernet2
description WAN GE2
no ip address
shutdown
duplex auto
speed auto
!
interface Wlan-GigabitEthernet0
description Internal switch interface connecting to the embedded AP
no ip address
!
interface Vlan1
no ip address
bridge-group 1
!
interface Vlan255
ip address 10.0.255.1 255.255.255.0
!
ip forward-protocol nd
ip http server
ip http secure-server
!
ip route 0.0.0.0 0.0.0.0 10.0.255.254
ip ssh version 2
!
snmp-server community <COMMUNITY STRING> RO
bridge 1 protocol ieee
!
line con 0
no modem enable
line aux 0
line 2
no activation-character
no exec
transport preferred none
transport input all
stopbits 1
line vty 0 4
login local
transport input ssh
!
ntp server au.pool.ntp.org
ntp server 0.au.pool.ntp.org
ntp server 1.au.pool.ntp.org
!
在我看来,这Ethernet0是 DSL 调制解调器使用的虚拟接口,因此 和vlan1已添加到bridge-group 1. 该网桥上的任何内容都没有获得 IP 地址(有意义),然后bridge 1 protocol ieee似乎是正确的选择。我真的不明白GE0是如何进入桥接设置的,但我想它适用于其他人。最后, GE1配置了 IP 地址,因此仍然可以通过网络监控和管理设备。
所以从我最初的理解来看,这个配置看起来很合理,而且 DSL 方面似乎正在工作。但是,当然,我无法让坐在 Cisco 后面的 Orbi 成功获得 DHCP 租约。
我一直在筛选 Cisco 文档;它们很全面,但可能太全面了?感觉就像大海捞针。
那么,是的,如何将 Cisco 860VAE-W 从 VDSL 桥接到以太网?