I need help setting up ports to my FTP server, Im kinda new to cisco
so any help would be great. I’ve look at other posts and did what was
said in them but it is not working. I also have a lot of stuff in here that
i know i dont need…so again…any help would be great. heres the
config:
Current configuration : 6240 bytes
!
! Last configuration change at 01:24:59 EST Tue May 20 2008 by
smiley
! NVRAM config last updated at 16:59:26 EST Mon May 19 2008 by
smiley
!
version 12.4
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname SmileyRouter
!
boot-start-marker
boot-end-marker
!
logging buffered 51200 warnings
enable secret 5 $1$nVpg$uFKNkOrgkWJO.gw8h5./D1
enable password 7 060F562E1C5E59165C1E
!
aaa new-model
!
!
aaa authentication login default local
!
!
aaa session-id common
clock timezone EST -5
!
!
!
crypto pki trustpoint TP-self-signed-247831090
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-247831090
revocation-check none
rsakeypair TP-self-signed-247831090
!
!
!
dot11 ssid EveryOneElse
vlan 20
authentication open
guest-mode
!
dot11 ssid SmileyOnCisco
vlan 1
authentication open
authentication key-management wpa
wpa-psk ascii 7 106C000D061F17182E01093925322A
!
ip cef
no ip dhcp use vrf connected
ip dhcp excluded-address 10.45.0.1 10.45.0.2
ip dhcp excluded-address 10.11.0.1 10.11.0.2
!
ip dhcp pool Internal-Net
import all
network 10.45.0.0 255.255.0.0
default-router 10.45.0.1
domain-name SmileyDomain.com
lease 7
!
ip dhcp pool Vlan20
import all
network 10.11.0.0 255.255.0.0
default-router 10.11.0.1
domain-name SmileyDomain.com
lease 7
!
!
ip inspect name MYFW tcp
ip inspect name MYFW udp
no ip domain lookup
ip domain name SmileyDomain.com
!
!
!
username **** privilege 15 password 7 ****************
archive
log config
hidekeys
!
!
!
bridge irb
!
!
interface FastEthernet0
duplex full
speed 100
spanning-tree portfast
!
interface FastEthernet1
duplex full
speed 100
spanning-tree portfast
!
interface FastEthernet2
duplex full
speed 100
spanning-tree portfast
!
interface FastEthernet3
duplex full
speed 100
spanning-tree portfast
!
interface FastEthernet4
ip address dhcp
ip access-group Internet-Inbound-ACL in
ip access-group Internet-Inbound-ACL out
ip inspect MYFW out
ip nat outside
ip virtual-reassembly
ip tcp adjust-mss 1460
speed 100
full-duplex
no cdp enable
!
interface Dot11Radio0
no ip address
no dot11 extension aironet
!
encryption vlan 1 mode ciphers tkip
!
ssid EveryOneElse
!
ssid SmileyOnCisco
!
speed basic-11.0 54.0
channel 2442
station-role root
no cdp enable
!
interface Dot11Radio0.1
description Main Wireless LAN
encapsulation dot1Q 1 native
no cdp enable
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 spanning-disabled
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
!
interface Dot11Radio0.20
description Guest Wireless LAN
encapsulation dot1Q 20
ip address 10.11.0.1 255.255.0.0
ip access-group Guest-ACL in
ip inspect MYFW out
ip nat inside
ip virtual-reassembly
no cdp enable
!
interface Vlan1
description Internal Network
ip address 10.10.10.1 255.255.255.248
ip nat inside
ip virtual-reassembly
ip tcp adjust-mss 1452
bridge-group 1
bridge-group 1 spanning-disabled
!
interface BVI1
description Bridge to Internal Network
ip address 10.45.0.1 255.255.0.0
ip nat inside
ip virtual-reassembly
!
router rip
network 10.0.0.0
!
ip route 0.0.0.0 0.0.0.0 dhcp
!
ip http server
ip http access-class 23
ip http authentication local
ip http secure-server
ip http timeout-policy idle 60 life 86400 requests 10000
ip nat inside source list 1 interface FastEthernet4 overload
ip nat inside source static 10.45.0.2 interface FastEthernet4
ip nat inside source static tcp 10.45.0.2 80 interface FastEthernet4 80
ip nat inside source static tcp 10.45.0.2 21 98.28.70.10 21
extendable
!
ip access-list extended Guest-ACL
deny ip any 10.45.0.0 0.0.255.255
permit ip any any
ip access-list extended Internet-Inbound-ACL
permit udp any eq bootps any eq bootpc
permit icmp any any echo
permit icmp any any echo-reply
permit icmp any any traceroute
permit gre any any
permit esp any any
permit tcp any any eq ftp
permit tcp any any
permit udp any any
permit icmp any any
permit igmp any any
permit ip any any
permit ahp any any
permit eigrp any any
permit ipinip any any
permit nos any any
permit ospf any any
permit pcp any any
!
access-list 1 permit 10.45.0.0 0.0.255.255
access-list 1 permit 10.11.0.0 0.0.255.255
access-list 23 permit 10.10.10.0 0.0.0.7
no cdp run
!
!
!
control-plane
!
bridge 1 route ip
!
line con 0
password 7 ******
no modem enable
line aux 0
line vty 0 4
access-class 23 in
privilege level 15
password 7 ********
transport input telnet ssh
!
scheduler max-task-time 5000
!
scheduler max-task-time 5000
sntp server 204.123.2.72
sntp broadcast client
!
webvpn cef
end
also as its configured i can not telnet to the router from any IP
the server in at 10.45.0.2
and Fast 4 is assigned by my ISP