From 67cf327632531ad25f704a624ad1244263620a42 Mon Sep 17 00:00:00 2001 From: Sebastian Rieger Date: Fri, 16 Dec 2016 12:53:44 +0100 Subject: [PATCH] =?UTF-8?q?new=20=C3=9Cbung=203=20using=20LXC=20without=20?= =?UTF-8?q?wanem?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- .../kommprot-lab3-wanem.virl | 677 ++++++++++-------- ...ot-lab3-wanem_without_false_arp_entry.virl | 541 -------------- GIT-VIRL-HS-Fulda/topology.virl | 121 ++++ 3 files changed, 489 insertions(+), 850 deletions(-) delete mode 100644 GIT-VIRL-HS-Fulda/Kommunikationsnetze und -protokolle (Bachelor AI)/kommprot-lab3-wanem_without_false_arp_entry.virl create mode 100644 GIT-VIRL-HS-Fulda/topology.virl diff --git a/GIT-VIRL-HS-Fulda/Kommunikationsnetze und -protokolle (Bachelor AI)/kommprot-lab3-wanem.virl b/GIT-VIRL-HS-Fulda/Kommunikationsnetze und -protokolle (Bachelor AI)/kommprot-lab3-wanem.virl index 1fbf3d9..3bc6fdf 100644 --- a/GIT-VIRL-HS-Fulda/Kommunikationsnetze und -protokolle (Bachelor AI)/kommprot-lab3-wanem.virl +++ b/GIT-VIRL-HS-Fulda/Kommunikationsnetze und -protokolle (Bachelor AI)/kommprot-lab3-wanem.virl @@ -1,14 +1,101 @@ - - + + eigrp false + ! IOS Config generated on 2015-09-06 21:22 +! by autonetkit_0.18.1 +! +hostname Router-A +boot-start-marker +boot-end-marker +! +vrf definition Mgmt-intf +! + address-family ipv4 + exit-address-family + ! + address-family ipv6 + exit-address-family +! +! +! +no aaa new-model +! +! +ip cef +ipv6 unicast-routing +ipv6 cef +! +! +service timestamps debug datetime msec +service timestamps log datetime msec +no service password-encryption +no service config +enable password cisco +ip classless +ip subnet-zero +no ip domain lookup +line vty 0 4 + transport input ssh telnet + exec-timeout 720 0 + password cisco + login +line con 0 + password cisco +! +no cdp run +! +! +interface Loopback0 + description Loopback + ip address 192.168.0.2 255.255.255.255 +! +interface GigabitEthernet0/0 + description OOB Management + vrf forwarding Mgmt-intf + ! Configured on launch + no ip address + duplex full + speed auto + no shutdown +! +interface GigabitEthernet0/1 + description to wanEM + ip address 192.168.101.2 255.255.255.252 + duplex full + speed auto + no shutdown +! +interface GigabitEthernet0/2 + description to server-1 + ip address 192.168.1.1 255.255.255.0 + duplex full + speed auto + no shutdown +! +! +! + +! +ip route 0.0.0.0 0.0.0.0 192.168.101.1 +! +end + + + + + + + + + false ! IOS Config generated on 2015-09-06 21:22 ! by autonetkit_0.18.1 ! -hostname Router-A +hostname Router-B boot-start-marker boot-end-marker ! @@ -51,7 +138,7 @@ no cdp run ! interface Loopback0 description Loopback - ip address 192.168.0.2 255.255.255.255 + ip address 192.168.0.3 255.255.255.255 ! interface GigabitEthernet0/0 description OOB Management @@ -64,33 +151,154 @@ interface GigabitEthernet0/0 ! interface GigabitEthernet0/1 description to wanEM - ip address 192.168.101.2 255.255.255.252 + ip address 192.168.102.2 255.255.255.252 + ip ospf cost 1 duplex full speed auto no shutdown ! interface GigabitEthernet0/2 - description to server-1 - ip address 192.168.1.1 255.255.255.0 + description to server-2 + ip address 192.168.2.1 255.255.255.0 + ip ospf cost 1 duplex full speed auto no shutdown ! ! ! - -! -ip route 0.0.0.0 0.0.0.0 192.168.101.1 -! +ip route 0.0.0.0 0.0.0.0 192.168.102.1 + ! end - - + + + + + + flat + + + + + + + ! IOSvL2 Config generated on 2015-12-11 21:04 +! by autonetkit_0.18.1 +! +version 15.2 +service timestamps debug datetime msec +service timestamps log datetime msec +no service password-encryption +service compress-config +no service config +enable password cisco +ip classless +ip subnet-zero +no ip domain lookup +! +line vty 0 4 +transport input ssh telnet +exec-timeout 720 0 +password cisco +login +! +line con 0 +password cisco +! +hostname Switch-A +! +boot-start-marker +boot-end-marker +! +! +! +no aaa new-model +! +! +! +! +! +! +! +! +ip cef +no ipv6 cef +! +! +spanning-tree mode pvst +spanning-tree extend system-id +! +vlan internal allocation policy ascending +! +! +! +! +vrf definition Mgmt-intf +! + address-family ipv4 + exit-address-family + ! + address-family ipv6 + exit-address-family +! +! +! +! +! +interface Loopback0 + description Loopback +! +interface GigabitEthernet0/0 + description OOB management + ! Configured on launch + no switchport + no ip address + no shutdown +! +interface GigabitEthernet0/1 + description to Router-B + switchport access vlan 2 + switchport mode access + no shutdown +! +interface GigabitEthernet0/2 + description to Server-A + switchport access vlan 2 + switchport mode access + shutdown +! +interface GigabitEthernet0/3 + description to Server-B + switchport access vlan 2 + switchport mode access + no shutdown +! +! +ip forward-protocol nd +! +no ip http server +no ip http secure-server +! +! +! +! +! +! +control-plane +! +! +! +end + + false + + + - - + false #cloud-config @@ -158,193 +366,160 @@ write_files: nameserver 8.8.8.8 - + - + - false - ifconfig eth1 up 192.168.101.1 netmask 255.255.255.252 - ifconfig eth2 up 192.168.102.1 netmask 255.255.255.252 + #cloud-config +bootcmd: +- ln -s -t /etc/rc.d /etc/rc.local +hostname: ISP +manage_etc_hosts: true +runcmd: +- start ttyS0 +- systemctl start getty@ttyS0.service +- systemctl start rc-local +- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config +- echo "UseDNS no" >> /etc/ssh/sshd_config +- service ssh restart +- service sshd restart +users: +- default +- gecos: User configured by VIRL Configuration Engine 0.23.9 + lock-passwd: false + name: cisco + plain-text-passwd: cisco + shell: /bin/bash + ssh-authorized-keys: + - VIRL-USER-SSH-PUBLIC-KEY + sudo: ALL=(ALL) ALL +write_files: +- path: /etc/init/ttyS0.conf + owner: root:root + content: | + # ttyS0 - getty + # This service maintains a getty on ttyS0 from the point the system is + # started until it is shut down again. + start on stopped rc or RUNLEVEL=[12345] + stop on runlevel [!12345] + respawn + exec /sbin/getty -L 115200 ttyS0 vt102 + permissions: '0644' +- path: /etc/systemd/system/dhclient@.service + content: | + [Unit] + Description=Run dhclient on %i interface + After=network.target + [Service] + Type=oneshot + ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease + RemainAfterExit=yes + owner: root:root + permissions: '0644' +- path: /etc/rc.local + owner: root:root + permissions: '0755' + content: |- + #!/bin/sh + ifconfig eth1 up 192.168.101.1 netmask 255.255.255.252 + ifconfig eth2 up 192.168.102.1 netmask 255.255.255.252 - dhclient eth0 - dhclient eth3 + dhclient eth0 + dhclient eth3 - route add default gw 172.16.1.254 eth3 - route add -net 192.168.101.0/30 gw 192.168.101.2 dev eth1 - route add -net 192.168.1.0/24 gw 192.168.101.2 dev eth1 - route add -net 192.168.102.0/30 gw 192.168.102.2 dev eth2 - route add -net 192.168.2.0/24 gw 192.168.102.2 dev eth2 + echo 1 > /proc/sys/net/ipv4/ip_forward + + route add default gw 172.16.1.1 eth3 + + route add -net 192.168.101.0/30 gw 192.168.101.2 dev eth1 + route add -net 192.168.1.0/24 gw 192.168.101.2 dev eth1 + + route add -net 192.168.102.0/30 gw 192.168.102.2 dev eth2 + route add -net 192.168.2.0/24 gw 192.168.102.2 dev eth2 iptables -t nat -A POSTROUTING -o eth3 -j MASQUERADE - iptables -A FORWARD -i eth2 -j ACCEPT - iptables -A FORWARD -i eth1 -j ACCEPT - /sbin/tc qdisc add dev eth2 root handle 1:1 netem delay 100ms loss 5% - service ssh start + iptables -P FORWARD ACCEPT + iptables -F FORWARD + /sbin/tc qdisc add dev eth2 root handle 1:1 netem delay 100ms loss 5% + service ssh start + hostname ISP - exit 0 + exit 0 + - - - - - - - - false - ! IOS Config generated on 2015-09-06 21:22 -! by autonetkit_0.18.1 -! -hostname Router-B -boot-start-marker -boot-end-marker -! -vrf definition Mgmt-intf -! - address-family ipv4 - exit-address-family - ! - address-family ipv6 - exit-address-family -! -! -! -no aaa new-model -! -! -ip cef -ipv6 unicast-routing -ipv6 cef -! -! -service timestamps debug datetime msec -service timestamps log datetime msec -no service password-encryption -no service config -enable password cisco -ip classless -ip subnet-zero -no ip domain lookup -line vty 0 4 - transport input ssh telnet - exec-timeout 720 0 - password cisco - login -line con 0 - password cisco -! -no cdp run -! -! -interface Loopback0 - description Loopback - ip address 192.168.0.3 255.255.255.255 -! -interface GigabitEthernet0/0 - description OOB Management - vrf forwarding Mgmt-intf - ! Configured on launch - no ip address - duplex full - speed auto - no shutdown -! -interface GigabitEthernet0/1 - description to wanEM - ip address 192.168.102.2 255.255.255.252 - ip ospf cost 1 - duplex full - speed auto - no shutdown -! -interface GigabitEthernet0/2 - description to server-2 - ip address 192.168.2.1 255.255.255.0 - ip ospf cost 1 - duplex full - speed auto - no shutdown -! -! -! -ip route 0.0.0.0 0.0.0.0 192.168.102.1 - ! -end - - - + + + - + false - #cloud-config -bootcmd: -- ln -s -t /etc/rc.d /etc/rc.local -hostname: Server-B -manage_etc_hosts: true - -runcmd: -- start ttyS0 -- systemctl start getty@ttyS0.service -- systemctl start rc-local -- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config -- echo "UseDNS no" >> /etc/ssh/sshd_config -- service ssh restart -- service sshd restart -users: -- default -- gecos: User configured by VIRL Configuration Engine 0.18.9 - lock-passwd: false - name: cisco - plain-text-passwd: cisco - shell: /bin/bash - ssh-authorized-keys: - - VIRL-USER-SSH-PUBLIC-KEY - sudo: ALL=(ALL) ALL -write_files: -- path: /etc/init/ttyS0.conf - owner: root:root - content: | - # ttyS0 - getty - # This service maintains a getty on ttyS0 from the point the system is - # started until it is shut down again. - start on stopped rc or RUNLEVEL=[12345] - stop on runlevel [!12345] - respawn - exec /sbin/getty -L 115200 ttyS0 vt102 - permissions: '0644' -- path: /etc/systemd/system/dhclient@.service - content: | - [Unit] - Description=Run dhclient on %i interface - After=network.target - [Service] - Type=oneshot - ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease - RemainAfterExit=yes - owner: root:root - permissions: '0644' -- path: /etc/rc.local - owner: root:root - permissions: '0755' - content: |- - #!/bin/sh -e - ifconfig eth1 up 192.168.2.100 netmask 255.255.255.0 - route del default - route add default gw 192.168.2.1 - echo "nameserver 8.8.8.8" >/etc/resolv.conf - exit 0 + #cloud-config +bootcmd: +- ln -s -t /etc/rc.d /etc/rc.local +hostname: Server-B +manage_etc_hosts: true + +runcmd: +- start ttyS0 +- systemctl start getty@ttyS0.service +- systemctl start rc-local +- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config +- echo "UseDNS no" >> /etc/ssh/sshd_config +- service ssh restart +- service sshd restart +users: +- default +- gecos: User configured by VIRL Configuration Engine 0.18.9 + lock-passwd: false + name: cisco + plain-text-passwd: cisco + shell: /bin/bash + ssh-authorized-keys: + - VIRL-USER-SSH-PUBLIC-KEY + sudo: ALL=(ALL) ALL +write_files: +- path: /etc/init/ttyS0.conf + owner: root:root + content: | + # ttyS0 - getty + # This service maintains a getty on ttyS0 from the point the system is + # started until it is shut down again. + start on stopped rc or RUNLEVEL=[12345] + stop on runlevel [!12345] + respawn + exec /sbin/getty -L 115200 ttyS0 vt102 + permissions: '0644' +- path: /etc/systemd/system/dhclient@.service + content: | + [Unit] + Description=Run dhclient on %i interface + After=network.target + [Service] + Type=oneshot + ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease + RemainAfterExit=yes + owner: root:root + permissions: '0644' +- path: /etc/rc.local + owner: root:root + permissions: '0755' + content: |- + #!/bin/sh -e + ifconfig eth1 up 192.168.2.100 netmask 255.255.255.0 + route del default + route add default gw 192.168.2.1 + echo "nameserver 8.8.8.8" >/etc/resolv.conf + exit 0 - + - - - - + false #cloud-config @@ -412,130 +587,14 @@ write_files: # started until it is shut down again. nameserver 8.8.8.8 - - - - - - ! IOSvL2 Config generated on 2015-12-11 21:04 -! by autonetkit_0.18.1 -! -version 15.2 -service timestamps debug datetime msec -service timestamps log datetime msec -no service password-encryption -service compress-config -no service config -enable password cisco -ip classless -ip subnet-zero -no ip domain lookup -! -line vty 0 4 -transport input ssh telnet -exec-timeout 720 0 -password cisco -login -! -line con 0 -password cisco -! -hostname Switch-A -! -boot-start-marker -boot-end-marker -! -! -! -no aaa new-model -! -! -! -! -! -! -! -! -ip cef -no ipv6 cef -! -! -spanning-tree mode pvst -spanning-tree extend system-id -! -vlan internal allocation policy ascending -! -! -! -! -vrf definition Mgmt-intf -! - address-family ipv4 - exit-address-family - ! - address-family ipv6 - exit-address-family -! -! -! -! -! -interface Loopback0 - description Loopback -! -interface GigabitEthernet0/0 - description OOB management - ! Configured on launch - no switchport - no ip address - no shutdown -! -interface GigabitEthernet0/1 - description to Router-B - switchport access vlan 2 - switchport mode access - no shutdown -! -interface GigabitEthernet0/2 - description to Server-A - switchport access vlan 2 - switchport mode access - shutdown -! -interface GigabitEthernet0/3 - description to Server-B - switchport access vlan 2 - switchport mode access - no shutdown -! -! -ip forward-protocol nd -! -no ip http server -no ip http secure-server -! -! -! -! -! -! -control-plane -! -! -! -end - - false - - - - + - - - - - - - + + + + + + + + diff --git a/GIT-VIRL-HS-Fulda/Kommunikationsnetze und -protokolle (Bachelor AI)/kommprot-lab3-wanem_without_false_arp_entry.virl b/GIT-VIRL-HS-Fulda/Kommunikationsnetze und -protokolle (Bachelor AI)/kommprot-lab3-wanem_without_false_arp_entry.virl deleted file mode 100644 index 7369f28..0000000 --- a/GIT-VIRL-HS-Fulda/Kommunikationsnetze und -protokolle (Bachelor AI)/kommprot-lab3-wanem_without_false_arp_entry.virl +++ /dev/null @@ -1,541 +0,0 @@ - - - - - - eigrp - false - ! IOS Config generated on 2015-09-06 21:22 -! by autonetkit_0.18.1 -! -hostname Router-A -boot-start-marker -boot-end-marker -! -vrf definition Mgmt-intf -! - address-family ipv4 - exit-address-family - ! - address-family ipv6 - exit-address-family -! -! -! -no aaa new-model -! -! -ip cef -ipv6 unicast-routing -ipv6 cef -! -! -service timestamps debug datetime msec -service timestamps log datetime msec -no service password-encryption -no service config -enable password cisco -ip classless -ip subnet-zero -no ip domain lookup -line vty 0 4 - transport input ssh telnet - exec-timeout 720 0 - password cisco - login -line con 0 - password cisco -! -no cdp run -! -! -interface Loopback0 - description Loopback - ip address 192.168.0.2 255.255.255.255 -! -interface GigabitEthernet0/0 - description OOB Management - vrf forwarding Mgmt-intf - ! Configured on launch - no ip address - duplex full - speed auto - no shutdown -! -interface GigabitEthernet0/1 - description to wanEM - ip address 192.168.101.2 255.255.255.252 - duplex full - speed auto - no shutdown -! -interface GigabitEthernet0/2 - description to server-1 - ip address 192.168.1.1 255.255.255.0 - duplex full - speed auto - no shutdown -! -! -! - -! -ip route 0.0.0.0 0.0.0.0 192.168.101.1 -! -end - - - - - - - - - - false - #cloud-config -bootcmd: -- ln -s -t /etc/rc.d /etc/rc.local -hostname: Client -manage_etc_hosts: true -runcmd: -- start ttyS0 -- systemctl start getty@ttyS0.service -- systemctl start rc-local -- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config -- echo "UseDNS no" >> /etc/ssh/sshd_config -- service ssh restart -- service sshd restart -users: -- default -- gecos: User configured by VIRL Configuration Engine 0.18.9 - lock-passwd: false - name: cisco - plain-text-passwd: cisco - shell: /bin/bash - ssh-authorized-keys: - - VIRL-USER-SSH-PUBLIC-KEY - sudo: ALL=(ALL) ALL -write_files: -- path: /etc/init/ttyS0.conf - owner: root:root - content: | - # ttyS0 - getty - # This service maintains a getty on ttyS0 from the point the system is - # started until it is shut down again. - start on stopped rc or RUNLEVEL=[12345] - stop on runlevel [!12345] - respawn - exec /sbin/getty -L 115200 ttyS0 vt102 - permissions: '0644' -- path: /etc/systemd/system/dhclient@.service - content: | - [Unit] - Description=Run dhclient on %i interface - After=network.target - [Service] - Type=oneshot - ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease - RemainAfterExit=yes - owner: root:root - permissions: '0644' -- path: /etc/rc.local - owner: root:root - permissions: '0755' - content: |- - !/bin/sh -e - ifconfig eth1 up 192.168.1.100 netmask 255.255.255.0 - route del default - route add default gw 192.168.1.1 - #arp -i eth1 -s 192.168.1.1 aa:aa:aa:aa:aa:aa - exit 0 - -- path: /etc/resolv.conf - owner: root:root - permissions: '0644' - content: | - #by Patrick. - nameserver 8.8.8.8 - - - - - - - false - ifconfig eth1 up 192.168.101.1 netmask 255.255.255.252 - ifconfig eth2 up 192.168.102.1 netmask 255.255.255.252 - - dhclient eth0 - dhclient eth3 - - route add default gw 172.16.1.254 eth3 - route add -net 192.168.101.0/30 gw 192.168.101.2 dev eth1 - route add -net 192.168.1.0/24 gw 192.168.101.2 dev eth1 - route add -net 192.168.102.0/30 gw 192.168.102.2 dev eth2 - route add -net 192.168.2.0/24 gw 192.168.102.2 dev eth2 - - iptables -t nat -A POSTROUTING -o eth3 -j MASQUERADE - iptables -A FORWARD -i eth2 -j ACCEPT - iptables -A FORWARD -i eth1 -j ACCEPT - /sbin/tc qdisc add dev eth2 root handle 1:1 netem delay 100ms loss 5% - service ssh start - - hostname ISP - - exit 0 - - - - - - - - - - false - ! IOS Config generated on 2015-09-06 21:22 -! by autonetkit_0.18.1 -! -hostname Router-B -boot-start-marker -boot-end-marker -! -vrf definition Mgmt-intf -! - address-family ipv4 - exit-address-family - ! - address-family ipv6 - exit-address-family -! -! -! -no aaa new-model -! -! -ip cef -ipv6 unicast-routing -ipv6 cef -! -! -service timestamps debug datetime msec -service timestamps log datetime msec -no service password-encryption -no service config -enable password cisco -ip classless -ip subnet-zero -no ip domain lookup -line vty 0 4 - transport input ssh telnet - exec-timeout 720 0 - password cisco - login -line con 0 - password cisco -! -no cdp run -! -! -interface Loopback0 - description Loopback - ip address 192.168.0.3 255.255.255.255 -! -interface GigabitEthernet0/0 - description OOB Management - vrf forwarding Mgmt-intf - ! Configured on launch - no ip address - duplex full - speed auto - no shutdown -! -interface GigabitEthernet0/1 - description to wanEM - ip address 192.168.102.2 255.255.255.252 - ip ospf cost 1 - duplex full - speed auto - no shutdown -! -interface GigabitEthernet0/2 - description to server-2 - ip address 192.168.2.1 255.255.255.0 - ip ospf cost 1 - duplex full - speed auto - no shutdown -! -! -! -ip route 0.0.0.0 0.0.0.0 192.168.102.1 - ! -end - - - - - - - - false - #cloud-config -bootcmd: -- ln -s -t /etc/rc.d /etc/rc.local -hostname: Server-B -manage_etc_hosts: true - -runcmd: -- start ttyS0 -- systemctl start getty@ttyS0.service -- systemctl start rc-local -- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config -- echo "UseDNS no" >> /etc/ssh/sshd_config -- service ssh restart -- service sshd restart -users: -- default -- gecos: User configured by VIRL Configuration Engine 0.18.9 - lock-passwd: false - name: cisco - plain-text-passwd: cisco - shell: /bin/bash - ssh-authorized-keys: - - VIRL-USER-SSH-PUBLIC-KEY - sudo: ALL=(ALL) ALL -write_files: -- path: /etc/init/ttyS0.conf - owner: root:root - content: | - # ttyS0 - getty - # This service maintains a getty on ttyS0 from the point the system is - # started until it is shut down again. - start on stopped rc or RUNLEVEL=[12345] - stop on runlevel [!12345] - respawn - exec /sbin/getty -L 115200 ttyS0 vt102 - permissions: '0644' -- path: /etc/systemd/system/dhclient@.service - content: | - [Unit] - Description=Run dhclient on %i interface - After=network.target - [Service] - Type=oneshot - ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease - RemainAfterExit=yes - owner: root:root - permissions: '0644' -- path: /etc/rc.local - owner: root:root - permissions: '0755' - content: |- - #!/bin/sh -e - ifconfig eth1 up 192.168.2.100 netmask 255.255.255.0 - route del default - route add default gw 192.168.2.1 - echo "nameserver 8.8.8.8" >/etc/resolv.conf - exit 0 - - - - - - - - - - false - #cloud-config -bootcmd: -- ln -s -t /etc/rc.d /etc/rc.local -hostname: Server-A -manage_etc_hosts: true -runcmd: -- start ttyS0 -- systemctl start getty@ttyS0.service -- systemctl start rc-local -- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config -- echo "UseDNS no" >> /etc/ssh/sshd_config -- service ssh restart -- service sshd restart -users: -- default -- gecos: User configured by VIRL Configuration Engine 0.18.9 - lock-passwd: false - name: cisco - plain-text-passwd: cisco - shell: /bin/bash - ssh-authorized-keys: - - VIRL-USER-SSH-PUBLIC-KEY - sudo: ALL=(ALL) ALL -write_files: -- path: /etc/init/ttyS0.conf - owner: root:root - content: | - # ttyS0 - getty - # This service maintains a getty on ttyS0 from the point the system is - # started until it is shut down again. - start on stopped rc or RUNLEVEL=[12345] - stop on runlevel [!12345] - respawn - exec /sbin/getty -L 115200 ttyS0 vt102 - permissions: '0644' -- path: /etc/systemd/system/dhclient@.service - content: | - [Unit] - Description=Run dhclient on %i interface - After=network.target - [Service] - Type=oneshot - ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease - RemainAfterExit=yes - owner: root:root - permissions: '0644' -- path: /etc/rc.local - owner: root:root - permissions: '0755' - content: |- - #!/bin/sh -e - ifconfig eth1 up 192.168.2.200 netmask 255.255.255.0 - route del default - route add default gw 192.168.2.1 - exit 0 - -- path: /etc/resolv.conf - owner: root:root - permissions: '0644' - content: | - # ttyS0 - getty - # This service maintains a getty on ttyS0 from the point the system is - # started until it is shut down again. - nameserver 8.8.8.8 - - - - - - - ! IOSvL2 Config generated on 2015-12-11 21:04 -! by autonetkit_0.18.1 -! -version 15.2 -service timestamps debug datetime msec -service timestamps log datetime msec -no service password-encryption -service compress-config -no service config -enable password cisco -ip classless -ip subnet-zero -no ip domain lookup -! -line vty 0 4 -transport input ssh telnet -exec-timeout 720 0 -password cisco -login -! -line con 0 -password cisco -! -hostname Switch-A -! -boot-start-marker -boot-end-marker -! -! -! -no aaa new-model -! -! -! -! -! -! -! -! -ip cef -no ipv6 cef -! -! -spanning-tree mode pvst -spanning-tree extend system-id -! -vlan internal allocation policy ascending -! -! -! -! -vrf definition Mgmt-intf -! - address-family ipv4 - exit-address-family - ! - address-family ipv6 - exit-address-family -! -! -! -! -! -interface Loopback0 - description Loopback -! -interface GigabitEthernet0/0 - description OOB management - ! Configured on launch - no switchport - no ip address - no shutdown -! -interface GigabitEthernet0/1 - description to Router-B - switchport access vlan 2 - switchport mode access - no shutdown -! -interface GigabitEthernet0/2 - description to Server-A - switchport access vlan 2 - switchport mode access - shutdown -! -interface GigabitEthernet0/3 - description to Server-B - switchport access vlan 2 - switchport mode access - no shutdown -! -! -ip forward-protocol nd -! -no ip http server -no ip http secure-server -! -! -! -! -! -! -control-plane -! -! -! -end - - false - - - - - - - - - - - - - diff --git a/GIT-VIRL-HS-Fulda/topology.virl b/GIT-VIRL-HS-Fulda/topology.virl new file mode 100644 index 0000000..835cc8b --- /dev/null +++ b/GIT-VIRL-HS-Fulda/topology.virl @@ -0,0 +1,121 @@ + + + + + + + + #cloud-config +bootcmd: +- ln -s -t /etc/rc.d /etc/rc.local +hostname: lxc-1 +manage_etc_hosts: true +runcmd: +- systemctl start rc-local +- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config +- echo "UseDNS no" >> /etc/ssh/sshd_config +- service ssh restart +- service sshd restart +users: +- default +- gecos: User configured by VIRL Configuration Engine 0.23.9 + lock-passwd: false + name: cisco + plain-text-passwd: cisco + shell: /bin/bash + ssh-authorized-keys: + - VIRL-USER-SSH-PUBLIC-KEY + sudo: ALL=(ALL) ALL +write_files: +- path: /etc/systemd/system/dhclient@.service + content: | + [Unit] + Description=Run dhclient on %i interface + After=network.target + [Service] + Type=oneshot + ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease + RemainAfterExit=yes + owner: root:root + permissions: '0644' +- path: /etc/rc.local + owner: root:root + permissions: '0755' + content: |- + #!/bin/sh + ifconfig eth1 up + dhclient -nw eth1 + systemctl start dhclient@eth1.service + # add second nic connecting clients + ifconfig eth2 10.10.0.1 netmask 255.255.0.0 + # set default gateway to VIRL host in flat1 + route del -net default + route add -net default gw 172.16.1.1 + # change dns + echo "nameserver 8.8.8.8" >/etc/resolv.conf + echo "nameserver 8.8.4.4" >>/etc/resolv.conf + # enable routing and NAT for 10.10.0.0/16 + sysctl -w net.ipv4.ip_forward=1 + iptables -A POSTROUTING -t nat -s 10.10.0.0/16 -o eth1 -j MASQUERADE + exit 0 + + + + + + + + #cloud-config +bootcmd: +- ln -s -t /etc/rc.d /etc/rc.local +hostname: lxc-2 +manage_etc_hosts: true +runcmd: +- systemctl start rc-local +- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config +- echo "UseDNS no" >> /etc/ssh/sshd_config +- service ssh restart +- service sshd restart +users: +- default +- gecos: User configured by VIRL Configuration Engine 0.23.9 + lock-passwd: false + name: cisco + plain-text-passwd: cisco + shell: /bin/bash + ssh-authorized-keys: + - VIRL-USER-SSH-PUBLIC-KEY + sudo: ALL=(ALL) ALL +write_files: +- path: /etc/systemd/system/dhclient@.service + content: | + [Unit] + Description=Run dhclient on %i interface + After=network.target + [Service] + Type=oneshot + ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease + RemainAfterExit=yes + owner: root:root + permissions: '0644' +- path: /etc/rc.local + owner: root:root + permissions: '0755' + content: |- + #!/bin/sh + ifconfig eth1 10.10.0.100 netmask 255.255.0.0 + # set default gateway to VIRL host in flat1 + route del -net default + route add -net default gw 10.10.0.1 + # change dns + echo "nameserver 8.8.8.8" >/etc/resolv.conf + echo "nameserver 8.8.4.4" >>/etc/resolv.conf + exit 0 + + + + + + + +