Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Cisco 892 Router no internet connection.

I am quite new to Cisco equipment but found this one cheap and got it and now struggling to set it up to work with internet. I am using cable internet modem which is connected to a cheap wifi router and assigning ip addresses to rest of the network. I wanted to replace it with the Cisco one. I would appreciate a lot just basic router setup using WAN port. Here is the setup:

version 15.6
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname SimpleActsRouter
!
boot-start-marker
boot-end-marker
!
!
no logging buffered
!
no aaa new-model
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!


!
ip dhcp excluded-address 192.168.10.1 192.168.10.99
ip dhcp excluded-address 192.168.10.201 192.168.10.254
!
ip dhcp pool SA_Clients
network 192.168.10.0 255.255.255.0
default-router 192.168.10.1
dns-server 192.168.10.100
!
ip dhcp pool vlan2
!
!
!
ip name-server 210.158.149.33
ip name-server 210.158.150.33
ip ddns update method ccp_ddns1
DDNS both
!
ip cef
no ipv6 cef
!
!
!
!
!
multilink bundle-name authenticated
!
!
!
!
!
!
license udi pid CISCO892-K9 sn FGL153928B8
!
!
username ccpuser privilege 15 secret 5 $1$Zklk$gYdJlJmZmtKA7VK9UqZx8.
!
redundancy
!
!
!
!
!
!
!
!
!
!
!
!
!
!
interface BRI0
no ip address
encapsulation hdlc
isdn termination multidrop
!
interface FastEthernet0
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet1
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet2
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet3
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet4
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet5
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet6
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet7
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet8
description Service Connection$ETH-WAN$
ip address 192.168.30.1 255.255.255.0
duplex auto
speed auto
!
interface GigabitEthernet0
description WAN$ETH-WAN$
ip address dhcp client-id GigabitEthernet0 hostname ai202-45-170-198.ccnet-ai.ne.jp
ip nat outside
ip virtual-reassembly in
duplex auto
speed auto
!
interface Vlan1
no ip address
shutdown
!
interface Vlan2
ip address 192.168.10.1 255.255.255.0
!
router rip
version 2
passive-interface GigabitEthernet0
network 192.168.1.0
no auto-summary
!
ip forward-protocol nd
ip http server
ip http authentication local
no ip http secure-server
ip http timeout-policy idle 60 life 86400 requests 10000
!
!
ip dns server
ip dns spoofing 192.168.10.1
ip route 0.0.0.0 0.0.0.0 GigabitEthernet0 dhcp
ip ssh server algorithm encryption aes128-ctr aes192-ctr aes256-ctr
ip ssh client algorithm encryption aes128-ctr aes192-ctr aes256-ctr
!
ipv6 ioam timestamp
!
!
access-list 191 remark permit DNS traffic
access-list 191 remark CCP_ACL Category=1
access-list 191 permit tcp any any eq domain
access-list 191 permit udp any any eq domain
!
control-plane
!
!
mgcp behavior rsip-range tgcp-only
mgcp behavior comedia-role none
mgcp behavior comedia-check-media-src disable
mgcp behavior comedia-sdp-force disable
!
mgcp profile default
!
!
!
!
!
!
!
!
line con 0
line aux 0
line vty 0 4
login local
transport input telnet
!
scheduler max-task-time 5000
!
end

thank you so much!

Everyone's tags (5)
1 ACCEPTED SOLUTION

Accepted Solutions

Hi 

Hi 

Please next time, just put the config in a text file and attach it to the post otherwise this post will be unreadble with lot of scrolling. 

Unless your isp requires a specific client-id and/or hostname, you can put only ip address dhcp under your gig0 interface. 

Can you check that you received an ip on your gig0 interface by issuing the following command:

sh ip int brief | i Gigabit 

If yes, can you paste the output of: 

Sh ip route 0.0.0.0

Thanks 

PS: Please don't forget to rate and mark as correct answer if this answered your question


Thanks
Francesco
PS: Please don't forget to rate and select as validated answer if this answered your question
26 REPLIES

Hi 

Hi 

First of all, does your gig0 get an IP from your isp? 

If yes, does your router can ping Google dns (8.8.8.8)?

Then to give internet access to Internet hosts in vlan 2, you need to do the following commands: 

interface vlan 2

  ip nat inside

!

ip nat inside source list NAT interface gig0 overload

!

ip access-list extended NAT

  deny ip 192.168.10.0 0.0.0.255 192.168.0.0 0.0.255.255

   permit 192.168.10.0 0.0.0.255 any

The first line in the ACL is to not nat traffic from your vlan 2 reaching any host within 192.168.0.0/16. I put that line as example top show you how to filter communications to not be natted.  

The last ACL line is to nat every remaining traffic sourced from 192.168.10.0/24.

Thanks

PS: Please don't forget to rate and mark as correct answer if this answered your question


Thanks
Francesco
PS: Please don't forget to rate and select as validated answer if this answered your question
New Member

I have set my gb0 to dhcp and

I have set my gb0 to dhcp and got hostname set from my ISP (ai202-45-170-198.ccnet-ai.ne.jp). I could not ping google and I have put your configuration, so the setup looks now like this:


version 15.6
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname SimpleActsRouter
!
boot-start-marker
boot-end-marker
!
!
no logging buffered
!
no aaa new-model
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!


!
ip dhcp excluded-address 192.168.10.1 192.168.10.99
ip dhcp excluded-address 192.168.10.201 192.168.10.254
!
ip dhcp pool SA_Clients
network 192.168.10.0 255.255.255.0
default-router 192.168.10.1
dns-server 192.168.10.100
!
ip dhcp pool vlan2
!
!
!
ip name-server 210.158.149.33
ip name-server 210.158.150.33
ip ddns update method ccp_ddns1
DDNS both
!
ip cef
no ipv6 cef
!
!
!
!
!
multilink bundle-name authenticated
!
!
!
!
!
!
license udi pid CISCO892-K9 sn FGL153928B8
!
!
username ccpuser privilege 15 secret 5 $1$Zklk$gYdJlJmZmtKA7VK9UqZx8.
!
redundancy
!
!
!
!
!
!
!
!
!
!
!
!
!
!
interface BRI0
no ip address
encapsulation hdlc
isdn termination multidrop
!
interface FastEthernet0
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet1
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet2
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet3
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet4
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet5
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet6
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet7
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet8
description Service Connection$ETH-WAN$
ip address 192.168.30.1 255.255.255.0
duplex auto
speed auto
!
interface GigabitEthernet0
description WAN$ETH-WAN$
ip address dhcp client-id GigabitEthernet0 hostname ai202-45-170-198.ccnet-ai.ne.jp
ip nat outside
ip virtual-reassembly in
duplex auto
speed auto
!
interface Vlan1
no ip address
shutdown
!
interface Vlan2
ip address 192.168.10.1 255.255.255.0
ip nat inside
ip virtual-reassembly in
!
router rip
version 2
passive-interface GigabitEthernet0
network 192.168.1.0
no auto-summary
!
ip forward-protocol nd
ip http server
ip http authentication local
no ip http secure-server
ip http timeout-policy idle 60 life 86400 requests 10000
!
!
ip dns server
ip dns spoofing 192.168.10.1
ip nat inside source list NAT interface GigabitEthernet0 overload
ip route 0.0.0.0 0.0.0.0 GigabitEthernet0 dhcp
ip ssh server algorithm encryption aes128-ctr aes192-ctr aes256-ctr
ip ssh client algorithm encryption aes128-ctr aes192-ctr aes256-ctr
!
ip access-list extended NAT
deny ip 192.168.10.0 0.0.0.255 192.168.0.0 0.0.255.255
permit ip 192.168.10.0 0.0.0.255 any
!
ipv6 ioam timestamp
!
!
access-list 191 remark permit DNS traffic
access-list 191 remark CCP_ACL Category=1
access-list 191 permit tcp any any eq domain
access-list 191 permit udp any any eq domain
!
control-plane
!
!
mgcp behavior rsip-range tgcp-only
mgcp behavior comedia-role none
mgcp behavior comedia-check-media-src disable
mgcp behavior comedia-sdp-force disable
!
mgcp profile default
!
!
!
!
!
!
!
!
line con 0
line aux 0
line vty 0 4
login local
transport input telnet
!
scheduler max-task-time 5000
!
end

Hi 

Hi 

Please next time, just put the config in a text file and attach it to the post otherwise this post will be unreadble with lot of scrolling. 

Unless your isp requires a specific client-id and/or hostname, you can put only ip address dhcp under your gig0 interface. 

Can you check that you received an ip on your gig0 interface by issuing the following command:

sh ip int brief | i Gigabit 

If yes, can you paste the output of: 

Sh ip route 0.0.0.0

Thanks 

PS: Please don't forget to rate and mark as correct answer if this answered your question


Thanks
Francesco
PS: Please don't forget to rate and select as validated answer if this answered your question
New Member

sh ip int brief | i Gigabit

sh ip int brief | i Gigabit  shows the gb0 port unassigned. If this helps, this is the information I got from currently running router:

Old router config

Could you confirm that you

Could you confirm that you connected g0 interface to your wan modem?

Is your modem in bridge? 

Is it an adsl that needs a user and password? 

Thanks


Thanks
Francesco
PS: Please don't forget to rate and select as validated answer if this answered your question
New Member

So the device is a simple

So the device is a simple cable modem:
Modem
Then I connect it to my gb0 port. As far as I know it did not need any password nor username. I will attach a configuration again here. (I tried to assign the old router's addresses too).

VIP Purple

Hello,

Hello,

what type/brand is the cable modem ? What type/brand was the original WiFi router you had attached to the cable modem ?

Is this output from the WiFi router ?

Old router config

New Member

Yes, this is the output from

Yes, this is the output from 192.168.10.1 wifi router (Aterm WR8165N). Cable modem is Synclayer CBC200J3.

VIP Purple

Hello,

Hello,

I have somewhat simplified the configuration. When you do a 'sh ip int brief', make sure your interface GigabitEthernet0 has a public IP address assigned.

Either way, try the config below (important parts are marked in bold):

version 15.6
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname SimpleActsRouter
!
boot-start-marker
boot-end-marker
!
no logging buffered
!
no aaa new-model
!
ip dhcp excluded-address 192.168.10.1 192.168.10.99
ip dhcp excluded-address 192.168.10.201 192.168.10.254
!
ip dhcp pool SA_Clients
network 192.168.10.0 255.255.255.0
default-router 192.168.10.1
dns-server 8.8.8.8 8.8.4.4
!
ip name-server 210.158.149.33
ip name-server 210.158.150.33
ip ddns update method ccp_ddns1
DDNS both
!
ip cef
no ipv6 cef
!
multilink bundle-name authenticated
!
license udi pid CISCO892-K9 sn FGL153928B8
!
username ccpuser privilege 15 secret 5 $1$Zklk$gYdJlJmZmtKA7VK9UqZx8.
!
redundancy
!
interface BRI0
no ip address
encapsulation hdlc
isdn termination multidrop
!
interface FastEthernet0
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet1
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet2
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet3
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet4
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet5
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet6
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet7
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet8
description Service Connection$ETH-WAN$
ip address 192.168.30.1 255.255.255.0
duplex auto
speed auto
!
interface GigabitEthernet0
description WAN$ETH-WAN$
ip address dhcp client-id GigabitEthernet0 hostname ai202-45-170-198.ccnet-ai.ne.jp
ip nat outside
ip virtual-reassembly in
duplex auto
speed auto
!
interface Vlan2
ip address 192.168.10.1 255.255.255.0
ip nat inside
ip virtual-reassembly in
!
ip forward-protocol nd
ip http server
ip http authentication local
no ip http secure-server
ip http timeout-policy idle 60 life 86400 requests 10000
!
ip dns server
ip dns spoofing 192.168.10.1
ip nat inside source list 10 interface GigabitEthernet0 overload
ip route 0.0.0.0 0.0.0.0 GigabitEthernet0
ip ssh server algorithm encryption aes128-ctr aes192-ctr aes256-ctr
ip ssh client algorithm encryption aes128-ctr aes192-ctr aes256-ctr
!
access-list 10 permit 192.168.10.0 0.0.0.255
!
ipv6 ioam timestamp
!
access-list 191 remark permit DNS traffic
access-list 191 remark CCP_ACL Category=1
access-list 191 permit tcp any any eq domain
access-list 191 permit udp any any eq domain
!
control-plane
!
mgcp behavior rsip-range tgcp-only
mgcp behavior comedia-role none
mgcp behavior comedia-check-media-src disable
mgcp behavior comedia-sdp-force disable
!
mgcp profile default
!
line con 0
line aux 0
line vty 0 4
login local
transport input telnet
!
scheduler max-task-time 5000
!
end

New Member

So I have tried and the

So I have tried and the router still shows "no internet connection"

Here is the updated config again:

VIP Purple

What is the output of:

What is the output of:

show ip int brief

New Member

Here it is:

Here it is:

VIP Purple

Hello,

Hello,

your interface GigabitEthernet0, the one connected to the modem, is down/down, which means there is likely a physical problem with the cable. Check if you need a crossover cable.

Can you post the output of:

sh interfaces GigabitEthernet0

and

sh vlan (database)

New Member

Hold on, I did "show ip int

Hold on, I did "show ip int brief" while the router was disconnected from the modem, since all network devices are under the desk, it is easier for me to work somewhere else. I will do that again with a modem connected to the router

New Member

(No subject)

VIP Purple

Hello,

Hello,

your interface GigabitEthernet0 has a WAN IP address, which means you are connected to the Internet. I have posted a simplified configuration earlier, try and implement that:

Here it is again:

version 15.6
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname SimpleActsRouter
!
boot-start-marker
boot-end-marker
!
no logging buffered
!
no aaa new-model
!
ip dhcp excluded-address 192.168.10.1 192.168.10.99
ip dhcp excluded-address 192.168.10.201 192.168.10.254
!
ip dhcp pool SA_Clients
network 192.168.10.0 255.255.255.0
default-router 192.168.10.1
dns-server 8.8.8.8 8.8.4.4
!
ip name-server 210.158.149.33
ip name-server 210.158.150.33
ip ddns update method ccp_ddns1
DDNS both
!
ip cef
no ipv6 cef
!
multilink bundle-name authenticated
!
license udi pid CISCO892-K9 sn FGL153928B8
!
username ccpuser privilege 15 secret 5 $1$Zklk$gYdJlJmZmtKA7VK9UqZx8.
!
redundancy
!
interface BRI0
no ip address
encapsulation hdlc
isdn termination multidrop
!
interface FastEthernet0
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet1
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet2
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet3
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet4
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet5
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet6
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet7
switchport access vlan 2
no ip address
speed 100
!
interface FastEthernet8
description Service Connection$ETH-WAN$
ip address 192.168.30.1 255.255.255.0
duplex auto
speed auto
!
interface GigabitEthernet0
description WAN$ETH-WAN$
ip address dhcp client-id GigabitEthernet0 hostname ai202-45-170-198.ccnet-ai.ne.jp
ip nat outside
ip virtual-reassembly in
duplex auto
speed auto
!
interface Vlan2
ip address 192.168.10.1 255.255.255.0
ip nat inside
ip virtual-reassembly in
!
ip forward-protocol nd
ip http server
ip http authentication local
no ip http secure-server
ip http timeout-policy idle 60 life 86400 requests 10000
!
ip dns server
ip dns spoofing 192.168.10.1
ip nat inside source list 10 interface GigabitEthernet0 overload
ip route 0.0.0.0 0.0.0.0 GigabitEthernet0
ip ssh server algorithm encryption aes128-ctr aes192-ctr aes256-ctr
ip ssh client algorithm encryption aes128-ctr aes192-ctr aes256-ctr
!
access-list 10 permit 192.168.10.0 0.0.0.255
!
ipv6 ioam timestamp
!
access-list 191 remark permit DNS traffic
access-list 191 remark CCP_ACL Category=1
access-list 191 permit tcp any any eq domain
access-list 191 permit udp any any eq domain
!
control-plane
!
mgcp behavior rsip-range tgcp-only
mgcp behavior comedia-role none
mgcp behavior comedia-check-media-src disable
mgcp behavior comedia-sdp-force disable
!
mgcp profile default
!
line con 0
line aux 0
line vty 0 4
login local
transport input telnet
!
scheduler max-task-time 5000
!
end

New Member

Okay. I don't get it now.

Okay. I don't get it now. Done the configuration as requested and this bad boy is still having a bad day. Tried to ping Google's  8.8.8.8 and requests timed out. 
Doing 'show ip int brief' shows the ip address correctly:


Also I did the configuration. Please review. I am confused now.

VIP Purple

Hello,

Hello,

where are you pinging from ? The router or the client ? Do the clients get the proper IP address and default gateway ?

Try:

ping 8.8.8.8 source GigabitEthernet0

What is the result ?

New Member

This is the result of ping. I

This is the result of ping. I am pinging from a client connected via lan cable to FastEthernet8 with a static IP address

Hi 

Hi 

Can you post the output of show ip route?

Thanks


Thanks
Francesco
PS: Please don't forget to rate and select as validated answer if this answered your question
New Member

(No subject)

VIP Purple

Hello,

Hello,

I lost track of your physical setup. The Cisco is now directly connected...to what ? The cable modem ? Or the ISP through GigabitEthernet0, without the cable modem ?

On Cisco's 892 router WAN

On Cisco's 892 router Fa8 and Gi0 are WAN interfaces.

Interfaces Fa0-7 are switched interfaces. Fa0-7 are in down down state and that is the reason why VLAN 2 is also in down down state. You should connect your hosts to ports Fa0-7.

But, anyway, if you obtained IP address on WAN port you should be able to ping 8.8.8.8 from router (try also some other WAN IP address e.g 4.2.2.2 , 8.8.4.4). Try to issue
traceroute 8.8.8.8
traceroute 4.2.2.2
and paste output.

NVI0 typically should have IP address from WAN interfaces, try for testing, to remove IP address from Fa8 and reload router.

New Member

Hi guys. Sorry for the delay.

Hi guys. Sorry for the delay. I have drawn a simple diagram showing the situation. Will do the commands later on and show outputs
Diagram

Hi 

Hi 

What crni00000 says it's right for the LAN side. 

However this doesn't explain why you can't ping 8.8.8.8 from your router even by sourcing the ping with gig0. 

Have you tried 

ip route 0.0.0.0 0.0.0.0 dhcp

Instead of 

ip route 0.0.0.0 0.0.0.0 gig0

Can you modify this default route and send back the output of show ip route?

Thanks


Thanks
Francesco
PS: Please don't forget to rate and select as validated answer if this answered your question

Hi 

Hi 

I ask again for the show ip route as i asked at the beginning. Can you paste the output of this command please? 

I think the public IP was already there since the beginning. 

Also try the ping Georg asked to validate that you're router can access internet. 

Thanks


Thanks
Francesco
PS: Please don't forget to rate and select as validated answer if this answered your question
20
Views
0
Helpful
26
Replies