Professional Documents
Culture Documents
HCM, 02/2012
Gii thiu
thc hin cc lab trong ti liu ny, bn cn chun b cc th sau: 1. Mt my tnh c ci t Packet Tracer Download bn 5.3 ca n y: http://www.mediafire.com/?zziz2tziywj Cc thao tc xy dng m hnh mng v cu hnh cho cc thit b u c thc hin trong Packet Tracer. 2. Standalone Labs for CCNA L ebook ting Anh m ti da vo ni dung trong bin son thnh ti liu ting Vit ny. Bn c th ti n v y: http://www.mediafire.com/?3tc66h1n35s4xf3 Mt s u im trong cc bi lab do ti bin son so vi ebook trn l: Ti cc bc thc hin u c hnh minh ha r rng. Nhiu khi nim, l thuyt c ti din gii, tm tt li sao cho ngn gn v d hiu nht. Ngn ng ting Vit nn thch hp vi cc bn cha bt kp kh nng c hiu ti liu ting Anh.
Lu
Trc khi i vo thc hin theo cc hng dn trong ti liu ny, bn nn bit l: 1. Cc bi lab c thit k ph hp cho nhng bn no nm kh vng chng trnh hc ca chng ch CCNA, th nn phn l thuyt v mng cn bn ni chung cng nh nhng phn chuyn bit trong CCNA ni ring s khng c cp chi tit trong cc bi lab. 2. Do trn Internet cng c kh nhiu bi vit hng dn cch ci t v s dng Packet Tracer ri nn ti s khng trnh by li na. Di y l mt s a ch bn tham kho:
http://vnexperts.net/index.php?option=com_content&task=view&id=755&Itemid=199 http://www.scribd.com/doc/4291610/Hng-dn-s-dng-Packet-Tracer-kakalotsai
Mc lc
Lab 1: Connecting and Logging on to a Cisco Router .......................................................... 5 Lab 2: I ntroduction to the Basic User I nterface ........................................................................ 6 Lab 3: I ntroduction to Basic Show Commands ........................................................................ 8 Lab 4: CDP ................................................................................................................................... 11 Lab 5: Extended Basics .............................................................................................................. 17 Lab 6: Setting the Banner MOTD (Message of the Day) ....................................................... 19 Lab 7: Copy command ............................................................................................................. 21 Lab 8: I ntroduction to Interface Configuration...................................................................... 24 Lab 9: I ntroduction to IP (I nternet Protocol) ........................................................................... 29 Lab 10: ARP.................................................................................................................................. 33 Lab 11: Creating a Host table................................................................................................... 36 Lab 12: Static Routes.................................................................................................................. 39 Lab 13: RI P.................................................................................................................................... 44 Lab 14: Troubleshooting RI P ...................................................................................................... 48 Lab 15: IGRP ................................................................................................................................ 54 Lab 16: PPP and CHAP............................................................................................................... 60 Lab 18: Sav ing Router Configurations...................................................................................... 62 Lab 19: Loading Router Configurations ................................................................................... 65 Lab 20: Frame Relay................................................................................................................... 67 Lab 24: I ntroduction to Basic Switch Commands .................................................................. 70 Lab 28: Standard Access Lists ................................................................................................... 73 Lab 29: Verify Standard Access Lists ........................................................................................ 77 Lab 30: Extended Access Lists................................................................................................... 79 Lab 31: Verify Extended Access Lists........................................................................................ 81
Lab 32: Named Access Control Lists ........................................................................................ 85 Lab 33: Adv anced Extended Access List................................................................................ 89 Lab 34: I ntroduction to Telnet ................................................................................................... 94 Lab 35: I ntroduction to VLAN.................................................................................................... 97 Lab 36: VLAN Trunking Protocol.............................................................................................. 102 Lab 37: OSPF Single Area Configuration and Testing .......................................................... 106
Lab 1: Connecting and Logging on to a Cisco Router Kt ni v ng nhp vo mt thit b Cisco Router A. Mc tiu ca bi lab: Gii thiu v Cisco Router. B. Chun b cho bi lab: Chng ta s s dng mt thit b router c tn l Router1. C. Cc bc thc hin: 1. Khi ng Router1 ln v truy cp vo giao din cu hnh CLI ca n. 2. Nhn Enter lm xut hin du nhc lnh (command prompt). Du nhc lnh ny bao gm 2 thnh phn: chui Router l hostname ca Router1 v k t > cho bit ta ang user mode. Press RETURN to get started! Router> 3. G lnh enable vo privileged mode v du > c thay bng du #. Router>enable Router# 4. tr v user mode, ta g disable. T user mode, g tip logout hoc exit thot khi router. Router>enable Router#
Lab 2: Introduction to the Basic User Interface C bn v giao din ngi dng A. Mc tiu ca bi lab: Gii thiu v giao din dng lnh (CLI); 2 ch l user mode v privileged mode; c bn v 2 lnh help v show. B. Chun b cho bi lab: Chng ta s tip tc s dng Router1. C. Cc bc thc hin 1. Khi ng Router1 ln v truy cp vo giao din cu hnh CLI ca n. Sau , nhn Enter hin th du nhc lnh. 2. Hin ta ang User mode (l ch ch h tr cc cu lnh c bn xem nhng thit lp ca thit b m khng c php s dng cc cu lnh c quyn thay i cu hnh ca thit b). G vo du chm hi (?) xem tt c cc cu lnh c th s dng ti du nhc lnh ny. Router>? 3. G lnh sau vo Privileged mode (l ch h tr nhiu cu lnh nng cao hn thay i cc thit lp ca thit b). Router> enable Router#
4. xem tt c cc cu lnh c th s dng trong Privileged mode. Router#? 5. G lnh sau xem tt c cc cu lnh show. Router#show ? 6. xem thng tin v cu hnh hin ti m router ang s dng (running configuration). Router>show running-config
7. Ti du nhc lnh, g phm khong trng hin th trang thng tin k tip <space bar> 8. G mt trong cc lnh sau ng xut khi router Router#exit hoc Router#disable
Lab 3: Introduction to Basic Show Commands C bn v lnh show A. Mc tiu ca bi lab: Lm quen vi cc cu lnh show c bn B. Chun b cho bi lab: Chng ta tip tc s dng Router1. C. Cc bc thc hin: 1. Hin th du nhc lnh. Router> 2. Vo Privileged mode. Router>enable Router# 3. Trong CLI, tp tin nm trong b nh RAM cha cc cu hnh m hin ti ang c thit b (router, switch) s dng c gi l running-config. Lu l cn vo Privileged mode mi xem c ni dung ca running-config. c bit, ni dung ca running-config khng c t ng lu li trn Cisco router v s b mt nu xy ra s c v ngun in cung cp cho router (nh cp in t ngt, in p qu ti hoc qu thp khin router khng th hot ng c). Sau khi ta thay i cu hnh cho router, cc cu hnh mi ny s c cp nht vo tp tin running-config v lu li ni dung ca running-config th ta cn s dng lnh copy (s c cp trong cc bi lab sau). By gi, hin th ni dung ca running-config ta g lnh sau. Router#show running-config
4. Flash l mt loi b nh c bit trn router m lu tr cc tp tin h iu hnh (OS image). Khng ging nh b nh thng gp khc (nh RAM), b nh flash vn cha cc OS image ngay c khi router khng c cp ngun hot ng. Router#show flash
5. Mc nh, CLI ca cc router lu gi 10 lnh gn y nht m c g vo trong b nh. xem tt c cc lnh thc hin vn cn c lu trong b nh ca router. Router#show history 6. Hai lnh sau gip ta ly li lnh g trc Nhn phm mi tn i ln (up) hoc <ctrl> P 7. Cn hai lnh sau gip ta s dng lnh k tip trong history buffer Nhn phm mi tn i xung (down) hoc <ctrl> N 8. xem trng thi ca cc giao thc c nh tuyn (routed protocol) layer 3 ang chy trn router Router#show protocols
9. Lnh sau c dng nhn v cc thng tin quan trng nh: loi router platform, phin bn (revision) ca OS, ln khi ng cui v v tr tp tin image ca OS, lng b nh, s lng cng giao tip (interface), v cc thanh ghi cu hnh (configuration register)? Router#show version
10. Xem ngy gi c thit lp trn router Router#show clock 11. hin th danh sch cc hosts v tt c cc a ch IP ca chng m c router lu tr li (cache) Router#show hosts 12. Xem danh sch cc user kt ni ti router Router#show users 13. xem thng tin chi tit v mi cng giao tip (interface) Router#show interfaces
14. Xem trng thi tng qut v cc giao thc layer 3 cng nh trng thi ca cc interface Router#show protocols
10
Lab 4: CDP Giao thc CDP (Cisco Discovery Protocol) A. Mc tiu ca bi lab: Hiu c cc chc nng ca CDP B. Chun b cho bi lab: Chng ta s s dng Router 1 v Router 4.
C. Cc bc thc hin: 1. Trn Router 1, vo ch cu hnh ton cc (global configuration mode) Router>enable Router#conf t Router(config)# 2. Trn Router 1, thay i hostname thnh R1 Router(config)#hostname R1 R1(config)# 3. Thc hin li bc 1 v 2 trn Router 4 Router>enable Router#conf t Router(config)#hostname R4
11
4. Kch hot interface Serial2/ 0 trn R1 R1(config)#interface Serial2/0 R1(config-if)#no shutdown 5. Tng t, kch hot interface Serial2/0 trn R4 R4(config)#interface Serial2/0 R4(config-if)#no shutdown
6. Kch hot interface FastEthernet0/0 trn R1 R1(config)#interface FastEthernet0/0 R1(config-if)#no shutdown CDP gip cc thit b chia s cc thng tin cu hnh c bn cho nhau. CDP s hot ng m khng cn cu hnh g thm. CDP c kch hot mc nh trn tt c interface. CDP l mt giao thc hot ng ti layer 2 ca m hnh OSI. V vy iu quan trng cn nm l CDP khng phi l giao thc nh tuyn. N ch c th gip cc thit b c kt ni trc tip vi nhau trao i thng tin cho nhau.
12
7. Trn R1, g lnh sau xem trng thi ca tt c cc interface ang chy CDP. R1(config-if)#exit R1(config)#exit R1#show cdp interface Hin ti, router ang s dng CDP qung b i cc thng tin v cc interface ca n v ng thi CDP cng gip n bit c cc router hng xm c kt ni trc tip ti n. 8. Trn R1, g lnh sau hin th cc thng tin v cc hng xm ang c kt ni trc tip ti R1 R1#show cdp neighbors
Trong hnh trn ta thy, thit b u tin trong danh sch cc hng xm ca R1 l router R4 c kt ni trc tip ti cng Serial2/0 trn R1 (ct Local Interface). R1 nhn cc gi RDP update t R4, cc gi update ny cng cho ta bit c R1 s nm gi cc thng tin cp nht v R4 trong bao lu. Ti thi im g cu lnh trn th thi gian cn li l 133 giy (ct Holdtime). R4 l mt Cisco router thuc series 1000 nh c th hin trong ct platform. Ct cui cng, Port ID, l cng trn trn thit b (trong trng hp ny cng Serial2/0 ca R4) m t cc gi update c gi i.
13
9. Trn R1, g lnh sau xem nhiu thng tin chi tit hn v cc hng xm c kt ni trc tip ti R1. R1#show cdp neighbors detail
Lnh ny s hin ra cng lc thng tin ca tt c cc thit b hng xm. N c s dng hin th cc a ch tng Network. Nh hnh trn ta thy R4 c mt a ch IP l 192.168.1.4. Ngoi ra, cu lnh cn cho bit thng tin v phin bn ca IOS. Ch rng cc thit b hng xm c lit k theo trnh t. Nu ta mun bit thng tin v mt thit b nm ng sau na th ta cn cun xung bng cch nhn phm khong trng. 10. Trn R1, lnh sau s ch cung cp thng tin v R4 R1#show cdp entry R4 (thng tin u ra ca cu lnh trn ging vi trong hnh bc 9) Lnh ny cho ta cu trc thng tin ging vi u ra ca lnh show cdp neighbors detail, nhng khc ch lnh ny ch hin th thng tin v R4 m thi. Cng lu thm rng y l mt trong nhng lnh thuc loi case-sensitive, tc l c phn bit ch hoa v ch thng trong cu lnh. 11. Trn R1, bit c thi gian nh k R1 s gi i cc gi RDP update v cc thng tin CDP m R1 nhn v s tn ti trong bao lu, ta g lnh sau R1#show cdp
14
12. Trn R1, iu chnh s giy thi gian gia cc ln gi CDP update thnh 45, ta g R1# conf t R1(config)#cdp timer 45 Ngoi ra, ta cng c th iu chnh li gi tr holdtime. Gi tr ny cho bit router nhn CDP update s lu gi cc thng tin trong CDP update (do cc router khc gi ti) trong bao lu v y cng l mt tham s ton cc (global parameter). 13. Trn R1, iu chnh b m holdtime thnh 60 giy, ta g R1#conf t R1(config)#cdp holdtime 60 14. Trn R1, g lnh sau xc nhn li nhng thay i va to ra trn R1#show cdp u ra ca cu lnh s nh sau Global CDP information: Sending CDP packets every 45 seconds Sending a holdtime value of 60 seconds Sending CDPv2 advertisements is enabled Nu R1 khng c kt ni trc tip vi bt k Cisco router no trn mng, hoc n gin tit kim bng thng, ta cn xem xt vic tt CDP trn R1. 15. Trn R1, tt hon ton CDP R1#conf t R1(config)#no cdp run 16. Cng trn R1, kch hot li CDP trn tt c cc interface ca router R1#conf t R1(config)#cdp run Lc ny, c th ta ch mun tt CDP i vi mt s interface c th no , v d cc interface c bng thng thp hoc v cc l do bo mt.
15
17. Trn R1, tt CDP ch vi interface FastEthernet1/0 R1(config)#interface FastEthernet1/0 R1(config-if)#no cdp enable 18. Trn R1, xc nhn interface FastEthernet1/0 khng cn gi i cc gi CDP update na, ta g R1#show cdp interface hoc R1#show cdp interface FastEthernet1/0 Nu trong u ra khng c thng tin v FastEthernet1/0 th c th kt lun rng CDP b v hiu ha trn interface ny.
16
Lab 5: Extended Basics n tp v m rng A. Mc tiu ca bi lab: Quan st v cu hnh mt s phn c bn ca router. B. Chun b cho bi lab: Chng ta tip tc s dng Router1. C. Cc bc thc hin: 1. Truy cp vo CLI ca router v hin th du nhc lnh. Router> 2. xem danh sch tt c cc cu lnh sn c m ta c th s dng ti du nhc ny. Router>? 3. Vo Privileged mode. ch ny th bn c ton quyn iu khin router. Router>enable Router# 4. Xem cc cu lnh c th chy trong Privileged mode Router#? 5. S dng lnh sau vo Configuration mode cu hnh cho router. Router#config terminal Router(config)# 6. Hostname ca router c dng nhn dng thit b trong mng. Khi ng nhp vo router, ta s thy hostname nm u du nhc (> hoc #). C th s dng hostname th hin v tr hoc chc nng ca router. Lnh sau s t tn cho Router1 l mmt03 Router(config)#hostname mmt mmt(config)#
17
7. Enable password dng kim sot vic truy cp vo Privileged mode. y l loi mt khu cc k quan trng cn bo mt bi v trong Privileged mode bn c th thay i cu hnh cho router. t enable password thnh network ta thc hin lnh sau mmt(config)#enable password network 8. kim tra password ny. Thot khi router v th vo li Privileged mode vi mt khu network va thit lp trn. By gi, g conf term v lm tip cc hng dn bc k tip. 9. Vn duy nht vi enable password l n xut hin di dng plain-texttrong file cu hnh ca router. Nu bn cn cho ai xem file ny h c th gip bn khc phc vn no th v tnh bn l cc mt khu v iu ny e da n bo mt ca h thng ca bn. Vy lm sao to ra cc mt khu c m ha? Lnh sau s to mt khu cisco c lu tr dng m ha. mmt(config)#enable secret cisco 10. Gi ta c th kim tra mt khu mi ny bng cch ng xut khi router v sau g enable. Enable secret l mt mt khu b tr cao cp hn enable password, thc t th n ghi enable password. Nu bn thit lp c 2 loi mt khu ny th enable secret mi l mt khu m bn cn dng vo Privileged mode cn enable password tuy vn hin din nhng hin ti b v hiu ha.
18
Lab 6: Setting the Banner MOTD (Message of the Day) Thit lp thng bo khi ng nhp vo router A. Mc tiu ca bi lab: MOTD l thng bo c hin th khi ai ng nhp vo router. MOTD c th c s dng cung cp thng tin v router hoc hin th cc thng bo v bo v bo mt. B. Chun b cho bi lab: Chng ta tip tc s dng Router1. C. Cc bc thc hin: 1. Kt ni ti Router1 v vo Privileged mode Router> Router>enable Router# 2. Vo Configuration mode Router#config t Router(config)# 3. G vo cu lnh banner motd v tip sau l mt k t nh gii hn (delimiting character). K t nh gii hn s c g vo ti phn cui ca dng thng bo router s bit c l khi no ta hon thnh vic g vo thng bo. K t thng s dng nht l z. Router(config)#banner motd z Enter TEXT message. End with the character 'z'.
4. By gi, ta s g vo thng bo mun hin th lc ng nhp vo router, khi cn kt thc vic g thng bo ta s g k t z v nhn Enter th lp tc thng bo s c router lu li. V d, thit lp MOTD l dng ch Chao mung ban den voi Cisco router th g Chao mung ban den voi Cisco router z
19
5. xem thng bo trn, ta thot khi Configuration mode v sau thot khi router. Nhn Enter quay tr li v ta s thy c thng bo va t trn
20
Lab 7: Copy command Lnh copy A. Mc tiu ca bi lab: Gii thiu v cc lnh copy m Cisco IOS h tr B. Chun b cho bi lab: Chng ta tip tc s dng Router1. C. Cc bc thc hin: 1. Hin th du nhc lnh Router> 2. Vo Privileged mode Router>enable Router# 3. Hin th running-config hin ti c lu trong b nh RAM. Router#show running-config 4. Th hin th ni dung ca file cu hnh c lu tr trong b nh NVRAM (d liu trong NVRAM vn cn nguyn vn ngay c khi khng c ngun in cung cp cho router), file ny c gi l startup-config. Hin ti chng ta cha lu cu hnh vo NVRAM nn khng c bt k ni dung no c hin th y
5. Copy ni dung ca running-config trong RAM vo NVRAM. Khi router khi ng, n s np cu hnh c lu tr trong NVRAM ny. Router#copy running-config startup-config
21
7. Nu mun router khi ng ln m khng np bt k cu hnh no (sau ta s cu hnh li cho router t u) th ta c th xa startup-config v np li router. xa cu hnh trong NVRAM, ta g Router#erase startup-config 8. Gi ta cn np li router. Router bo cho ta bit l hin c mt cu hnh ang nm trong RAM v hi ta xem c mun lu li cu hnh vo NVRAM trc khi np li router khng. V ta khng mun lu li running-config nn ta s chn no Router#reload
22
9. Sau router khi ng li xong, gi ta xem li file startup-config. V ta khng lu li n bc 8 nn hin khng c thng tin no trong startup-config c. Router#show startup-config 10. Gi ta i hostname cho router thnh mmt03 Router#config terminal Router(config)#hostname mmt03 mmt03(config)#exit mmt03#
11. Sau khi i hostname, ta s reload router v khi c hi ta s ng lu li cu hnh va thay i ny. mmt03#reload 12. Sau khi router reload xong, chui mmt03 xut hin trong du nhc lnh.
23
Lab 8: Introduction to Interface Configuration Cu hnh cc cng giao tip (interface) A. Mc tiu ca bi lab: Bit cch kch hot v xem thng tin cc interface trn mt router. B. Chun b cho bi lab: Chng ta s s dng Router1 v Router2. C. Cc bc thc hin: 1. Trn Router1, vo Global Configuration mode Router>enable Router#conf t Router(config)#hostname R1 2. Gi ta s cu hnh cho interface FastEthernet (Fa). lm iu ny, ta cn truy nhp vo ch cu hnh cho interface (Interface Configuration mode vit tt l configif). G lnh sau vo config- if dnh cho Fa0/0 R1(config)#interface Fa0/0 R1(config-if)# 3. xem tt c cc cu lnh hin c th s dng trong config- if R1(config-if)#? 4. Trong , lnh shutdown c dng tt/v hiu ha interface shutdown Shutdown the selected interface lm iu ngc li ca mt lnh no , ta thm ch no ng trc lnh . Vy lnh sau s gip ta kch hot li Fa0/0 trn Router1 R1(config-if)#no shutdown 5. Gi thm phn m t cho interface ny R1(config-if)#description This is FastEthernet0/0 interface on the Router1 6. xem phn m t va thit lp trn ta tr li Privileged mode v thc hin lnh show interface.
24
7. By gi ta kt ni ti Router2 v vo ch config-if ca Fa0/0 Router#conf t Router(config)#hostname R2 R2(config)#interface Fa0/0 8. Kch hot interface ny ln R2(config-if)#no shutdown 9. Hin ti cng Fa0/0 trn R1 c ni vi cng Fa0/0 trn R2 v c 2 cng Fa0/0 2 u ca kt ni ny u c enable chng c th thy nhau bng cch s dng CDP. Chy lnh sau trn R2 xem tt c cc Cisco router ang c kt ni trc tip vi n. R2(config-if)#end R2#show cdp neighbors
25
Cu hnh v xem xt thng tin v cc interface Xem xt cc interface Router c th c nhiu loi interface nh token ring, FDDI, Ethernet, Serial, ISDN Thng ta mun xem trng thi v cc thit lp ca chng. C mt vi lnh quan trng cn nm y v show interfaces l mt trong nhng lnh quan trng hn c Router#show interfaces Lnh trn s xut ra cc thng tin v mi interface. Trong trng hp ny, ta thy rng interface Fa0/0 ang b tm ngng hot ng (administratively down). iu ny c ngha l cng Fa0/0 b tt bi lnh shutdown.
ngha Interface b tt bi lnh shutdown Cp c u ni ng nhng cha nhn c keep alive (gi tin cho bit lin kt ang hot ng tt) ca router u kt ni bn kia.
26
down
Down
up
Up
Trc trc cp ni hoc cha t gi tr clock rate trn DCE hoc interface ca router u bn kia b tt y l iu ta mun: kt ni hot ng bnh thng
Bn c th xem thng tin chi tit v mt interface c th no , v d Serial2/0, vi lnh sau: Router#show interface Serial2/0 Cn xem thng tin tm lc ca tt c cc interface, ta c lnh: Router#show ip int brief
iu ny gip ta nhn din nhanh chng trng thi ca tt c cc interface Xem xt cc Controller Controller l b phn ca interface c nhim v to ra cc kt ni vt l. iu quan trng nht m ta cn bit l loi cp no c gn vo cng Serial. Cp DTE (data terminating equipment) l loi cp m ta thng hay s dng. DTE c ngha rng ta ang mong ch u cui bn kia cung cp clocking. Cp DCE (data circuit-terminating equipment) c ngha l thit b ny s phi cung cp clocking trn ng truyn. Lnh show controllers s gip ta bit c interface no l DCE hay DTE. Router#show controllers Serial2/0
27
Cu hnh cho interface Nu mt interface no b kha li bi lnh shutdown (administratively down). Bn phi vo Configuation mode (config), sau truy nhp vo Interface Configuation mode (config- if) dnh cho interface , v cui cng, chy lnh no shutdown. Di y l hnh minh ha cch kch hot cho interface Fa0/0 trn Router1.
S dng lnh show running-config hoc show interfaces hoc show controllers xem nhng thay i m ta va to ra trn.
28
Lab 9: Introduction to IP (Internet Protocol) Giao thc IP A. Mc tiu ca bi lab: Cu hnh a ch IP cho cc Router 1, 2 v 4 v s dng lnh ping kim tra kt ni gia chng. B. Chun b cho bi lab: Chng ta s s dng Router1, Router2, Router4.
C. Cc bc thc hin: Cu hnh cc a ch IP 1. u tin, kt ni ti Router1 v t hostname cho n l R1 Router>en Router#conf t Router(config)#hostname R1 2. Vo ch Interface configuration t a ch IP cho cng fa0/0 trn Router1 R1(config)#interface fa0/0 3. t a ch IP cho cho cng fa0/0 ny nh sau R1(config-if)#ip address 10.1.1.1 255.255.255.0 4. Kch hot interface fa0/0 ny ln R1(config-if)#no shutdown
29
6. M CLI ca Router2 ln 7. Gn hostname cho n l R2 Router>en Router#conf t Router(config)#hostname R2 8. t a ch IP cho cng fa0/0 trn R2 ny nh sau R2(config)#interface fa0/0 R2(config-if)#ip address 10.1.1.2 255.255.255.0 9. Kch hot interface ny ln R2(config-if)#no shutdown
30
10. Gi ta truy cp vo CLI ca Router4 11. Gn hostname cho Router4 v sau t a ch IP cho cng Serial2/0 nh sau Router>en Router#conf t Router(config)#hostname R4 R4(config)#interface Ser2/0 R4(config-if)#ip address 172.16.10.2 255.255.255.0 12. Tip tc kch hot cng Serial2/0 trn R4 R4(config-if)#no shutdown
13. Kt ni tr li ti Router1 14. Th ping ti cng fa0/0 trn Router2 R1(config-if)#ping 10.1.1.2 15. Th ping ti cng Serial2/0 trn Router4 R1#ping 172.16.10.2
31
16. Kim tra v bo m trng thi ng kt ni v trng thi giao thc ca cc interface trn Router u UP
17. Xem ni dung ca running-config v kim tra xem vic t IP ng cha R1#show running-config 18. Xem thng tin chi tit v IP cho mi interface R1#show ip interface
32
Lab 10: ARP Giao thc ARP A. Mc tiu ca bi lab: Xem thng tin trong bng ARP B. Chun b cho bi lab: Chng ta s s dng Router1 v Router2.
C. Cc bc thc hin: 1. Kt ni ti Router1 (c hostname l R1) v xem bng ARP ca n. R1>en R1#show arp 2. Gn a ch IP cho cng Fa0/0 trn R1. R1#conf t R1(config)#interface fa0/0 R1(config-if)#ip address 10.1.1.1 255.255.255.0 R1(config-if)#no shutdown R1(config-if)#end
33
3. Xem li bng ARP ca R1. Lc ny ta thy xut hin mt dng (entry) duy nht l thng tin v cng Fa0/0 trn R1 R1#show arp
4. Truy cp vo CLI ca Router2 (c hostname l R2) 5. t a ch IP cho cng Fa0/0 trn R2 nh sau R2>en R2#conf t R2(config)#interface fa0/0 R2(config-if)#ip address 10.1.1.2 255.255.255.0 R2(config-if)#no shutdown R2(config-if)#end 6. Hin ta c mt kt ni gia 2 cng Fa0/0 trn R1 v R2. chc rng kt ni ny hot ng tt, trn R2 ta ping th ti a ch IP ca cng Fa0/0 trn R1. R2#ping 10.1.1.1
34
7. Gi xem li bng ARP trn R1 v thy l xut hin thm mt entry dnh cho cng Fa0/0 trn R2. R1#show arp
8. Gi ta s xy dng li bng ARP trn R1, chy lnh sau xa thng tin trong bng ARP ny. R1#clear arp 9. Xem li bng ARP ca R1 ln cui v ghi nhn li cc entry trong . R1#show arp
35
Lab 11: Creating a Host table To bng Host A. Mc tiu ca bi lab: Lm quen vi bng host ca router. Ta s dng bng host t tn cho a ch IP thng hay s dng, tc l ta s c mt cp nh x gia tn (dng chui k t) v a ch IP (dng s). B. Chun b cho bi lab: Chng ta s s dng Router1 v Router2. Hai router ny c ni li vi nhau (bng cp cho) s dng cng Fa0/0 trn mi router nh hnh sau
C. Cc bc thc hin: 1. Truy cp vo CLI ca Router1 v vo Privileged mode Router>enable Router# 2. Vo Configuation mode v t hostname cho Router1 l hn Router#conf t Router(config)#hostname hn hn(config)# 3. t a ch IP cho cng Fa0/0 trn Router1 v kch hot cng ny ln nh sau hn(config)#interface fa0/0 hn(config-if)#ip address 195.42.36.10 255.255.255.240 hn(config-if)#no shutdown
36
4. Gi ta truy cp vo CLI ca Router2 v vo Privileged mode Router>enable Router# 5. Vo Configuation mode v t hostname cho Router2 l hcm Router#conf t Router(config)#hostname hcm hcm(config)# 6. t a ch IP cho cng Fa0/0 trn Router2 v kch hot cng ny ln nh sau hcm(config)#interface fa0/0 hcm(config-if)#ip address 195.42.36.12 255.255.255.240 hcm(config-if)#no shutdown
7. Thot khi config- if mode. Gi ta khng mun phi g vo a ch IP ca cng Fa0/0 trn Router1 (hn) mi ln ta th ping ti a ch IP nn ta s to ra mt entry
37
trong bng host ca Router2 (hcm) l nh x gia hostname ca Router1 (l hn, nhng tht ra bn chn mt tn khc bt k cng c) v IP l 195.42.36.10 hcm(config-if)#exit hcm(config)# hcm(config)#ip host hn 195.42.36.10
8. Sau , ta c th ping ti a ch IP ca cng Fa0/0 trn Router2 s dng hostname l hn ca n hcm(config)#exit hcm#ping hn 9. Xc nhn li rng entry trn c trong bng host ca Router1 vi lnh sau hcm#show hosts
38
Lab 12: Static Routes Cu hnh Static Route A. Mc tiu ca bi lab: t a ch IP cho cc interface trn cc Router 1, 2 v 4 v sau thm cc static route vo bng nh tuyn trn cc router ny chng c th lin lc c vi nhau. 1. t hostname cho cc router v kch hot cc interface ca chng. 2. Ping qua li gia cc interface c kt ni trc tip vi nhau. 3. Thit lp cc static route. 4. Xem bng nh tuyn (routing table). 5. Kim tra li l cc router c th ping qua li ln nhau. B. Chun b cho bi lab: Chng ta s s dng Router 1, 2 v 4. C. Cc bc thc hin: 1. Di y l s kt ni gia cc router v cc a ch IP c gn cho cc interface trn cc router.
2. Sau khi cu hnh xong a ch IP trn mi interface nh trong hnh trn, ta s s dng lnh ping kim tra rng cc router c ni trc tip nhau th c th lin lc c vi nhau. Tc l khi bn ang Router1 th bn c th ping ti cng Fa0/0 ca Router 2 v cng Ser2/0 ca Router 4.
39
40
3. Gi ta bt u cu hnh static route trn mi router. u tin, xem xt R1. Ta cn to cc static route ti bt k v tr (node) no m cha c kt ni trc tip vi R1. Nhng r rng, R1 hin ang c kt ni trc tip ti c Router 2 v Router 4 v th ta khng cn cu hnh bt k static route no trn R1. K tip, ta s kt ni ti R4. 4. Gi vo Configuration mode trn R4 v ngh v cu lnh no c dng cu hnh static route cho n? Hin ta bit c rng R4 khng th lin lc vi R2 bi 2 router ny khng c ni trc tip vi nhau. Cng Ser2/0 ca R4 c a ch IP thuc mng 12.5.10.0 v c ni vi cng Ser2/0 ca R1. R1 cng c kt ni trc tip ti mng 10.1.1.0 l mng m ta mun R4 ti c. Vy trong trng hp ny ta s cn mt static route cho mng 10.1.1.0. Trn R4, g lnh sau thit lp mt static route ti mng 10.1.1.0 ny R4(config)#ip route 10.1.1.0 255.255.255.0 12.5.10.1 Chng ta va to trn R4 mt route ti mng 10.1.1.0. Gi th bt c khi no mt gi tin c gi cho mng 10.1.1.0 th n s c gi ti router c a ch IP l 12.5.10.1 ( y l cng Ser2/0 ca R1). 5. Hy xem ta c c iu g qua bc 4. Lc cha to static route trn, ta bit r l c th ping thnh cng ti cng Ser2/0 ca R1 nhng li khng th ping ti cng Fa0/0 ca R1. Gi ta va thit lp mt route ti mng 10.1.1.0. chc rng route ny hot ng tt, ta s th ping ti cng Ser2/0 ca R1, Fa0/0 ca R1 v Fa0/0 ca R2. R4#ping 12.5.10.1 R4#ping 10.1.1.1 R4#ping 10.1.1.2
41
6. Qua kt qu ca 3 lnh ping c th hin nh trong hnh trn ta thy, ch c duy nht a ch IP 10.1.1.2 (cng Fa0/0 ca R2) l khng h gi li bt c gi ICMP reply no cho R4, ti sao li nh vy? Bn th hnh dung v suy lun th ny: mt gi tin lun chuyn trong mng (trong trng hp ny l gi tin ICMP echo m R4 gi ti 10.1.1.2) c a ch mng ch l 10.1.1.0 khi ti R4 th da vo static route (c lu trong bng nh tuyn ca R4) trn m R4 s quyt nh y gi tin ra ngoi cng Ser2/0 ca n v chuyn ti cng Ser2/0 ca R1. V do R1 c kt ni trc tip vi mng 10.1.1.0 nn R1 s gi gi tin ra ngoi cng Fa0/0 ca n. Sau , R2 nhn c gi tin m va R1 gi ti v n mun phn hi li cho R4 mt thng ip bo rng Ny, bn tm thy ti ri!. R2 bt u kim tra gi tin v thy rng a ch IP ngun l 12.5.10.2 (cng Ser2/0 ca R4) nhng trong bng nh tuyn ca R2 hin cha c route no dnh cho mng 12.5.10.0 (m 12.5.10.2 thuc v) nn n nh hy b (drop) gi tin ny v ng thi khng gi li gi tin phn hi cho R4. l l do ti sao R4 khng nhn c gi ICMP reply no khi ping ti 10.1.1.2. 7. Xem bng nh tuyn ca R4 m bo c tn ti static route m ta va to trn
8. hon tt vic cu hnh static route nhm m bo 3 router u lin lc c vi nhau th ta cn kt ni ti R2 v to mt static route cho mng 12.5.10.0 (mng m R4 kt ni trc tip ti). G lnh sau trong CLI ca R2
42
R2(config)#ip route 12.5.10.0 255.255.255.0 10.1.1.1 iu ny c ngha rng bt c gi tin no R2 gi ti mng 12.5.10.0 s phi i qua 10.1.1.1 (cng Fa0/0 ca R1) trc. 9. Tr li R4 v chc rng ta c th ping ti tt c cc interface hin ang hot ng
dng c khoanh vin mu xanh ta s thy c k t S c ngha l static route. K tip ta xem mng ch v thng tin v subnet. [1/0] ln lt cho ta bit gi tr administrative distance (mc nh l 1) v gi tr metric (trong trng hp l s lng hop) y l bng 0. Cui cng i ti mng 12.5.10.0 ny th gi tin s cn i ti a ch 10.1.1.1.
43
Lab 13: RIP Cu hnh RIP A. Mc tiu ca bi lab: t a ch IP cho cc interface trn cc Router 1, 2 v 4 v sau cu hnh RIP cho cc router. C th ta s lm cc cng vic sau: 1. t hostname cho cc router v kch hot cc interface ca chng. 2. Cu hnh RIP. 3. Chn cc mng c kt ni trc tip vi nhau. 4. Xem bng nh tuyn. 5. Xem thng tin v giao thc RIP. B. Chun b cho bi lab: Chng ta s s dng Router 1, 2 v 4. C. Cc bc thc hin: (cch lm ca bc 1 v 2 ca 2 bi lab 12 v lab 13 ny kh ging nhau, ch khc nhau cc a ch IP c gn cho cc interface) 1. Di y l s kt ni gia cc router v cc a ch IP c gn cho cc interface trn cc router.
2. Sau khi cu hnh xong cc a ch IP cho mi interface ta cn kim tra xem cc Router l hng xm ca nhau (c kt ni trc tip vi nhau) c th thy nhau (lin lc c) hay khng. 3. Gi ta i vo bc cu hnh RIP lm giao thc nh tuyn cho cc router. Tht d dng cu hnh vi RIP; u tin ta cn vo Configurarion mode trn R1. R1# R1#config t R1(config)# 4. G lnh sau cu hnh RIP cho R1.
44
R1(config)#router rip R1(config-router)# 5. Thm cc mng m R1 kt ni trc tip ti. R1(config-router)#network 10.0.0.0 R1(config-router)#network 172.16.0.0
6. Ta va cu hnh RIP cho R1, gi kt ni ti R2 v vo Configuration mode R2# R2#config t R2(config)# 7. Cu hnh RIP cho R2. R2(config)#router rip R2(config-router)# 8. Thm (cc) mng m R2 kt ni trc tip ti. R2(config-router)#network 10.0.0.0
45
R4# R4#config t R4(config)# 10. Cu hnh RIP cho R4. R4(config)#router rip R4(config-router)# 11. Thm (cc) mng m R4 kt ni trc tip ti. R4(config-router)#network 172.16.0.0
12. Ta va cu hnh RIP cho tt c cc router. Nhn Ctrl+Z thot khi Privileged mode v xt xem ta c th ping ti cc router khng c kt ni trc tip vi nhau (gia R2 v R4) hay khng. T R2, th ping ti cng Ser2/0 ca R4 c a ch IP l 172.16.10.2.
46
14. Nu R2 v R4 c th ping thnh cng nhau th ta cng cu hnh nh tuyn s dng RIP thnh cng. Gi ta xem bng nh tuyn ca R4 R4#show ip route
15. Xem thng tin v (cc) giao thc nh tuyn m R4 ang s dng R4#show ip protocols
47
Lab 14: Troubleshooting RIP Chn on v x l s c vi RIP A. Mc tiu ca bi lab: t a ch IP cho cc interface trn cc Router 1, 2 v 4 v sau cu hnh RIP cho cc router. Sau , ta s quan st cc hot ng nh tuyn s dng lnh debug ip rip. Cn xem xt cc route trong bng nh tuyn ta s dng lnh show ip route. B. Chun b cho bi lab: Chng ta s s dng Router 1, 2 v 4. C. Cc bc thc hin: 1. Di y hnh m t s kt ni gia cc router v a ch IP c gn cho cc interface.
2. Cu hnh giao thc nh tuyn RIP trn tt c cc router s dng cc cu lnh network thch hp
48
Trn Router1
Trn Router2
49
Trn Router4
50
Trn Router2
Trn Router4
51
4. Trong Privileged mode ca Router1, chy lnh debug ip rip 5. Quan st thng tin u ra xut hin trn mn hnh (lu , c th mt gn 60 giy cc thng tin debug ny mi hin ra)
6. Nu mun dng li qu trnh hin th thng tin debug ca RIP v tr li cho ta du nhc lnh, ta cn hy b lnh debug. lm iu ny, g vo lnh undebug all hoc u all v nhn Enter.
52
Trn Router1
Trn Router2
Trn Router4
53
Lab 15: IGRP Cu hnh IGRP A. Mc tiu ca bi lab: t a ch IP cho cc interface trn cc Router 1, 2 v 4 v sau cu hnh giao thc nh tuyn IGRP cho cc router ny. C th ta s: 1. t hostname cho cc router v kch hot cc interface ca chng. 2. Cu hnh giao thc nh tuyn IGRP cho cc router. 3. Vi tng router, chn cc mng c kt ni trc tip n. 4. Xem bng nh tuyn ca cc router. 5. Xem thng tin v giao thc IGRP. Lu c bit: IGRP l mt giao thc ang dn khng cn c h tr trn cc thit b mng ca Cisco v n c thay th bi EIGRP mt giao thc c nhiu im tng ng v ci tin hn IGRP. Phin bn ca IOS m Packet Tracer 5.1 gi lp khng h tr IGRP nn trong bi lab ny ta s cu hnh cho EIGRP lm giao thc nh tuyn thay cho IGRP. B. Chun b cho bi lab: Chng ta s s dng Router 1, 2 v 4.
C. Cc bc thc hin:
54
2. Sau khi cu hnh xong a ch IP trn mi interface nh trong hnh trn, ta s s dng lnh ping kim tra rng cc router c ni trc tip nhau th c th lin lc c vi nhau. Tc l khi bn ang Router1 th bn c th ping ti cng Fa0/0 ca Router 2 v cng Ser2/0 ca Router 4. Trn Router1
Trn Router2
55
Trn Router4
3. Chng ta va cu hnh xong a ch IP cho cc interface, tip n ta s i vo cu hnh EIGRP lm giao thc nh tuyn cho cc router. iu ny th rt d thc hin, u tin ta cn vo Configuration mode trn R1 R1>en R1#conf t 4. G lnh sau cu hnh cho router s dng EIGRP vi tham s Autonomous system l 100 R1(config)#router eigrp 100 5. Thm cc mng m R1 c kt ni trc tip ti R1(config-router)#network 10.0.0.0 R1(config-router)#network 172.16.0.0
56
6. Ta va cu hnh xong EIGRP cho R1, gi ta vo Configuration mode ca R2 R2>en R2#conf t 7. Chn EIGRP lm giao thc nh tuyn cho R2 v nh km theo tham s Autonomous system ging vi ca R1 R2(config)#router eigrp 100 8. Thm (cc) mng m R2 ang c kt ni trc tip ti R2(config-router)#network 10.0.0.0
9. Ta va cu hnh xong EIGRP cho R2, gi ta vo Configuration mode ca R4 R4>en R4#conf t 10. Chn EIGRP lm giao thc nh tuyn cho R4 v nh km theo tham s Autonomous system ging vi ca R1 R4(config)#router eigrp 100 11. Thm (cc) mng m R4 ang c kt ni trc tip ti R4(config-router)#network 172.16.0.0
57
12. Gi th ta c EIGRP chy trn c 3 router. Tr v Privileged mode ca R2 v th s dng lnh ping kim tra xem ta c th ping ti cc router khng c kt ni trc tip ti R2 hay khng. y ta s th ping ti cng Ser2/0 ca R4 c a ch l 172.16.10.2
14. Nu vic ping thnh cng trn c R2 v R4 th coi nh ta hon thnh xong vic cu hnh nh tuyn cho cc router s dng EIGRP. Gi ta s xem qua bng nh tuyn ca R1
58
15. Cui cng ta s xem thng tin v giao thc nh tuyn m R1 ang s dng m bo rng cc cu hnh m ta va thc hin c hiu lc.
59
Lab 16: PPP and CHAP Cu hnh PPP vi xc thc CHAP A. Mc tiu ca bi lab: S dng PPP lm phng thc ng gi d liu v cc bc cu hnh CHAP lm phng thc xc thc bo mt cho kt ni PPP. B. Chun b cho bi lab: S dng Router1 v Router2 c kt ni li vi nhau thng qua cng Se2/0 trn mi router nh sau:
2. Cng trn R1, chy lnh sau cu hnh cc tham s (username v password) dng xc thc vi R2
Trong , R2 l hostname ca Router2, cn mmt03 l mt khu ging nhau cho c R1 v R2. 3. Tip tc, gn a ch IP l 10.1.1.1 vi subnet mask l 255.25.255.0 cho cng S2/0 ca R1. Sau chn phng thc ng gi l PPP vi xc thc l CHAP cho cng ny. Cui cng, g no shut kch hot cho n.
60
4. Tng t nh cc bc cu hnh cho R1 trn, trn Router2 ta cng thc hin tun t nh sau: - t hostname R2. - Cu hnh cc tham s xc thc: username l R1 (hostname ca Router1) v password l mmt03 (ging vi mt khu ta va thit lp cho R1 trn). - Chn phng thc xc thc l CHAP v ng gi l PPP v cho cng S2/0 ca R2 - Kch hot cng S2/0 ca R2 ln.
5. Cui cng, kim tra v xc nhn rng cc cu hnh trn lm vic ng, ta cn m bo l t R2 c th ping ti cng S2/0 ca R1
61
Lab 18: Saving Router Configurations Sao lu cu hnh ca Router A. Mc tiu ca bi lab: Bi lab ny s hng dn bn cch sao lu cu hnh ca router trong trng hp bn v tnh xa mt cu hnh ny hoc router ca bn b cht. B. Chun b cho bi lab: Chng ta s s dng Router 4 v PC1 lm TFTP Server. Lu : i vi PC1 th bn cn s dng thit b l Server-PT trong mc End Devices th mi c dch v TFTP c h tr trn PC1. M hnh bi lab nh hnh di y. Cng Fa0/0 trn Router 4 c kt ni ti card mng ca PC1 s dng cp thng (Copper Straight-Through)
C. Cc bc thc hin: 1. Kt ni ti Router 4 v vo Configuration mode Router>en Router#conf t 2. Gn hostname l Tampa cho Router 4 Router(config)#hostname Tampa 3. i vo cng Fa0/0 ca Router 4
62
Tampa(config)#int fa0/0 4. Gn a ch IP l 24.37.2.1 vi subnet mask l 255.255.255.0 cho cng Fa0/0 ny Tampa(config-if)#ip address 24.37.2.1 255.255.255.0 5. Kch hot interface Fa0/0 ln Tampa(config-if)#no shut
6. Kt ni ti PC 1 v t a ch IP l 24.37.2.252 vi subnet mask l 255.255.255.0, default gateway l 24.37.2.1 (a ch IP ca cng Fa0/0 trn Router 4) 7. Th ping t PC ti Router chc rng kt ni gia 2 thit b ny hot ng tt PC>ping 24.37.2.1
8. Kt ni tr li Router 4 v thot khi interface mode. S dng lnh copy chp ni dung trong running-config ln TFTP server l PC1 Tampa#copy running-config tftp 9. Nhp vo a ch IP ca TFTP server v tn ca file cu hnh m ta s lu tr n trn TFTP server
63
64
Lab 19: Loading Router Configurations Ti v cu hnh ca Router A. Mc tiu ca bi lab: Bi lab ny s hng dn bn cch ti v v np cu hnh ca router t TFTP server. B. Chun b cho bi lab: Chng ta vn s s dng tip m hnh gm Router 4 v PC1 nh trong bi lab 18. Lu l bn hon thnh xong cc bc trong lab 18. C. Cc bc thc hin: 1. Hin ti th file cu hnh ca Router 4 ang c lu tr trn TFTP server c hostname l Tampa. ng nhp vo Tampa v vo Configuration mode. Tampa>en Tampa#conf t 2. t li hostname l Bad_Router. Tampa(config)#hostname Bad_Router
3. Gi ta s copy cu hnh c lu tr trn TFTP server v ghi ln cu hnh hin ti m Router 4 ang s dng. Bad_Router#copy tftp running-config 4. Khi c router nhc nh v a ch IP ca TFTP server, ta nhp vo IP ca PC1 nh sau Address or name of remote host []? 24.37.2.252 5. K n ta cn cung cp tn ca file cu hnh cn nhn v t TFTP server. Source filename []? tampa_running_config 6. Ch mt lt router ti v cu hnh v np n vo running-config
65
66
Lab 20: Frame Relay Cu hnh Frame Relay A. Mc tiu ca bi lab: Hiu c cch thit lp Frame Relay trong kt ni WAN. B. Chun b cho bi lab: Chng ta s s dng Router1 v Router2. C. Cc bc thc hin: 1. Trong bi lab ny, ta s cu hnh frame relay gia router 1 v router 2 theo 2 cch: dng cng giao tip vt l (physical interface) hoc l cng giao tip logic (sub interfaces). Lu l c 2 router u kt ni ti Cloud bng u DTE
2. Cch 1: cu hnh frame relay dng physical interfaces trn cc cng serial ca router. Cc bc gm t a ch IP, chnh DLCI, v chnh Imi-type l ANSI. Trn Router1:
67
Trn Router2:
Kim tra li bng cc lnh show sau # show frame-relay map # show frame-relay pvc # show frame-relay Cc lnh trn ln lt th hin cc thng tin v Mapping, PVC, LMI
68
3. Cch 2: cu hnh frame relay dng sub interfaces trn cc cng serial ca router. Lu do vn dng vi thng s cu hnh c nn ta khng cn g qu nhiu cu lnh. Ta ch cn g a ch IP v frame map t interface gn cho sub interface. Trn Router1
Trn Router2
69
Lab 24: Introduction to Basic Switch Commands Cc cu lnh cu hnh Switch c bn A. Mc tiu ca bi lab: Cu hnh c bn cho switch. B. Chun b cho bi lab: S dng thit b switch c tn Switch1. C. Cc bc thc hin: 1. Khi truy cp vo Switch1, ta s bt u ti du nhc lnh c bn (i din bi k t >), tc user mode 2. xem danh sch tt c cc cu lnh hin c th s dng ti ch c bn ny, ta g du hi chm (?)
3. Gi mun vo Privilege mode (i din bi k t #) - ch cho php ta ton quyn kim sot thit b th s dng lnh enable 4. Tip tc, xem cc cu lnh sn dng trong Privilege mode, ta li g ?
70
5. Nu mun cu hnh cho switch. G tip lnh config terminal vo Configuration mode 6. Host name c s dng nhn dng thit b. Khi ng nhp vo switch, bn s thy Host name nm ng trc du nhc lnh (> hoc #). Bn c th thay i Host name ch ra v tr hoc chc nng ca switch. Lnh hostname sau y s t tn cho Switch1 l mmt03
7. S dng lnh enable password thit lp mt khu truy cp cho Privilege mode. iu ny thc s rt quan trng v trong Privilege mode, bn c th to ra nhiu thay i cu hnh ca switch nn bn cn gii hn ch nhng ngi bit c mt khu mi c th ng nhp vo switch cu hnh cho thit b. C mt cht khc bit v c php lnh khi t mt khu cho switch v router. Trn cc thit b mng Cisco, c nhiu mc quyn hn - privilege level, v thng c 16 level c nh s t 0 n 15. Mi level c mt tp cc lnh v bn c th iu chnh li tp cc lnh trong tng level, mc nh th User mode l level 1 v level 15 l Privileged mode. Sau bn c th thit lp cho mt (nhm) ngi dng no ch c php s dng cc cu lnh thuc level no . t mt khu l uit cho Privileged mode c level l 15 (tc gi nguyn cu hnh mc nh) ta thc hin nh sau
8. Gi kim tra mt khu ny, ta tr v User mode (lnh exit) v th vo li Privileged mode (lnh enable), sau nhp vo mt khu l uit ti du nhc Password:
71
G tip conf term tip tc cc bc sau ca bi lab 9. Vn duy nht i vi enable password l n xut hin trong file cu hnh ca switch di dng khng m ha (plain-text). Nu bn cn cho ai xem file ny h c th gip bn khc phc vn no th c th bn v tnh t ph v c ch bo v ca h thng bng vic l mt khu truy nhp vo Privileged mode ca switch. Lnh enable secret di y s thit lp mt khu c lu tr dng m ha trong file cu hnh ca thit b. ng qun tham s lnh level c gi tr l 15 v y chui mt khu dng plain-text m ngi dng cn nhp khi mun vo Privileged mode l cisco.
10. By gi ta th kim tra mt khu enable secret ny bng cch tr v User mode v sau g enable. Lu l khi tn ti c 2 loi mt khu l enable password v enable secret th enable secret s c u tin s truy nhp vo Privileged mode. Do vy, y ta cn nhp vo chui mt khu l cisco.
72
Lab 28: Standard Access Lists Danh sch kim sot truy cp chun A. Mc tiu ca bi lab: Tm hiu v thc hnh cu hnh cc danh sch kim sot truy cp chun (Standard ACL). B. Chun b cho bi lab: Chng ta s s dng Router 1, 2 v 4 vi cc cng c kt ni v t a ch IP theo m hnh nh sau:
73
5. Cu hnh RIP cho Router1 v thm network dnh cho cc cng Fa0/0 v Ser2/0
74
6. Cu hnh RIP cho Router2 v thm network dnh cho cng Fa0/0
7. Cu hnh RIP cho Router4 v thm network dnh cho cng Ser2/0
75
9. Gi ta s cu hnh ACL trn Router2 chn kh nng Router4 ping ti Router2. Vo ch Configuration. Sau , to mt access-list 1 ch chn a ch IP 24.17.2.18 (cng Ser2/0 ca Router4) theo sau l lnh access-list permit any cho php tt c cc a ch IP khc c gi gi tin ti cng Fa0/0 ca Router2.
Ngoi lnh access-list 1 deny host 24.17.2.18, ta cn c th s dng hai lnh tng ng sau: # access-list 1 deny 24.17.2.18 0.0.0.0 v # access-list 1 deny 24.17.2.18 10. Sau khi to xong access-list trn, ta cn gn n cho cng Fa0/0 ca Router2 ng thi ch ra hng i ca gi tin m access-list ny s kim sot (i vo hay i ra t cng Fa0/0 ca Router2). in c ngha l cc gi tin n t mng v s i vo router v out c ngha rng cc gi tin i ra khi router v i vo mng.
11. Kim tra li rng by gi Router4 khng th ping ti cng Fa0/0 ca Router2 na.
76
Lab 29: Verify Standard Access Lists Kim tra li cu hnh Standard ACL A. Mc tiu ca bi lab: Kim tra xem access-list c cu hnh ng hay cha. B. Chun b cho bi lab: - Yu cu: hon thnh xong lab 28 (Standard Access List) - Chng ta s tip tc lm vic vi m hnh ca lab 28. C. Cc bc thc hin: 1. bc u tin ny ta s xem xt xem c th ping ti Router2 t Router4 khng. Kt ni ti Router4 v th ping ti cng Fa0/0 ca Router2 (c a ch IP l 24.17.2.2). Nu bn nhn c 5 du chm nh hnh sau th access-list m ta to lab 28 lm vic ng.
2. Truy cp vo Router2 v thm tra xem cc access-list ca ta ang chy trn cc interface no, xem ni dung ca running-config
77
3. Ta cng c th xem cc access-list c p dng cho cc interface no bng lnh show ip interface
4. Lnh show access-lists s cho ta bit cc access-list no m ta to trn router. N cng s cho ta bit cc entry no trong access-list c s dng v s lng gi tin m router cho php hoc b chn.
78
Lab 30: Extended Access Lists Danh sch kim sot truy cp m rng A. Mc tiu ca bi lab: Tm hiu v thc hnh cu hnh cc danh sch kim sot truy cp m rng (Extended ACL). B. Chun b cho bi lab: S dng li m hnh cng nh cc bc cu hnh a ch IP cho cc interface v RIP trn cc router tng t bi lab 28. Lu : Nu bn thc hin cu hnh Standard ACL lab 28 th trc khi i vo cc bc ca lab 29 ny, bn cn thc hin lnh no ip access-group 1 trn cng Fa0/0 ca Router2 (hoc s dng lnh no ip access-list standard 1 trong ch Configuration ca Router2) C. Cc bc thc hin: (t bc 1 -> 8, thc hin ging lab 28) 9. Hai extended access list m ta s to ra sau y c 2 tc dng khc nhau. u tin, ta s ch cho php subnet ni trc tip vi cng S2/0 ca Router1 c telnet ti cng S2/0 ca Router1. lm iu ny ta chy lnh sau trong ch Configuration ca Router1. Router1(config)#access-list 101 permit tcp 24.17.2.16 0.0.0.15 any eq telnet 10. Tip n ta s cho php bt k gi tin no t subnet 24.17.2.0 bng lnh sau Router1(config)#access-list 102 permit ip 24.17.2.0 0.0.0.15 any 11. Gi ta cn gn cc access-list ny cho cc interface. Di y l cc lnh dng gn access-list 101 cho cng S2/0 ca Router1 theo hng inbound (cc gi tin i vo cng ny s chu s kim sot). Router1(config)#int S2/0 Router1(config)#ip access-group 101 in Router1(config)#exit 12. Vi cng Fa0/0 th ta cn gn access-list 102 hng inbound. Router1(config)#int F0/0 Router1(config)#ip access-group 102 in
79
Router1(config)#exit
13. Nh vy l ta hon thnh xong cc yu cu ca bi lab ny. bi lab k tip ta s thc hin cc bc thm nh rng cc access-list trong bi ny c cu hnh chun xc.
80
Lab 31: Verify Extended Access Lists Kim tra Extended Access Lists A. Mc tiu ca bi lab: Kim tra li cc cu hnh access-list bi lab 30. B. Chun b cho bi lab: - S dng li m hnh cng nh cc bc cu hnh a ch IP cho cc interface v RIP trn cc router tng t bi lab 28. - hon thnh cu hnh extended access list trong bi lab 30. C. Cc bc thc hin: 1. Gi ta s kim tra xem cc access-list lab 30 c c cu hnh ng cha. Kt ni ti Router4 v th ping ti cng S2/0 ca Router1. Nu ping khng thnh cng th access-list 101 ang lm vic ng.
2. Tip n ta cn kim tra xem t Router4 c c php telnet ti Router1 cha. Kt ni ti Router1 v cho php truy cp bng telnet, sau thit lp mt khu cho kt ni telnet l mmt03.
81
3. Gi kt ni tr li Router4 v th telnet ti Router1 Router4#telnet 24.17.2.17 4. Nu thy du nhc lnh ca router i thnh Router1 th tc l ta telnet thnh cng ti Router1. Gi chy lnh exit hoc nhn gi t hp phm control+shift+6+x tr li Router4. Sau , g tip lnh disconnect 1 ng kt ni telnet ti Router1. Nh vy, ta cu hnh ng cho access-list.
5. Gi kt ni ti Router2 v kim tra xem ta c th ping ti cng S2/0 ca Router4 hay khng
6. Kt qu cho thy ta khng th lnh ping bc 5 khng thnh cng, ti sao li nh vy? Hy mng tng ra qu trnh m gi tin lu chuyn trong mng. Gi tin bt u ti Router2, i qua Router1 v c chuyn ti Router4. Sau , ti Router4, gi tin c ng gi li v gi tr v cho Router1. Khi Router4 ng gi li gi tin, IP ngun ca gi tin tr thnh IP ch v IP ch tr thnh IP ngun. Khi gi tin gp phi access-list trn cng S2/0 ca Router1 th n b chn li bi v IP ngun ca gi tin l a ch ca cng S2/0 ca Router4.
82
7. Gi ta kim tra xem t Router2 c th ping ti cng Fa0/0 ca Router1 (24.17.2.1) hay khng
9.
83
11. Lnh show access-lists s cho bit cc access-list no c to trn router. N cng cho ta bit cc entry no ca access-list c s dng v c bao nhiu gi tin c php hoc b t chi bi access-list.
84
Lab 32: Named Access Control Lists Named Access Control Lists A. Mc tiu ca bi lab: To mt ACL c gn tn (thay v c nhn dng bi con s nh trong cc bi lab trc) cm tt c cc gi ping t PC ti Router1 nhng cho php truy cp t Router4 ti Router1. Ta s cu hnh cc ACL ny trn Router1 B. Chun b cho bi lab: Xy dng m hnh kt ni gia PC v cc router v cu hnh IP cho cc thit nh hnh di y:
C. Cc bc thc hin: 1. Cu hnh giao thc nh tuyn RIP trn c 2 router s dng cc lnh network thch hp (xem li lab 13) 2. Chy lnh show ip route m bo cc tuyn ng trong bng nh tuyn ca cc router l y v chnh xc. Sau kim tra kt ni gia cc thit b bng lnh ping.
85
Trn Router1
Trn Router4
3. Gi ta s ngn chn tt c cc lu lng ping xut pht t PC v c gi cho Router1. Access list ny c th nm trn Router4 hoc Router1. Thng th ta s c access list c t trn router m nm gn ngun (gi gi tin) nht c th v iu ny gip loi b nguy c cc lu lng khng cn thit di chuyn trong mng. Nhng v d ny, ta s t access list trn Router1 vi hng inbound nh sau:
86
Theo hnh trn th: Cu lnh u tin ch r kiu ca access list l extended. Dng lnh th hai c tc dng t chi bt k gi ICMP no c gi t host c IP l 192.168.1.1 v ch n l host c IP l 192.168.1.1. rng ta dng tham s lnh host cho phn u (source address) ca access list v dng wildcard 0.0.0.0 cho phn hai (destination address) ca access list. C host v wildcard y u c tc dng ging nhau l xc nh a ch IP ca mt host c th (ch khng phi mt tp cc IP). Lnh th ba cho bit rng tt c cc lu lng khc u khng b chn bi access list.
4. K tip ta s gn access list va to trn cho cng S2/0 ca Router1 v access list ny s dnh cho hng inbound.
87
Ta thy, PC c IP l 192.168.1.18 khng th ping ti IP 192.168.1.1, Nh vy, access list ca ta lm vic ng theo yu cu. Xc nhn rng t Router4 c th ping thnh cng ti Router1 nh sau
88
Lab 33: Advanced Extended Access List Nng cao v Extended Access List A. Mc tiu ca bi lab: Cu hnh Extended Access List lc nhiu loi lu lng mng (traffic) khc nhau nh: - Lc cc traffic gi t network ny ti network kia. - Lc cc traffic gi t host ti network. - Lc cc traffic gi t network ti host. B. Chun b cho bi lab: 1. Xy dng s mng v cu hnh IP cho cc thit b nh hnh sau:
2. Cu hnh RIP cho tt c cc router s dng cc cu lnh network thch hp. 3. m bo rng cc route trong bng nh tuyn ca cc router c to ra y v chnh xc vi lnh show ip route. 4. Kim tra kt ni gia cc thit b bng lnh ping. C. Cc bc thc hin: Kim sot traffic gi t network ny ti network kia. 1. Access list u tin ta to ra s ch cho php cc traffic (s dng protocol bt k) t mng Administration (gm PC4 v PC5) gi ti mng Corporate HQ (gm PC1). lm iu ny ta s s dng extended access list nh sau:
89
access-list 100 permit ip 192.168.1.0 0.0.0.127 192.168.3.0 0.0.0.255 access-list 100 permit ip 192.168.2.0 0.0.0.0 any Cu lnh u c ngha rng cc IP nm trong di (192.168.1.0 -> 192.168.1.127) c php gi bt k traffic no ti cc IP thuc mng 192.168.3.0/24. Cu lnh th hai c ngha rng cc cc IP thuc mng 192.168.2.0/24 c php gi bt k traffic no ti bt k mng no. V ngm nh, di cng access list lun c mt entry mang ngha cm tt c cc traffic vo/ra nn ta cn ti lnh ny cc router1 v router2 c th trao i (dng broadcast) cc thng tin nh tuyn (RIP) cho nhau.
2. V traffic xut pht t Router2 v i n Router1 nn ta s cu hnh v gn access list cho cng S2/0 ca Router1 kim tra tt c cc traffic gi n cng ny (hng inbound).
3. kim tra access list ny, th ping PC1 t PC2, PC3, PC4 v PC5. Nu PC2 v PC3 khng th ping ti PC1 nhng PC4 v PC5 th c th th ta access list lm vic ng theo yu cu. Trn PC2
90
Trn PC4
Kim sot traffic gi t host ny ti host kia 1. Phn tip theo ca bi lab ny, ta s kha vic truy cp n file server (PC5) t mt my trm c th (PC2). thc hin iu ny, ta s to mt access list trn Router2 c tc dng chn tt c cc traffic gi t PC2 n PC5. Sau gn access list ny cho cng Fa0/0 ca Router2.
2. Gi kt ni ti PC2 v xc nhn rng ta khng th ping ti PC5 nhng t PC3 ta c th ping ti PC5 Trn PC2
91
Trn PC3
Kim sot traffic gi t network cho host 1. Trc khi bt u cu hnh cho access list mi ny, ta cn loi b cc access list trn Router1 v Router2 va to trn nh sau: Trn Router1
Trn Router2
2. kch bn cui cng ny, ta s chn tt c cc traffic gi n PC1 t vng Network Users nh trong s mng trn. lm iu ny, ta s vit mt extended access list nh sau:
92
access-list 102 deny ip 192.168.1.128 0.0.0.127 host 192.168.3.2 access-list 102 permit ip any any Ri gn access list 102 ny cho cng S2/0 ca Router2 vi hng outbound.
kim tra access list c lm vic ng cha, th ping PC1 t PC2 hoc PC2, nu ping tht bi th chc mng, ta hon thnh xong bi lab 33 ny.
93
Lab 34: Introduction to Telnet Lm quen vi Telnet trn Router A. Mc tiu ca bi lab: Tm hiu vic thit lp phin kt ni Telnet gia 2 router. B. Chun b cho bi lab: - S dng Router1 v Router2 c kt ni trc tip vi nhau thng qua cng Ethernet trn 2 router ny.
Cu hnh a ch IP cho cc cng Fa0/0 trn 2 router nh s trn. Sau kim tra kt ni gia chng bng lnh ping.
C. Cc bc thc hin: 1. Kt ni vo Router1. y, Router1 ng vai tr lm thit b tip nhn cc yu cu thit lp phin telnet v quy nh mt khu m cc thit b khc cn s dng nu mun telnet vo n. - Vo ch Configuration ca Router1. - Truy cp vo cc line vty (virtual terminal). Mi vty i din cho mt phin telnet ang hot ng v thng c ti a 15 line vty trn router. Router1 h tr cng lc 5 phin telnet (tng ng vi 5 vty) th cu lnh m ta cn g vo y l line vty 0 4
94
2. Gi ta cn bo cho Router1 bit rng ta s i hi ngi dng cung cp mt khu ng nhp khi h mun telnet vo Router1 s dng lnh login. 3. G vo mt khu c s dng thit lp phin telnet, y ta chn mt khu l mmt03
4. Vo Router2. G lnh sau kt ni telnet n Router1 s dng a ch IP ca cng Fa0/0 trn Router1.
Sau , g vo mt khu l mmt03 ng nhp. Nu du nhc lnh tr v l Router1> th ta telnet thnh cng vo Router1. 5. Gi nhn ng thi t hp phm Ctrl+Shift+6, sau th ra v ngay lp tc nhn phm x. Bn s nhn thy rng du nhc lnh (hostname) i thnh Router2 tc l gi ta quay li lm vic vi Router2 (v phin telnet va to vn c duy tr).
95
6. Tip tc, g lnh show sessions xem tt c cc phin telnet ang hot ng. tr li lm vic vi phin telnet no , xc nh con s i din cho phin telnet ri s dng lnh resume nh sau:
y, s 1 tng ng vi phin telnet ti IP 192.168.1.1 (Router1) v ta thy rng du nhc lnh quay v li l Router1. 7. Gi nhn t hp phm Ctrl+Shift+6 theo sau l phm x li quay v Router2. Cui cng g lnh disconnect 1 kt thc phin telnet ti Router1
96
Lab 35: Introduction to VLAN Gii thiu v VLAN A. Mc tiu ca bi lab: Bit c nhng u im ca VLAN. B. Chun b cho bi lab: S dng Router, Switch v PC1, PC2 c kt ni v cu hnh IP nh hnh sau. Chng ta s cu hnh cho Router v Switch h tr VLAN. Mc ch ca lab ny l thit lp cc PC1 v PC2 c th ping c cho nhau thng qua switch. Sau ta s thay i cc VLAN trn switch chng khng th ping cho nhau cng nh khng th ping ti router c na. Cui cng ta s thay i cu hnh trn Switch cc PC thuc cng VLAN v xem xt rng chng li c th ping cho nhau.
C. Cc bc thc hin: 1. Bt u bng vic cu hnh a ch IP cho cng Fa0/0 ca Router nh sau.
97
98
5. Gi kt ni ti Switch v cu hnh VLAN. Mc nh, th tt c cc cng (port) trn switch u nm trong cng VLAN c ID l 1 (VLAN 1). Trong trng hp ny ta s thit t cho port Fa1/1 ca switch (hin ang ni vi PC1) vo mt VLAN c ID l 22 tch bit vi cc port cn li. Bt u to mt VLAN mi c ID l 22 nh sau:
Nu mun bn c th t tn cho VLAN 22 ny gip nhn dng v phn bit d dng hn gia cc VLAN, nh trong hnh trn ta t l pc1-pc2. 6. Gi ta cn gn cc port vo VLAN 22 va to bc 5. Di y s gn port Fa1/1 ca Switch ang ni vi PC1 vo VLAN 22.
99
Nh hnh trn ta thy, PC2 c th ping ti Router nhng PC1 khng th ping c PC1. Ti sao li nh vy? Trn Switch, ta cu hnh cho VLAN 22 ch gm port Fa1/1. iu ny c ngha rng tt c cc port cn li (Fa0/1, Fa2/1 -> Fa5/1) vn cn nm trong VLAN 1. V th, khi PC2 (hin ang ni vi port Fa2/1) gi gi tin ping ti Switch th cc gi tin c nh du l VLAN 1 v cng ng ngha vi vic chng ch c th i ra khi cc port thuc VLAN 1 m thi. V kt qu l chng (cc gi tin ping t PC2) khng th i ra khi port Fa0/1 thuc VLAN 22 ti PC1. 8. Gi ta li kt ni tr li Switch v cu hnh VLAN cho port Fa2/1 (hin ang ni vi PC2) nm trong VLAN 22 nh sau
100
S khc l y l g? Hin PC2 c th ping ti PC1 nhng vn khng th ping ti Router. L do l v lc ny gi tin ping t PC2 c nh du l VLAN 22, tc l n ch c th i ra khi port Fa0/1 ang c ni vi PC1 v cng thuc VLAN 22. y cng chnh l mc ch ca bi lab m ta mun thc hin. 10. Kt ni tr li Switch v s dng lnh show vlan (hoc show vlan brief) xem xt vic phn nh VLAN
11. Cui cng, kt ni li vo Switch v gn port Fa0/1 vo VLAN 22 cho php c 3 thit b (Router, PC1, PC2) c th ping c ln nhau.
12. Kim tra li vic ping thnh cng gia Router, PC1 v PC2 bng cch t Router ping ti PC1 v PC2
101
Lab 36: VLAN Trunking Protocol Cu hnh VLAN Trunking Protocol (VTP) A. Mc tiu ca bi lab: To cc VLAN trn switch Catalyst 2950. Gn cng lc nhiu port vo cc VLAN Cu hnh giao thc VTP thit lp kt ni gia VTP server v VTP client. To mt ng trunk gia 2 switch lm knh truyn dn gip ng b thng tin v VLAN gia cc switch. Kim tra cu hnh ca VLAN v VTP. B. Chun b cho bi lab: Trong Packet Tracer, s dng 2 switch 2950-24 v chng c kt ni nh sau
102
3. Kim tra kt ni thnh cng gia 2 switch bng cch ping qua li gia chng T Switch1 ping ti Switch2
4. Ti Switch1, to vlan 18 v vlan 14. Sau gn cc port 0/2-0/5 cho vlan 8 v cc port 0/6-0/10 cho vlan 14
103
6. Mc nh th Catalyst switch c cu hnh lm VTP Server. Gi ta mun thit lp cho Switch1 lm VTP Server cn Switch2 lm VTP Client. Ngoi ra thay i VTP domain thnh UIT v VTP password l mmt03 Trn Switch1 thc hin cc lnh sau
104
7. K tip ta cn to mt ng trunk truyn ti cc thng tin cu hnh vlan t Switch1 sang Switch2. lm iu ny, ta s bt trunking trn cc port ni gia 2 switch, y l 2 port Fa0/1 ca mi switch. Phng thc ng gi (encapsulation) c s dng l 802.1q. Trn Switch1, thc hin cc lnh sau
8. Cui cng, xem thng tin v cc VLAN m Switch2 cp nht t Switch1 th ti Switch2 g lnh show vlan
105
Lab 37: OSPF Single Area Configuration and Testing Cu hnh OSPF (Single Area) A. Mc tiu ca bi lab: Cu hnh v kim tra hot ng ca giao thc nh tuyn OSPF trn router vi cc bc c bn sau: 1. t hostname cho cc router v kch hot cc interface cn c s dng. 2. Cu hnh OSPF trn cc router. 3. Chn cc mng c kt ni trc tip vi nhau. 4. Xem xt bng nh tuyn. 5. Xem thng tin v giao thc OSPF. B. Chun b cho bi lab: S dng cc Router1, 2 v 4 c cc interface c kt ni nh sau:
C. Cc bc thc hin: 1. Sau khi cu hnh a ch IP cho cc interface ca cc router nh m hnh trn v xc nhn rng cc router c ni trc tip vi nhau c th ping thnh cng ti nhau, tc l R1 c th ping ti cng Fa0/0 ca R2 v cng Se2/0 ca R4. 2. Tip n ta s cu hnh OSPF lm giao thc nh tuyn trn cc router. iu ny rt d thc hin, u tin ta cn vo Configuration mode trn R1. Sau chy lnh sau: #router ospf 100
106
4. Gi vo Configuration mode ca R2, sau chn OSPF lm giao thc nh tuyn v thm vo (cc) mng c kt ni trc tip vi R2 bng cch thc hin tun t cc lnh sau:
5. Tng t, ta vo Configuration mode ca R4, sau chn OSPF lm giao thc nh tuyn v thm vo (cc) mng c kt ni trc tip vi R4 bng cch thc hin tun t cc lnh sau
6. Hin ti th OSPF ang chy trn c 3 router. Nhn <Ctr>l + Z thot khi Privileged mode v kim tra xem ta gia cc router khng c kt ni trc tip c th ping thnh cng ti nhau hay khng. T R2 th ping ti cng Se2/0 ca R4 c IP l 172.16.10.2
107
8. Nu kt qu ca 2 lnh ping trn thnh cng th ta hon thnh xong cu hnh nh tuyn s dng OSPF cho cc router. Gi xem qua bng nh tuyn trn R2 vi lnh sau
9. Trn R1, bit thng tin v giao thc nh tuyn m router ang s dng, ta chy lnh sau
108
12. Cui cng, hin th tt c cc interface ca router ang s dng OSPF, ta chy lnh sau:
-- Ht -109