Professional Documents
Culture Documents
báo cáo thực tập tốt nghiệp - thu
báo cáo thực tập tốt nghiệp - thu
BO CO THC TP TT NGHIP
: Phan Th Thu
Lp
: D4-DTVT
Kho
: 2009-2014
H NI Nm 2013
GVHD: TS.L Anh Ngc
TRNG I HC IN LC
KHOA IN T VIN THNG
BO CO THC TP TT NGHIP
Chuyn ngnh: in t Vin thng
: Phan Th Thu
Lp
: D4-DTVT
Kho
: 2009 - 2014
H NI Nm 2013
NHN XT
(Ca c quan thc tp)
Xc nhn ca n v thc tp
NHN XT
(Ca ging vin hng dn)
MC LC
DANH MC VIT TT ................................................................................. i
MC LC HNH NH .................................................................................. ii
MC LC BNG BIU ............................................................................... iii
LI NI U .................................................................................................1
Phn 1: GII THIU V N V THC TP .............................................2
1. Gii thiu chung .....................................................................................2
2. C cu t chc. .......................................................................................3
3. Cc dch v kinh doanh. .........................................................................3
Phn 2: NI DUNG TM HIU TRONG QU TRNH THC TP ...........5
1. Tm hiu v router cisco 3825. ................................................................5
1.1 Gii thiu chung v router 3825. .......................................................5
1.2 Mt s hnh nh minh ha router 3825...............................................6
1.3 Cc thng s k thut ca router 3825 .................................................7
2. Mng ring o VPN .................................................................................9
2.1 Khi nim: ..........................................................................................9
2.2. Cc m hnh ca VPN. .........................................................................9
2.2.1 Remote-Access. ...........................................................................9
2.2.2 Site-to-Site. .................................................................................10
2.3 Cc phng php bo mt. ................................................................10
2.4 Cc k thut v cc giao thc s dng trong VPN. .........................11
2.4.1. Cc k thut s dng trong VPN. .............................................11
2.4.2 Cc giao thc ca VPN Tunneling. ...........................................12
2.5. Li ch ca VPN. .............................................................................13
3. Cu hnh VPN. .......................................................................................14
3.1 M hnh mng. .................................................................................14
3.2 Yu cu. ...........................................................................................14
3.3
Cu hnh. ........................................................................................14
DANH MC VIT TT
T vit tt
Nga ca t vit tt
LAN
WAN
ISP
CCVN
IXP
IPLC
FTTH
VPN
SDM
IPS
URL
HWIC
SFP
PVDM
AIM
ISDN
SNMP
IEEE
ii
MC LC HNH NH
Hnh 1. Tng quan mt trc ca router cisco 3825 .......................................6
Hnh 2. Bng iu khin trc ca router cisco 3825 .....................................6
Hnh 3. Tng quan pha sau ca router cisco 3825 ..........................................7
Hnh 4. Bng iu khin pha sau ca router cisco 3825 .................................7
Hnh 5. M hnh mng cn kt ni 2 chi nhnh ca cng
ty...Error! Bookmark not defined...14
Hnh
6.
Kt
qu
ping
LAN
118.70.219.0/24
118.70.218.0/24..17
iii
MC LC BNG BIU
LI NI U
Cisco System l hng chuyn sn xut cc thit b v a ra cc gii php
mng LAN&WAN ln nht th gii hin nay. Th phn ca hng chim 70% n
80% th trng thit b mng trn ton th gii. Cc thit b v gii php ca hng
p ng nhu cu ca mi loi hnh doanh nghip t cc doanh nghip va v nh
n cc doanh nghip c quy m ln v cc nh cung cp dch v Internet (ISP).
Router l mt thit b mng lp 3, c chc nng chnh l nh tuyn mng v
router cng l sn phm mi nhn ca Cisco. Nm 1986 cisco tung ta sn phm
router u tin, tip theo l hng lot cc router c tung ra gn y c b
sung thm nhiu tnh nng nh router 1800, 1900, 2600, 2800, 2900, 3700, 3800,
3900, 7200, 7600... Trong c dng router 3800 kh ph bin, c bit l trong
h thng mng Vit Nam hin nay, vi y cc tnh nng v h tr nhiu dch v
khc.
Trong k thc tp ti Cng Ty Sng To Truyn Thng Sng To Vit Nam,
em tm hiu thc tmt s thit b mng, trong c router cisco 3825. Ni dung
bo cogm 2 phn:
Phn 1: Gii thiu v n v thc tp
Phn 2: Ni dung tm hiu trong qu trnh thc tp
Tuy nhin do thi gian v kin thc cn hn ch nn bi co khng th trnh
khi thiu st. Rt mong c s ng gp kin ca thy c v cc bn.
Phan Th Thu
Dch v Kt ni Internet
Phng k ton
Phng kinh
+ nhn s
doanh
Phng k thut
Dch v knh thu ring Internet Leased-line Quc t v Trong nc: Cung
Dch v cung cp ng truyn trc tip IPLC Quc t, dch v WAN Metro
Dch v Server Hosting, cho thu Datacenter: Cung cp dch v cho php
cng ngh IP
-
Bo mt
M ha On-board
EPII-PLUS
(NAC)
Thoi:
Ch th LED
Khe cp th nh Flash
Cng tc ngun
Cng USB
Kt ni ngun (AC)
Cc l c vt
2 cng Gigaethernet
10
khe cp SFP
K thut
Kch thc(HWD)
(8.943.337.3) cm
Khi lng
10.5kg
Ngun AC vo:
in p
100-240 VAC
Tn s
47- 63 Hz
300 W
RJ-45 connector
Nhit vn hnh
0-45
Nonoperating temperature
-40- 85
m vn hnh
5 95 % khng ngng t
cao vn hnh
Ln n 2,000m
Mc n
Ln nht 53dBA
Chng ch an ton
Cc cng kt ni
2 cng Gigaethernet
2 cng USB
1 cng SFP
1 cng console
Giao thc:
Giao thc chuyn mch
ISDN
Ethernet,
EthernetHTTP, SNMP 3
IPSec
DES, 3DES
Giao din
Ethernet RJ45
Cng ngh kt ni
C dy
Fast
Ethernet,
Gigabit
10
2.2.2 Site-to-Site.
Bng vic s dng mt thit b chuyn dng v c ch bo mt din rng,
mi cng ty c th to kt ni vi rt nhiu cc site qua mt mng cng cng nh
Internet.
Cc mng Site-to-site VPN c th thuc mt trong hai dng sau:
-
chn hiu qu gia mng ring ca ngi dng vi Internet. Ngi dng c th s
dng tng la ngn chn cc cng c m, loi gi tin c php truyn qua v
giao thc s dng.
-
11
sau m ho chnh kha b mt (symetric key) bng kho cng khai ca ngi
nhn (public key). My tnh nhn s dng kho ring ca n (private key) tng
ng vi kho public key gii m kho b mt (symetric key), sau s dng
kho b mt ny gii m d liu.
cng cng thc hin m ho, gii m. Kho ring ch s dng ti my tnh ,
cn kho cng cng c truyn i n cc my tnh khc m n mun trao i
thng tin bo mt. gii m d liu m ho, my tnh kia phi s dng kho cng
cng nhn c, v kho ring ca chnh n. Mt phn mm m ha cng khai
thng dng l Pretty Good Privacy (PGP) cho php m ho c hu ht mi th.
Ngi s dng c th xem thm thng tin ti trang ch PGP.
2.4 Cc k thut v cc giao thc s dng trong VPN.
2.4.1. Cc k thut s dng trong VPN.
K thut VPN da vo tng ng hm (tunneling). K thut VPN
tunneling cp n vic thit lp, duy tr kt ni mng logic (c th c cc chng
trung gian). Vi kt ni ny cc gi c xy dng da vo nh dng ca cc giao
thc VPN v c ng gi vo cc giao thc khc (chng hn nh gi TCP/IP)
sau uc truyn i n client hay server v c khi phc t u thu. C rt
nhiu giao thc VPN ng gi vo gi IP. Cc giao thc ca VPN cng h tr
vic nhn dng v m ha bo mt ng hm.
Cc dng ng hm ca VPN: VPN h tr hai dng ng hm l t
nguyn v bt buc:
-
ni. Trc tin client thc hin vic kt ni n ISP, sau VPN ng dng to ra
ng hm n VPN server qua ng hm kt ni trc tip ny.
-
thit lp kt ni VPN. Trc tin VPN client kt ni n ISP v ISP thc hin kt
ni gia client v VPN server. Nu ng VPN client th vic kt ni ch thc hin
1 bc (so vi 2 bc nu s dng tunneling t nguyn). VPN tunneling bt buc
12
L2TP.
-
ring o quay s (Virtual Private Dail-up Network). L2TP cho php ngi dng c
th kt ni thng qua cc chnh sch bo mt ca cng ty (security policies) to
VPN hay VPDN nh l s m rng ca mng ni b cng ty.
-
GRE.
Bng vic kt ni nhiu mng con vi cc giao thc khc nhau trong mi
trng c mt giao thc chnh. GRE tunneling cho php cc giao thc khc c th
thun li trong vic nh tuyn cho gi IP.
3)
IPSec.
13
IPSec cung cp dch v bo mt s dng KDE cho php tha thun cc giao
thc v thut tan trn nn chnh sch cc b (group policy) v sinh ra cc kha bo
m ha v chng thc c s dng trong IPSec.
4)
Point Protocol dng truyn qua mng dial up. PPTP thch hp cho ng dng truy
cp t xa ca VPN nhng cng h tr trong LAN Internetworking. PPTP hot ng
lp 2 ca m hnh OSI.
S dng PPTP: PPTP ng gi d liu trong gi PPP v sau tch hp
trong gi IP v truyn qua ng hm VPN. PPTP h tr vic m ha d liu v
nn cc gi d liu ny. PPTP cng s dng dng GRE (Generic Routing
Encapsulation) ly d liu v a n ch cui cng.
Trong PPTP th VPN tunnel c to ra qua 2 qu trnh:
client v VPN server thit lp tunnel. PPTP s dng TCP port 1723 cho cc kt
ni. ny.
PPTP bo mt: PPTP cng h tr nhn dng, m ha v lc gi d liu. Nhn
dng ca PPTP cng s dng EAP (Extensible Authentication Protocol), CHAP
(Challenge Hanhdshake Authentication), PAP (Password Authentication Protocol).
PPTP cng h tr lc gi d liu trn VPN server.
2.5. Li ch ca VPN.
Mt s li ch ca VPN mng li nh :
-
M rng kt ni ra ngoi.
14
trn.
cu hnh default route:
Core01_TSB_3825(config)#0.0.0.0 0.0.0.0 100.3.252.1
GVHD: TS.L Anh Ngc
15
default route:
TSB(config)# 0.0.0.0 0.0.0.0 100.3.254.1
3.3.2. Cu hnh VPN .
Cu hnh VPN theo cc bc sau :
ipsec
security-association
lifetime
seconds 86400
Bc 4:Cu hnh ACL dy IP c th VPN.
Core01_TSB_3825(config)#access-list 111 permit ip 118.70.218.0 0.0.0.255
118.70.219.0 0.0.0.255
Bc 5: Chn m ha bo mt l: ESP-3DES
Core01_TSB_3825(config)#crypto ipsec transform-set LZT-VN esp-3des espmd5-hmac
Bc 6: To cypto-map cho cc transform, setname
Core01_TSB_3825(config)#crypto map TSB 10 ipsec-isakmp
Core01_TSB_3825(config-crypto-map)#set peer 100.3.254.2
Core01_TSB_3825(config-crypto-map)#set transform-set LZT-VN
Core01_TSB_3825(config-crypto-map)#match address 111
GVHD: TS.L Anh Ngc
16
Bc 7: gn interface
Core01_TSB_3825(config)#inter G0/0
Core01_TSB_3825(config-if)#crypto map TSB
111
permit
ip
118.70.219.00.0.0.255118.70.218.00.0.0.255
Bc 5: Chn m ha bo mt l: ESP-3DES
LZT-VN(config)#crypto ipsec transform-set LZT-VN esp-3des esp-md5-hmac
Bc 6: To cypto-map cho cc transform, setname
LZT-VN(config)#crypto map TSB 10 ipsec-isakmp LZT-VN(config-cryptomap)#set peer 100.3.252.54
LZT-VN(config-crypto-map)#set transform-set LZT-VN
LZT-VN(config-crypto-map)#match address 111
Bc 7:Gn vo interface
LZT-VN(config)#inter G0/0 LZT-VN(config-if)#crypto map TSB
17
18
1.
Ngc
Huyn,Cisco
Vit
Nam
gii
thiu
lot
router
mi,
Nguyn Thng Triu, Gii Thiu Cc Dng Thit B Cisco (Phn 1),
http://www.kenhgiaiphap.vn, truy cp 25/ 9/ 2013.
3.
Cisco
systems,
Cisco
Systems
Corporate
Timeline,
5.
Cisco
systems,Overview
of
Cisco
3800
Series
Routers,
19
KT LUN
Sau khi hon thnh k thc tp ti cng ty c phn sang to truyn thng
Vit Nam, em tm hiu c mt s vn thc t, trau di thm kin thc
chuyn ngnh cng nh kin thc x hi:
Sinh vin
Phan Th Thu