Professional Documents
Culture Documents
CISCO 60%
Router is an internetworking component, that connects networks which are at different geographical locations.
Serial
Serial 0
!"I E0
Console !"*
#.3$ mo%em
)C
Interfaces on a Router
1. Ethernet It is a L!N inter+ace. Some o+ t(e mo%els (a,e an -.4$ 'ort +or 0/ase& or 00 00. !n% some ot(er (a,e a $ 'in +emale connector !"I 1!ttac(ment "nit Inter+ace2. 2. Serial 3. RI!"RI #. $s%nc 5. Console It is a 60 'in +emale 3!N inter+ace +or lease% line It is a -.4$ 3!N inter+ace +or ISDN It is a 34 'in +emale connector +or %ial u's. It is a -.4$ Connector use% to con+igure t(e -outer +or t(e +irst time.
Routers
Modular
Mo(ular Routers
Fixed
&(ese ty'e o+ routers (a,e u' gra%a/le slots5 an% t(e num/er o+ 'orts can /e increase% 6ust /y a%%ing car%s in t(e slots.
-ranscei.er
oot R0M 1 It stores t(e mini IOS 1Internet >ork O'erating System2 image 1-* ?oot2 >it( e7tremely limite% ca'a/ilities an% )OS& routines an% core le,el OS +or maintenance. )+$S* 1 It is an E)-O; c(i' t(at (ol%s most o+ t(e IOS Image. It maintains e,eryt(ing >(en router is turne% o++. R$M 1 -!; (ol%s running IOS con+igurations an% 'ro,i%es cac(ing. -!; is a ,olatile memory an% looses its in+ormation >(en router is turne% o++. &(e con+iguration 'resent in -!; is calle% -unning con+iguration. 23R$M 1 It is a re->rite a/le memory area t(at (ol%s router@s con+iguration +ile. N#-!; retains t(e in+ormation >(en e,er router is re/oote%. Once con+iguration is sa,e%5 it >ill /e sa,e% in N#-!; an% t(is con+iguration is calle% Startu' Con+iguration.
Configuration of a Router
-outer +or t(e +irst time is con+igure% t(roug( t(e CONSOLE 'ort.CO; 'ort o+ a )C is connecte% to t(e console 'ort o+ router >it( a console ca/le /y using a transcei,er. -outer is accessi/le /y a tool. In >in%o>s5 it is calle% AB)E- &E;IN!L. !s soon as t(e router is 'o>ere% on an% accesse%5 t(e +ollo>ing t(ings (a''en5 )OS& ?OO& S&-!) :L!SA N#-!; Setu' ;o%e -O; 1mini IOS2 I+ IOS is Corru'te%
In Setu' mo%e5 t(ere >ill /e a message5 C4oul( 5ou +ike -o Enter -he Initial Configuration 65!278 D I+ CBE t(en5 initial con+iguration starts. I+ CNE 9oul( %ou like to terminate the auto installation: )ress C-E&"-NE to get starte%<<Bou >ill lan% on t(e %e+ault 'rom't o+ t(e -outer C R0;-ER FE.
-outerFG
;SER M0DE
Router< is t(e user mo%e5 I5e t(e %e+ault 'rom't. It means t(at >(en e,er a router /oots success+ully it lan%s into t(e user mo%e. -outer cannot /e con+igure% +rom t(is mo%e5 /ut it is use% +or 6ust monitoring 'ur'ose. -outerF en -outer I
"RE3I+E=E M0DE
Router> it is t(e a%ministrating mo%e5 >e can c(eck >(et(er t(e settings an% con+igurations ma%e (a,e /een im'lemente% or not. Eg. C-outer I S( int e0E. I+ it is ne> router all t(e inter+aces are /y %e+ault s(ut %o>n5 so t(e message >ill /e5 C Et(ernet 0 is a%ministrati,ely %o>n5 line 'rotocol is %o>n.E
Note* This is the only configuration which can be done from privilege mode,every other configuration should be done at global configuration mode only.
Some of the im/ortant sho9 comman(s in /ri.ilege mo(e -outerI s( clock s( int 1inter+ace name eg e02 S( (istory S( memory S( running-con+ig S( startu'-con+ig -o sa.e configuration from R$M -0 23R$M -outerICo'y -unning-con+ig Startu'-con+ig 1or2 -outerI3rite ;emory
&o con+igure Aostname 1or2 I%enti+ication o+ -outer o,er t(e net>ork. -outerIcon+ t -outer1con+ig2IAostname -G9$03 -outer1con+ig2IJK &o con+igure Logging /anner. -outerIcon+ t -outer1con+ig2I?anner ;ot% I Enter te7t message<<<<.I -outer1con+ig2IJK
)re,ilege )!SS3O-DS
Ena/le )ass>or%
Ena/le Secret
Ena/le )ass>or%D- It is glo/al comman% restricts access to t(e 're,ilege mo%e5 t(e 'ass>or% is in clear te7t. -outer1con+ig2IEna/le 'ass>or% 93 Ena/le SecretD-Aere t(e 'ass>or% is in encry'te% +orm. -outer1con+ig2IEna/le secret cisco
Console "ass9or(
It esta/lis(es a login 'ass>or% on t(e console terminal. -outerIcon+ t -outer1con+ig2ILine Console 0 -outer1con+ig-line2ILogin -outer1con+ig-line2I)ass>or% cisco -outer1con+ig-line2IJK
$u'illar% "ass9or(
It esta/lis(es a login 'ass>or% to remote a%ministration. -outerIcon+ t -outer1con+ig2ILine !u7 0 -outer1con+ig-line2ILogin -outer1con+ig-line2I)ass>or% cisco -outer1con+ig-line2IJK
C02)I=;RI2= I2-ER)$CES
L!N inter+ace 1E&AE-NE& )ort2 3!N inter+ace 1SE-I!L )ort2
E-*ER2E-outer1con+ig2IInter+ace Et(ernet 0 -outer1con+ig-i+2II' !%%ress 900. $0. .9$4 9$$.9$$.9$$.0 -outer1con+ig-i+2Ino s(ut%o>n -outer1con+ig-i+2IJK -outerIS(o> Int E0
SERI$+
-outer1con+ig2IInter+ace Serial 0 -outer1con+ig-i+2II' !%%ress $0. 0. . 9$$.9$$.0.0 -outer1con+ig2Iclock rate $6000 -outer1Con+ig-i+2I /an%>i%t( 64 -outer1con+ig-i+2INo s(ut%o>n -outer1con+ig-i+2IJK
-he ?CD"8
It@s a CiscoLs 'ro'rietary 'rotocol calle% t(e Cisco Disco,ery )rotocol5 t(at gi,es you a summary o+ all t(e %irectly connecte% Cisco %e,ices. CD) is a L9 'rotocol5 t(at %isco,ers neig(/or regar%less o+ >(ic( 'rotocol suite t(ey are running. 3(en a cisco %e,ice /oots u'5 t(e CD) is loa%e% /y %e+ault5 /ut can /e %isa/le% at inter+ace le,el. * The CDP is limited to the immediate neighbors only &(e summary inclu%es De,ice I%enti+ier1eg. S>itc( con+igure% name or %omain name25 )ort I%enti+ier 1eg. Et(ernet 0 an% serial 0.25 Ca'a/ilities list 1eg. &(e %e,ice can act as a sourcr route /ri%ge as >ell as a router25 )lat+orm 1eg. Cisco 96002.
;sing CD"
-outerI s( c%' neig(/or 1s(o>s neig(/oring %e,ices2 -outerI s( c%' entry M9. 68. 0. 1s(o>s %etaile% in+ormation a/out t(is 'erticular neig(/or.2 -outerI s( c%' inter+ace1s(o>s t(e %etails o+ t(e inter+ace o+ t(e local %eci,e.2 -outerI s( c%' tra++ic 1s(o>s t(e 'acket sent5 recei,e%5 lost etc.2 &o %isa/le CD)<.5 -outer1con+ig2Ino c%' run -outer1con+ig2Iint s0 -outer1con+ig-i+2Ino c%' ena/le
acku/ Sources 1
. &(roug( &elnet Session. 9. &(roug( Console Session. 3. &(roug( !u7illary )ort 1-emote Session2
acku/ of Configuration
-outerICo'y Startu'-con+ig &+t' !%%ress or name o+ t(e remote (ost O PQ 1I' a%%ress o+ t+t'2 Destination +ile name O P Q 1Hi,e a name2
Erasing t(e :las( +ile system >ill remo,e all +ilesD continueQ Ocon+irmP Erasing %e,ice eeeeeeee<<<.eeeeeee.eee.eeee.ee Loa%ingRRRRRRRRRRRRRRRRRRRRRRRRRRRRR<<.RRRR<<.RRRRRR
Case 9D &(e %istance /et>een t(e t>o locations is less t(an $Sm. -eTuirements ! 'air o+ -outers5 Lease% line an% 'air o+ lease% line mo%em.
;u70 ;u70 Dmu7 S0 Dmu7 Csu U c(annel ser,ice unit S0 Dsu U %ata ser,ice unit E0 E0 S0 U Serial 'ort o+ router E0 U Et(ernet 'ort o+ a router -outer S>itc(0(u/ S>itc(0(u/ Internal Net>ork Internal Net>ork
Routing
3(en t(e %estination is kno>n5 static an% %ynamic routing is %one. :or unkno>n %estinations5 %e+ault routing is em'loye%. In %ynamic routing5 t(e 'at( is +i7e% /y t(e 'rotocol. &(e 'at(s >ill /e c(anging %e'en%ing on t(e lengt( o+ t(e 'at(. !l>ays t(e s(ortest 'at( is 're+erre%. Static routing is %one /y t(e users. &(ese 'at(s are store% in t(e routing ta/le.
E0
-outer1con+ig2I i' routing -outerI s( i' route 1it s(o>s all t(e %irectly connecte% net>orks2. C C M9. 68. .0094 %irectly connecte% to E0E C C 0.0.0.008 C W W W S0E
C C C in%icates connecte% net>orks. Static -outing Synta7 -outer1con+ig2I i' route 1%est-net>ork2 1su/net mask2 1ne7t (o' a%%ress2
Location ! -outer1con+ig2I i' routing -outer1con+ig2I i' route M9. 68.9.0 9$$.9$$.9$$.0 0.0.0.9 Note* if we don(t "now the address of ne&t hop, we can )ust write the name of the hop. -outer1con+ig2I i' route M9. 68.9.0 9$$.9$$.9$$.0 S0
Location ? -outer1con+ig2I i' routing -outer1con+ig2I i' route M9. 68. .0 9$$.9$$.9$$.0 0.0.0.
S M9. 68.9.0094 O 00P ,ia 0.0.0.9 V*'+ represents static. ,a-b. / ,0-1., here a20 is the administrative distance value and b has no significance in static routing. %or static and default routing b can be 1 or 0. V lesser the administrative distance value, higher the preference.
CDNF tracert
CDNF route 'rint -outerI trace route 1gi,es t(e com'lete route2 -outerI s( ar' 1to c(eck ;!C a%%resses2
De+ault -outing
-outer1con+ig2I i' routing -outer1con+ig2Ii' route D! 1S0N mask ne7t2 1ne7t (o' a%%ress2 -outer1con+ig2I i' route 0.0.0.0 0.0.0.0 s
-outerI s( i' route C M9. 68. .0094 %irectly connecte% to E0 C 0.0.0.008 SX 0.0.0.000 C C C C to S0 to S0
Dynamic -outing
It is a ty'e o+ routing >(ere routing 'rotocols1 eg. -I) an% IH-)2 are use% /et>een routers to %etermine t(e 'at( an% maintain routing ta/le. Once t(e 'at( is %etermine% a router can route a route% 'rotocol1I)2. Dynamic routing uses /roa% casts an% multicasts to communicate >it( ot(er routers. &(e routing metric (el's routers +in% t(e /est 'at( to eac( net>ork.
*%,ri( Routing 1 it com/ines as'ects o+ t(e link state an% t(e %istance ,ector algorit(m.
49. 6. .0 E0 49. 6. .
0. . . 0.9.9.9 S9 S9 S3 S3 0. . .9 0.9.9.3
-outer ri' Net>ork 0.0.0.0 -outer ri' Net>ork M9. 68. .0 Net>ork 0.0.0.0
$utonomous S%stems
!n autonomous system is a collection o+ net>orks un%er a common a%ministrati,e %omain. IH)s o'erate >it(in an autonomous system >(ere as EH) connects %i++erent autonomous systems. E,ery autonomous system (as a %istinct num/er.&(e Internet !ssigne% Num/ers !ut(ority 1I!N!2 is res'onsi/le +or allocating t(is num/er. Eg. !utonomous system 00. 3e can use any num/er unless t(e organiYation 'lans +or an EH).
Configuring I=R"
'ynta&es. -outer1con+ig2Irouter igr' autonomous num/er &(is %e+ines IH-) as t(e routing 'rotocol. -outer1con+ig-router2INet>ork net>ork-i' Selects %irectly connecte% net>orks. -outer1con+ig-router2I,ariance multi'lier Con+igures uneTual-cost loa% /alancing /y %e+ining %i++erence /et>een t(e /est metric an% t(e >orst acce'ta/le metric. -outer1con+ig-router2Itra++ic-s(are 1/alance%0 min2
!utonomous System 00
49. 6. .0 E0 49. 6. . 0. . . 0.9.9.9 S9 S9 S3 S3 0. . .9 0.9.9.3 E0 M9. 68. .
M9. 68. .0
-outer igr' 00 Net>ork 0.0.0.0 -outer igr' 00 Net>ork M9. 68. .0 Net>ork 0.0.0.0
EIH-)
0S")
OS):1O'en S(ort )at( :irst2 is o+ t>o ty'es D 2 Single !rea OS): an% 92 ;ulti !rea OS):.
!rea0
S0 IR
S0
!rea9
$ R
Internal -outers
IR
$ R
!rea
-outer !
E 0 .33 M9. 68. .390 9$$.9$$.9$$.994
Router B
E 0 .6$ M9. 68. .640 9$$.9$$.9$$.994
1Con+ig2I i' routing 1Con+ig--outer2I router OS): 6$43 1Con+ig--outer2I net>ork M9. 68. .39 0.0.0.3 area 1Con+ig--outer2I area range M9. 68. .39 9$$.9$$.9$$.994 1Con+ig--outer2I net>ork M9. 68. . M9 0.0.0.3 area 1Con+ig--outer2I area range M9. 68. . M9 9$$.9$$.9$$.994
1Con+ig2I i' routing 1Con+ig--outer2I router OS): 6$43 1Con+ig--outer2I net>ork M9. 68. .39 0.0.0.3 area 1Con+ig--outer2I area range M9. 68. .64 9$$.9$$.9$$.994 1Con+ig--outer2I net>ork M9. 68. . M$ 0.0.0.3 area 1Con+ig--outer2I area range M9. 68. . M$ 9$$.9$$.9$$.9$9
!rea 0 !rea
E0 .$0
!rea 9
-outer ! -outer ? E0 $.$0
M9. 68. .0
M9. 68.$.0
Con+iguration o+ -outer ! -------------------------------1Con+ig2I i' routing 1Con+ig--outer2I router OS): 6$43 1Con+ig--outer2I net>ork M9. 68. .0 0.0.0.9$$ area 1Con+ig--outer2I area range M9. 68. .0 9$$.9$$.9$$.0 1Con+ig--outer2I net>ork 49. 6.0.0 0.0.9$$.9$$ area 0 1Con+ig--outer2I area 0 range 49. 6.0.0 9$$.9$$.0.0
Con+iguration o+ -outer ? -------------------------------1Con+ig2I i' routing 1Con+ig--outer2I router OS): 6$43 1Con+ig--outer2I net>ork M9. 68.$.0 0.0.0.9$$ area 9 1Con+ig--outer2I area 9 range M9. 68.$.0 9$$.9$$.9$$.0 1Con+ig--outer2I net>ork 49. 6.0.0 0.0.9$$.9$$ area 0 1Con+ig--outer2I area 0 range 49. 6.0.0 9$$.9$$.0.0
!CL
Stan%ar% !CL
E7ten%e% !CL
49. 6. .9 S 0
-outer ?
E 0 .$0
.4 .3 . .9
E 0 $.$0
$.4 $.3 $. $.9
'ynta& -outer1con+ig2I !ccess-list !LNO )0D Src -outer1con+ig2I Int [name o+ inter+aceF -outer1Con+ig-i+2II' !ccess-Hrou' [DirectionF Src-3C;
-estricting 'articular user 1Con+ig2I !ccess-list %eny M9. 68. .3 0.0.0.0 1Con+ig2I !ccess-list 'ermit 0.0.0.0 9$$.9$$.9$$.9$$ or !ccess-list 'ermit any -estricting a Net>ork 1Con+ig2I !ccess-list %eny M9. 68.3.0 0.0.0.9$$ 1Con+ig2I !ccess-list 'ermit any
S 0 49. 6. .
49. 6. .9 S 0
-outer !
E 0 .$0 .4 .3 . .9
-outer ?
E 0 $.$0 $.4 $.3 $. $.9
.90
Con+iguration o+ -outer !
1Con+ig2I !ccess-list 0 %eny &C) M9. 68.$.0 0.0.0.9$$ M9. 68. .90 0.0.0.0 eT :&) 1Con+ig2I !ccess-list 0 'ermit I) any any
Im'lementation
1Con+ig2Iint E0 1con+ig-i+2I I) !ccess-grou' 0 Out
S 0 49. 6. .
49. 6. .9 S 0
-outer !
E 0 .$0 .4 M9. 68. .3 . .9
-outer ?
E 0 $.$0 $.4 $.3 $. $.9
2ote 1 M9. 68. .3 is %enie% +rom entering t(e net>ork o+ $.0.So it >ill enter >it( mask.
Con+iguration o+ -outer ! -------------------------------I Con+ig t 1Con+ig2I int E 0 1Con+ig-i+2I i' a%%ress M9. 68. .$0 9$$.9$$.9$$.0 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0 1Con+ig-i+2I i' a%%ress 49. 6. . 1Con+ig-i+2I clock rate $6000 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 9$$.9$$.0.0
1Con+ig2I i' routing 1Con+ig--outer2I i' route M9. 68.$.0 9$$.9$$.9$$.0 49. 6. .9 1Con+ig2I int E 0 1Con+ig-i+2I i' nat insi%e
1Con+ig2I int S 0 1Con+ig-i+2I i' nat outsi%e 1Con+ig2I access-list 'ermit M9. 68. .3 0.0.0.0 1Con+ig2I i' nat insi%e source list int S 0 o,erloa%
Con+iguration o+ -outer ? -------------------------------I Con+ig t 1Con+ig2I int E 0 1Con+ig-i+2I i' a%%ress M9. 68.$.$0 9$$.9$$.9$$.0 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0 1Con+ig-i+2I i' a%%ress 49. 6. .9 9$$.9$$.0.0 1Con+ig-i+2I clock rate $6000 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it
1Con+ig2I i' routing 1Con+ig--outer2I i' route M9. 68. .0 9$$.9$$.9$$.0 49. 6. . 1Con+ig2I access-list 0 %eny M9. 68. .3 0.0.0.0 1Con+ig2I access-list 0 'ermit any 1Con+ig2I int E 0 1Con+ig-i+2I i' access-grou' 0 out
49. 6. .9
$.$0 -outing
-outer ? $.0
S>itc(
Lease% line
Natting
Con+iguration o+ -outer ! -------------------------------I Con+ig t 1Con+ig2I int E 0 1Con+ig-i+2I i' a%%ress M9. 68. .$0 9$$.9$$.9$$.0 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0 1Con+ig-i+2I i' a%%ress 49. 6. . 9$$.9$$.0.0 1Con+ig-i+2I clock rate $60001+or DCE2 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I i' routing 1Con+ig--outer2I i' route 0.0.0.0 0.0.0.0 M9. 68. .MM
1Con+ig2I int E 0 1Con+ig-i+2I i' nat outsi%e 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0 1Con+ig-i+2I i' nat insi%e 11Con+ig-i+2I e7it 1Con+ig2I access-list 0 'ermit 49. 6.0.0 0.0.9$$.9$$ 1Con+ig2I i' nat insi%e source list 0 int E 0 o,erloa%
Con+iguration o+ -outer ? -------------------------------I Con+ig t 1Con+ig2I int E 0 1Con+ig-i+2I i' a%%ress M9. 68.$.$0 9$$.9$$.9$$.0 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it
1Con+ig2I int S 0 1Con+ig-i+2I i' a%%ress 49. 6. .9 9$$.9$$.0.0 1Con+ig-i+2I clock rate $6000 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int E 0 1Con+ig-i+2I i' nat insi%e 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0 1Con+ig-i+2I i' nat outsi%e 1Con+ig-i+2I e7it 1Con+ig2I i' routing 1Con+ig--outer2I i' route 0.0.0.0 0.0.0.0 49. 6. . 1Con+ig2I access-list 0 'ermit M9. 68.$.0 0.0.0.9$$ 1Con+ig2I i' nat insi%e source list 0 int E 0 o,erloa%
E0 .4 .3
-outer ? 1Koom2
Con+iguration o+ -outer ! -------------------------------I Con+ig t 1Con+ig2I int E 0 1Con+ig-i+2I i' a%%ress M9. 68. .$0 9$$.9$$.9$$.0 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0 1Con+ig-i+2I i' a%%ress 49. 6. . 9$$.9$$.0.0 1Con+ig-i+2I clock rate $60001+or DCE2 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I i' routing 1Con+ig--outer2I i' route M9. 68.$.0 9$$.9$$.9$$.0 49. 6. .9 1Con+ig2I int S 0 1Con+ig-i+2I enca'sulation ''' 1Con+ig-i+2I ''' aut(entication )!) 1Con+ig-i+2I ''' )!) sent-username Yoom 'ass>or% cisco
Con+iguration o+ -outer ? -------------------------------I Con+ig t 1Con+ig2I int E 0 1Con+ig-i+2I i' a%%ress M9. 68.$.$0 9$$.9$$.9$$.0 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0 1Con+ig-i+2I i' a%%ress 49. 6. .9 9$$.9$$.0.0 1Con+ig-i+2I clock rate $60001+or DCE2 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I i' routing 1Con+ig--outer2I i' route M9. 68. .0 9$$.9$$.9$$.0 49. 6. . 1Con+ig2I int S 0 1Con+ig-i+2I enca'sulation ''' 1Con+ig-i+2I ''' aut(entication )!) 1Con+ig-i+2I ''' )!) sent-username IS) 'ass>or% cisco
E0 .4 .3
-outer ? 1Koom2
Con+iguration o+ -outer ! -------------------------------I Con+ig t 1Con+ig2I int E 0 1Con+ig-i+2I i' a%%ress M9. 68. .$0 9$$.9$$.9$$.0 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0 1Con+ig-i+2I i' a%%ress 49. 6. . 9$$.9$$.0.0 1Con+ig-i+2I clock rate $60001+or DCE2 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I i' routing 1Con+ig--outer2I i' route M9. 68.$.0 9$$.9$$.9$$.0 49. 6. .9 1Con+ig2I int S 0 1Con+ig-i+2I enca'sulation ''' 1Con+ig-i+2I ''' aut(entication CA!) 1Con+ig-i+2I ''' CA!) (ostname Yoom 1Con+ig-i+2I ''' CA!) 'ass>or% cisco
Con+iguration o+ -outer ? -------------------------------I Con+ig t 1Con+ig2I int E 0 1Con+ig-i+2I i' a%%ress M9. 68.$.$0 9$$.9$$.9$$.0 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0 1Con+ig-i+2I i' a%%ress 49. 6. .9 9$$.9$$.0.0 1Con+ig-i+2I clock rate $60001+or DCE2 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I i' routing 1Con+ig--outer2I i' route M9. 68. .0 9$$.9$$.9$$.0 49. 6. . 1Con+ig2I int S 0 1Con+ig-i+2I enca'sulation ''' 1Con+ig-i+2I ''' aut(entication CA!) 1Con+ig-i+2I ''' CA!) (ostname IS) 1Con+ig-i+2I ''' CA!) 'ass>or% cisco
S 0 49. 6. .
49. 6. .9 S 0
-outer !
E 0 .$0 .4 .3 . .9
-outer ?
E 0 $.$0 $.4 $.3 $. $.9
I Con+ig t 1Con+ig2I is%n s>itc(-ty'e /asic-net 3 1Con+ig2I int E 00 1Con+ig-i+2I i' a%%ress M9. 68. .$0 9$$.9$$.9$$.0 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int ?ri 00 1Con+ig-i+2I no i' a%%ress 1Con+ig-i+2I enca'sulation ''' 1Con+ig-i+2I no c%' ena/le 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int %ialer 1Con+ig-i+2I i' a%%ress negotiate% 1Con+ig-i+2I enca'sulation ''' 1Con+ig-i+2I no c%' ena/le 1Con+ig-i+2I ''' aut(entication CA!) )!) callin 1Con+ig-i+2I ''' CA!) (ostname unicomin\(%9 1Con+ig-i+2I ''' CA!) 'ass>or% 'ass>or%
1Con+ig-i+2I ''' )!) sent-username unicomin\(%9 'ass>or% 'ass>or% 1Con+ig-i+2I %ialer in-/an% 1Con+ig-i+2I %ialer string 3398400 1Con+ig-i+2I %ialer i%le-time out 80 1Con+ig-i+2I %ialer (ol%-Tueue 0 1Con+ig-i+2I e7it 1Con+ig2I access-list 'ermit M9. 68. .0 0.0.0.9$$ 1Con+ig2I %ialer-list 'rotocol i' 'ermit 11Con+ig2I int /ri 00 1Con+ig-i+2I %ialer rotary-grou' 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int %ialer 1Con+ig-i+2I %ialer-grou' 1Con+ig-i+2I e7it 1Con+ig2I i' routing 1Con+ig-router2I i' route 0.0.0.0 0.0.0.0 %ialer 9
1Con+ig2I i' name-ser,er 909.$4.30.9 1Con+ig2I i' name-ser,er 909.$4.9.30 1Con+ig2I int E 0 1Con+ig-i+2I i' nat insi%e 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int ?ri 00 1Con+ig-i+2I i' nat outsi%e 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int %ialer 1Con+ig-i+2I i' nat outsi%e 1Con+ig-i+2I e7it 1Con+ig2I i' nat insi%e source list int %ialer o,erloa%
IS)
S 0 49. 6. .
49. 6. .9 S 0
IS)
E 0 .$0 .4 .3 . .9 E 0 $.$0 $.4 $.3
?ri 0 C)E0D&E
$. $.9
I Con+ig t 1Con+ig2I is%n s>itc(-ty'e /asic-net 3 1Con+ig2I int E 00 1Con+ig-i+2I i' a%%ress M9. 68. .$0 9$$.9$$.9$$.0 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0 1Con+ig-i+2I i' a%%ress 49. 6. . 9$$.9$$.0.0 1Con+ig2I int ?ri 0 0 1Con+ig-i+2I no i' a%%ress 1Con+ig-i+2I enca'sulation ''' 1Con+ig-i+2I no c%' ena/le 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it
1Con+ig2I int %ialer 1Con+ig-i+2I i' a%%ress negotiate% 1Con+ig-i+2I enca'sulation ''' 1Con+ig-i+2I no c%' ena/le 1Con+ig-i+2I ''' aut(entication CA!) )!) callin 1Con+ig-i+2I ''' CA!) (ostname Yoom 1Con+ig-i+2I ''' CA!) 'ass>or% cisco 1Con+ig-i+2I ''' )!) sent-username is' 'ass>or% cisco 1Con+ig-i+2I %ialer in-/an% 1Con+ig-i+2I %ialer string 3398400 1Con+ig-i+2I %ialer i%eal-time out 80 1Con+ig-i+2I %ialer (ol%-Tueue 0 1Con+ig-i+2I e7it 1Con+ig2I access-list 'ermit M9. 68. .0 0.0.0.9$$ 1Con+ig2I %ialer-list 'rotocol i' 'ermit 11Con+ig2I int /ri 0 0 1Con+ig-i+2I %ialer rotary-grou' 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it
1Con+ig2I int %ialer 1Con+ig-i+2I %ialer-grou' 1Con+ig-i+2I e7it 1Con+ig2I i' routing 1Con+ig-router2I i' route 0.0.0.0 0.0.0.0 S 0 1Con+ig-router2I i' route 0.0.0.0 0.0.0.0 %ialer 1Con+ig2I i' name-ser,er 909.$4.30. 1Con+ig2I i' name-ser,er 909.$4. .30 1Con+ig2I int E 0 1Con+ig-i+2I i' nat insi%e 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int ?ri 0 0 1Con+ig-i+2I i' nat outsi%e 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it
1Con+ig2I int %ialer 1Con+ig-i+2I i' nat outsi%e 1Con+ig-i+2I e7it 1Con+ig2I !ccess-list 9 'ermit 4 'u/lic 0 1Con+ig2I i' nat insi%e source list 9 int %ialer 1Con+ig2I int S 0 1Con+ig-i+2I /acku' inter+ace /ri 00 1Con+ig-i+2I /acku' %elay 30 60 o,erloa%
)rame Rela%
"oint F to F "oint frameFrela% 2et9ork
-outer !
S 0 49. 6. . Dlci 0
)#C :r-S>itc(
E 0 .$0 .4 .3 . .9
:r-S>itc(
Con+ig t 1Con+ig2I int S 0 1Con+ig-i+2I no i' a%%ress 1Con+ig-i+2I enca'sulation +rame-relay 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0. 'oint-to-'oint 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I i' a%%ress 49. 6. . 9$$.9$$.0.0 1Con+ig-i+2I +rame-relay inter+ace DLC 09 1or2 1Con+ig-i+2I +rame-relay ma' i' 49. 6. .9 09 /roa%cast 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I i' routing 1Con+ig2I i' route M9. 68.$.0 9$$.9$$.9$$.0 49. 6. .9
4.0 0.0.0.
D
.0 0.0.0.4 04 03 09 0 0.0.0.9 3.0
0.0.0.3
9.0
Con+iguration o+ -outer ! -------------------------------Con+ig t 1Con+ig2I int S 0 1Con+ig-i+2I no i' a%%ress 1Con+ig-i+2I enca'sulation +rame-relay 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0. multi'oint 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I i' a%%ress 0.0.0.4 1Con+ig-i+2I +rame-relay ma' i' 1Con+ig-i+2I +rame-relay ma' i' 1Con+ig-i+2I +rame-relay ma' i' 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it
1Con+ig2I i' routing 1Con+ig2I i' route M9. 68.9.0 9$$.9$$.9$$.0 0.0.0.3 1Con+ig2I i' route M9. 68.4.0 9$$.9$$.9$$.0 0.0.0. 1Con+ig2I i' route M9. 68.$.0 9$$.9$$.9$$.0 0.0.0.9
"ointFtoF"oint F "ointFtoF"oint
49. 6. .9
4.0
.0
49. 6. .
03
0.0.0.
0.0.0.9 09
3.0
04
6 . 6. .
0.0.0.3
9.0
Con+iguration o+ -outer ! -------------------------------Con+ig t 1Con+ig2I int S 0 1Con+ig-i+2I no i' a%%ress 1Con+ig-i+2I enca'sulation +rame-relay 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I int S 0. 'oint-to-'oint 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I clockrate $6000 1Con+ig-i+2I i' a%%ress 49. 6. . 9$$.9$$.0.0 1Con+ig-i+2I +rame-relay ma' i' 49. 6. .9 03 /roa%cast 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it
1Con+ig2I int S 0.9 'oint-to-'oint 1Con+ig-i+2I i' a%%ress 6 . 6. . 9$$.9$$.0.0 1Con+ig-i+2I no s(ut 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I clock rate $6000 1Con+ig-i+2I +rame-relay ma' i' 6 . 6. .9 09 /roa%cast 1Con+ig-i+2I e7it 1Con+ig2I int S 0.3 'oint-to-'oint 1Con+ig-i+2I /an%>i%t( 64 1Con+ig-i+2I clockrate $6000 1Con+ig-i+2I i' a%%ress 0.0.0. 9$$.0.0.0 1Con+ig-i+2I +rame-relay ma' i' 0.0.0.9 0 /roa%cast 1Con+ig-i+2I no s(ut 1Con+ig-i+2I e7it 1Con+ig2I i' routing 1Con+ig2I i' route 49. 6.0.0 9$$.9$$.0.0
Iso International organiYation +or stan%ar%iYation Iso (as %esigne% a re+erence mo%el calle% osi re+erence mo%el 1o'en system interconnection2. It (as 4 layers. It says t(at !ny n0> +or comunication nee%s 4 layers 6. !''lication layer &(e user uses a''lication layer to sen% t(e %ata. &(e 'rotocols \ t(is layer are +t'5(tt'5smt'1e-mail2 telenet etc. M. )resentation layer )resentation layer takes t(e %ata +rom a''lication layer an% 'resent In %i++erent +ormats +or securing reason. &(e ser,ices o++ere% \ &(is layer are Com'ression U %ecom'ression Co%ing U %eco%ing Encry'tion - %ecry'tion
3. Session layer Esta/lis(ing t(e session or t(e conecti,ity n0> n0> ?y t(e session layer. It . Esta/lis(es a session 9. maintains it = 3. &erminates it /0> t(e a''lication
= n0> 9 is %one
4. &rans'ort layer En%-en% connecti,ity %uring a session /0> t>o a''lication is %one ?y t(e trans'ort layer. It also %eci%es t(e ty'e o+ connection like tc' or u%' i.e. connection oriente% or connection less. Ser,icesD SeTuencing :lo> ctrl5 error %etection = correction &rans'ort layer in+o ] %ata is calle% segment.
$. Net>rok layer Logical a%%ressing is %one at t(enet>ork layer i.e. source a%%ress = %estination a%%ress are attac(e% to t(e %ata. )rotocols \net>ork layer -oute% 'rotocols EgD i'5i'7 routing 'rotocols egD ri'5igr'5os'+
-oute% 'rotocolsD t(ey al>ays carry t(e %ata along >it( t(em -outing 'rotocolD t(ey i%enti+y t(e 'at( +or route% 'rotocol to carry t(e %ata !t t(is layer routers = layer 3 s>itc(es +orms 'ackets.
Data link layer ;!C ;e%ia access control %ata LLC logical link control +raming o+
I' a%%ress is lik t(e 'inco%e = ;!C a%%ress is like (ouse num/er. Aere layer9 s>itc(es are use%. 3a/ 'rotocols use% at t(is layer are )))5ADLC5:)5*.9$ etc. Aere error c(ecking C-C /its are a%%e% to t(e 'ackets DLL in+o] 'ackets --F +rames
4 '(ysical layer &akes care o+ '(ysical connecti,ity i.e connector5ca/le etc. (ere :rames are con,erte% to /its 1 @s = 0@s2. &(e %e,ices like (u/s5 re'eaters5ca/les = connectors are use% at t(is layer. I ) !%%ressing No> a %ays i' ,er4 is +ollo>e%. It is a 39-/it a%%ressing sc(eme. 39/its are %i,i%e% into 4 octets o+ 8 /its eac(. i.e 8-8-8-8. i.e 1 @s = 0@s2-1 @s = 0s2-1 @s = 0@s2-1 @s = 0@s2. 1/inary +ormat2. &(e i' a%%ress is ma7imum o+ 9$$ = min o+ 0. In +uture i' ,er 6 is e7'ecte%. It is 98 /it sc(eme. I' a%resses are clsassi+ie% into %i++erent classes.
! ? C D E
0 98 M9 994 940
&(roug( out class !5 t(e ;S? W0@ is constant in class ? t(e ;s/s are W 0 @ constant t(roug( out. Class D = E are not use% +or internet>orking class D is use% +or ;ulticast net>ork. C E C C C researc(. class ! 0-0-0-0 s(oul% not /e assigne% +or any %i,ice 94-0-0-0 is reser,e% +or loo'/ack 94-0-094-0-0-E 94-0-0-E usually reser,e% +or loo'/ack 94-0-0-E 94-9$$-9$$-9$4
Aence 0 = 94 cannot /e use% +or a%ressing so actual range >ill /e to 96. !ll i' a%%resses are %i,i%e% into t>o. .net>ork I.% 9.(ost I.% in class a a%%ress t(ere is nN> I.% 'ostion = 3 (ost I.% 'ostion I5e N-A-A-A.. Class ! N-A-A-A Class ? N-N-A-A Class C N-N-N-A Net>ork I%s are re'resente% /y s = (ost i%s are /y 0s.
&y'es o+ i' a%resses I) a%%ress 'u/lic i' a%%ress 'ri,ate i' a%%ress
)u/lic net>orkD t(e 'u/lic a%%ress is %e+ine% >it( routing o,er t(e Internet it is gi,en /y I.S.) = routing ta/le is create% on t(e internet. )ri,ate net>orkD +or internal net>ork I5e intranet5 all t(e i' a%%resses !re go,erne% /y a /o%y calle% IN&E-NIC. I+ >e are a 'art o+ asia )ace+ic t(en it is go,erne% /y !)NIC. 3e can run our 'ri,ate net>ork >it( any i' a%%resses o+ our c(oice ?ut it s(oul% not /e connecte% to internet.
-ange o+ a%%resses +or 'ri,ate net>ork Class ! 0.0.0.0 to 0.9$$.9$$.9$$ Class ? 49. 6.0.0 to 49.3 .9$$.9$$ Class C M9. 68.0.0 to M9. 68.9$$.9$$ )ri,ate i' a%%resses %onot (a,e routing. &o meet t(e %eman% o+ no.o+ net>orks5 t(e net>ork is /roken Into smaller net>orks calle% su/nets. EgD +in% no.o+ su/nets5 (osts0s.n su/net mask = ,ali% i' a%%resses :or a class c a%%ress. M9. 68. .0094 W94@ s(o>s t(e net>ork /its 94Z 3 octate 'osition /its are enoug(5 t(ere+ore no nee% to /orro> !ny /its +rom (ost 'osition. Z94 net>ork = no (ost De+ault su/et mask is 9$$.9$$.9$$.0 = ,ali% i' a%%resses are
S>itc( !n essential com'onent o+ lan. S>itc(es are o+ %i++erent ty'es like Layer 9 layer 35 layer 45 layer $<.. Layer 9 s>itc( D S>itc( (u/ VLayer 9 layer V/.> is eTual \ all 'orts /.> is s(are% VI%enti+ies source >it( ;!C cannot i%enti+iy t(e source V?roa% cast occur5 till mac ta/le al>ays/roa% cast Is /uilt VCollision occur >(en /ot( !=? ;any collisions 3ants to reac( D. V /roa% cast %omain 4 collision /roa% cast %omain collision Domains %omain
!ccess layer s>it(cD catalyst M 9 Catalyst U manu+acturer5 /ut it is no> o>ne% /y cisco. 9 'ort s>itc(
&o con+igure #L!NS5go +or enter'rose e%ition as stan%ar% e%ition 3ill not su''ort #L!N. :or u'linking or casca%ing 00m/'s is minimum reTuire%. :unctions o+ s>itc( 0. !%ress learning . :ilter = +or>ar%ing 9. Loo' a,oi%ance V !%%ress learning ?ooting ./locking state 1 $ secs2 9.Listening state 1 $ secs2 3.Learning stage 190 secs2 4.:or>ar%ing stage 190 secs2
&(e s>itc( >ill al>ays learn t(e ;!C a%%ress +rom t(e source itsel+ &(e source s(oul% atleast communicate once to learn t(e ;!C a%%ress 9. :ilter = +or>ar%ing D store = +or>ar% cut t(roug( +ragment +ree On access layer t(e %e+ault is +ragment +ree >e can c(ange to any O+ t(e3 mentione% a/o,e. .store = +or>ar%D it stores t(e >(ole in+ormation 1 $00 /ytes Et(ernet2 into /u++er5 t(en c(ecks +or errors5 looks +or %estination In ;!C ta/le an% t(en +or>ar%. 9. Cut t(roug(D no error c(ecking.as soon as a 'acket arri,es It looks into ;!C ta/le = +or>ar%.
3.loo' a,ri%anceD consi%er a seenario >(r 'ci >ants to communicate &o 'c9. S>itc( a makes entry o+ 'c in its ;!C ta/le as it is a ne> S>itc(. &(is loo'ing is /e+ore t(e mac ta/le I s ma%e. &(is is calle% Initial +loo% or /roa% cast storm. S&)D s'anning tree 'rotocol. &o a,oi% loo's in case o+ a casca%e% S>itc( st' is ena/le% /y %e+ault. )arameters to select a s>itc( 8. ?ri%ge 'riority 1394682 %e+ault.1 -6$$3$$2 M. ;!C a%%ress ?ri%ge i% is calculate%. ?ri%ge i%Z/ri%ge 'riority ] mac a%%ress. 3(ic( e,er t(e s>itc( (a,ing least /ri%ge ID >ill /e elcte% as root ?ri%ge an% ot(ers are non-root /ri%ge. On root /ri%ge t(e 'orts use% :or casca%ing are calle% %esignate% 'orts. !ll t(e %esignate% 'orts 3ill /e at +or>a%ing+ state . In non root /ri%ge +rom t(e t>o 'orts one >ill /e selecte% as root 'ort. &(is >ill /e %e'en%ing on t(e cost s'ee%2.least cost 'at( 1+aster transmission2 t(e ot(er 'ort >ill /e /locke%.
&(e C(elloE 'ackets t(at are sent /y root /ri%ge +or e,ery 9 sec to in+orm t(at it is >orking 'ro'erly are calle% ?)D"S^ 1/ri%ge 'rotocol %ata limits2. I+ non root /ri%ge %o no recei,e 0 ?)D"s +or ne7t 90secs t(en it is clear t(at t(e root /ri%ge (as :aile%. 90secs U ma7 age time &(en a ne> root /ri%ge is selecte%. In t(e a/o,e egDi+ s>itc( ! is selecte% as root /ri%ge an% 'orts ! = ? O+ s>itc( ! are %esignate% 'orts. De'en%ing on t(e s(ortest 'at(s :or (ig( s'ee% = lo> cost one 'ort o+ s>itc( ? is selecte% as root 'ort = t(e ot(er >ill /e /locke%.
ISDN Integrete% ser,ices %igital net>ork. It is a circuit s>itc(ing tec(nology a''ro,e% /y CCI&&. ISDN )S&N VDigital analog V;ore /an%>i%t( less V;ulti'le ser,ices like5 V#oice5%ata5,i%eo etc. ISDN ?-I )-I 1?asic rate inter+ace 9/ c(annels = i% c(ennel2 euro'ean stan%ar% nort( american stan%ar% 30 /c(annels 93 /c(annels = = i% c(annel i% c(annel
W?@c(annel U it is a /earer c(annel +or %ata. WD@c(annel U it is a %elta c(annel +or sync(roniYation In /ri eac( ? c(annel Z 64 k/'s % c(annel Z 6k/'s ;a7 98 k/'s ?3 in is%n In )-I /ot( ? = D c(annels GZ 64k/'s. Euro'ean U 9m/'s Nort( american U .$4 m/'s ISDN >ill (a,e a ,oltage o+ M0- 0,
S)ID num/er D 1ser,ice 'ro+ile i%enti+ier2 to i%enti+y t(e link. &y'es o+ ISDN s>itc(es Euro-/asic net3 ".S-/asic $ ess-at=t stan%ar% ".S-/asic net3 = /asic net$ :rance-,n3 = ,n4 Ss4 1signalling system42 3ill /e con+igure% at t(e /ack /one si%e. telco ,n30,n4 :rance
ss4
E-series5 I-series = _-series E-tells a/out tele'(one net>ork = ISDN net>ork I-tells a/out conce'ts = inter+aces o+ ISDN _-tells a/out signalling = s>itc(ing o+ ISDN DDDail on Deman% -outing &(e main +eature o+ ISDN is it %ials = connects on reTuest = Discounects >(en no %ata trans+er is taking 'lace. nat 1net>ork a%%ress translation I) N!& insi%e I) N!& out si%e o,erloa%
I)N!& insi%eD any reTuest +rom t( internal net>ork >ill /e N!&ED &o 'u/lic I' a%%ress sen%ing t(e reTuest +rom internal net>ork &o ?ri inter+ace is o,erloa%ing. 3(en e,er N!& is ena/le5 t(e router >ill maintain a nat ta/le. Nat ta/leD 3(en nat t a/le is ena/le% nau reTuest >ill /e allocate% a 'ort Num/er a+ter 094. !/o,e 094 'ort num/ers are reser,e% +or ot(er Ser,ices. &(is allocation o+ 'ort num/ers is %ynamic.
Con+iguring a DD- +or ISDN Con+igIint e0 Con+igIi' a%ress M9. 68.$. $0 9$$.9$$.9$$.0 Con+igIi' nat insi%e Con+igIe7it Con+ig-i+Iint /ri 0 Con+ig-i+Ii' a%%ress negotiate% Con+ig-i+Ienca'sulation ))) Con+ig-i+I))) aut(enticaiton )!) c(a' collin Con+ig-i+I))) c(a' (ostname 1username2 Con+ig-i+I))) c(a' 'ass>or% 1'ass>or%2 Con+ig-i+I%ialer string 1tel.no.2 Con+ig-i+I%ialer i%le timeout 1time in secs2 Con+ig-i+I%ialer grou' Con+ig-i+Ii' nat outsi%e Con+ig-i+Ie7it
I' a%%ress negotialte% D t(is is >(en an i' a%ress is +etc(e% k%ynamicall :rom IS) 4 %onot (a,e a 'ermanent 'u/lic I.) a%ress Dialer U list range - 0 to con+igure router as a DAC) ser,er Con+igIi' 'ool [nameF staring i' en% i'. Some ISDN comman% S( int /ri0 S( is%n status 1layer s(oul% /e acti,e. I+ not '(ysical conecti,ity is lost2 S( is%n acti,e S( is%n (istory S( i' net>ork translaiton