You are on page 1of 7

Feladatsor

I. Jelsz helyrellts:
Router:LINK Switch: LINK

II. SUBNET szmts:


TRNK

SWITCH Cons.

Vlan10

Vlan20

Vlan30

10.0.0.0 /24 Hlzat SERIAL LAN10 LAN20 LAN30 Hosztok szma 2 10 9 6 Szksges IP-k szma 2 11 10 7 IP kioszts 10.0.0.0 1-14 10.0.0.15 10.0.0.16 17-30 10.0.0.31 10.0.0.32 33-46 10.0.0.47 10.0.0.48 49-62 10.0.0.63 Kioszthat Alhlzatok IP-k szma szma Maszk

14

16

/28 255.255.255.240

III. Jelszavak belltsa, alapbelltsok


Hostname megadsa: (config)#hostname Router1

Konzol s telnet kapcsolatok jelszavainak megadsa: (config)#line con 0 (config-line)#password cisco (config-line)#login (config-line)#exit (config)#line vty 0 4 (config-line)#password cisco (config-line)#login (config-line)#exit Privilegizlt (EXEC) zemmd jelszavnak (class) megadsa: (config)#enable secret class (config)#enable password class (config)#Service password encritpion Interfsz konfigurci (Ethernet, soros DCE s DTE interfsz): (config)#interface Ethernet 0/0 (config-if)#no shutdown (config-if)#exit (config)#interface Serial 0/0/0 (config-if)#ip address 10.0.0.1 255.255.255.240 (config-if)#no shutdown (config-if)#clock rate 56000 (config-if)#exit

IV. VLAN konfigurci


Router-en: (config)#interface FastEthernet0/0.10 (config-subif)#description vlan10 (config-subif)#encapsulation dot1Q 10 (config-subif)#ip address 10.0.0.17 255.255.255.240 (config-subif)#no shutdown (config-subif)#exit (config)#interface FastEthernet0/0.20 (config-subif)#description vlan20 (config-subif)#encapsulation dot1Q 20 (config-subif)#ip address 10.0.0.33 255.255.255.240 (config-subif)#no shutdown (config-subif)#exit

(config)#interface FastEthernet0/0.30 (config-subif)#description vlan30 (config-subif)#encapsulation dot1Q 30 (config-subif)#ip address 10.0.0.49 255.255.255.240 (config-subif)#no shutdown (config-subif)#exit

Switch-en: Trnkls: Switch(config)#int fa 0/1 Switch(config-if)#switchport mode trunk 2900: Switch(config)#int fa 0/1 Switch(config-if)#switchport mode trunk Switch(config-if)#switchport trunk encapsulation dot1q

VLAN ltrehozsa: Switch#vlan database Switch(vlan)#vlan 10 name vlan10 Switch(vlan)#vlan 20 name vlan20 Switch(vlan)#vlan 30 name vlan30 1900: Switch#conf t Switch(config)#vlan 10 name vlan10 Switch(config)#vlan 20 name vlan20 Switch(config)#vlan 30 name vlan30 Portok hozzrendelse: Switch(config)#int fa 0/1 Switch(config-if)#switchport mode trunk Switch(config-if)#int fa 0/2 Switch(config-if)#switchport mode access Switch(config-if)#switchport access vlan 10 Switch(config-if)#int fa 0/3 Switch(config-if)#switchport mode access Switch(config-if)#switchport access vlan 20

Switch(config-if)#int fa 0/4 Switch(config-if)#switchport mode access Switch(config-if)#switchport mode vlan 30 Switch(config-if)#switchport access vlan 30 1900: Switch(config-if)#int fa 0/4 Switch(config-if)#vlan static 3

V. ROUTING
RIP protokoll: (config)#router rip (config-router)#version (config-router)#network (config-router)#network (config-router)#network (config-router)#network (config-router)#exit OSPF protokoll: (config)#router ospf 100 (config-router)#network 10.0.0.0 0.0.0.15 area 100 (config-router)#network 10.0.0.16 0.0.0.15 area 100 (config-router)#network 10.0.0.32 0.0.0.15 area 100 (config-router)#network 10.0.0.48 0.0.0.15 area 100 (config-router)#exit Helyetest maszk szmtsa: 255.255.255.255 -255.255.255.240 0. 0. 0. 15 Alaprtelmezett tvonal hirdetse OSPF felett: R1(config)#ip route 0.0.0.0 0.0.0.0 s0/0/0 R1(config)#router ospf 100 R1(config-router)#default-information originate 2 10.0.0.0 10.0.0.16 10.0.0.32 10.0.0.48

EIGRP protokoll: R1(config)#router eigrp 100 R1(config-router)#network 10.0.0.0 R1(config-router)#network 10.0.0.16 R1(config-router)#network 10.0.0.32 R1(config-router)#network 10.0.0.48

VI. DHCP
Router(config)#ip dhcp pool 1 Router(dhcp-config)#net 10.0.0.16 255.255.255.240 Router(dhcp-config)#default-route 10.0.0.17 <-Alinterfsz IP cme Router(dhcp-config)#ip dhcp excluded-address 10.0.0.17 10.0.0.18

VII. PAT
Router(config)#ip route 0.0.0.0 0.0.0.0 s0/0/0 Ismeretlen cmekre men forgalom az internet fel menjen. Router(config)#access-list 1 permit 10.0.0.48 0.0.0.15 Mely bels helyi cmek fordtst engedlyezzk. Router(config)#ip nat inside source list 1 interface serial 0/0/0 overload Router(config)#int fa 0/0.30 Router(config-subif)#ip nat inside Router(config-subif)#int s 0/0/0 Router(config-if)#ip nat outside

VIII. PPP & CHAP hitelests


PAP: Router#hostname Left Router(config)#username Right password cisco Router(config)#int s 0/0/0 Router(config-if)#encapsulation ppp Router(config-if)#ppp authentication PAP Router(config-if)#ppp pap sent-username Left password cisco

CHAP: Router#hostname Left Router(config)#username Right password cisco Router(config)#int s 0/0/0 Router(config-if)#encapsulation ppp Router(config-if)#ppp authentication CHAP

Frame-relay Router(config)#int s 0/0/0 Router(config-if)#encapsulation frame-relay ietf Router(config-if)#no keepalive Router(config-if)#bandwidth 64 Router(config-if)#frame-relay map ip 10.0.0.2 110 ietf broadcast Router(config-if)# vagy Router(config)#int s 0/0/0 Router(config-if)#encapsulation frame-relay Router(config-if)#bandwidth 64 Router(config-if)#frame-relay lmi-type ansi

IX. ACL
Norml ACL: Router(config)#access-list 1 deny 10.0.0.0 0.255.255.255 Router(config)#access-list 1 permit any Router(config)#int fa 0/0.20 Router(config-subif)#ip access-group 1 out Norml ACL a 193.225.10.0/24 clhlzathoz: (config)#access-list 1 permit 193.225.10.0 0.0.0.255 Norml ACL egy szmtgp tiltshoz: (config)#access-list 1 deny host 195.140.100.5

Szintaktika: Router(config)#access-listhozzfrsi-lista-szma {deny | permit | remark} forrs [forrs-helyettest-maszkja] [log] Kiterjesztett ACL szintaktikja: (config)#access-list szm permit|deny protokoll forrs helyettest-maszk cl helyettest-maszk [eq port [established]] A pdban tiltjuk a 195.220.0.0/16 hlzat fell a HTTP (80-as port) krseket brmilyen clhlzat fel: (config)#access-list 101 deny tcp 195.220.0.0 0.0.255.255 0.0.0.0 0.0.0.0 eq 80

AZ ACL definilsa utn az ACL-t interfszhez kell rendelni. Fontos megadni, hogy kimen vagy bejv interfszhez rendeljk-e! (config)#interface Serial 0 (config-if)#ip access-group 1 out (config)#interface Ethernet 0 (config-if)#ip access-group 101 in Plda: Router(config)#access-list 100 permit 0.0.0.255 192.168.1.0 0.0.0.255 eq 80 Router(config)#access-list 100 permit 0.0.0.255 192.168.1.0 0.0.0.255 eq 53 Router(config)#access-list 100 permit 0.0.0.255 host 192.168.1.101 eq 69 Router(config)#access-list 100 permit Router(config)#access-list 100 permit Router(config)#interface f0/0 Router(config-if)#ip access-group 100 tcp 192.168.2.0 tcp 192.168.2.0 udp 192.168.2.0 tcp any any udp any any in

You might also like