You are on page 1of 65

CCNA

Chapter 1

Introduction Internetwork and IOS

Network

Network Computer () Computer Network


Computer Network
Network Network
Network Network Network
Network Computer
Device Repeator, Hub, Bridge, Switch

Internetwork

Internetwork Network () Network


Internetwork Network
Intrnetwork Internet
Network Internetwork
Device Router

Router

Router Internetwork Device Layer 3 Device


Router OSI 7 Layer Network Layer Layer 3
Network Layer Packet Password
Layer Router Packet Forward Router
Packet Forward Logical Address IP Address
Forward Router Network
Network Packet Forward

Network Router Network
Router Internetwork
Router Hardwork Router Software Router Hardware
Router Cisco Router, Coressess Router, Dlink Router Software
Router Windows Server 2003 Routing and Remote Access Service Software Router

Router

Router Network Layer Router Packet Forward


Router Packet Forward Routing

Router Packet Forward Routing


Packet Forward Routing Table
Routing Table Packet Network Network
Forward Routing Table Logical
Address IP Network Address Router Packet Forward

Packet Destination Network Address Routing Table Forward

CIsco Three-Layer Hierarchical Model

Cisco Router Switch Hierarchical Layer 3 Layer 3


"1. Core Layer,2. Distribution Layer, 3. Access Layer

Cisco Router Switch Layer 3 Internetwork


Layer Router Switch
Core Layer Backbone Distribution Layer
Routing Access Layer Switching
Internetwork Cisco
Router Switch Layer
Cisco Router Switch Layer Cisco Router
Switch Series
- Cisco Router Series

700 Series 1700 Series 2600 Series 5000 Series 10000 Series

800 Series 2500 Series 3600 Series 7000 Series 12000 Series

- Cisco Switch

1900 Series 2800 Series 4000 Series 6000 Series 8500 Series

2000 Series 3500 Series 5000 Series 6500 Series

Cisco Router Switch Series Core Layer, Distribution Layer,


Access Layer

- Router Series

Core Layer Router - 7000 Series 12000 Series

Distribution Layer Router - 2600 Series 5000 Series

Access Layer Router - 700 Series 2500 Series

- Switch Series

Core Layer Switch - 6500 Series 8500 Series

Distribution Layer Router - 4000 Series 6000 Series

Access Layer Router - 1900 Series 3500 Series

Routers Switchs Services Cisco's Hierarchical Layer

Core Layer

Core Layer Internetwork


Cisco Hierarchical Layer Core Layer Layer Core Layer
Traffic Core Layer
Core Layer Traffic Bandwith

Core Layer
Core Layer Distribution Layer Access Layer
Core Layer Router

- Network Traffic Core Layer Router


Access List Inter VLAN Routing

Distribution Layer

Distribution Layer Core Layer Access Layer Layer


Distribution Layer Routing Distribution
Layer Access Layer Service
Access Layer
Service Distribution Layer Service

Service Forward Core Layer Dirtribution Layer
Service Service

Access Layer

Access Layer Internetwork Rerource User


Layer Access Layer Switching
Access Layer Access Control Bandwidth

Internetwork Operation System ( IOS )

Internetwork Operation System ( IOS ) IOS Cisco Router


Switch Operation System IOS Operation System Cisco Router
Command Line Interface (CLI) IOS Cisco Router
Cisco Switch Kernal Kernal User Interface Hardware Interface
Operation System IOS Cisco
Router Cisco Switch User Interface Hardware Interface

Boot ROM

Boot ROM ROM Chip Power On Self Test ( POST) Mini IOS

FLASH

Flash EPROM Chip Flash Cisco Router


Cisco Switch Operation System IOS Image Compress

RAM

RAM Momery RAM Memory


Power Power
RAM Voltine
Memory Running IOS Configuration (or) Running Configuration

NV-RAM

NV-RAM RAM Memory ( Non-


Voltine) NV-RAM Power

NV-RAM Non-Voltine Memory
Cisco Router NV-RAM Read Write
Memory Cisco Router NV-RAM
Startup Configuration
Cisco Router IOS

Cisco Router Switch Cisco IOS Routing, Switching, Internetworking


Telecommunication Cisco IOS 1986 Willion
Yeager Cisco IOS Software

- Network Protocol

- Device High-speed traffic

- Network

Cisco Router IOS


Access Cisco Router Consol

port, Auxiliary (AUX) Port Telnet Console Cisco Router IOS Access

Cisco Router IOS Access

Cisco Router IOS


Cisco Router IOS Access Cisco Router Console
port Console cable Access

Cisco Router ( .)

Cisco Router Console Port Cable

Console Cable (.)

Cisco Router Console port Computer Console Cable

Router PC

(.)

Hyper Terminal IOS Access


(1.9)

Cisco Router Boot Sequences

Cisco Router Power Reload Cisco Router


POST ( Power On self-test ) Power On Self-test ( POST)
Router Hardware Interface Router
POST Flash Memory Router IOS Image RAM Loading
IOS Image Loading NV RAM Startup Configuration
RAM Running Configuration
Router Power message

(1.8)

( .) Router Boot
Bootstarp program BootStap
Program POST POST
POST IOS Image
Router (.) Router Boot
Bootstarp program
Bootstart Program POST
POST POST IOS Image
Router ( . )
Router RAM

(.) IOS Image RAM Decompress

Decompress

( . )
Pround Signs RAM IOS Image Loading
IOS Image Loading IOS
. IOS

IOS

IOS POST
. POST
Router Hardware Information

POST (.)

POST Fastethernet () Serial Interface ()


NV RAM 239 Kbgte Flash Memory 62720 Kbyte

Understanding IOS Command Line

Cisco Router IOS Commond


Computer Router Simulation
Software Packet Tracer 5.0 Packet Tracer 5.2

Install Cisco Router Command Mode


Cisco Router IOS Command mode
() (1. User EXEC Mode), (2. Privileged EXEC Mode), (3.Global Configuration
Mode)

Command Mode User EXEC Mode Command Mode


User EXEC Mode User Level Command mode


command mode monitoring

Privileged EXEC Mode


Privileged EXEC Mode Admin Level Command mode
command mode Router command mode

command mode

Global Configuration Mode

Global Configuration Mode Router system command mode


Cisco Router command mode user
EXEC Mode User EXEC Mode (
. )

User EXEC Mode (


. )

User EXEC Mode Command "?" Sign


(
. )

Global Configuration Mode Command (


. )

Global Configuration Mode Priviledged EXEC Mode "Enable" command


(
. )

User EXEC Mode Priviledged EXEC Mode (


. )

(
. ) "Router#" Priviledged EXEC Mode
Mode Command "?" Sign
"?"Sign Router Commond Mode
(
. ) Priviledged EXEC Mode Command

Priviledged EXEC Mode Command (


. )

Priviledged EXEC Mode Global Configuration Mode

Command "configure terminal" command


(
. )

Priviledged EXEC Mode Global Configuration Mode (


. )

. "Router(config)#" Global made command
"?"sign ( .) Global Configuration Mode
Command

Global configuration mode command

( . )

Cisco Router IOS Command mode ISO


command Router Hostname Priviledge Level Password

Router hostname

Hostname Router name "Router#" "Router" name


Hostname Router name Router name
Command

1. Router>

2. Router>enable

3. Router#

4. Router# configure terminal

5. Router ( config )#

6. Router ( config )# hostname MyRouterA

7. MyRouterA( config )#

No.1 command User EXEC Mode No.2 command User EXEC Mode
Priviledge EXEC Mode
No.3 command Priviledge EXEC Mode
No.4 command Priviledge EXEC Mode Global configuration Mode

No.5 Command Global Configuration Mode

No.6 Command "hostname My RouterA" "hostname" command "MyRouterA"


Router Name No.7 command Router
Hostname

Priviledge Level Password

1-MyRouterA(config)#

2-MyRouterA(config)#enable ?

Passward Assign Priviledge Level passward

Secret Assign Priviledge Level Secret

3-1-MyRouterA(config)#enable secret loopavoidance

No.1-command Global Configuration Mode No.2- command "enable


?" "enable" Priviledge Level passward Assign command

"?" "enable" command "enable ?"


command Passward Secrect "Passward"
Priviledge Level Passward Clear text

"Secrect" Passward priviledge level passward


enerypt text

No.3-command clear text Passward No.4-command Encrypt text


passward "loopavoidance" Router Priviledge Level Assign
Passward

Router Running Running Configration M


yRouterA( confi )#exit

MYRouterA# show running-config

"Show running-config" command Router Running configuration


Running configuration

Building Configuration...

Current configurtation : 349 byes

version 12.2

no service passward-encryption

!
hostname MyRouterA

enable passward loopavoidance

ip ssh version 1

interface Fastethernet 0/0

no ip address

duplex auto

speed auto

shutdown

ip classless

Line con 0

Line vty 0 4
login

end

Running Configuration "Current configuration : 349


bytes" RAM Running "version 12.2"
IOS version "no service passward-encryption " Passward
encryption service "hostname MyRouterA" Router
Hostname

"enable password Loopvoidance"


Priviledge Level Assign passward
"interface Fastethernet 0/0" "interface Fastethernet 0/1"
Router Interface "line con 0" console port
"line vty 0 4" Telnet console

Running Configuration NVRAM

MyRouterA# copy running-cofig startup-config

"copy" copy command "running-config" RAM


running configuration "startup-config" NVRAM
configuration "copy running config startup-config" command RAM configuration
NVRAM command command

MyRouterA# write memory

"wirte memory" command "copy running-config startup-config" command

Router configuration NVRAM


Running configuation RAM
power NVRAM startup configuration

Router Interface IP Address

Lab Router Interface IP Address


Router Interface IP Address Router
Interface Interface Number Router
Interface

1.Ethernet Interface

2.Fastethernet Interface

3.Gigabitethernet Interface

4.Serial Interface Router Interface ( . )

Interface (
. )

Router Interface Router Interface Number Modular slat


(
. ) Modular Slot

Modular slot (
. )

Modular slot Router Interface Interface


Modular card Modular slot cisco router
Interface modular number Interface Number IP Address

Interface

( - . ) Reuter Interface IP Address

1- Router A > enable

2- Router A # configure terminal

3- Router A ( config ) # interface fartethernet 0/0

4- Router A ( config - if ) # ip address

5- Router A ( config - if ) # no shutdown

6- Router A ( config-if ) # end

7- Router A# copy running-config startup-config

No.1 command User EXEC Mode Priviledge EXEC Mode Priviledge EXEC Mode

No.2 command Priviledge EXEC Mode Glabal Configuration Mode


No.3 command Router Interface Mode


command
"interface" command "fartethernet" Interface "0/0"
"Moduar Number/ Interface Number"

0/0 = Modular Number/ Interface Number

No.4 command Fartethernet 0/0 IP Address command "IP


Address" Interface IP Address command "192.168.101 255.255.255.0"
Interface IP Address subnet mark "Router ( config-if )# Interface
Mode

"Router ( config-if )# ip address [ IP Address ] [ Netmark ]"

No.5 command shutdown Interface Shutdown command


command Cisco Router Interface Default
shutdown

Interface shutdown Netwark Shutdown


Netword

No.6 command "end" mode priviledge EXEC mode



command

No.7 command "copy running-config startup-config" RAM running configuration


startup-configuration NVRAM

PC1 - IP Address : 192.168.10.2

mark : 255.255.255.0

Gateway : 192.168.10.1

PC2 - IP Address : 200.200.200.2

mark : 255.255.255.0

Gateway : 192.168.10.1

Router
Fastetherent 0/0 = IP : 200.200.200.1

mark : 255.255.255.0

Fastetherent 0/1 = IP : 200.200.200.1

mark : 255.255.255.0

1- Router>enable

2- Router#configuration terminal

3- Router(config)#

No.1,2,3 command user EXEC mode Global configuration mode


4- Router(config)# interface fastethernet 0/0

5- Router(config-if)#ip address 200.200.200.1 255.255.255.0

6- Router(confi-if)#no shutdown

7- Router(confi-if)#exit

No.4,5,6 command "fartethernet 0/0" interface


IP Address
No.7 command mode command

8- Router(config)# interface fastethernet 0/1

9- Router(config-if)#ip address 192.168.10.1 255.255.255.0

10- Router(config-if)# no shutdown

11- Router(config-if)#exit

No. 8, 9, 10 command "fastethernet 0/1" interface


IP Address
(Note-No. 4, 5, 6 ) No.11 command mode
command

12- Router#show running-config

Interface 0/0 0/1 IP


.
13- Router#copy running-config startup-config

No.12 command interface IP Address No.13


command Running Configuration startup configuration

command Router Configure PC1 PC2


Network Netwark command TCP/IP Utility "ping" command
PC1 PC2 Netwark

LAB2

(
. )

LAB-3

"Packet Tracer 5.2"

Packer Tracer 5.2

Router console port Passward

Router>enable

Router#configure terminal

Router(config)#line console 0

Router(config-line)#passward loopavoidance

Router(config-line)#login

Router Telnet console Password

Router Telnet console Password Priviledge level password Assign

Router>enable

Router#configure terminal

Router(config)#line vty 0 4

Router9config-line)#password loopavoidance

Router(config-line)#login

Note: Line"vty 0 4" Ciso Router Telnet console

Client PC Telnet console Access

1- command line Interface

command

2- command line Interface C:\> telnet [Remote Router IP] User


Name Password User Name Password
User Name Password .

Router Banners message

Router>enable

Router#config terminal

Router(config)#banner motd welcome to loop Avoidance Training Router

Enter Text message. End with the character "W".

Router(config)#
Note: Banner Message Router Logout Banner Message

Router Password Encryption

Router(config)#service passward-encryption

Note: command Cisco Router password Encryption command

Static Routing

static routing Routing


Static Route

Routing

Routing Packet Network Forward Routing


Routing TCP/IP Network Different
Network
Routing IP Packet
Forward OSI 7 Layer Network Layer TCP/IP Network
Routing Routing Table Routing Table IP Packet
Forward Destination Netwark Address Next hop Table
Routing () Static Routing Dynamic
Routing

Static Routing Routing Table IP Packet Forward Route


Path Manually

Dynamic Routing Routing Table Rout Path Automatically update


Dynamic Routing
Static Routing

Static Routing Network Routing Table


Routing Table Router

RouterA Routing Table

Dertination Network Address Subnet mark Next-hop

192.168.10.0 255.255.255.0 192.168.10.1

200.200.200.0 255.255.255.0 200.200.200.1

"192.168.10.0/24" Network "200.200.200.0/24" Network


RouterA Router A Packet Forward
"Router A Routing Table"

Cisco Router Network 4 Router


Routing Table

Routing Table

Dertination Network Address Dertination Network Subnet Mask Next-hop


200.200.200.0 255.255.255.0 200.2000.200.100

128.100.0.0 255.255.0.0 128.100.0.100

172.10.0.0 255.255.0.0 172.10.0.100

Router Network
Router Routing Table Route Path Router Routing Table
Route path IP Packet Forward

Show IP Route command

Router Network

Router A Routing Table

Dertination Network Address Dertination Network Subnet Mask Next-hop

192.168.10.0 255.255.255.0 200.2000.200.10

10.0.0.0 255.0.0.0 10.0.0.10

Router B Routing Table

Dertination Network Address Dertination Network Subnet Mask Next-hop

192.168.10.0 255.255.255.0 200.2000.200.10


10.0.0.0 255.0.0.0 10.0.0.20

RouterA Router B Routing Table


Routing Table "192.168.0.0/24" "200.200.200.0/24" Network

1- PC1 IP Packet Destination Network Router A Router A PC1


IP Packet Destination Network Address Routing Table

Router A Routing Table Destination Network


200.200.200.0/24 Network Address Routing Table ? PC1 IP packet
Router A "200.200.200.0/24" Network Forward

"192.168.10.0/24" "200.200.200.0/24" Network Network


Routing Table Update Update
() Static Routing
Routing Table Manually Update

Cisco Router Routing Table Update Route Path


Command "Route add" command Update
Command "Router(config)#route add[Dertination Network Address]
[Dertination Network mask] [Next-hop Address]"

RouterA RouterB Routing Table Update

Router A Routing Table Update

Dertination Network Address Dertination Network Subnet Mask Next-hop

192.168.0.0 255.255.255.0 192.168.10.10

10.0.0.0 255.0.0.0 10.0.0.10

200.200.200.0 255.255.255.0 10.0.0.20

RouterA Router

RouterA(config)#ip router [Dertination Network] [Subnet Mask] [Next-hop]

RouterA(config)#ip Router 200.200.200.0 255.255.255.0 10.0.0.20

Router B Routing Table Update

Dertination Network Address Dertination Network Subnet Mask Next-hop

10.0.0.0 255.0.0.0 10.0.0.20

200.200.200.0 255.255.255.0 200.200.200.10

192.168.10.0 255.255.255.0 10.0.0.10

Router B Router Path

RouterB(config)#ip route 192.168.10.0 255.255.255.0 10.0.0.10


Router A Router B Routing Table Update
"192.168.10.0/24" Network 200.200.200.0/24" Network Network Network

Router Network

Router A Routing Table

Dertination Network Address Dertination Network Subnet Mask Next-hop

100.0.0.0 255.0.0.0 100.0.0.1

128.0.0.0 255.255.0.0 128.0.0.1

Router B Routing Table

Dertination Network Address Dertination Network Subnet Mask Next-hop

128.0.0.0 255.255.0.0 128.0.0.2

200.200.200.0 255.255.255.0 200.200.200.1

Router C Routing Table

Dertination Network Address Dertination Network Subnet Mask Next-hop

200.200.200.0 255.255.255.0 200.200.200.2

192.168.10.0 255.255.255.0 192.168.10.1

Router A, Router B Router C Routing Table


Routing Table "100.0.0.0/8" Network "192.168.10.0/24" Network "192.168.10.0/24"
Network Connection Network

"100.0.0.0/8" Network "192.168.10.0/26" Network Network
Routing Table Update Network
Routing Table Update Network Routing Table Update

Routing A Routing Table Update

( ) Router A Routing Table Update "Router(config)#ip route


200.200.200.0 255.255.255.0 128.0.0.2" "Router(config)#ip route 192.168.10.0 255.255.255.0
200.200.200.2" command Router A Routing Table Update

RouterA Routing Table

Dertination Network Address Dertination Network Subnet Mask Next-hop

100.0.0.0 255.0.0.0 100.0.0.1

128.0.0.0 255.255.0.0 128.0.0.1

200.200.200.0 255.255.255.0 128.0.0.2

192.168.10.0 255.255.255.0 200.200.200.2

Routing B Routing Table Update


( ) Router B Routing Table Update "Router(config)#ip route
100.0.0.0 255.0.0.0 128.0.0.1" "Router(config)#ip route 192.168.10.0 255.255.255.0 200.200.200.2"
command Router B Routing Table Update

RouterB Routing Table

Dertination Network Address Dertination Network Subnet Mask Next-hop

200.200.200.0 255.255.255.0 200.200.200.1

128.0.0.0 255.255.0.0 128.0.0.2

100.0.0.0 255.0.0.0 128.0.0.1

192.168.10.0 255.255.255.0 200.200.200.2

Router Routing Table Update

( ---) RouterC Routing Table Update

"Router(config)#ip route 128.0.0.0 255.255.0.0 200.200.200.1"

Dynamic Routing Protocol and RIP

(Routing Information Protocol)

Dynamic Routing Dynamic Routing Protocol


Routing Information Protocol

Dynamic Routing

() Static Routing Router Network


Static Routing Routing Routing Table Manally Update

Dynamic Routing Routing Table Automatically Update .


Dynamic Routing R
outing Table Update
Static Routing

Dynamic Routing Static Routing Router CPU

Dynamic Routing Router


Dynamic Routing
Dynamic Routing Protocol Router
Routing Table Update
Remote Network

Dynamic Routing Protocol Router


Routing Table Update Special Packet Update

Internetwork Routing Protocol


() Interior Gateway Protocols (IGPs) Exterior Gateway Protocols
(EGPs)

Interior Gateway Protocol (IGP) Autonomous sysetm(AS) Router


Routing Information Autonomous System
Network (IGP) (AS)
Routing
Information Router

Exterior Gateway Protocol (BFP)

Routing Protocols

Routing Protocols Class ()


Dirtance Vector, Link State Hybrid

Distane Vector Protocol Network


Network
Packet
Nexthop Routing Protocol RIP IGRP Dirtance Vector Routing protocol
RIP IGRP Routing Protocol Router
Routing Table Routing Table Update

Link State Protocol Router Routing Table ()Table


() Router Table
Internetwork Topology Link State Protocol Shortert-Path-First
Pratocol Link Sate Protocol Distance Vector Protocol Internetwork
OSPF Link State Routing Prptocol

Hybird Protocol Distance Vector Link State () Protocol


EIGRP Hybird Protocol

Routing Information Protocol (RIP)

Routing Information Protocol (RIP) Routing Protocols Class


() Network Hop count
RIP Router hop Routing Table "30 seconds"
RIP Routing Table Update Hop count 15 Hop
Update RIP Router 15
RIP Hop Count 16 hop
Routing Table Update RIP Router
() Internetwork

RIP Router
Internetwork

Routing Information Protocol (RIP) Version(2) RIP Version 1 RIP Version


2 Version(2) RIP Version 1 Classful routing

RIP Version 2 Classless Routing RIP


RIP Timers

RIP Timers

RIP Timers
RIP Timers protocol Timer () - 1.Routing Update Timers

(2) Route invalid Timer (3) Holddown Timer (4) Route Flush Timer

Route Update Timer

Route Update Timer Router Routing Table Update


RIP Router Routing Table Update 30 seconds

Route invalid Timer

Route invalid Timer Router Routing Table Route Path Update


Route Path Update Router Route Path Update
18 seconds Route Path Update
Router Router

Holddown Timer

Holddown Timer Router Routing Table Update


Routing Table Route Update
Network

Route flush Timer

Route flush Timer Routing Table Update Route Path


Routing Table Route Path

240 seconds Route invalid Time Route Flush


Timer

RIP

Routing Infor mation Protocal (RIP) Network


RIP command Gloabal
Configuration mode " Router RIP " command (
) RIP Touting Protocol Network

Router A

1-Router A (config)#router rip

2-Router A (config-router)#network 172.10.0.0

3-Router A (config-router)#network 128.100.0.0

4-Router A (config-router)#network 203.100.100.0

5-Router A (config-router)#end

Number 1 5 command Router A RIP Protocol


configure No-1 command RIP Protocol RIP Protocol
Command No-2 5 Command Router A
Network No-5 command Priviledge EXEC Mode
Command Router A Command
Router
B Router C Command

Router B

Router B(config)#router rip

Router B(config-router)#network 203.100.100.0

Router B(config-router)#network 120.100.100.0

Router B(config-router)#network 100.0.0.0

Router C

Router C(config)#router rip

Router C(config-router)#network 120.100.100.0


Router C(config-router)#network 128.100.100.0

Router C(config-router)#network 200.200.200.0

Router C(config-router)#end

Router A, Router B Router C RIP Protocol configure


Network

RIP Routing Table Routing Table


Routing Table command "show IP router" command (
)

RIP Routing Table

RIP Protocol Router


RIP Protocol Static Router
Network Bandwidth RIP Protocol Internetwork
Netork Address

RIP Version 2

RIP Version2 Router


RIP Version2 RIP Version 1


RIP V2 RIP V1 Distance Vector Routing
Protocol Protocol Routing Table Update Routing Table
Update
Routing Table Update

RIPV1 RIPV2 Classful address configure


RIP V1 RIP V2
RIP V2 Routing Table Update Subnet Mark Information
RIP V1 Subnet mask Information RIP V1 RIP V2
Administration Dirtance 120 RIP V1 RIP V2
Table
RIP V1 RIP V2

Dirtance Vector Dirtance Vector

Maximum hop count of 15 Maximum hop count of 15

Classful Classless

Broadcast based use Multicast 244.0.0.9

No Support for VISM Support for VISM network

Classfull Classless

No Authentication Allowsfor MD5 authentication

No Support for discontiguous Networks Support Discontigous

Networks Networks

RIP Version 2

Router A

Router A (config)#router rip

Router A (config-router)# network 203.100.100.0

Router A (config-router)# network 128.100.0.0

Router A (config-router)# network 172.10.0.0

Router A (config-router)# version 2

Router A RIP Protocol "Version 2" Command RIP V2


Router B Router C

Router B

Router B (config)#router rip

Router B (config-router)# network 100.0.0.0


Router B (config-router)# network 120.100.100.0

Router B (config-router)# network 203.100.100.0

Router B (config-router)# version 2

Router C

Router C (config)#router rip

Router C (config-router)# network 120.100.100.0

Router C (config-router)# network 200.200.200.0

Router C (config-router)# network 128.100.0.0

Router C (config-router)# version 2

Interior Gateway Routing Protocol (IGRP)

Interior Gatway Routing Protocol (IGRP) Distance vector Routing Protocol


Protocol Cisco Propritary IGRP
Internetwork Internetwork Router
Cisco Router

IGRP Routing Protocol Internetwork Router


255 hop count EIGRP Routing Protocol Router
IGRP RIP Routing Protocol
() IGRP 255 hop count Large Network
IGRP RIP Routing Protocol ()

IGRP Router Autonmony System Number


Autonomous System Number
Autonomous System Number Router
Autonomous System (AS) Number RIP protocol
AS Number IGRP AS Number

Routing Information Router



IGRP RIP characteristics
IGRP RIP Characteristics

IGRP RIP

-Can be used in large internetworks -works best in smaller networks

-Uses an autonomous system number for activation -Does not use autonomous system number

-Give a full route table update every 90 seconds -Give a full route table update every 30 seconds

-Has an administration distance of 100 -Has an administration distance of 120

-Use bandwidth and delay of the line as metric with -Use only hop count to determine the best path to a reote a maximum hop count
of 255 network ith 15 hop count

RIP Command

-show ip route

-show ip protocols

-debug ip rip

Exchanced Interior Gateay Routing Protocol ( EIGRP )

EIGRP Routing protocol Network


Exchanced Interior Gateay Routing Protocol Network
Internetwork Device Cisco Cisco
Device EIGRP Cisco Proprietary Protocol
EIGRP Classless Network Address
RIP V2

EIGRP Routing Information Router Autonmous System


(AS) Number EIGRP Internetwork AS Number
AS Number EIGRP VLSM Auto-summarization
Router Path Maintenance
Routing Information EIGRP Protocol Subnet mask
Information EIGRP Protocol Distance-vector Link-
state Routing Protocol EIGRP Hybird Routing Protocol

Hybird Routing Protocol () Dynamic Routing Protocol


EIGRP Routing Protocol Large Network
EIGRP Router 255 hopcount

EIGRP Characterstics

1-Fast convergence

2-Loop-Free Topology

3-VISM and Route summarization

4-Multicart and incremantal updates

5-Router for Multiple routed Protocols

Protocol Dependent Madules

EIGRP
Feature EIGRP Multiple
Network Layer protocol Routing IP, IPX, Apple Talk IPV6
EIGRP Multilayer Protocol Routing Protocol
Multipal IS-IS ( Intermediate System to Intermediate System) Dynamic routing Protocol

EIGRP network Layer Protocol protocol Dependent


Modules (PDMs) PDM Routing Table Route path
Network layer Protocol Update

EIGRP

Router A

1-RouterA(config)#router eigrp 10

2-RouterA(config-router)network 172.10.0.0

3-RouterA(config-router)#network 128.100.0.0

4-RouterA(config-router)#nework 203.100.100.0
5-RouterA(config-router)#end

command 1 5 Router A EIGRP Routing Protocol


No-1 command EIGRP Routing Protocol
command
command "10" AS Number
Router AS Number AS Number
Range 1 65535 No-2 4 command Routing information
Router Network No-
5 command Routing Protocol command mode Priviledge EXEC
Mode

command

Router A command configure Router B Router C


Router B

1-RouterB(config)#router eigrp 10

2-RouterB(config-router)network 203.100.100.0

3-RouterB(config-router)#network 120.100.100.0

4-RouterB(config-router)#nework 100.0.0.0

5-RouterB(config-router)#end

Router C

1-RouterC(config)#router eigrp 10

2-RouterC(config-router)network 128.100.0.0

3-RouterC(config-router)#network 128.100.100.0

4-RouterC(config-router)#nework 200.200.200.0

5-RouterA(config-router)#end

VLSM summaization
EIGRP Protocol VLSM (Variable lenth subnet
marks) VISM Address space summariation
Internetwork VLSM Summarization
VLSM Classless IP Address
Internetwork Host VLSM
Address Space

EIGRP Discontiguou Network Discontiguous Network


Discontiguous Network RIV2 EIGRP
OSPF Routing Protocol Discontiguous Network
OSPF Discontiguous Network
OSPF Discontiguous Network RIPV2 EIGRP
Autosummarize EIGRP Auto summariaztion Discontigous Network
()

Auto Summarization

Discontigous Network

Routing Metrics

Routing Protocol Metric


Routing Metrix Route

Routing Protocol Metris

-Bandwidth -Load

-Delay -Path length or hops

Bandwidth

Bandwidth
Network Link Data
Fastethor net Link Bandwidth 100 mbps Ethenet Link
Bandwidth 10mbps

Delay
Delay Network delay Network Packet
Source Network Network Destination Internetwork
Network Delay Intworknetwork

Network

Load

Load Network Network Resource

Path length or Hops

Path length or Hops Destination Network


Link
corts Routing Protocol Path Length
Hops count hops count Internetwork
Packet
Link corts

EIGRP ()

- Bandwidth

- Delay

- Load

- Reliability

Open Shortest Path First ( OSPF )

Dynamic Routing Protocol OSPF Routing Protocol Router


OSPF wlild card mask


wlild card mask subnet mask
wlild card mask Subnet mask wlild card mask

Subnet Mask Wlild card mask


1- 11111111.00000000.000000.000000 00000000.11111111.11111111.11111111

255 . 0 . 0 . 0 0 . 255 . 255 . 255

2- 11111111.11111111.000000.000000 00000000.00000000.11111111.11111111

255 . 255 . 0 . 0 0 . 0 . 255 . 255

3- 11111111.11111111.11111111.00000000 00000000.00000000.00000000.11111111

255 . 255 . 255 . 0 0 . 0 . 0 . 255

Classful Address Class A, Class B, Class C subnet mask wlild card mask

No-1 Class A Subnet mask Class A Subnet 0 1


Wlild card mask

No-2 Class B Subnet mask Class B wlild card mask

No-3 Class C Subnet mask Class C Wlild card mask


subnet mask wlild card mask subnet mask 1
wlildcard mask 0 Subnet mask 0 wlild card mask 1

Classless Address subnet wlild card mask -

Decinal Form Binary Form

255.255.240.0 11111111.11111111.11110000.00000000

Subnet mask Wlildcard mask

1111111.11111111.11110000.00000000 00000000.00000000.00001111.11111111

255.255.240.0 ?

Wlildcard mask

00000000.00000000.00001111.11111111

0 . 0 . 15 . 255
Subnet mask wlildcard mask

255.255.240.0 0.0.15.255

2-Decimal Form Binary Form

255.255.255.248 11111111.11111111.11111111.11110000

Subnet mask Wlildcard mask

11111111.11111111.1111111.11110000 00000000.0000000.0000000.00001111

255.255.255.248 ?

Wlildcard mask

00000000.00000000.00000000.00001111

0 . 0 . 0 . 7

Subnet mask wlildcard mask

Classless address subnet wlildcard mask


No-1 "255.255.240.0" wlildcard mask No-2
"255.255.255.248" Wlildcard mask

Open Shorest Path First (OSPF)

Open Shorest Path First (OSPF) Open Standard Routing Protocol


Protocol Open Standard Networks Device
Vendar

Internetwork Administrator OSPF Routing Protocol


Internetwork
Cisco Router Configure

Cisco Router configure Router


Open Standard OSPF OSPF RIP, RIP v2
Cisco Router RIP RIPv2
Internetwork "15hops" Internetwork
OSPF Routing Protocol "Unlimited hops"
Internetwork Routing Protocol

EIGRP Routing Protocol Internetork EIGRP


Cisco's Proprity Internetwork Router
Cisco Router Internetwork
Routing Protocol OSPF
Routing Protocol

OSPF Routing Protocol Routing Routing Table Update


"Dijkstra Algerithn" RIP, RIP V EIGRP "Bullmom-Ford
Algorithn" OSPF "Dijkstra Algerithn"
"Shortest path tree"
Routing Table Update Update
OSPF Routing Table Update EIGRP Routing Table
Update OSPF Internetwork

1-Areas Autonomous system Number

2-Routing Update Routing Table

3-VLSM ( Veriable Length Subnet mask ) CIDR ( Classless Interdomain Routing )

4-Unlimited Hops Conts

5-OSPF Vender

OSPF Interior Gateway Protocol (IGP) Router Autonomous


SystemNumber OSPF Router
Link-state Link-state Router
Routing information Router
OSPF Autonomous System OSPF
database Routing Table Shortest Path Tree OSPF
Topology
Routing Traffic
Routing Table Update OSPF Cost
OSPF Routing Protocol Routing Table Update

Authentication OSPF Protocol

......

OSPF

-Version Number Protocol Version number

-Packet Type Hello Packet, Database dercription, Link state request, Link state update,
Link state Acknolegement packet

-Packet Length Protocol Packet Length

-Router ID Packer Source Router ID OSPF Routing Protocol Packet


Source Destination adjacency

-Area ID Packet Area ID OSPF Packets Area ID

-Checksum Packet

-Autype Packet Authentication ID

-Authentication Authentication 64 bit field

Link-state Routing Protocol Protocol RIP V1 RIP V2

OSPF RIP

OSPF Terminology
OSPF Terminology
OSPF OSPF Terminology

OSPF

Link

Link Router Interface Network Link


Router Interface OSPF

OSPF Link Link Interface IP


Address

Router ID

Router ID (RID) Router Interface IP Address Cisco


Router Loop inerface
IP Address Router ID
Loop interface IP Address Active Physical
Interface

IP Address Router ID

Neightor

Neightor Router
Serial Link Point to Point Routers () Neighbor router

Adjacency

Adjacency OSPF Router Route update


OSPF Routing information Neighbors
Router route
OSPF Router Router
Adjacency

Hello Protocol
Hello Protocol Neighbor Router
Protocol Hello
Pcket Link state Advertisements (LsAs) OSPF Topological database
Hello Packets Address "224.0.0.5"

Topological database

Topological database Link state Advertismank Packets


Link state Advertistmant Packet Router
Area
Packet OSPF Router Topological database Dijkstra Algarithm
Topology Database Dijkatrat Algrithm network Topology

Shorttest path Link State Advertirtments (LSA) packet Topological


Database Topological Database maintain Update

Link State Advertisement

Link State Advertisement (LSA) Link state Routing Information OSPF Data
Packet LSA OSPF Routers share OSPF Routers
LSA Packets Adjacencies

Designated Router

Designated Router(DR) OSPF Router Multi-access Network


OSPF Router Routing D
esignated Router(DR)
Cisco Multi-access Network Broadcast
Multi-Access Network "Multipal Recipients "

Backup Designated Router

Backup Designated Router(BDR) Designated Rputer (DR) Hot standby


Router Hot stand DR Fail BDR
BDR DR Multiaccess Links
"Broadcast" BDR OSPF adjacent router Routing Update
LSA Update

OSPF Areas

OSPF area OSPF Routers Networkgroup


OSPF Router Area ID Area
Router Area Area ID
Router Interface Area1 Interface Area 0

Interface OSPF Router


Area Topology Table Area
Topology Table

Broadcast (Multi-Access) Network Ethemet network Network


Router

Broadcast OSDF Multic-Access Broadcart


Network

Nade Single Packet OSPF


DR BDR Multi-access

Network Broadcart DR BDR

Non-broadcart multi-access

Non-broadcart multi-access (NBMA) Frame Relay X.25 Arychronous Transfer Mode


(ATM) Broadcart

Network Non-broadcart OSPF confisure


NBMA network

Broadcart conmand

Point to Point

Point to Point Router Point to Point


conmection
Point to Point Physical conmection Logizal conmection

Point to Multipoint

Point to Multipoint Router Physical Interface Serial Interface


Interface

Router Network Point to Multi-point


Point to Multi-

point Network Frame-Relay Network

OSPF

1-Router (config) # router ospf [process ID]

2-Router (config) # network [Network IP] [wildcard mass] area [Area No]

No.1 2 commomd OSPF confisure

commomd OSPF

configure (2) -1.Single Area OSPF

2.Multi Area OSPF

Sigle Area OSPF configure

Router A

Router A (config) # router OSPF 10


1. Router A (config-router) # network 203.100.100.0 0.0.0.255 area 0

2. Router A (config-router) # network 172.10.0.0 0.0.255.255 area 0

3. Router A (config-router) # network 128.100.0.0 0.0.255.255 area 0

4. Router A (config-router) # end

Router A configure

No.1 commomd OSPF commomd

No.2 No.3 commomd 203.100.100.0, 172.10.0.0

No.4 commomd End commomd Router B Router C configure

Router B

Router B (config) # router OSPF 10

Router B (config-router) # network 203.100.100.0 0.0.0.255 area 0

Router B (config-router) # network 10.0.0.0 0.255.255.255 area 0

Router B (config-router) # network 120.100.100.0 0.255.255.255 area 0

Router B (config-router) # end

Router C

Router C (config) # router ospf 10

Router C (config) # network 120.100.100.0 0.255.255.255 area 0

Router C (config-router) # network 128.100.0.0 0.0.255.255 area 0

Router C (config-router) # network 200.200.200.0 0.0.0.255 area 0

Router C (config-router) # end

Multi Area OSPF configure


Router A x

No.1 Router A (config) # router ospf 10

No.2 Router A (config-router) # network 172.10.0.0 0.0.255.255 area 0

No.3 Router A (config-router) # area 0 range 172.10.0.0 255.255.0.0

No.4 Router A (config-router) # network 200.200.200.0 0.0.0.255 area 1

No.5 Router A (config-router) # area 1 range 200.200.200.0 255.255.255.0

No.6 Router A (config-router) # end

Router A configure No.1 commomd ospf commomd

No.2 commomd Router A 1 72.10.0.0 Network area 0


No.3 commomd

a rea 0 Network Address commomd

Router B

Router B (config) # router ospf 10

Router B (config-router) # network 172.10.0.0 0.0.255.255 area 0

Router B (config-router) # area 0 range 172.10.0.0 255.255.0.0

Router B (config-router) # network 203.100.100.0 0.0.0.255 area

Router B (config-router) # area range 203.100.100.0 255.255.255.0

Router B (config-router) # end


Router C

Router C (config) # router ospf 10

Router C (config-router) # network 200.200.200.0 0.0.0.255 area 1

Router C (config-router) # area 1 range 200.200.200.0 255.255.255.0

Router C (config-router) # network 192.168.10.0 0.0.0.255 area 1

Router C (config-router) # area 1 range 192.168.10.0 255.255.255.0

Router C (config-router) # end

Router D

Router D (config) # router ospf 10

Router D (config-router) # network 203.100.100.0 0.0.0.255 area 2

Router D (config-router) # area 2 range 203.100.100.0 255.255.255.0

Router D (config-router) # network 192.198.100.0 0.0.0.255 area 2

Router D (config-router) # area 2 range 192.198.100.0 255.255.255.0

Router D (config-router) # end

Commomd

-show ip ospf

-show ip ospf database

-show ip route

-show ip ospf inter

-show ip protocols
Spanning Tree Protocol

Spanning Tree Protocol Ethernetwaring


Bridge LAN or Switched LAN Spanning Tree Pratoral
Design Loop Free Topology

Spanning Tree Protocol loop Broadcast Rediation


Spanning Tree Protocol OSI 7 Layer Layer 2

Ciso Switch

STP Spanning Tree Protocol Default Running Spanning Tree


Protocol Ciso Switch Loop
SIP Switched Network Loop

Loop STP Switched


Network Loop Switch STP
Bridge ID NO. STP Bridge ID

() Bridge ID Root Bridge ID Network


Switch Computer Network
Switch Root Bridge

Switch Switch Switch Root Bridge

()

---- Switch Switch Root


Bridge ?

()
Switch (2) Swich Root Bridge
Switch Root
Bridge Root Bridge

Spanning Tree Protocol Spanning Tree Protocol Root Bridge


Frame Switch Frame
BPDU (Bridge Protocol Data Unit) Frame BPDU Frame

Switch BPDU
Frame Switch Bridge ID Number
STP Bridge ID Number

STP Root Bridge Bridge ID Number


STP Root Bridge Bridge ID Number
Root Bridge Bridge ID Number

STP MAC Adress Root Bridge Switch


Bridge ID Number 32768

()

Bridge ID Root Bridge


-- Bridge ID Switch Root Bridge
Root Bridge Interface Designate Part
Root Bridge

Designate Part Switch Interface Root Part

Figure-3 Network Link Fail


Redundancy Link Link
Redundancy Link Network
Fail Network

------ Switched Network Network


Redundancy Link Idea
------

Switch Fail Rendundancy Link

Switch Redundancy Link Loop


--- Loop

Network Fail ---


Redundancy Link Network Fail Network
Fail
Frame copy
Network Loop Fail

()

Network
Switch
Redudery Link

STP Root Bridge Link Loop


Port Blocked port

Spanning Tree Protocol Loop Link Blocked Port


Loop OK
Redundency Link Link Fail ..

Spaning Tree Protocol Blocked Port Forward Port



Network Fail
Network


STP STP
Loop Free Topology Loop Loop

Spanning Tree Protocol ?

Computer Contral Device Switch


Network Network Computer
Switch Interface
Switch Switch Computer
Network Network Fail Redudancy Link

Figure (1)

Figure (2)

Figure (1) Link Fail Figure (2) Link Fail


Network Figure (2)
Link Fail Network Fail
Network Fail Redundancy Link

Figure (3)

Figure (3) Network Link Fail


Redundancy Link Link
Redundancy Link Network Fail Network
.... .. Switch Network
Network Redundancy Link idea
... ...
Switch Fail Redundancy Link

Switch
Redundancy Link Loop
.. Loop Network Fail
... Redundancy Link Network
Fail Network Fail Frame
Copy Network
Loop Fail

-- Redundancy Link
Primary Link Fail Loop
Switch Data Frame Broadcasta Data
Frame Network

Redundancy Link Data Frame


Broadcast Frame ---
Frame Broadcast Bradcast

Network Netwark
Netwark Link Fail Network
!----------
Network Loop Link Fail

Loop Spanning Tree Protocol


(STP)
Spanning Tree Protocol Loop Link
Fail Redundancy Link network Fail
Protocol Spanning Tree Protocol Switched Network
Loop Spanning Tree Protocol Loop-Free-Topology
Spanning Tree Protocol Network Loop
Spanning Tree Protocol Loop

Access List

Access List Cisco IOS Network Network Traffic

Filter Networking Security Network

Network Attack
Resoure

Network Resource

? OK! --- Network


Resoure

Firewall Access List

Cisco Cisco IOS Firewall Access List Network

Packets

Cisco Router Access List Network


Traffic

Access List Router Access List Access Control List (ACL)

Permit, Deny Action Traffic Filter Access List Traffic


Filter

(ACL) List number


Cisco's IOS Access-List (2) - 1. Standard
Access Lists

2. Extended Access Lists

Standard Access List

Standard Access List Network Layer Protocol IP Fame Source IP

Cisco's IOS Standard Access List Permit or Deny Action


Source IP

Address Standard Access List Source IP Address

Telnet, UDP, TCP, Web Traffic

Extended Access List

Extended Access List IP Frame TCP Frame Layer 3 Layer 4 headers

Extended Access List Network Layer headers Source IP, Destination IP Filter

Transport Layer Header Source Port , Destination Port Filter


Cisco Router Access List Network

Standard Access List

Standard Access List (or) Extended Access List Access List


number Access List number Access List number
Range
(2) Standard Access List number Range 1 99 Extended
Access List

number 100 199

Router (config) # access-list ?

(1-99) IP standard access list

(100-199) IP Extended access list Access List Network Diagram

Network A

IP : 172.10.0.x

Mask : 255.255.255.0

Gateway : 172.10.0.100

Network B

IP : 203.100.100.x

Mask : 255.255.255.0

Gateway : 203.100.100.100

Network C

IP : 100.00.x

Mask : 255.0.0.0

Gateway : 100.0.0.100

Router A
Fastethernet 0/0 -IP: 211.241.100.1

-Mask: 255.255.255.0

Fastethernet 0/1 -IP: 172.10.0.100

-Mask: 255.255.0.0

Router A Network OSPF Routing Protocol

-Router A (config) # router OSPF 10

-Router A (config-router) # network 211.241.100.0 0.0.0.255 area 0

-Router A (config-router) # network 172.10.0.0 0.0.255.255. area 0

Router B

Fastethernet 0/0 -IP: 211.241.100.2

-Mask: 255.255.255.0

Fastethernet 0/1 -IP: 100.0.0.100

-Mask: 255.255.255.0

Fastethernet 1/0 -IP: 203.100.100.0

-Mask: 255.255.255.0

Router B Network OSPF Routing Protocol

-Router B (config) # router ospf 10

-Router B (config-router) # network 211.241.100.0 0.0.0.255 area 0

-Router B (config-router) # network 100.0.0.0 0.255.255.255. area 0

-Router B (config-router) # network 203.100.100.0 0.0.0.255 area 0

Router A 203.100.100.0 network

1-Router A (config) # access-list 10 deny 203.100.100.0 0.0.0.255


2-Router A (config) # access-list 10 permit any

3- Router A (config) # interface fartethernet 0/0

4-Router A (config-if) # ip access-group 10 in

5-Router A (config-if) # exit

6- Router A (config) # interface fartethernet 0/1

7-Router A (config-if) # ip access-group 10 out

8-Router A (config-if) # end

Router A Access List configure Network B computer


Network A Ping command Network Network
B Network C ping

Network

Router A command

NO.1 commamd "access -list 10 deny 203.100.100.0 0.0.0.255" "access-list" Access List
command "10" standard Access List number (1-99)
number "10"

"deny" Access List Rule Action "203.100.100.0


0.0.0.255" source

Network Address No.2 command "access-list 10 pormit any" command


Access List "203.100.100.0" Network Network
Network A

No.3 command Router AI nterface Fastethernet 0/0 interface


No.4 command "ip access-group 10 in" Fastethernet 0/0 interface inbound packets
interface

No.6 command Router A interface Fastethernet 0/1 interface


No.7 command "ip access-group 10 out" Fartethernet 0/1 interface Outbound packets

interface Router A "203.100.100.1

Network A Network B Hort computer "203.100.100.1"

Router (config) # access-list [Access-List number] [Action] [Destinaton Network] [Wildcard Mark]

1-Router A (config) # no access-list 10

2-Router A (config) # access-list 10 deny hort 203.100.100.1

3-Router A (config) # access-list 10 permit any

4-Router A (config) # interface fastethernet 0/0

5-Router A (config-if) # ip access-group 10 in

6-Router A (config-if) # exit

7-Router A (config-if) #interface fastethernet 0/1

8-Router A (config-if) # ip access-group 10 out

9-Router A (config-if) # end

Router A command

No.1 command Router A Access-list "10" command

No.2 command Network B "203.100.100.1" computer command

No.3 command Network permit command

No.4 N
o.5 command Interface fastethernet 0/0 Inbound Packet
Interface

No.7 No.8 command Interface fastethernet 0/1 outbound Packet


Interface
Extended Access List

- Extended Access List Network Diagram Router A , Router B


Router A Network A Network B Router
B Network C Network C Web Server Web
Server Network A Access Router A Router B
Network

"Routing Information protorol virsion 2" (RIP v2)

Network A

IP : 192.168.100.X

Mask : 255.255.255.0

Gateway : 192.168.100.100

Network B

IP : 172.100.0.X

Mask : 255.255.0.0

Gateway : 172.100.0.100

Network C

IP : 100.100.100.X

Mask : 255.0.0.0

Gateway : 100.100.100.100

Router A
Fastethernet 0/0 - IP:203.200.200.100

Mask:255.255.255.0

Fastethernet 0/1 - IP:172.100.0.100

Mask:255.255.0.0

Fastethernet 1/0 - IP:192.168.100.100

Mask:255.255.255.0

RIP v2 Configure

Router A (config) # router rip

Router A (config-router) # network 203.200.200.0

Router A (config-router) # network 172.100.0.0

Router A (config-router) # network 192.168.100.0

Router A (config-router) # version 2

Router B

Fastethernet 0/0 - IP:203.200.200.200

Mask:255.255.255.0

Fastethernet 0/1 - IP:172.100.100.100.100

Mask:255.255.0.0.0

RIP v2 Configure

Router B (config) # router rip


Router B (config-router) # network 203.200.200.0

Router B (config-router) # network 100.100.100.0

Router B (config-router) # version 2

Router Network A Network C Web Server Access

1-Router B (config) # access-list 110 deny tcp 192.168.100.0 0.0.0.255 gt 1024 host 100.100.100.1 eq 80

2-Router B (config) # access-l65ist 110 permit tcp any hort 100.100.100.1 eq 80

3-Router B (config) # access-list 110 permit icmp any any

4-Router B (config) # interface fastethernet 0/0

5-Router B (config-if) # ip access-group 110 in

6-Router B (config-if) # exit

7-Router B (config) # interface fastethernet 0/1

8-Router B (config-if) # ip access-group 110 out

9-Router B (config-if) # end

Router B command

No.1 command "access-list" Access List command "110"


Extended Access List 100 199 Range number "deny" Rule
Action "tcp" Transport layer protorol "192.168.100.0
0.0.0.255" Source Network IP Addredss " 0.0.0.255" Source Network IP Addess Wildcard
Mask

"gt" Grather than "1024" TCP Port number "gt 1024"


"1024"

TCP Port number "hort 100.100.100.1" Dertination


Host IP Address

"eq 80" TCP port 80 eq (equal)


No.2 Command "access-list 100 permit tcp any hort 100.100.100.1 eq 80" command
"192.168.100.0" Network Deny Network
"100.100.100.1" 80 Web Service Access

No3. Command "access-list 110 permit icmp any any" Command Source
Network icmp

Distination Network
Access

No.4 No.5 Command fastethernet 0/0 interface Access List O


utbound packet
Interface

No.7 No.8 Command fastethernet 0\1 Interface Access List Inbound packet
Interface

Network A Computer Web Browsen Network C Web Service accept


Network time out Network Access
Web Service Access

Router On A Stick

-Switch

1. Create VLAN 10, 20

2. Create Trunk and dot1q

(config)#interface fastethernet 0/5

(config-if)#switchport mode trunk

(config-if)#swtichport trunk encapsulatin dot1q

-Router
1. Enable the Router Fastethernet Interface 0/0

(config)#interface fastethernet 0/0

(config-if)#no shutdown

2. Create Sub Interface for VLAN 10 and 20

(config)#interface fastethernet 0/0.10

(config-subif)#encapsulation dot1q 10

(config-subif)#ip address 192.168.10.1 255.255.255.0

(config-subif)#no shutdown

(config)#interface fastethernet 0/0.20

(config-subif)#encapsulation dot1q 20

(config-subif)#ip address 172.10.0.1 255.255.0.0

(config-subif)#no shutdown

You might also like