Professional Documents
Culture Documents
Hub: generates and repeats network signals, receive a signal and trasmmit to all
port except the one from it cames
Bridge: learn and filter MAC.
Layer 2 switch.
Layer 3 Switch: routing capabilities.
MAC: Media Access Control 12 DIGIT ADDRESS hexadecimal (a-f)
Routers
Contains networks.
Moves data between networks, connects ddissimilar networks.
Router: blocks all broadcast traffic.
Allows everithing and denys by exception
WAP and Controller
Lower the frequency longer range, less bandwith.
2.4 OR 5 GHZ spectrums.
2.4 broadcast further, 3 clean channels 1, 5 & 11.
5, more concentrated signals.
Firewall / IPS
blocks or allows traffic from moving between networks.
Does not have serial port.
denys everithyng and allows by exception.
Transparent: inspect traffic.
Routed mode: divides the network
Stateful filtering: sets the security zones, higher the number more secure, means
by defual allows traffic from a higher security zone to a lower one, not the
opposite.
wan, LOWER SECURITY, LAN, higher security.
Crossover:
Used to connect same devices. Pins are alligned Tx-Rx.
Auto MDIX: ability to sets the pins Tx and Rx to match automatically.
Rollover:
Console port: port to configure the device. Pins are rolled 1-8, 2-7, 3-6, 4-5, 5-
4, 6-3, 7-2, 8-1.
Fiber optic
Multimode: 500 meters
Singlemode: (glass core).
show ip interface brief: shows all the interfaces that are on a router.
line console 0
password [password]
logging syncrhonous: repaint what it was typing.
login (requires login to this device)
everytime you are in privileged mode and you misstype something it trys to telnet
the device.
no ip domain-lookup
service password encryption: very week (type 7), encrypts clear text password.
auto duplex - auto speed: will try to negotiate with the other side.
half duplex: you can sed or receive at a time.
full duplex: you can sed and receive.
(config)#interface (interface)
(config-if)#speed 100
(config-if)#duplex full
39. Switching Day-to-Day Understanding Port Security
(config-if)#interface (interface)
(config-if)#switchport port-security
43. Switching VLANs The Concept that Changed the Networking World
Layer 3 switching.
ASIC: Hardware able to do routing.
ip routing must be enabled.
#switchport nonegotiate
Turns down DTP.
Errdisable scenario.
#show ip interface brief
#show running-config
#show interfaces (interface)
#show interface status
#shutdown
#no shutdown
Slowness scenario
#show ip interface brief
#show interfaces (interface)
#show interfaces status
#clear counters interface (interface)
hardcode speed.
hardcode duplex.
With serial cable one site have to set the clock rate.
DCE: isp
DTE: me
#clock rate (rate) b/s
*routers only knows directly connected networks by default.
#show controllers.
#show arp
Router
Create subinterfaces
#interface gigabit 0/0/0.10
#ip address x.x.x.x x.x.x.x
#encapsulation dot1q (encapsulation id)
MUST MATCH THE VLAN.
Switch
Configure the port as trunk, if needed enable encapsulation dot1q
#switchport mode trunk
#switchport trunk encapsulation dot1q
For telnet and SSH lines vty must have configured a password.
For telnet and SSH privileged exec mode must have configured a password.
Link state
maintain a map of the network system.
OSPF, ISIS.
resource consuming
loop free.
EIGRP (90)
UNEQUAL COST PATH LOAD BALANCING.
#router rip
#version 2
# network x.x.x.x
tells what networks to advertise.
what interfaces send advertisments out of
59. Routing Protocols Configuring RIPv2
#router rip
#version 2
#network (x.x.x.x)
#show ip protocols
access controllers
NAT
quality of service
demand dial routing
policy routing
route filtering
**
Extended (100-199)
matches on source|destination address, protocol, souce|destination port
number
higher cpu
Reflexive
allows return trafic for internal request.
Standard access-list uses the range 1-99 and extended range 1300-1999.
in standar ACL the whole network or subnet is blocked.
ipv4 32 bit
ipv6 128 bit
8 groups 4 hexa characters (0 to 9 )(A to F)
2001:0db8:85a3:0000:0000:8a2e:0370:7334
HOW TO SHORTEN
ELIMINATE CONSECUTIVE ZEROS WITH :: (ONLY ONCE)
2001:0db8:85a3:0000:0000:8a2e:0370:7334
2001:0db8:85a3::8a2e:0370:7334
LINK LOCAL: generated automatically, most commo eui 64 takes mac and adds to
it FFFE, starts with FE80.
UNIQUE LOCAL: PRIVATE IP ADDRESS. DONT ROUTE TO INTERNET.
Multicast
Anycast
16 bits = hextets.
#ipv6 address
#show ipv6 interface brief.
#show ipv6 interface
loopback interface
interface online and accesible if the router is running.
76. Device Management Backing Up and Restoring the IOS and Configuration on a Cisco
Device
#verify /md5 source:filename (md5)
#license install source:filename
flahs:...
#show clock.
#clock set