Professional Documents
Culture Documents
jynfolYoabmxm;
I J
X
bk 7 m;
I w7m; J
I oH C m J
I wdt
Œk m; OD;xdyyf efqif &Scd ;kd uefawmhyg.?
J
I
( azaz )/ ( arar )
w,fw,f/ rmrm;
q7m udknDnDaxG;
( ud_k zdK; )
wkt
Œd m; Tpmtky-f zifh uefawmhyg.?
aZmfvif; (YOUTH Computer Co., Ltd) rS
a&;om;xkwfa0NyD;aompmtkyfrsm;
'Dpmtkyfav;udka&;csifaewmtawmfMumNyD/'gayr,fhra&;jzpfbl;/tckusawmhCisco
uppfwJhEdkifiHwumtodtrSwfjyKCCNA pmar;yGJawGujrefrmjynfrSmajzvdkY&NyDqdkwJhtcgusawmh
'Dpmtkyfudkawmh a&;csdefwefNyD qdkNyD; tckusrS a&;jzpfvdkufwmygyJ/ uRefawmfh taeeJYuawmh 'Du
vli,fawG Edik if w H umESihf enf;ynmcsi;f ,SOw f t
hJ cg vdu
k Ef ikd af tmifvq Ykd Nkd y;D 'Dvkd pmtkyaf wGa&; ay;ae
cJw
h myg/tawGUtBuKH usawmholweYkd r,S YJ Oo f m&ifawmifbmyJajymajymud, k u f oDt&kd aD v;odxm;r,f
qdk&if vli,fawGvnf; odyfaemufaumufrusbl;aygh/ 'Dawmh tckvdk tifwmeuf acwfBuD;rS olwdkY
bmodvJ uk, d w f q Ykd u D vli,fawGvnf; odw,f/ 'Davmufygy/J ajym&&if jrefrmvdk zwfp&m pmtkyf
awmifr½Sdbl;qdkwmrsdK;udk rjzpfapcsifbl;av/
tckpmtkyfrSmvnf;pmtkyfwpftkyfjzpfoGm;&ifNyD;wmyJqdkwmrsdK;r[kwfbJb,fvdkoifcef;pm
awGygr,fqw kd mrsKd ;udyk gaoaocsmcsmpOf;pm;Ny;D rSma&;om;cJw h mjzpfygw,f/aemufwpfcu k pmar;yGJ
ajzr,fo h al wG twGuv f nf; taxmuftuljzpfr,f/ vkyif ef;cGi0f ifr,fo h al wG twGuv f nf; pmawG
jyefaET;vd&Yk r,f/ jyefMunfv h &Ykd r,f/ e,fjcm;ajrjcm;rSmaewJo h al wGvnf; 'Dpmtkyu f zkd wfNy;D avhvm
vd&Yk r,f/pojzifah ygAh sm/bufaygi;f pHu k aeMunfv h tus
Ykd Kd ;½SEd ikd rf ,farQmv f ih w f maMumif'Dh pmtkyu f akd wmh
jzifh a&;zdkY tcsdefwefNyDqdkwJh ,ckvdk tcsdefrsdK;rSm vli,fawGqDudk 'Dpmtkyaf v;a&muf½SdoGm;zdkY BuKd ;yrf;
xm;wJh BudK;yrf;csufuav;jzpfygw,f/
'Dpmtkyu f uR kd eaf wmfwpfa,mufwnf;a&;om;xm;wmr[kwyf gb;l /bmjzpfvv Ykd nf;qdak wmh
uReaf wmfvil ,fawGuae&may;cs kd ivf yYkd g/ajym&&ifuReaf wmfwpfa,mufwnf;vkyaf ewmuduR k eaf wmf
oabmrusb;l / Mum&if ½dk;oGm;r,f/ 'gae&mwdik ;f yJ/ 'Dae&mrS r[kwb f ;l / 'Dawmh b,foyl aJ &;a&;
'g[m xda&muf&r,f/ vli,fawGtwGuf wu,fukd tusKd ;½S&d r,f/ 'g t"dutcsuyf /J 'Dawmh
uRefawmf qdkwJh tajctaeuae uRefawmfwdkY qdkwJh tajctaersdK;jzpfatmif uRefawmfBudK;pm;Munfh
csifw,f/ 'gudk vli,fawGbufu em;vnfay;&r,f/ wpfa,mufwnf;udkyJ 'grS'gyJ qdkwmrsdK;udk
uReaf wmfrjzpfapcsib f ;l /wpfa,mufwnf;udyk t J m;ud;k aer,ftpm;tm;vH;k &JUtBuOH mPfevk YJ t d yfwm
awGutaumifkd ;qH;k vkyof mG ;csiw
f ,f/vkyaf y;csiwf mawGtrsm;Bu;D ½Sad o;w,f/uReaf wmfvyk Ef ikd w f ,f/
'gayr,fh wpfa,mufwnf;eJY uBuD;uae t txd vkyfzdkYqdkwmrjzpfEdkifbl;/ 'Dawmh uRefawmf
'Dpmtkyfudk a&;zdkY qHk;jzwfwJh tcsdefrSm uRefawmfqDu nDi,fawGuvnf; olwdkYvnf; 0dkif;ulNyD;a&;
yg&ap/ 'gukd uReaf wmfoabmusw,f/
qdkvdkcsifwmu pmzwfolawGbufuae uRefawmfhudk txifrvGJapcsifbl;/ uRefawmfwpf
a,mufwnf; ra&;EdkifvdkYvnf;r[kwfbl;/ ra&;wwfvdkYvnf;r[kwfbl;/ awmfMum pmzwfolawG
bufu odkYavm odkYavm xifaerSmpdk;vdkY/ 'Dvdk tm;vHk;0dkif;vkyfvdkufawmh olwdkYawGvnf; uRefawmfESifh
wGvJ yk cf sitf m;jziftawG
h UtBuKH awG&vmrSmjzpfw,f/aemifuv kd nf;oifwu Ykd akd y;csiw
f mawGtrsm;Bu;D
qdkwJhuRefawmfhqE´awGtrsm;BuD;udkvnf;olwdkY&JUtultnDeJYoifwdkYtwGufjznfhqnf;ay;Edkifr,fvdkY
arQmfvifhw,fav/vdktyfwm½Sdvnf;uRefawmfwdkYuMail dk ydkYNyD;ajymyg/YOUTH &JUOnline ICT
Reader (www.zawlinyouth.net) udv k nf;0ifMunfMh uygO;D /tJ'h rD mS vnf;enf;ynmopfawG?
oifcef;pmawGukd wwfEikd o f íwifay;xm;ygw,f/
aemufq;kH taeeJY 'Dpmtkyaf v;udk taumif;qH;k jzpfatmif pkpkpnf;pnf; wdik w f ikd yf ifyifeYJ
vkycf MhJ uygw,f/ 'gaMumifh auseyfMuvdrrhf ,fvaYkd rQmv f ifrh yd gw,f/
apwemrsm;pGmjzifh
aZmfvif;
pma&;ol
rmwdum
CHAPTER 1 Introduction
C HAPTE R 2 IOS
CH A P T E R 7 Switching
CHAPTER 8 VLAN
9.1 SecurityESiAccess-List
hf wd\
Yk tajccHoabmw&m;rsm; - 178
9.1.1 Secured Network wpfcktwGi;f ½StoH
d ;k tESKe;f rsm; - 179
9.1.2 Cisco IOS Firewall - 182
9.1.3 Basic and Advanced Traffic Filtering - 184
9.2 Access Lists rsm;taMumif; - 186
9.2.1 Access Lists tvkyfvkyfyHk - 186
9.2.2 Traffic \ Direction trsdK;tpm;rsm; - 187
9.2.3 Access List aqmuf&mwGifvdkufemoifhaomtcsufrsm; - 190
9.2.4 ACL aMumifhavsmhusoGm;EdkifaomSecurity Threats rsm; - 191
9.2.5 ACL udo k ;kH r,fq&kd if'gawGurjkd zpfraevkyaf y;zdv
Yk ykd gw,f - 192
9.3 Basic Access List rsm;taMumif; - 192
9.3.1 Standard Access List - 192
9.3.2 Wildcard Mask - 195
9.3.3 Block Size, Wildcard wdkYeJYywfowfírSwfp&mrsm; - 196
9.3.4 Create vkyfNyD;om; Standard Access List udkInterface
ay:wGifApply vkyjf cif; - 198
9.3.5 Extended Access List - 202
9.3.6 Client rsm;rSTelnet jzifAccess
h vkycf iG yhf rmPtm;uefYowfjcif; - 209
9.4.1 Advanced Access List rsm;taMumif; - 210
9.5.1 aqmufNyD;oGm;aomAccess List rsm;udjk yefvnfMunf½h jI cif; - 217
9.6 IOS Firewall ESiProxy
hf Server - 218
9.6.1 Cisco IOS Firewall (Context-Based Access Control) - 218
9.6.2 Authentication Proxy - 220
C H A P T E R 10 NAT
Network orm;wpfa,muftaeeJYtoufarG;0rf;ausmif;jyKawmhr,fqdk&ifvkyfief;cGifrSm
vpmaumif;aumif;&zdkY odkYwnf;r[kwf udk,fvkyfaewJh vkyfief;cGifuae 'Dxufydkaumif;wJh vkyfief;
rSmtvkyf&EdkifzkdYynm&yfydkif;qdkif&mawGudkqufvufavhvmr,fqk&d iftcktcsdefrSmawmhCisco
Certifications aemufudkuRefawmfwdkYvdkuf&rSmyJjzpfygw,f/'DvkdjyKvkyfjcif;[mudk,fhb0twGufydkrdk
aumif;rGefwJhCareer udvdk u k jf cif;yJjzpfygw,f/Cisco Certifications awG[m,aeYacwfrSmay:jyLvm
jzpfaewJCertifications
h tcsdKUjzpfMuwJhOyrmajym&&ifMCSE wdkYxufpm&ifydkNyD;awmhvkyfief;cGif
yHk 1.1
Product of YOUTH
-5-
1.3 Cisco Certifications vrf;aMumif;rsm;
1/ Entry (CCENT)
2/ Associate (CCNA)
3/ Professional (CCNP)
4/ Expert (CCIE)ESihf
5/ Architect wdyYk jJ zpfygw,f/tJ'h rD mS rSGeneral Certifications rSmvrf;aMumif;u(7)ckjyefcGJ
xGuo
f mG ;ygao;w,f/ tJ'h gawGukd wpfcg wef;pDNy;D azmfjy&r,fq&kd ifjzifh -
CCDA
1/ LAN ESiWAN
hf udkaumif;pGmInstall vkyw
f wf&r,f/Configure vkywf wf&r,f/Oper-
ate vkyE f ikd &f r,f/aemufawmhWireless Access Services udka&myJ/'gawGtm;vHk;udkSecure
jzpfpmG vkyEf ikd &f r,f/aemufNy;D awmhNetwork ao;ao;av;uaetv,ftvwfNetwork
avmufxdudkConfigure vkyEf ikd &f r,f/Troubleshoot vkyEf ikd &f r,f/Performance vnf;aumif;
&r,f/Network uao;ao;av;yguGefysLwmtvHk;ta&twGufodyfrrsm;ygbl;/500atmufaygh/
t[D;/ 'gutao;uae tv,ftvwfy½J ydS gao;w,f/
2/ aemufNyD;awmhIP, IPV6, EIGRP, RIP, RIPv2, OSPF, Serial Connections, Frame Re-
lay, DSL, PPPoE, LAN Switching, VLANs, Ethernet, Security, Access Lists, Cable
wdu
Yk v
kd nf;toH;k jyKEikd &f r,f/
2/ 'kw,
d enf;vrf;uawmh pmar;yGJ 2 ck ajz&r,f/
Product of YOUTH
-9-
- 640-822 qdkwJhInterconnecting Cisco Networking Devices 1 (ICND1) &,f
- 640-816 qdkwIntroduction
Jh to Cisco Networking Devices 2 (ICND2) &,fyg/
yHk 1.2
ICND1 (640-822) atmifc&hJ if ICND2 (640-816)
Exam udODk ;pGmajzyg/ Exam udquf
k ajzyg/
atmifc&hJ if
CCNA (640-802) Exam atmifc&hJ if CCNA
udk wdkuf½kdufajzjcif; jzpfNy/D
1.8 'DvdkyHkpHawGar;rSm
yHk 1.3
yHk 1.4
2/ ar;cGe;f awGukd aocsmzwfyg/ ar;cGe;f u½Snaf evd½Yk &dS ifvnf; pmwpfv;kH csi;f wpfaMumif;csi;f
aocsmzwfyg/ bmar;wmvJ odcsiaf ZmeJY ar;cGe;f tqH;k udk wpfcgwnf;ausmrf zwfyge/YJ aMomf 'gukd
ar;wmyJ 'DtajzigodouG qdkNyD; tm;&yg;& ajzcsvdkufwwfygw,f/ tJh'gawGaMumifh tusrsm;wmyg/
wpfcsdKUu ar;cGef;udk tvGwfusufxm;w,f/ ar;cGef;udk aocsmrzwfawmh txJrSm ar;cGef;vSnfhxm;
wmudrodk b;l /'DtajzyJqNkd y;D wef;ajzcsvu
kd w
f m/'gpmr&vdu
Yk swmr[kwb f ayg
J q
h vdu Yk swmjzpfomG ;Ny/D
oluolusreS ;f vJoad &m'gb,fvjkd zpfwmvJaygholtm;vH;k ajzEdik w f ,fayghponfjzifhjzpfwwfygw,f/
yHk 1.5
Product of YOUTH
- 13 -
4/ Multiple Choice ar;cGef;awGudkajzwJhtcgb,f[mutajzrSefvnf;qdkwmudkoJuGJpGm
rodc&hJ ifbmutrSev f nf;qdw
k m'd[
G jzpfaecJ&h ifoifvyk &f rSmuolay;xm;wJMultiple h Choice
xJrS rjzpfEikd w
f hJ tajzawGukd t&ifq;kH z,fxw k yf pfvu
kd yf g/ Ny;D &if tJ'h gawGukd rpOf;pm;eJaY wmh/ wjznf;
jznf;eJScope
Y udkusOf;csvdkuf/rjzpfEdkifawmhwmawGz,fxkwfNyD;t[rf;tvSr,fawGa&G;ovdkayghAsm
Zumwifaygh/ aemufqHk;ZumwifxJu wu,fhtajzrSefudk a&G;xkwfEdkifzdkY BudK;pm;&rSm jzpfygw,f/
aAsmifawmifawmif aAaA;*sd awGygawGvyk rf aeeJaY emf/
6/ ajzNy;D oGm;wmeJoif
Y atmifvm;ratmifb;l vm;qdw k mudcsk ucf si;f od&rSmjzpfygw,f/Ny;D awmh
tJ'h Exam
D Centre uaeoifhtrSwfygwJhatmifjrifaMumif;Report udkxkwfay;vdkufrSmjzpfygw,f/
tJh'gav;udk aocsmodrf;xm;yg/ vHk;0 raysmufygapeJY/ tJh'DtxJrSmvnf; pmar;yGJESifhywfoufwJh
Code awGPIN (Personal Identification Number) awGygygw,f/ta&;taMumif;wpfcc kv
k aJG csmcf &hJ if
'gav;utoHk;0ifrSmyg/atmifjrifaMumif;udktrSwfpm&if;ESifhwuGCisco udk&ufydkif;twGif;ydkYay;rSm
jzpfwht J wGuaf Mumifh oifuaerS wpfzefypYkd &mrvdyk gb;l / wpfcak wmh½ydS gw,f/ 'gu ud, k af jzwJh Edik if H
ESiExam
hf Centre ay:vnf;rlwnfygw,f/Ny;D &ifcefr Y eS ;f ajcwpfvavmufrmS Certificate udk
&½Syd gvrd hrf ,f/'DxufyMkd umcsivf nf;Mumygvrd hrf ,f/pmar;yGaJ jzqdpk Ofuwnf;ujznfph u G &f wJhForm
rSmCertificate udkay;ydkYapcsifwJhvdyfpmtwdkif;a&muf½SdvmrSmjzpfygw,f/
uRefawmfCertified Novell Administrator ajzwke;f uawmh,d;k ',m;rSmajzwmjzpfygw,f/
atmifwkef;uawmh tcsdefumvu 1996 Mo*kwfv wkef;avmufuyg/ vdyfpmajymif;bmajymif;eJY
wu,fwrf;uReaf wmhfvufxJCertificate a&mufvmcsdefu1997{NyDavmufrSa&mufvmwm
jzpfygw,f/uReaf wmft h ouft&G,u f tJ'h w
D ek ;f uavwdu k v f opf
Ykd &u G af <u&ifawmifvGr;f armwwfwhJ
touf 20 t&G,fjzpfygw,f/ 'Dawmhvnf; aysmv f u
kd w f hJ jzpfjcif;aygAh sm/ vrf;avQmuf&ifawmif
ajrBuD;u atmufudk wpfayavmufedrfh0ifaeovdkyJ/ tJh'D vufrSwfwpfckaMumifhyJ uRefawmf[m
wpfjcm;toufarG;0rf;ausmif;rIawGuravh kd vmjzpfawmhbuG J eyf sLwmESiyhf touf
J arG;0rf;ausmif;jyK
Road to CCNA (Exam 640-802)
- 14 -
cJhygw,f/uRefawmfajymcsifwmutcktcsdefuawmhvli,fawGudkuRefawmfhtawGUtBuHKawGjyefajym
&r,fh tcsdefa&mufoGm;NyDjzpfwmaMumifh BuHKcJhzl;orQav;awG oifcef;pmav;awGudk uRefawmf
tvsi;f oifo
h vdk rQa0ay;oGm;OD;rSm jzpfw,fqw kd hJ taMumif;av;yg/
Product of YOUTH
- 15 -
Printer Sharing tp½Sw d hJ Service, Video Conferencing Service, Web Service tp½Sw d hJ Ser-
vice awGtrsKd;rsKd;udkvufcH&½SdEkdifr,fvdkYajymwmjzpfygw,f/atmufrSmazmfjyxm;wJhyHkav;udkMunfh
vdu
k yf g/
yHk 1.6
yHk 1.7
wpfzufrSmazmfjyay;xm;wJhyHktwdkif;tckqdk&ifodD;jcm;pD½SdaewJNetwork
h A ESiNet-
hf
work B qdkwJhNetwork (2)ckuawG
kd UjrifEikd yf gw,f/
Product of YOUTH
- 17 -
yHk 1.8
atmufrSmuRefawmfqufjyD;awmhoD;jcm;pD½SdaewJhNetwork (2)ckudkxyfrHazmfjyvdkuf
ygw,f/ 'Dxufyjkd y;D em;vnfomG ;apcsiv
f yYkd g/
yHk 1.9
yHk 1.10
yHkrSmjyxm;wJhtwdkif;oD;jcm;pD&SdaewJNetwork
h (2)ckjzpfwNetwork
hJ A ESiNetwork
hf B
ukduRefawmfwdkYawGuRouter wpfvHk;udktoHk;jyKNyD;Internetwork csw d q f ufjyxm;ygw,f/'gaMumifh
vnf;uRefawmfutxufrSmRouter awGuInternetwork awGjzpfatmifzefw;D ay;Edik w f ,fvYkd
azmfjycJhwmyJjzpfygw,f/'DawmhuRefawmfwkdYawGodxm;&rSmuInternetwork vdkYajymvdkufwmeJYtJh'D
Product of YOUTH
- 19 -
Internetwork qdkwmLAN (Local Area Network) 'grrS [kwWAN
f (Wide Area Network)
yJjzpfjzpfueG &f uf(Network) [mwpfckxufrucsdwfqufxm;EkdifwmudInternetworking
k vdo
Yk x
d m;&
rSmyJjzpfygw,f/Internetwork twGufcsdwfqufzdkY&eftoHk;jyK&r,fDeviceh awGuawmhSwitch,
Hub ESiBridge
hf tp½Swd Device
hJ awGudktoHk;jyK&rSmyJjzpfygw,f/atmufrSmSwitch, Hub ESihf
Bridge wdkYudktoHk;jyKNyD;Internetworking csdwfqufxm;yHkudkazmfjyay;xm;ygw,f/
yHk 1.11
yHk 1.12
yHk 1.13
Product of YOUTH
- 21 -
1/ BudK; eHygwf 1 u BudK;eHygwf 8 udkoGm;r,f/
2/ BudK; eHygwf 2 u BudK;eHygwf 7 udkoGm;r,f/
3/ BudK; eHygwf 3 u BudK;eHygwf 6 udkoGm;r,f/
4/ BudK; eHygwf 4 u BudK;eHygwf 5 udkoGm;r,f/
5/ BudK; eHygwf 5 u BudK;eHygwf 4 udkoGm;r,f/
6/ BudK; eHygwf 6 u BudK;eHygwf 3 udkoGm;r,f/
7/ BudK; eHygwf 7 u BudK;eHygwf 2 udkoGm;r,f/
8/ BudK; eHygwf 8 u BudK;eHygwf 1 udkoGm;r,f/
uRefawmfwdkCCNA
Y oifcef;pmudRouter
k awGeJYwu,fwrf;o½kyfrjyEdkifwJhtcgusawmh
Packet Tracer qdkwJhSoftware av;eJo½k Y yjf y½Si;f vif;rSmjzpfygw,f/'gaMumifoif
h w'DYkd Packet
Tracer udkawmhodzdkYvdktyfygw,f/Software taeeJYuawmhuRefawmfwdkYpmtkyfESifhtwlygvmwJh
pD'D xJrmS xnfah y;xm;ygw,f/
pD'xJ
D rmS Packet Tracer 5.0 Setup.exe qdkNyD;awmhawGUvdrfhr,f/¤if;udInstall k vkyfvdkufyg/
Ny;D &ifoifcef;pmawGuol kd eyYJ oif
J omG ;rSmjzpfygw,f/Packet Tracer ESit hf vm;o@mefwlSoft-
ware awG½Sdygao;w,f/'gayr,fh'gav;uydkaumif;r,fxifvdkYyg/tdkauBudK;pm;Munfhvdkufyg/
oifcef;pm 2 rSm jyefawGUr,f/
Product of YOUTH
- 23 -
PA R T 1
Introduction
1/ Routing
2/ Switching
3/ Telecommunication
4/ Intenetworking qdw
k 0ef
hJ aqmifrIawGyjJ zpfMuygw,f/
Product of YOUTH
- 25 -
yHk 2.1
aomtpdwt
hf trsm;pk&JUKernel yJ
jzpfygw,f/Kernel qdkwmOperating System &JUr½Srd jzpf
f ydik ;f wpfcjk zpfNy;D ol[mqd&k ifjzifHardware
ESiInterface
hf
h
jyKvyk jf cif;?Security ydkif;qdkif&mwdkYuLow
dk
Level enf;jzifManage
h vkyjf cif;jzpfygw,f/
uJuReaf wmfwoif
Ykd cef;pm1rSmPacket Tracer udkInstall vkyjf ycJw
h ,f/'Dawmh
yHk 2.2
yHk 2.4
yHk 2.5
tckuReaf wmfwRouter
Ykd ?'grrS [kwSwitch
f awGu0ifkd a&mufjyifqifr,fq&kd ifrdred YJ
OD;qHk;jrifawGU&r,f(Mode)
h rsm;udkt&ifazmfjyay;ygr,f/'DvkAd s/tckuRefawmfwRouter kYd awG?
Switch awGudk0ifNyD;jyifqifr,fqdk&ifowfrSwfxm;wJMode h awG&o dS As/tJ..Mode wpfck
csi;f pDrmS qd&k ifCommand awGudktjynfht0toHk;jyKvkdYr&bJuefYowfcsufawGeJYtoHk;jyK&wJh
Mode awG½So d vdIOS
k qdkwSystem
Jh wpfcvk ;kH ud0if
k a&mufjyifqifEikd w
f hJMode awG&MdS uygw,f/
Product of YOUTH
- 29 -
'DvMode
kd awGrSmrdrdub,fvdkConfiguration vkycf sio f vJqw kd may:rw l nfjy;D Mode
awGudk
a&G;cs,&f rSmjzpfygw,f/
uJ..Cisco Router awG?Switch awGrSmyg0ifwJhMode awGudkpwif&Sif;jyay;yghr,f/
yxrOD;qHk;Mode uawmhJ' Donuts Mode tJav..a,mifv[k Ykd wyf gjy/D ,ckCisco Router
awG?Switch awGrSmyg0ifwModeJh tm;vH;k pkpak ygi;f(5)ck&ydS gw,f/'gawGuawmhAsm-
'guawmh'kw, d Mode wpfcyk gy/J ¤if; Mode rSmCisco Router eJSwitch h awGudk
0ifa&mufjyifqifEikd w
f Command
hJ awGyg0ifygw,f/'gayr,f'Dh Mode rSmawmhIOS qdkwJhSys-
tem wpfcv k ;kH ud0if
k a&mufjyifqifEidk zf &Ykd eftwGuaf wmhCommand wcsKd rY yg0ifao;ygb;l /
tJ.aemufqHk;yg0ifwMode
Jh uawmhSetup Mode yJjzpfygw,f/¤if;Mode [m
Configuration Dialog Box awGetj
YJ yeftvSeq
f ufo,
G af y;jcif;udqd
k v
k ykd gw,f/
uJ.tckuRefawmfwCisco
dkY Router eJSwitch
Y awGrSmyg0ifwJhMode awGudkod&SdoGm;
jyaD emf/tckMode wpfcck si;f pD&hJPrompt wpfckcsi;f pDuakd zmfjyay;ygrh ,f/qdvk wkd mu'DPrompt
[mb,fMode udak &muf&adS ejyv D q
J w
kd mayg/h jyefajymjyr,faemf/Prompt udkMunfhNyD;awmhudk,f
b,fMode udak &mufaeovJqw kd modEikd fygw,f/'DawmhckeuajymcJw h Mode
hJ 5ckxuJ ta&;Bu;D
wJPrompt
h 3ckupwif
kd ½Si;f jyygawmhr,f/
yHk 2.6
2/ Privileged Mode
yHk 2.7
Router#configure terminal
Router(config)#
yHk 2.8
tckuReaf wmfwRouter
Ykd udPhysically
k t&b,fvdkcsdwfqufrvJ? [kwfNyD..pjyD;avhvm
Mu&atmifaemf/'DvAkd s/yxrOD;qH;k Router awGupkd wifrcsw d q f ufcifCisco uaeRouter awGudk
Series tvdkufxkwfxm;wJhtaMumif;udkajymjycsifygao;w,f/bmjzpfvdkYvnf;qdkawmhrwlnDwJh
Router Series awGtay:rlwnfjyD;¤if;rSmyg0ifwInterface Jh awGuvnf;uGJjym;oGm;ygw,f/
jyefajymjyr,faemf/Cisco urwlnDwJhRouter awGudkSeries tvdkufxkwfvkyfxm;wmjzpfygw,f/
tJoh vdSeries
k rwlnDawmhwmeJYolwdkYawG&JUInterface uvnf;rwlawmhygbl;/tck'Dae&mrSm
Cisco &J2600 h Series xJuRouter &JInterface h ud&k iS ;f jyay;ygrh ,f/tJ..¤if;2600 Series
Router awGuCisco uxkwfwJhModular Router awGyjJ zpfygw,f/'D2600 Series xJu2621
Series Router &Jh Interface ud& k iS ;f jyay;ygrh ,f/bmjzpfv'DYkd 2621 Router udk½Sif;jy&ovJqdkawmh
olutoHk;vnf;rsm;w,faemufNyD;Modular Router jzpfwJhtwGufvkdtyf&ifCards awG
pdu
k of ;kH vdv Yk nf;&wJt
h wGuaf Mumifrh v Ykd yYkd g/
yHk 2.9
(6)
yHk 2.10
1/ yxrtqift
h aeeJYUser Mode uaeenable Command udktoHk;jyKíPrivileged Mode
Road to CCNA (Exam 640-802)
- 34 -
udo
k mG ;ay;yg/
3/ aemufq;kH taeeJinterface
Y fastethernet 0/0 udk&dkufxnfhyguRouter &JFastEthernet
h
Port twGif;udk0ifa&mufoGm;ygvdrfhr,f/'Dae&mrSminterface qdkwmCommand wpfcjk zpfNy;D
fastethernet 0/0 qdkwmRouter &JUFastethernet Port ESpcf t k xJuyxrPort udq k vkd ckd siw
f mjzpf
ygw,f/yH2.9k ud&nf
k neT ;f Ny;D ajymwmyg/tJ'h rD mS Fastethernet Port ESpcf ½k wdS ,fav/tu,fírsm;
oifu'kw, d Port udoG
k m;csiw f ,fq&kd ifb,fv½kd u
kd rf vJ/interface fastethernet 0/1 vdkY½dkufrSm
ayg/h tdak uaemf em;vnfNyv D xYkd ifygw,f/
4/ 'Dae&mrSmrnfonfInterface
h rsdK;udkrqdkoGm;csifygu¤if;Interface qdkwCommand
Jh
udktoHk;jyKjyD;0ifa&mufEdkifygw,f/uJaumif;NyD'DawmhInterface udkb,fvdkoGm;&rvJqdkwmudkyJ
uRefawmfajymjy&ao;wmyg/ tJh'DrSmvkyf&r,fh vkyfaqmifcsufawGudk r½Sif;jy&ao;ygbl;/
yHk 2.11
Product of YOUTH
- 35 -
2.8 Mode wpfcck si;f pDü Command rsm;Munfjh cif;
yHk 2.12
yHk 2.13
yHk 2.14
yHk 2.16
R vuf½Current
Sd
show clock vd½
Date Time udod
Yk u
kd xf nfah y;vdu
tcsed af y:vmygvrd rhf ,f/wpfcok x
k csiwf ,fq&kd ifawmh
k yf g/'gqvuf
kd ½&dS ufpESJG ihf
d m;&rSmushow Com-
mand udkPrivileged Mode rSmyJtoHk;jyKvdkY&ygw,f/
yHk 2.17
yHk 2.18
yHk 2.19
yH2.20
k onfHardware ydkif;udkazmfjyxm;wJhyHkjzpfygw,f/
yHk 2.20
Product of YOUTH
- 39 -
'Dae&mrSmshow version qdkwJhCommand [mSoftware, Boot Image ESiHardware hf
ydik ;f qdNk y;D tydik ;f 3 ydik ;f yg½dw
S mudk odapcsiyf gaomaMumifh tckvkd wpfyikd ;f csif;pDukd yHw
k pfyjkH zifh cGx
J w
k f
jyoay;cJw h mjzpfygw,f/
2.11 rdrt
d oH;k jyKr,fh Router ESihf Switch rsm;tm;emrnfay;jcif;
yHk 2.21
2/ ¤if;rSwqifhostname
h qdo
k nfCommand
h tm;toHk;jyKírdrdajymif;csifwJhemrnftm;
&du
kd x
f nfEh ikd yf gw,f/'Dae&mrSmhostname qdok nfCommand
h tm;toHk;jyKíRouter1 vdeYk mrnfay;cJh
ygw,faemf/
yHk 2.22
1/ enable secret
2) enable password qdkwCommand
Jh ESpfckudktoHk;jyK˜íowfrSwfay;Edkifygw,f/
yHk 2.23
Product of YOUTH
- 41 -
yHkrSmuRefawmfwdkYPrivileged Mode udk0ifa&muf7eftwGuenable f vdkY½dkufvdkufwmeJY
t&ifqwpf
kd cgwnf;0ifomG ;aomfjim;vnf;tckwpfcgrmS awmhPassword qdjk yD;vmawmif;ygw,f/
'Dae&mrSmuRefawmfwdkYzeffwD;ay;xm;wJcisco
h qdkwJhpmvHk;udk&dkufxnfhjyD;rSSPrivileged Mode udk
a&muf&EdS ikd rf mS jzpfygw,f/
uJ..tckuRefawmfwPrivileged
dkY Mode twGufPassword udkb,fvdkzeffwD;&rvJqdkwm
odomG ;jyadD emf/'Dvykd Password
J zefwD;&mrSmenable secret Command eJYenable password
Command udktoHk;jyKjcif;udkvnf;em;vnfoGm;NyDaemf/[kwfNyD/ ,ck¤if;Command ESpcf u
k Ekd idI ;f ,SOf
jyyghr,f/ atmuffrSmazmfjyay;xm;wJhyHkudk MunfhEdkifygw,f/
yHk 2.24
yHk 2.25
Product of YOUTH
- 43 -
uJ..tckaemufxyfpw d 0f ifpm;p&mCommand wpfckudk&Sif;jyay;yghr,f/uRefawmfwdkYvuf&Sd
toHk;jyKaewJhRouter awG?Switch awG&JhConfiguration awGujkd yefMunfzh v
Ykd w
kd ,fav/tckuReaf wmf
wdkY wpfzufrSmazmfjyxm;wJhyHkudkMunfhyg/
yHk 2.26
yHk 2.27
Password ½du
k x
f nf&h ef
Interface udppf
k aq;jcif;qdw
k mu¤if;Interface ESiyhf wfoufaewJIP
h Address, Subnet
Mask pwJtaM
h umif;t&mrsm;udMk unf½h jI cif;yifjzpfygw,f/tck'aD e&mrSmRouter &JUInterface
awGudk b,fvdkppfaq;MurvJayghaemf/ [kwfjyDaemf/ atmufrSmazmfjyxm;aomyHkudkMunfhygOD;/
yHk 2.28
¤if;yHkrSmFastEthernet &JInterface
h wpfcyk MJ unfw
h mjzpfaomaMumif'Dh ae&mrSmFastEthernet
Interface ESifhywfoufNyD;yJazmfjyay;wmjzpfygw,f/tu,fírsm;Router rSm½SdorQInterface
awGuwpfkd cck si;f azmfjyay;apcsi&f ifshow ip interface qdkwCommand
Jh udktoHk;jyKygw,f/
qdkvdkwmushow ip interface command &JUaemufrSmfastethernet 0/0 vdkY½dkufxnfhvdkufwm
jzpfygaomaMumif'Dh ae&mrSmfastethernet 0/0 ESifhoufqdkifwmudkyJjyay;wmjzpfNyD;show ip
interface vdkYyJ½dkuf&ifawmhb,folYudkMunfhr,fqdkwmrygawmhbl;/'gaMumifRouter h rSm½SdorQ
Inteface awGtukefay:vmrSmjzpfygw,f/aemufxyfyHkudkqufvufavhvmMunfhyg/
LogoutESiExit
hf Command qdkwmuRefawmfwdkYvuf½SdtoHk;jyKaewJRouter h awGxJu
Mode wpfcck si;f pDuaejyefxu
G cf si&f ifoH;k wmjzpfygw,f/OyrmPrivileged Mode uaeUser
Mode udkjyefxGufcsifyguLogout odkYr[kwExit f udktoHk;jyKEdkifygw,f/
Product of YOUTH
- 49 -
PA R T 1
Introduction
uJtckRouter twGif;rSmyg0ifwJhtpdwftydkif;rsm;udkpjyD;avhvmMuwmayghaemf/
Components Description
yHk 3.1
Product of YOUTH
- 53 -
3.2 Router Boot Sequence taMumif;
yHk 3.2
tckuReaf wmfwCisco
Ydk IOS udkBackup vkyfzkdY&mvdktyfwJhtaMumif;t&mudkazmfjyay;ygh
r,f/'Dae&mrSmtckuReaf wmfwvuf
Ykd &tdS oH;k jyKaewJhCisco IOS udkBackup/Restore awGvkyfay;
vk&dY w,fAs/bmjzpfvIOS
Ykd udkBackup vkyf&ovJqdk&iftaMumif;trsdK;rsdK;aMumifhIOS uysufoGm;
Product of YOUTH
- 55 -
cJ&h ifjyefRestore vkyEf ikd af tmifBackup vkyw
f mjzpfygw,f/tJ'v
D rkd sK;d Backup eJRestore
Y awG
pwif rjyKvyk af o;cif od&r,fh tcsut f vufav;awG ½Sad o;w,fAs/ 'gawGukd ajymjyay;ygrh ,f/
¤if;tcsuftvufawGeJYudkufnDrSomIOS ukdBackup eJRestore Y vkyv
f &yg
Ykd w,f/¤if;wdrYk mS -
(2) eJ¤if
Router Y ;TFTP Server tMum;qufoG,ftoHk;jyKrnfCable
h Type onfEthernet
Crossover Cable jzpf&ygr,f/
(4) toHk;jyKrnfRouter
h onfServer ESicshf w
d q
f ufxm;&rnf/
yHk 3.3
R 'Doifcef;pmuawmhuReaf wmfwYkdtaeeJYoDt&kd t
D &yJajymjy
ay;Edkifygw,f/ bmvdkYvnf;qdkawmh jyKvkyfjyzdkY&m tcuf
tcJuTFTP Server aMumifjh zpfygw,f/'gaMumifol
ywfoufwJh oDtdk&Dav;yJzwfNyD;auseyfay;yg/
h eYJ
yHk 3.5
1/ ¤if;Startup-Configuration udppf
k aq;csiyf guPrivileged Mode uaeshow startup-
config qdkwJhCommand udktoHk;jyKjyD;&dkufEdkifygw,f/
Product of YOUTH
- 57 -
'Dtckoifcef;pmuPacket Tracer ESitoHhf ;k jyKvrYkd &ygb;l /'DCommand awGudkoDtdk&D
oabmem;vnfNyq D &kd ifCommand awGurSkd wx
f m;Edik af tmifavmufom½Si;f jyaewmjzpfygw,f/
wu,fawmh'DConfiguration awGudkCheck vkyfw,fqdkwmBackup & Restore ESiquf hf pyfae
ygw,f/olRestore vkyfvdkufwmudkjyefCheck vkyfvdkufwmyJ/
tck'Dae&mrSmRouter ay:rSm&SdwConfiguration
Jh awGudkTFTP Server ay:oYkdCopy
ul;jcif;udkazmfjyay;yghr,f/'DvdkAsuRefawmfwIOS dkY udkBackup ( okdYr[kwf) Restore vky&f ef
TFTP Server udktoHk;jyKMuygw,f/'DvdkyRunning J jzpfaewJConfiguration
h awGudkvnf;Copy
ul;Edik yf gw,faemf/
uJRunning jzpfaewJConfiguration
h awGudkTFTP Server ay:oYkdBackup vkyfNyD;oumv
vdt
k yfwt
hJ csed u
f s&ifRestore jyefvyk zf vk
Ydk v
d mjy/D 'DvkdRestore jyefvyk w
f t
hJ cgus&ifb,fvkd
Command udktokH;jyKMurvJ/[kwfjyDaemf/
1/ tJRestore jyefvyk w
f t
hJ csed u
f s&ifyxrOD;qH;k Privileged Mode udkoGm;ay;yg/¤if;Mode
uaewpfqifcopy
h tftp running-config qdkwJhCommand udktoHk;jyKygw,f/¤if;Command
[mTFTP Server ay:uaeRunning Configuration awGudkRouter ay:ojYkd yefvnfCopy ul;xnhf
ay;wmjzpfygw,f/
Road to CCNA (Exam 640-802)
- 58 -
3.8 Network Connectivity rsm;udk Check vkyjf cif;ESih f
Trouble Shoot jyKvyk jf cif;
yHk 3.6
2/ Traceroute udtoH
k ;k jyKjcif;
yHk 3.7
tckazmfjyay;r,fhtcef;uawmhCDP udkb,fvdktoHk;jyK&rvJqdkwmudkazmfjyay;rSmyJ
jzpfygw,f/tJ'aD wmhuReaf wmfwaYkd wGCisco Router ?'grrS [kwfCisco Switch wdkYrSmCDP udk
b,fvdktoHk;jyK&r,fqdkwcommand
Jh awGudkavhvmMu&atmif../'gaMumifhuRefawmfatmufrSm
Diagram av;wpfckudkazmfjyxm;ygw,f/tJ'Dazmfjyxm;wJDiagramh av;twdkif;CDP udkb,fvdk
toHk;jyK&r,fqdkwmudk azmfjyay;vdkufygw,f/
yHk 3.8
Product of YOUTH
- 61 -
tckuRefawmfwdkYawG[mCDP udktoHk;jyKNyD;Internetwork xJrmS ½Sad ewJCisco
h Device
awG&JUtcsuftvufawGudkMunfhr,fqdk&iftoHk;jyK&r,fCommand
h uawmh" show cdp "
Command udktoHk;jyK&rSmyJjzpfygw,/fatmufrSmuRefawmfCommand udktoHk;jyK&r,fhyHkpHudk
azmfjyay;xm;ygw,f/
yHk 3.9
yHk 3.10
yHk 3.11
yHk 3.12
Product of YOUTH
- 63 -
tckuReaf wmfCDP udkb,fvdkrsdK;toHk;jyK&rvJqdkwmudkazmfjyNyD;oGm;ygNyD/'gayod
uRefawmfwdkYuCDP udktoHk;rjyKcsifbl;/ydwfcsifw,fqdk&ifawmhtoHk;jyK&r,fCommand
h u
" no cdp run " qdkwJhCommand yJjzpfygw,f/¤if;Command udktoHk;jyKr,fqdk&ifawmhuRefawmfwdkY
odxm;&rSmuCisco Device xJrmS yg½daS ewJCDPh Protocol udktvkyfrvkyfEdkifatmifydwfxm;
vdkufwmyJjzpfygw,f/uRefawmfatmufrSmCommand toHk;jyKyHkudkazmfjyay;xm;ygw,f/
yHk 3.13
yHk 3.14
Product of YOUTH
- 65 -
uJ..Router awGb,fvdktvkyfvkyfovJwJh..aygufwl;xrf;NyD;tvkyfvkyfMuwmaygh/
tJava,mifvaYkd emf..Router awGb,fvt kd vkyv f yk o
f vJq&kd ifRouting vkyif ef;pOfawGuajkd z
½Sif;ay;&eftwGuftvkyfvkyfMuwmayghAsm/Router awGuRouting vkyif ef;pOfawGub,f kd vykd pkH eH YJ
ajz½Si;f ay;ovJq&kd ifRouter awGrSmRouting ydkif;awGudkajz½Sif;ay;zdkY&efolwdkY&JUukd,fydkiIOS f
(Inter-Network Operation System) yg½y dS gw,f/tJ'Inter- D Network Operation System BuD;
uRouting vkyif ef;pOfBu;D udajk z½Si;f ay;ygw,f/
Routing qdw k vk
hJ yif ef;pOfrmS tvkyv f yk w
f yHhJ pk u
H t
kd ydik ;f (2)ydik ;f jzifcGh jJ cm;MunfEh ikd yf gw,f/
tJ'guawmhRouted Protocol udktoHk;jyKNyD;Routing vkyif ef;pOfuvk kd yjf cif;ESiRoutinghf Protocol
udktoHk;jyKNyD;Routing vkyif ef;pOfuvk kd yjf cif;wdjYk zpfygw,f/Routed Protocol awGuawmhOyrm
taeeJaY jym&&ifIPv4 ESiIPv6hf jzpfygw,f/Routing Protocol uawmhRIP, EIGRP ESiOSPF hf wdkY
jzpfygw,f/aemufNy;D Router awG[mComputers or Host awGNetwork rdwmrrdwmudkolu*½k
rpdkufbl;/ol*½kpdkufNyD;vkyfaqmifay;wmuNetwork awGwpfcek w YJ pfcNetwork
k rdatmifcsw d q f uf
ay;EdkifzdkYudkyJvkyfaqmifay;wmjzpfygw,f/'gaMumifhuRefawmfwdkYawG[mNetwork awGwpfcek w YJ pfck
csdwfqufawmhr,fqdkwmeJRouter Y awGudktoHk;jyKNyD;csdwfquf&wmjzpfygw,f/
Router awG[mrdrdvufcH&½SdvmwJData h Packet awGudkoufqdkif&mvrf;aMumif;ay:odkY
Forward vkyfay;ygw,f/ aemufNyD;Data Packet awGoGm;zdkY&eftwdkqHk;eJYtjrefqHk;vrf;aMumif;
awGudkvnf;½SmazGwGufcsufay;ygw,f/tJ'DvRouting dk vkyif ef;pOfBu;D jzpfwData hJ Packet awGudk
Forward vkyjf cif;?Data Packet awGoGm;zkdY&eftjrefqHk;eJYtwdkqHk;vrf;aMumif;awGudkwGufcsufay;
&wmuawmhRouter xJrSmyg&SdwJhIOS(Internetwork Operation System)BuD;uvkyfaqmifay;
wmjzpfygw,f/'gaMumifv h nf;Router udkOSI Model xJuLayer 3 Device wpfct k jzpfod½adS e
Muwmjzpfygw,f/IP Network rSmqd&k ifRouting vkyif ef;pOfawG[mIP Routing Tables udkMunhfjyD;
Road to CCNA (Exam 640-802)
- 68 -
tvkyv f yk yf gw,f/IP jzifNetwork
h csdwfqufxm;wJComputers
h or Hosts awGtm;vHk;[mvnf;
IP Routing Table eJYyJtvkyfvkyfMuygw,f/Routing Table qdkwmuawmhInter-network awG&JU
Map (ajryH)k yJjzpfygw,f/¤if;Routing Table onfRemote Netowrk udkb,fvdk&Sm&r,fqdkwmudk
azmfjyay;w,f/IP Packet awGb,fuaeb,fokdYoGm;&r,fqdkwmudkazmfjyay;xm;ygw,f/'gaMumifh
uRefawmfwdkYawGIP Routing Table uktoH d ;k jyK&jcif;onfData Packet awGudkForward vkyfay;zkdY
&eftwGuftoHk;jyKwmyJjzpfygw,f/tJ'DvForward
dk vkyfay;vkdufwJhData Packet udktjcm;
Router or Host wdkYuvufcH&&Sdygw,f/aemufjyD;Router awG[mData Packet awGudkwpfae&mrS
wpfae&modForward
Yk vkyf&mwGifDestination Address udkyJMunhfjyD;ydkYaqmifay;ygw,f/'gaMumifh
Router awGonfData Packet awG&JUDestination Address uky d zwf
J ygw,f/uJ...'Davmufq&kd if
Router awG&JUtvkyfvkyfyHkudkem;vnfavmufNyDvdkYxifygw,f/
yHk 4.1
yHk 4.2
yHkrSmjyxm;wJhtwdkif;uRefawmfwdkUawG[mRouterudktoHk;csNyDf;Network csdwfqufvdkufwJh
twGufaMumifhNetwork A eJU Network B [mbmaMumifhNetwork csw d rf ad e&wmvJq&kd if
Router onf Network A odkUr[kwf Network B rSydkUvdkufwDeta Jh Packet awGudkDertination
Network qDodkU Forward vkyfay;vdkufvdkUNetwork rdomG ;&jcif;yJjzpfygw,f/
atmufrSmuRefawmfNetwork A eJUNetwork B udRouter k r½Scd ifNetwork csw d q
f uf
vdkUr&wJhyHkeRouter
JY udktoHk;csNyD;Network csdwfqufvdkY&wJhyHkudkOyrmtaeeJY,SOfNyD;qGJjyay;xm;
ygw,f/ aoaocsmcsmav; *&kpu kd Nf y;D Munfv
h u
kd yf gO;D aemf/
Product of YOUTH
- 71 -
yHk 4.3
uJ..b,fvv kd Router
J udkuRefawmfwdkUawGb,fvdkae&mrsKd;rSmtoHk;cs&r,fqdkwmudkem;vnf
oGm;NyDvm;/'gqdk&ifqufNyD;awmhuRefawmfatmufrSm Router wpfvHk;udktoHk;jyKNyD;Network
trsm;BuD; csdwfqufxm;yHkudk azmfjyay;xm;ygw,f /
aumif;NyD'Davmufqdk&ifuRefawmfwdkUawG[mRouter qdkwmudkb,fvdkae&mrsKd;rSmtoHk;cs
&r,fqdkwmudkem;vnfoabmaygufNyDvdkUxifygw,f/'gaMumifhuRefawmf Router awGudkb,fvkd
ae&mrsKd;rSm toHk;csrvJqdkwmudk 'DrSmyJ tqHk;owfvdkufygr,f/
But.. vQm½Snwf ,fvUkd awmhrxifvu kd yf geaYJ emf...xyfNy;D owday;csiv f yYkd g/Router udt
k oH;k cs
r,fah e&mu Network awGtrsm;Mu;D ukwpf d cek w YJ pfcrdk atmifcsw
d q
f uf&rJah e&mrSmtoH;k cs&
r,fqw kd mudk owdxyfay;csiv f yYkd g . . . 'gygyaJ emf/
Product of YOUTH
- 73 -
aumif;NyD Cisco &JU Router Series awGudkazmfjy&r,fqdk&if- 700 Series , 800 Series , 1700
Series , 2500 Series , 2600 Series , 3600 Series , 5000 Series , 7000 Series , 10000 Series 12000
Series pwJhSeries awGyjJ zpfygw,f/
Cisco uaetJh'DvdkrsKd;Series awGudkcGJxkwfNyD;owfrSwfxm;&wmuawmhrdrdtoHk;jyKr,fh
Network trsKd ;tpm;tvdu k tvG
f ,w f ula½G;cs,0f ,f,El ikd zf &Ykd eftwGuyf jJ zpfygw,f/tJ'Cisco
D
Router Series awGxJrSmFixed Router Series awGuawmh700 Series, 800 Series, 1700 Series
ESihf 2500 Series xdonfFixed Router Series awGyjJ zpfygw,f/'gaMumif¤if h ;Router rsm;rSmyg½Sdae
wJInterface
h awGudkyJtoHk;jyKvdkY&rSmjzpfNyD;tjcm;Modular Interface Card awGudkxyfrHtoHk;
yHk 4.5
yHk 4.6
yHk 4.7
yHk 4.8
Product of YOUTH
- 77 -
NyDvkYdxifygw,f/uRefawmfwkdYodxm;&rSmuModular Router ESiFixed
hf Router wkdY&JUt"duuGm
jcm;csufawGuawmhModular Card awGxyfrHpdkufoGif;NyD;toHk;jyKvkdY&wmeJYtoHk;jyKvdkYr&wmyJ
jzpfygw,f/
Product of YOUTH
- 79 -
Core Layer -High Data Transfer Rate
-High Network Fault Tolerance
yHk 4.9
Product of YOUTH
- 81 -
tckq&kd ifWindows rSm&SdwJhRouting Table yHu k awG
kd Uz;l jyaD yg/h 'gqd&k ifRouting Table BuD;
udavh
k vmMunh&f atmif/tckjrifae&wmawGuRouter awG[mrdrdqD0ifvmr,fPacket h awG
udktjcm;IP Node wpfcpk oD Forward
Ydk vkyfay;r,fhRoute qdkwJhvrf;aMumif;awGudkawGUae&wm
jzpfygw,f/
Routing Table xJrSm&SdwRoute
Jh awGucGkd jJ cm;r,fq&dk iftydik ;f (3)ydik ;f eJcGY jJ cm;vd&yg
Yk w,f/
tJ'Route
D awGuawmh-
aumif;jyD..'Dvq
kd &dk ifuReaf wmftJ'Route
D awGub,f
kd vrdk sK;d eJcGY jJ cm;vd&Yk w,fqw
kd mjyygr,f/
atmufrSmjyxm;wJhRouting Table yHkudkMunhfyg/
yHk 4.10
yHk 4.11
yHk 4.13
Example-
Router(config)#ip route 192.168.0.0 255.255.255.0 10.10.10.1
yHk 4.14
tckuRefawmfazmfjyxm;wJhyHktwdkif;Router A eJRouting
Y Table xJrSmDestination
Product of YOUTH
- 85 -
Network Address ESiNext
hf Hop (Gateway), Router B &JURouting Table xJrmS vnf;Destina-
tion Network Address ESiNext
hf Hop (Gateway) wdkYudkxyfjznhfay;vkdufr,fqdk&ifNetwork A
ESiNetwork
hf B [mNetwork rdoGm;rSmjzpfygw,f/bmaMumifNetwork
h rdoGm;&wmvJqdkwmudk
qufvufMunhMf u&atmif/
yHk 4.15
Product of YOUTH
- 87 -
yHk 5.1
Product of YOUTH
- 91 -
Network A &JUHost A Computer
IP:192.168.0.2
Mask:255.255.255.0
DG:192.168.0.1
Router A
Fastethernet 0/0 IP: 192.168.0.1
Mask:255.255.255.0
Fastethernet 0/1 IP: 192.168.10.1
Mask:255.255.255.0
Fastethernet 0/2 IP: 192.168.20.1
Mask:255.255.255.0
uRefawmftckazmfjyay;xm;wJDiagram
h twdkif;Router A eJNetwork
Y A, Network B,
Network C wdkYudkNetwork rdoGm;atmifConfiguration vkyMf u&atmif/
Lab 1
Step (1)
Router>
Router>enable
Router#configure terminal
Router(config)#interface fastethernet 0/0
Router(config-if)#ip address 192.168.0.1 255.255.255.0
Router(config-if)#no shutdown
Router(config-if)#exit
Step (2)
Router(config)#interface fastethernet 0/1
Step (3)
Router(config)#interface fastethernet 0/2
Router(config-if)#ip address 192.168.20.1 255.255.0
Router(config-if)#no shutdown
Router(config-if)#exit
Step (4)
Router(config)#exit
Router#show ip route
yHk 5.2
tckuRefawmfazmfjyay;xm;wJConfiguration
h twkid ;f qd&k ifNetwork A, Network B,
Network C qdkwNetwork
Jh (3)ck[mNetwork rdaeygjy/D Hosts Computers awG?Network rdrrd
Test vkycf si&f ifawmhping command ukdtoHk;jyKNyD;Test vkyEf ikd yf gw,f/aumif;Ny.D ..'gq&kd ifuReaf wmf
tckjyKvyk cf w
hJ Lab
hJ 1 &JUConfiguration ukd&Sif;jyay;yghr,f/
Step(1)
Router>
User exec mode jzpfygw,f/
Product of YOUTH
- 93 -
Router>enable
Router#
Privileged Exec mode jzpfygw,f/
Router#configure terminal
Router(config)#
Global Configuration Mode jzpfygw,f/
Router(config-if)#exit, Router(config)
rdrda&muf&SdaewJhConfiguration Mode xJuaejyefxu
G w
f mjzpfygw,f/
Step(2)
Router(config-if)#no shutdown
Cisco Router ESiCisco
hf Switch wkdYxufInterface rsm;udkDefault t&Shutdown
Road to CCNA (Exam 640-802)
- 94 -
vkyfxm;vdkYShutdown rjzpfatmifvkyw
f mjzpfygw,f/
Router(config-if)#exit
Router(config)#
rdrda&muf&SdaewJConfiguration
h Mode xJuaejyefxu
G w
f mjzpfygw,f/
Setp(3)
Step(4)
Router(config)#exit
Router#show ip route
Router xJrSm&SdwJhRouting Table ukMd unhw
f mjzpfygw,f/
Network A Computer
IP: 192.168.0.2
Mask: 255.255.255.0
DG: 192.168.0.1
Network B Computer
IP: 192.168.20.2
Mask: 255.255.255.0
DG: 192.168.20.1
Router A
Ethernet 0/1 IP: 192.168.0.1
Mask: 255.255.255.0
Ethernet 0/0 IP: 192.168.10.1
Mask: 255.255.255.0
Router B
Ethernet 0/1 IP: 192.168.10.2
Mask: 255.255.255.0
Ethernet 0/0 IP: 192.168.20.1
Mask: 255.255.255.0
Step (1)
Router>
Router>enable
Router#configure terminal
Router(config)#interface ethernet 0/1
Router(config-if)#ip address 192.168.0.1 255.255.255.0
Router(config-if)#no shutdown
Router(config-if)#exit
Step (2)
Step (3)
Router(config)#exit
Router#show ip route
192.168.10.0/24 is driectly connected, to Ethernet 0/0
192.168.0.0/24 is directly connected, to Ethernet 0/1
Setp (4)
Network A eJNetwork
Y B (2)ckudkNetwork rrd&ao;wJhtaMumif;t&if;uawmhNet-
work A xJrSm&SdwJhHost Computer wpfvHk;uData Packet udkRouter qDoyd Ydk aYk qmifay;ygw,f/
Router A onfHost A Computer rSydkYvdkufwJhData Packet &JUDestination Address
udzwf
k ygw,f/Data Packet &JUDestination Address u192.168.20.0/24 jzpfygw,f/tJ't D cgrmS
Router A &JURouting Table xJwiG Desti:Address
f 192.168.20.0/24 ur&Sdbl;av/
'DawmhHost Computer uydkYvdkufwJhData udkRouter A uqufvufjyD;awmhFor-
ward rvkyfay;Edkifawmhwmjzpfygw,f/
aumif;jyD'Dvkdqdk&ifuRefawmfwdkYawGNetwork A ESiNetwork
hf B (2)ckNetwork rdoGm;atmifvdkY
Router A ESiRouter
hf B wkdY&JURouting Table xJrSmxyfxnhfay;rSomNetwork rdomG ;rSmjzpfygw,f/
Router A
Router B
Product of YOUTH
- 99 -
tckuReaf wmfRouter A ESiRouter
hf B wkdY&JURouting Table xJudkip route command ukd
toHk;jyKNyD;Routing Path awGxyfxnhfay;vkdufwmjzpfygw,f/Network A xJuHost Com-
puter ESiNetwork
hf B xJuHost Computer Network rd?rrdukdPing Command jzifprf h ;yg/
Network rdoGm;wmudkawGU&ygvdrfhr,f/
aumif;NyD'gqkd&ifuRefawmfNetwork A ESiNetwork
hf B (2)ckNetwork rdomG ;&jcif;
taMumif;udk &Sif;jyay;ygr,f/
yHk 5.6
yHk 5.7
Product of YOUTH
- 101 -
Host Computer qDoForward
Ydk vkyfay;vkdfufygw,f/
yHk 5.8
yHk 5.9
Router A
#ip route 192.168.20.0 255.255.255.0 192.168.10.2
#ip route 192.168.30.0 255.255.255.0 192.168.20.2
Router B
#ip route 192.168.0.0 255.255.255.0 192.168.10.1
#ip route 192.168.30.0 255.255.255.0 192.168.20.2
yHk 5.11
Router C
#ip route 192.168.10.0 255.255.255.0 192.168.20.1
#ip route 192.168.0.0 255.255.255.0 192.168.10.1
Product of YOUTH
- 103 -
yHk 5.12
Router>
Router>enable
Router#configure terminal
Router( config)#hostname Router A
RouterA(config)#enable secret cisco
RouterA(config)#interface ethernet 0/0
RouterA(config-if)#ip address 192.168.0.1 255.255.255.0
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#interface ethernet 0/1
RouterA(config-if)#ip address 192.168.10.1 255.255.255.0
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#ip route 192.168.20.0 255.255.255.0 192.168.10.2
RouterA(config)#ip route 192.168.30.0 255.255.255.0 192.168.20.2
RouterA(config)#exit
RouterA#show ip route
Router>
Router>enable
Router#configure terminal
Router(config)#hostname Router B
RouterB(config)#enable secrect cisco
RouterB(config)#interface ethernet 0/0
RouterB(config-if)#ip address 192.168.10.2 255.255.255.0
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#interface ethernet 0/1
RouterB(config-if)#ip address 192.168.20.1 255.255.255.0
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#ip route 192.168.0.0 255.255.255.0 192.168.10.1
RouterB(config)#ip route 192.168.30.0 255.255.255.0 192.168.20.2
RouterB(config)#exit
RouterB#show ip route
Router>
Router>enable
Router#configure terminal
Router(config)#hostname Router C
RouterC(config)#enable secret cisco
Product of YOUTH
- 105 -
RouterC(config)#interface ethernet 0/0
RouterC(config-if)#ip address 192.168.20.2 255.255.255.0
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
RouterC(config)#interface ethernet 0/1
RouterC(config-if)#ip address 192.168.30.1 255.255.255.0
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
RouterC(config)#ip route 192.168.0.1 255.255.255.0 192.168.10.1
RouterC(config)#ip route 192.168.0.0 255.255.255.0 192.168.10.1
RouterC(config)#exit
RouterC#show ip route
Router>
Router>enable
Router#configure terminal
Router(config)#hostname Router A
RouterA(config)#enable secret cisco
RouterA(config)#interface ethernet 0/0
RouterA(config-if)#ip address 192.168.0.1 255.255.255.0
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#interface serial 0/0
RouterA(config-if)#ip address 192.168.10.1 255.255.255.0
RouterA(config-if)#clock rate 64000
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#ip route 192.168.20.0 192.168.10.2
RouterA(config)#exit
RouterA#copy running-config startup-config
Router>
Router>enable
Router#configure terminal
Product of YOUTH
- 107 -
Router(config)#hostname Router B
RouterB(config)#enable secret cisco
RouterB(config)#interface ethernet 0/0
RouterB(config-if)#ip address 192.168.20.1 255.255.255.0
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#interface serial 0/0
RouterB(config-if)#ip address 192.168.10.2 255.255.255.0
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#ip route 192.168.0.0 255.255.255.0 192.168.10.1
RouterB(config)#no shutdown
RouterB(config)exit
RouterB#copy runnig-config startup-config
Router#show controllers
(or)
Router#show controllers serial 0/0
Router A
Fastethernet 0/0 IP: 192.168.0.1
Mask: 255.255.255.0
Serial 0/0 (DTE) IP: 10.10.10.1
Mask: 255.0.0.00
Serial 0/1 (DCE) IP: 20.20.20.1
Mask: 255.0.0.0
Router B
Fastethernet 0/0 IP: 192.168.10.1
Mask: 255.0.0.0
Serial 0/1 (DTE) IP: 30.30.30.1
Mask: 255.0.0.0
Serial 0/0 (DCE) IP: 10.10.10.2
Mask: 255.0.0.0
Product of YOUTH
- 109 -
Router C
Fastethernet 0/0 IP: 192.168.20.1
Mask: 255.255.255.0
Serial 0/0 (DTE) IP: 20.20.20.2
Mask: 255.0.0.0
Serial 0/1 (DCE) IP: 30.30.30.2
Mask: 255.0.0.0
Router>
Router>enable
Router#configure terminal
Router(config)#hostname Router A
RouterA(config)#enable secret cisco
RouterA(config)#interface fastethernet 0/0
RouterA(config-if)#ip address 192.168.0.1 255.255.255.0
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#interface serial 0/0
RouterA(config-if)#ip address 10.10.10.1 255.0.0.0
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#interface serial 0/1
RouterA(config-if)#ip address 20.20.20.1 255.0.0.0
RouterA(config-if)#clock rate 64000
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#ip route 192.168.10.0 255.255.255.0 10.10.10.2
RouterA(config)#ip route 30.30.30.0 255.0.0.0 10.10.10.2
RouterA(config)#ip route 192.168.20.0 255.255.255.0 30.30.30.2
RouterA(config)#ip route 20.20.20.0 255.0.0.0 30.30.30.2
RouterA(config)#exit
Router#copy running-config startup-config
(or)
RouterA#write memory
Router>
Router>enable
Router#configure terminal
Router(config)#hostname Router B
RouterB(config)#enable secret cisco
RouterB(config)#interface fastethernet 0/0
RouterB(config-if)#ip address 192.168.10.1 255.255.255.0
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#interface serial 0/1
RouterB(config-if)#ip address 30.30.30.1 255.0.0.0
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#interface serial 0/0
RouterB(config-if)#ip address 10.10.10.1 255.0.0.0
RouterB(config-if)#clock rate 64000
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#ip route 192.168.20.0 255.255.255.0 30.30.30.2
RouterB(config)#ip route 20.20.20.0 255.0.0.0 30.30.30.2
RouterB(config)#ip route 192.168.0.0 255.255.255.0 20.20.20.1
RouterB(config)#ip route 10.10.10.0 255.0.0.0 20.20.20.1
RouterB(config)#exit
RouterB#copy running-config startup-config
Product of YOUTH
- 111 -
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
RouterC(config)#interface serial 0/1
RouterC(config-if)#ip address 30.30.30.2 255.0.0.0
RouterC(config-if)#clock rate 64000
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
RouterC(config)#ip route 192.168.0.0 255.255.255.0 20.20.20.1
RouterC(config)#ip route 10.10.10.0 255.0.0.0 20.20.20.1
RouterC(config)#ip route 192.168.10.0 255.255.255.0 10.10.10.2
RouterC(config)#ip route 30.30.30.0 255.0.0.0 10.10.10.2
RouterC(config)#exit
RouterC#copy running-config startup-config
Product of YOUTH
- 113 -
Connected Interface 0
Static Route 1
EIGRP 90
IGRP 100
OSPF 110
IS-IS 115
RIP 120
EGP 140
Unknown 255
(3) Hybird
tJ'v D cskd w
d q
f ufxm;wJRouter
h oHk;vHk;rSmRouter B ESiRouter
hf C &JUMum;rSm½SdwJhLine
[mFail jzpfomG ;cJ&h ifRouting Loop tJ'DrSmpNyD;awmhjzpfay:ygw,f/atmufuyHkav;udkquf
Munfv
h u
kd yf g/
yHk 6.2
Product of YOUTH
- 119 -
Router A rSRouter C odData
Yk udTransmit
k vkyfvdkufwJhtcsdefrSmRouter B ESiRouter
hf
C uwpfv;kH ESiwhf pfv;kH tjyeftvSecsf w d q f ufxm;w,f/odaYk omfRouter B ESiRouter hf C Mum;
rSm½SdwLimit
Jh uFail jzpfaewJhtwGufaMumifData h uRouter B qDojYkd yefvmw,f/jyefvmwJt h cgrmS
Router B uRouter C qDjyefomG ;zdu Yk ykd ñT
J e;f ygw,f/tJ't D cgrmS Routing Loop [mjzpfay:omG ;
ygw,f/bmtwGufaMumifhvJqdkawmhRouter A rSydkYvdkufwData Jh onfRouter B qDodkYa&mufwJh
tcgrmS tjcm;Link awGqo D jYkd yefíoGm;&ef&nfñeT ;f xm;wmr½Sw d twG
hJ uaf Mumiftckh vrkd sKd ;Rout-
ing Loop jzpfay:omG ;&jcif;yJjzpfygw,f/uRea f wmfwaYkd wGonfStatic Route rSmDefault Route
jzpfw0.0.0.0
hJ 0.0.0.0 udxnfk ah y;r,fq&kd ifRouting Loop rjzpfawmhygbl;/
3. Holddown Timer
tckuReaf wmfwYRIP
kd udktoHk;jyKNyD;Router awGwpfv;kH eJw
Y pfv;kH csw
d q
f ufr,fhLAB
av;udk vkyfMunfhvdkuf&atmif . . .
yHk 6.3
Router>
Router#enable
Router#configure terminal
Router(config)#hostname RouterA
RouterA(config)#enable secret cisco
RouterA(config)#interface ethernet 0/0
RouterA(config-if)#ip address 192.168.0.1 255.255.255.0
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#interface serial 0/0
RouterA(config-if)#ip address 172.0.0.1 255.255.0.0
RouterA(config-if)#clock rate 64000
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#interface serial 0/1
RouterA(config-if)#ip address 172.20.0.2 255.255.0.0
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#router rip
RouterA(config-router)#network 192.168.0.0
RouterA(config-router)#network 172.0.0.0
RouterA(config-router)#network 172.20.0.0
RouterA(config-router)#exit
RouterA(config)#exit
RouterA#copy running-config startup-config
RouterA#show startup-config
Using 581 bytes
!
Version 12.2
no service password encryption
!
hostname RoutA
!
!
enable secret 5 $1$mERr$hx5rVt7rPNoS4WabXKX7m0
!
!
!
ip ssh version 1
Product of YOUTH
- 123 -
!
!
interface Fastethernet 0/0
ip address 192.168.0.1 255.255.255.0
duplex outo
speed outo
!
interface Fastethernet 0/1
no ip address
duplex auto
speed auto
shutdown
!
interface Serial 0/0
ip address 172.0.0.1 255.255.0.0
clock rate 64000
!
interface Serial 0/1
ip address 172.20.0.1 255.255.0.0
!
router rip
network 172.0.0.0
network 172.20.0.0
network 192.168.0.0
!
ip classless
!
!
!
Line Con 0
Line vty 0 4
Login
!
!
end
RouterA#
Router B udConfigure
k vkyyf kH
Router>
Router#enable
Road to CCNA (Exam 640-802)
- 124 -
Router#configure terminal
Router(config)#hostname RouterB
RouterB(config)#enable secret cisco
RouterB(config)#interface fastethernet 0/0
RouterB(config-if)#ip address 192.168.10.1 255.255.255.0
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#interface serial 0/0
RouterB(config-if)#ip address 172.10.0.1 255.255.0.0
RouterB(config-if)#clock rate 64000
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#interface serial 0/1
RouterB(config-if)#ip address 172.0.0.2 255.255.0.0
RouterB(config-if)#exit
RouterB(config)#router rip
RouterB(config-router)#network 192.168.10.0
RouterB(config-router)#network 172.0.0.0
RouterB(config-router)#network 172.10.0.0
RouterB(config-router)#exit
RouterB(config)#exit
RouterB#copy running-config startup-config
RouterB#show ip route
Router C udConfigure
k vkyyf kH
Router>
Router#enable
Router#configure terminal
Router(config)#hostname RouterC
RouterC(config)#enable secret cisco
RouterC(config)#interface fastethernet 0/0
RouterC(config-if)#ip address 192.168.20.1 255.255.255.0
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
RouterC(config)#interface serial 0/0
RouterC(config-if)#ip address 172.20.0.1 255.255.0.0
RouterC(config-if)#clock rate 64000
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
RouterC(config)#interface serial 0/1
Product of YOUTH
- 125 -
RouterC(config-if)#ip address 172.10.0.2 255.255.0.0
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
RouterC(config)#router rip
RouterC(config-router)#network 192.168.20.0
RouterC(config-router)#network 172.10.0.0
RouterC(config-router)#network 172.20.0.0
RouterC(config-router)#exit
RouterC(config)#exit
RouterC(config)#do show ip route
RouterC(config)#exit
RouterC#copy running-config startup-config
Router A udConfigure
k vkyyf &SkH i;f vif;csuf
Router>
¤if;onfUser exec mode xJrmS jzpfygw,f/
Router>enable
Router#
¤if;onfPrivileged exec mode xJrmS jzpfygw,f/
Router#configure terminal
Router(config)
¤if;onfGlobal Configuration Mode xJrmS jzpfygw,f/
Router(config)#hostname RouterA
RouterA(config)#
¤if;onfrdr&d UJ Router twGufHostname owfrSwfay;wmjzpfygw,f/
Example Router(config)#hostname [hostname]
RouterA(config-if)#exit
RouterA(config)#
¤if;onfrdrad &muf½adS eaommode xJuaexGufwCommand
Jh jzpfygw,f/
Product of YOUTH
- 127 -
Example Router(config-if)#clock rate [clock rate number]
RouterA(config-if)#no shutdown
¤if;onfrdr&d UJ Interface udkShutdown rjzpfatmifvkyfwJhCommand jzpfygw,f/
RouterA(config-if)#exit
RouterA(config)#
¤if;onfrdrad &muf½adS ewJMode
h xJuaejyefxGufwJhCommand jzpfygw,f/
RouterA(config-if)#no shutdown
RouterA(config-if)#
¤if;command onfrdrd0ifa&mufxm;wJInterface
h udkShutdown rjzpfatmifvkyfwJh
Command jzpfygw,f/
RouterA(config-if)#exit
RouterA(config)#
¤if;Command onfrdrda&muf½SdaewJMode
h xJuaejyefxu
G w
f hJCommand jzpfygw,f/
RouterA(config)#router rip
RouterA(config-router)#
¤if;Command onfDynamic Routing Protocol jzpfwRIP
hJ udktoHk;jyKr,fhCommand
Road to CCNA (Exam 640-802)
- 128 -
jzpfygw,f/
RouterA(config-router)#network 192.168.0.0
RouterA(config-router)#network 172.0.0.0
RouterA(config-router)#network 172.20.0.0
¤if;Command onfrdrdRouter &JUInterface rsm;eJYtwlcsdwfqufxm;wJNetwork
h IP
Address rsm;udkowfrSwfay;wmjzpfygw,f/
RouterA(config-router)#exit
RouterA(config)#exit
RouterA#
rdrda&muf&SdaewJMode
h xJuaejyefxu
G w
f mjzpfygw,f/
RouterA#write memory
(or)
RouterA#copy running-config startup-config
¤if;Command onfRAM xJrmS &Sad ewJRunning
h Configuration awGudkNVRAM
xJoCopy
Ydk ul;xnhw
f mjzpfygw,f/
Router B udConfiguration
k vkyyf &SkH i;f vif;csuf
Router>
Router>enable
Router#
¤if;Command onfUser exec mode xJrSPrivileged exec mode xJo0if
Ykd wmjzpfw,f/
Router#configure terminal
Router(config)#
¤if;Command onfPrivilege exec mode xJuaeGlobal Configuration Mode xJoYkd
Product of YOUTH
- 129 -
0ifwmjzpfw,f/
Router(config)#hostname RouterB
RouterB(config)#enable secret cisco
¤if;Command wGifyxrqHk;Command onfrdrRouter
d &JUhostname udkowfrSwfwJh
Command jzpfygw,f/'kw,
d Command onfrdrRouter
d ukdvHkjcHKrI&SdatmifPassword ay;wm
jzpfygw,f/
RouterB(config)#router rip
RouterB(config-router)#network 192.168.10.0
RouterB(config-router)#network 172.10.0.0
RouterB(config-router)#network 172.0.0.0
RouterB(config-router)#exit
¤if;Command wGifyxrqHk;Command onfRIP Protocol udktoHk;jyKr,fhCom-
mand jzpfygw,f/'kw,
d ?wwd,?pwkwCommand
¬ wdkYuawmhrdrRouter
d &JUInterface rsm;eJY
vma&mufcsdwfqufxm;wJNetwork
h IP Address awGudkowfrSwfay;wmjzpfygw,f/bmaMumifh
owfrSwfay;&wmvJqkdawmhuRefawmfwdkY[mRIP Protocol ukdtoHk;jyKxm;vdkYowfrSwfay;&wm
jzpfygw,f/
RouterB(config)#exit
RouterB#copy running config startup config
RouterB#show ip route
RouterB#show running-config
¤if;Command wGi'kf w,d Command onfRAM rSChanged rsm;udNVRAM
k xJoYkd
Copy ul;xnhw f mjzpfygw,f/wwd,Command onfIP Routing Table ukMd unhw
f mjzpfygw,f/
pwkw¬Command uawmhrdrdRouter xJrSm&SdwRunning
Jh vkyfaewJhConfiguration awGudk
Munhw
f m jzpfygw,f/
RouterC ukConfigure
d vkyyf &SkH i;f vif;csuf
Router>enable
Router#configure terminal
Router(config)#hostname RouterC
RouterC(config)#enable secret cisco
RouterC(config)#
¤if;Command wGi'kf w,
d Command uGlobal Configuration Mode xJo0if
Ydk wm
jzpfygw,f/wwd,Command uawmhrdrdRouter udkhostname owfrSwfay;wmjzpfygw,f/
Product of YOUTH
- 131 -
pwkx¬Command uawmhrdrd&JURouter udvH
k jk cHKatmifPassword owfrw
S w
f mjzpfygw,f/
RouterC(config)#interface fastethernet 0/0
RouterC(config-if)#ip address 192.168.20.1 255.255.0.0
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
¤if;Command wGifyxrqHk;Command ufastethernet 0/0 Interface xJoYdk
d Command uawmhfastethernet 0/0 ukdip address owfrSwfay;wJh
0ifa&mufwmjzpfygw,f/'kw,
Command yJjzpfygw,f/wwd,Command uawmhfastethernet 0/0 interface udkShutdown
rjzpfatmifvkyfwJhCommand jzpfygw,f/
RouterC(config)#interface serial 0/0
RouterC(config-if)#-ip address 172.20.0.1 255.255.0.0
RouterC(config-if)#clock rate 64000
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
¤if;Command wGifyxrqHk;Command uSerial 0/0 Interface xJo0if
Ydk a&mufwm
jzpfygw,f/'kw,
d Command uawmhSerial 0/0 Interface ukdIP Address owfrSwfay;wJh
Command jzpfygw,f/wwd,Command uawmhSerial 0/0 Interface onfDCE Side jzpfvYdk
Clock Rate owfrSwfay;wJCommand
h jzpfygw,f/
RouterC(config)#router rip
RouterC(config-router)#network 192.168.20.0
RouterC(config-router)#network 172.10.0.0
RouterC(config-router)#network 172.20.0.0
RouterC(config-router)#exit
RouterC(config)#
¤if;Command wGifyxrqHk;Command uRIP Protocol ukdtoHk;jyKr,fhCommand
jzpfygw,f/'kw,
d ?wwd,?pwkwCommand
¬ wkdYuawmhrdrRouter
d &JUInterface eJcsY w
d q
f ufxm;
wJNetwork
h Address wkdYukdowfrSwfay;xm;wmjzpfygw,f/
yHk 6.4
Product of YOUTH
- 133 -
RIP v1 ESiRIP
hf v2 wd\
Yk uGmjcm;csuf
RIP v1 RIP v2
RouterA ukConfigure
d vkyyf kH
Router>
Router>enable
Router#configure terminal
Router(config)#hostname RouterA
RouterA(config)#interface ethernet 0/0
RouterA(config-if)#ip address 192.168.0.1 255.255.255.0
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#interface serial 0/0
RouterA(config-if)#ip address 172.0.0.1 255.255.0.0
RouterA(config-if)#clock rate 64000
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#interface serial 0/1
RotuerA(config-if)#ip address 172.20.0.0 255.255.0.0
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
tckavmufqkd&iftxufrSmazmfjyxm;wJCommand
h awGtaMumif;udkuRefawmfvnf;
&Si;f vif;Ny;D oGm;NyDjzpfvem;vnf
Ykd r,fvxif
Ykd ygw,f/'gaMumiftck
h uReaf wmfatmufrmS RIP v2 ukd
toHk;jyK&ef b,fvkd owfrSwf&r,fqdkwmudk azmfjyay;vkdufygw,f/
RouterA(config)#router rip
RouterA(config-router)#network 192.168.0.0
Router>enable
Router#configure terminal
Router(config)#hostname RouterB
RouterB(config)#enable password cisco
RouterB(config)#interface ethernet 0/0
RouterB(config-if)#ip address 192.168.10.1 255.255.255.0
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#interface serial 0/0
RouterB(config-if)#ip address 172.0.0.2 255.255.0.0
RouterB(config-if)#clock rate 64000
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#interface serial 0/1
RouterB(config-if)#ip address 172.10.0.1 255.255.0.0
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#router rip
RouterB(config-router)#network 192.168.10.0
RouterB(config-router)#network 172.10.0.0
RouterB(config-router)#network 172.0.0.0
RouterB(config-router)#version 2
RouterB(config-router)#exit
RouterB(config)#exit
RouterB#write memory (or) copy running config startup-config
Product of YOUTH
- 135 -
Router C ukdConfigure vkyyf kH
Router>enable
Router#configure terminal
Router(config)#hostname RouterC
RouterC(config)#enable secret cisco
RouterC(config)#interface ethernet 0/0
RouterC(config-if)#ip address 192.168.10.2 255.255.255.0
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
RouterC(config)#interface serial 0/0
RouterC(config-if)#ip address 172.20.0.1 255.255.0.0
RouterC(config-if)#clock rate 64000
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
RouterC(config)#interface serial 0/1
RouterC(config-if)#ip address 172.10.0.2 255.255.0.0
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
RouterC(config)#router rip
RouterC(config-router)#network 192.168.20.0
RouterC(config-router)#network 172.20.0.0
RouterC(config-router)#network 172.10.0.0
RouterC(config-router)#version 2
RouterC(config-router)#exit
RouterC(config)do show ip route
RouterC(config)#exit
RouterC#copy running config startup-config
RouterC#
aumif;Nytck
D q&kd if" no network " command toHk;jyKyHkudkem;vnfavmufNyDvdkY
xifygw,f/'gaMumifhuRefawmfqufvufNyD;" no router rip " command toHk;jyKyHkudkazmfjyay;
vduk yf gw,f/ 'gayr,fh uReaf wmfwaYdk wG em;vnfxm;&rSm wpfc&k dyS gw,f/
tJ'guawmh" no router rip " command ESi"hf no network " command wdkY&JUuGJ
jym;yHkudkem;vnfxm;&rSmjzpfygw,f/uRefawmftxufrSmazmfjycJhw"Jh n o n e t w o r k " com-
mand onfDynamic Routing jzpfwRIP hJ xJuNetwork wpfcw k nf;udo k mz,fxwk w
f Comma-
hJ
nd jzpfNyD;"no router rip command uawmhDynamic Routing Protocol jzpfwRIP hJ Protocol udk
toHk;rjyKbJydwfvkdufwJhCommand yJjzpfygw,f/
xkad Mumif¤if
h ;" no router rip " command udktoHk;jyKr,fqdk&ifawmhDynamic
Routing awGtm;vHk;udkz,fxkwfoGm;rSmyJjzpfygw,f/uRefawmfatmufrSmDynamic Routing
jzpfwRIP
hJ udk" no router rip " command jzifhydwfvkdufyHkudkazmfjyay;yghr,f/
Product of YOUTH
- 137 -
Router>enable
Router#configure terminal
Router(config)#no router rip
IGRP RIP
yHk 6.5
Router A udConfigure
k vkyyf kH
Router>enable
Router#configure terminal
Router(config)#hostname RouterA
RouterA(config)#enable secret cisco
RouterA(config)#interface ethernet 0/0
RouterA(config-if)#ip address 192.168.0.1 255.255.255.0
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#interface serial 0/0
RouterA(config-if)#ip address 172.0.0.1 255.255.0.0
RouterA(config-if)#clock rate 64000
tJ'Command
D rSmyxrqHk;Command ueigrp protocol udktoHk;jyKwJhtaMumif;
owfrwS w
f mjzpfygw,f/tJ'rD mS " #router eigrp " qdkwmuCommand yg/10 qdkwmu
Autonomous System Number jzpfygw,f/
rSwcf su/f /Autonomous System Number &JURang onf1 to 65535 xd&Syd gw,f/
uJ'gqdk&ifqufvufNyD;awmhusef&SdaewJCofiguration
h av;awGudkqufvkyfvkdufMu&atmif/
RouterA(config)#exit
RouterA#copy running-config startup config
RouterA#show startup-config
Router>enable
Router#configure terminal
Router(config)#hostname RouterB
RouterB(config)#enable secret cisco
RouterB(config)#interface ethernet 0/0
RouterB(config-if)#ip address 192.168.10.1 255.255.255.0
RouterB(config-if)#no shutdown
Product of YOUTH
- 141 -
RouterB(config-if)#exit
RouterB(config)#interface serial 0/0
RouterB(config-if)#ip address 172.0.0.2 255.255.0.0
RouterB(config-if)#no Shutdown
RouterB(config-if)#exit
RouterB(config)#interface serial 0/1
RouterB(config-if)#ip address 172.10.0.1 255.255.0.0
RouterB(config-if)#clock rate 64000
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#router eigrp 10
RouterB(config-router)#network 192.168.10.0
RouterB(config-router)#network 172.0.0.0
RouterB(config-router)#network 172.10.0.0
RouterB(config-router)#exit
RouterB(config)#exit
RouterB#copy running-config startup config
RouterB#show running-config
Router>enable
Router#configure terminal
Router(config)#hostname RouterC
RouterC(config)#enable secret cisco
RouterC(config)#interface ethernet 0/0
RouterC(config-if)#ip address 192.168.20.1 255.255.255.2
Routerc(config-if)#no shutdown
RouterC(config-if)#exit
RouterC(config)#interface serial 0/0
RouterC(config-if)#ip address 172.10.0.2 255.255.0.0
RouterC(config-if)#no Shutdown
RouterC(config-if)#exit
RouterC(config)#interface serial 0/1
RouterC(config-if)#ip address 172.20.0.1 255.255.0.0
RouterC(config-if)#clock rate 64000
RouterC(config-if)#no shutdown
RouterC(config-if)#exit
RouterC(config)#router eigrp 10
RouterC(config-router)#network 192.168.20.0
RouterC(config-router)#network 172.10.0.0
Road to CCNA (Exam 640-802)
- 142 -
RouterC(config-router)#network 172.20.0.0
RouterC(config-router)#exit
RouterC(config)#exit
RouterC#copy running-config startup config
RouterC#show ip router
RouterC#show running-config
yHk 6.6
yHk 6.7
Router A udConfigure
k vkyyf kH
Router>enable
Router#configure terminal
Router(config)#hostname RouterA
RouterA(config)#enable secret cisco
RouterA(config)#interface ethernet 0/0
RouterA(config-if)#ip address 192.168.0.1 255.255.255.0
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#interface serial 0/0
RouterA(config-if)#ip address 172.0.0.1 255.255.0.0
RouterA(config-if)#clock rate 64000
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
RouterA(config)#
txufrSmazmfjyxm;wJConfiguration
h awGuem;vnf
kd aeNyv D xif
Ydk ygw,f/tckuReaf wmf
qufvufNyD;Routing Protocol jzpfwOSPF
hJ eJcsY w
d q
f ufyu
kH &Skd i;f jyayygrh ,f/
Product of YOUTH
- 145 -
RouterA(config)#router ospf 1
RouterA(config-router)#network 192.168.0.0 0.0.0.255 area 0
RouterA(config-router)#network 172.0.0.0 0.0.255.255 area 0
RouterA(config-router)#exit
RouterA(config)#exit
RouterA#copy running-config startup-config
Router B udConfigure
k vkyyf kH
Router>enable
Router#configure terminal
Router(config)#hostname RouterB
RouterB(config)#enable secret cisco
RouterB(config)#interface ethernet 0/0
RouterB(config-if)#ip address 192.168.10.1 255.255.255.0
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#interface serial 0/0
RouterB(config-if)#ip address 172.10.0.2 255.255.0.0
RouterB(config-if)#clock rate 64000
RouterB(config-if)#no shutdown
RouterB(config-if)#exit
RouterB(config)#interface serial 0/1
RouterB(config-if)#ip address 172.0.0.2 255.255.0.0
RouterB(config-if)#no shutdown
RouterB(config-i)#exit
RouterB(config)#router ospf 1
RouterB(config-router)#network 172.0.0.0 0.0.255.255 area 0
RouterB(config-router)#network 192.168.10.0 0.0.0.255 area 0
RouterB(config-router)#network 172.10.0.0 0.0.255.255 area 0
RouterB(config-router)#exit
RouterB(config)#exit
RouterB#copy running-config startup-config
Router>enable
Router#configure terminal
Router(config)#hostname RouterC
Product of YOUTH
- 147 -
yHk 7.2
Product of YOUTH
- 153 -
yHk 7.4
tckuRefawmfazmfjyxm;wJNetwork
h Diagram twdkif;Switch &JUIOS udkb,fvMan-
dk
age vkyf&r,fqdkwmazmfjyay;vdkufygw,f/
Switch>
Switch>enable
Switch#
Switch#?
wpfzufpmrsufESmudk qufMunfhay;yg/
tckazmfjyxm;wJCommand
h uawmhSwitch xJuPrivileged Mode xJrSmtoHk;jyKEdkifwJh
Command awGudkMunfhEdkifwJhHelp Command yJjzpfygw,f/¤if;Help Command udk" Question
Mark " Sign udtoH
k ;k jyKjcif;jzifMh unfEh ikd yf gw,f/
Switch#configure terminal
Switch(config)#
tckazmfjyay;xm;wJCommand
h uawmhPrivileged Mode xJuaeGlobal Configura-
tion Mode xJoo Ykd mG ;wJCommand
h jzpfygw,f/'gaMumifuR
h eaf wmfwu
Ykd " configure termi-
nal" Command udktoHk;jyKNyD;Global Configuration Mode xJuoG kd m;&rSmjzpfygw,f/
Product of YOUTH
- 155 -
Switch(config)#?
yHk 7.6
Switch(config)#hostname SwitchA
SwitchA(config)#
tcktoHk;jyKxm;wJCommand
h uawmhrdrd&JhSwitch udkHostname owfrSwfay;wmyJ
jzpfygw,f/" hostname " qdkwmuawmhCommand yJjzpfNyD;" SwitchA "uawmhrdrdowfrSwf
csiw
f Hostname
hJ yJjzpfygw,f/
Switch(config-if)#?
yHk 7.7
Product of YOUTH
- 159 -
(3) tzGUJ tpnf;wpfcck si;f pDtwGuydf jk y;D Security &Szd &Ykd efvdt
k yfvmjyq
D &kd ifvnf;VLAN udk
toH;k jyKzv
Ykd t
kd yfygvrd rhf ,f/
VLAN rSmtrsdK;tpm;tm;jzifh(2)rsdK;owfrSwfxm;ygw,f/
Cisco uaexkwfvkyfcJhwCisco
Jh Switch Series rsm;udkazmfjyay;yghr,f/Cisco uae
xkwv
f yk cf w
hJ Cisco
hJ Switch Series awGuawmh-
- 1900 Series,
- 2820 Series,
- 2900 Series,
- 4000 Series,
- 5000 Series,
- 6000 Series,
- 6500 Series,
- 8500 Series ponfwjYkd zpfygw,f/
- WS-C2950,
- WS-C2960,
- WS-C3550,
- WS-C3560 ESihf
-WS-C3750 Series wddkY[mqdk&ifvlodtrsm;qHk;Series awGyjJ zpfygw,f/
tJ'Switch
D Series xJrSm½SdwPort
Jh awG[mqd7k if10/100/1000 Mbps Ports awGvnf;
½Syd gw,f/tcsKd UPort awG[mqk&d ifPoE (Power over Ethernet) udkvnf;Support vkyaf y;Edik yf gw,f/
a,bk,stm;jzifazmf h jy&&ifawmhWS-C2950 ESiWS-C2960
hf Series wdkY[m10/100
Mbps PortsawGyjJ zpfygw,f/WS-C3550 ESiWS-C3560hf wk[
Yd mqd&k ifFull Gigabit &½Sw d Port
hJ
awGjzpfjyD;PoE (Power Over Ethernet) udkvnf;Support vkyaf y;Edik yf gw,f/
switch>
Switch>enable
Swtich#
Switch#?
Switch#configure terminal
Switch(config)#
SwitchA(config-if)#exit
SwitchA(config)#
rdrda&muf½SdaewJhMode xJuaejyefxu
G w
f mjzpfygw,f/
SwitchA(config)#exit
SwitchA#show running-config
yHk 8.2(u)
Product of YOUTH
- 167 -
yHk 8.2 (c)
Switch#configure terminal
Switch(config)#hostname switchA
SwitchA(config)#enable secert cisco
SwitchA(config)#interface fastethernet 0/1
SwitchA(config)#description connetion to PC1
SwitchA(config-if)#exit
SwitchA(config)#line console 0
SwitchA(config-line)#password cisco
SwitchA(config-line)#login
SwitchA(config-line)#exit
SwitchA(config)#exit
yHk 8.3
Switch>enable
Switch#configure terminal
Switch(config)#hostname switchA
SwitchA(config)#enable secret cisco
SwitchA#vlan database
Switch>enable
Switch#vlan database
Switch(vlan)#
Product of YOUTH
- 171 -
txufygCommand onfVLAN Database udkzefwD;r,fCommand
h jzpfygw,f/
Switch(config)#hostname switchA
SwitchA(config)#enable secret cisco
Product of YOUTH
- 173 -
o,fomG ; ay; Edik yf gw,f/
'gaMumifhuRefawmfwdkUawG&JUNetwork xJrSmwpfckxufydkwJhVLAN awG[mtcsi;f csi;f csw d f
qufawmhr,fq&kd ifTrunk Link ay:rSmcsdwfqufrSomVLAN awGucskd w d q
f ufEikd rf mS jzpfygw,f/
aumif;jy.D ..'gq&kd ifTrunk Link udktoHk;jyKjyD;VLAN awGudkb,fvdkcsdwfqufNyD;vkyf&
r,fqdkwmudk azmfjyay;yghr,f/
yHk 8.4
Switch A Switch B
Switch>enable
Switch#vlan database
Switch(vlan)#exit
Switch(config)hostname switchA
SwitchA(config-if)#exit
SwitchA(config-if)#exit
SwitchA(config-if)#exit
SwitchA(config)#exit
SwitchA#show running-config
SwitchA#show startup-config
Product of YOUTH
- 175 -
SwitchB Configure vkyyf kH
Switch>enable
Switch#vlan database
Switch(vlan)#exit
Switch#configure terminal
Switch(config)#hostname switchB
SwitchB(config-if)#exit
SwitchB(config-if)#exit
SwitchB(config-if)#exit
SwitchB(config)#exit
SwitchB#show vlan 10
SwitchB#show vlan 20
Product of YOUTH
- 177 -
P r o d u c t o f Y O U T H
C o m p l e t e N e t w o r k G u i d e
C C N A, M C S E, M C S A, M C T S
yHk 9.1
Firewall ESiDMZ
hf (Perimeter Network)
2/ Firewall
3/ Internal Router
'guawmh odyu
f ½kd iS ;f ygw,f/ ½H;k wpfct
k wGu?f vkyif ef;wpfct k wGuf pojzifh oifjyKvyk f
ay;xm;wJhNetwork awG½rdS mS yg/tJ'Network D awGudkjyefcGJay;zdkYoHk;wJRouter
h jzpfygw,f/
vHNk cKH pw
d cf s&wJNetwork
h wpfckqdkwm'D(3)rsdK;eJYwnfaqmufrSjzpfrSmyg/atmufrSmjyxm;wJh
yHkuawmhtJ'Dypönf;(3)rsdK;udkoHk;NyD;aqmufxm;wJhNetwork wpfc&k UJ yykH g/
yHk 9.2
vHkNcHKa&;aumif;onfNetwork
h wpfck
Road to CCNA (Exam 640-802)
- 182 -
uJ..aocsmMunfyh gO;D /'DNetwork xJrSmRouter (3)rsKd ;udol k Uae&meJo
Y tH
l 0ifciG u
f s
xnfhoHk;xm;wmudkawGU&rSmyg/aemufNyD;owdxm;rdvm;/Untrusted Network eJTrusted Y Net-
work qdkNyD;oHk;oGm;wm/'gav;awGuaemufydkif;rSmvnf;oHk;p&m½Sdao;awmh'DtoHk;tEIef;av;
(2) ckudk rSwfxm;vdkufOD;aemf/
2/ Intrusion Detection
olYrSmqdk&iftawGU&rsm;wJAttack
h awGxJurStjzpfrsm;wJhAttack (102)ckudkxkwfEIwfNyD;
jzwfoGm;aewJPacket
h awGudktJ'DAttack awGeJYwdkufppfaq;Munfh½HkygyJ/'DtwGufay;wJTool
h
Product of YOUTH
- 183 -
av;jzpfygw,f/
3/ ICMP Inspection
4/ Authentication Proxy
6/ Per-User Firewall
oHk;aeusr[kwfwJhpdrf;aewJJava
h Applet awGRun jcif;rSumuG,fay;ygw,f/
Access vmvkyfwUser
Jh awGudkuefYowfxdef;csKyfay;ygw,f/oifowfrSwfay;xm;wJh
Security Policy tvdkufb,fAddress udkawmhcGifhay;r,f/b,fInterface uvmwJhUser awG
udkawmh ydwfr,f ponfjzifh tvkyfvkyfygw,f/ oifhpdwfBudKufxdef;csKyfEdkifrSmyg/
Product of YOUTH
- 185 -
2/ Network Address Translation (NAT)
Product of YOUTH
- 187 -
(2) 'Dvdkwpfvdkif;NyD;wpfvdkif;wdkufoGm;wmoleJYudkufnDwJhvdkif;udkawGYNyDqdkwmeJYtJ'DLine rSm
owfrSwfxm;wJhvkyfaqmifcsuftwdkif;Packet udkvkyfay;NyD;&ifaemufxyffqufrwdkuf
awmhygb;l /
2/ Outbound Traffic
udk,fhbufuaeolrsm;qDudkxGufoGm;wJTraffic
h yg/
jrifygovm;/Router A jzpfwoif hJ q h u
D 0if
kd vmwJt0if
h Traffic uInbound Traffic
jzpfNyD;awmhoifhqDuaeRouter B qDudkjyefxGufoGm;wJhTraffic udkusawmhOutbound Traffic
vdkYac:ygw,f/
uJ'Dwcgawmhoifu
h ,
kd o
f ifRouter B vdkYowfrSwfMunfhvdkufyg/[kwfNyD...yxr
Router A uvmwJhTraffic uoifq h u D 0if
kd vmr,f/'gaMumifInbound
h Traffic jzpfomG ;w,f/
aemufNyD;oifhqDuaeolrsm;qDudkjyefydkYwJhtwGufOutbound Traffic jyefjzpfomG ;ygw,f/yH9.3(c)
k
udk Munfhyg/
Product of YOUTH
- 189 -
'Davmufq&kd ifInbound Traffic eJOutbound
Y Traffic udk½Sif;avmufygNyD/wu,fvdkY'DrSm
Router C qdwk mxyf½rdS ,fq&kd ifvnf;yH9.3(*)vk
k yHd pk rH sKd ;jzpfvmrSmyg/
Inbound eJOutbound
Y udktck½Sif;NyD;oGm;NyDqdkawmhInbound Access List eJOutbound
Y
Access List awGudkquf½Sif;Mu&atmif/
wu,fvInterface
dkY wpfc&k UJ Inbound Packet awGtwGufyJAccess List aqmufxm;
w,fq&kd if0ifvmwJhPacket awG[mOutbound Interface uaerxGufcifrSmAccess List eJY
wdu
k pf pf&ygw,f/Access List eJYrudkufnDwPacket
Jh awGudkawmhRoute rvkyfay;awmhygbl;/
Routing Process prvkyc f ifuudtJ
k 'Packet
D awGudkz,fxkwfypfvdkufygw,f/
(3) Access List xJudkaemufxyfEntry topfwpfcxyf k xnfrh ,fq&kd if½SNd y;D om;Access
List &JUatmufqHk;uaeyJxyfxnfhay;&ygr,f/Access List xyfxnfz ht Ykd wGufText
Editor qdkwSoftware
Jh udo
k ;kH ygvtB
Ykd uaH y;csiyf gw,f/
Product of YOUTH
- 191 -
..*sw
d yf gy/J List wdik f;rSmtenf;qH;k permit qdkwJhCommand av;wpfcak wmhyg&ygr,f/
r[kw&f ifvn;fTraffic awGtukev f ;kH ydwyf pfvtql
Ykd c&H csn&f UJ /
'Dv½kkd u
d v
f u
kd w f thJ cg" access-list " qdkwJhCommand aemufuxnfzh Access
Ykd List
Number awmif;wmudkawGU&ygvdrfhr,f/
1 to 99 qd& k ifStandard Access List
100 to 199 qd& k ifExtended Access List ponfjzifawG
h U&rSmyg/
'Dae&mrSmudk,fBudKufwJhAccess List Number uday;Ed k kifygw,f/' 4 ' vdkUay;Mu&atmif/
Router(config)#access-list 4 ?
deny Specify packets to reject
permit Specify packets to forward
remark Access list entry comment
tif;..'Dtqifu
h a&muf
kd Nyq
D &kd ifawmh½Si;f jyp&menf;enf;awmh½Sv
d mNyAD s/Deny, Permit
ay;wmu 'Dtwdkif;a&;vdkuf½HkeJY rNyD;bl;/ b,folUudk ay;csifwmvJqdkwm owfrSwfay;&ygOD;r,f/
Any : oluusawmhrnfonfHost
h ?rnfonfNetwork
h udkrqdkoufa&mufapygw,f/
Access List xJuHost wpfcck si;f pD?Network wpfcck si;f pD(od)Yk Network trsm;BuD;udk
deny / permit ay;wJhtcgolu Y ykd gwoJG ;kH avho;kH x½Sw d ,f/Wildcard udoif k em;vnfatmif½Si;f jyzdq
Yk &kd if
Blocksize udt&if k em;vnfr&S r,fAs/Variable Length Subnet Mask awGrSmNetwork awGcJG
xkww f t hJ cgBlock Size t&cGx J w k o f mG ;wmyg/wenf;tm;jzifhNetwork wpfct k wGi;f rSm½SEd ikd w
f hJ
Host ta&twGuq f v
kd nf;[kwyf gw,f/wu,fvVariable Ykd Length Subnetting taMumif;?IP
Subnetting taMumif;udjk ynhjf ynhp f pkH od
kH csiw
f ,fq&kd ifuReaf wmfwYOUTH Ykd ut&ifwkef;u
xkwcf w hJ Complete
hJ Network Guide pmtkyr f mS pHpk v kH ifvif&Si;f jyxm;ygw,f/tJ'rD mS avhvmMunhf
vdu
k yf g/
Wildcard qdkwmSubnet Mask &JUajymif;jyefygy/J
Oyrm- 192.168.100.1/24 &JUSubnet Mask [m255.255.255.0 aygAh sm/
'gqDecimal
kd udkBinary eJjY y&&if-
Subnet Mask 1111 1111. 1111 1111 . 1111 1111 .0000 0000 255.255.255.0
Wildcard Mask 0000 0000 . 0000 0000 . 0000 0000 . 1111 1111 0.0.0.255
(Subnet \ajymif;jyef)
Oyrm- 160.30.20.40/20
Subnet Mask = 255.255.240.0
Road to CCNA (Exam 640-802)
- 196 -
Subnet Mask 1111 1111. 1111 1111 . 1111 0000 . 000 00000 255.255.240.0
Wildcard Mask 0000 0000 . 0000 0000 . 0000 1111. 1111 1111 0.0.15.255
255.255.255.255
Subnet Mask : - 255.255.255.0
Wildcard Mask : 0 . 0 . 0. 255.
'gapmapmuwGufcJhwWildcard
Jh Mask twdkif;yJr[kwfvm;/
tckwpfacguVariable
f Length udkjyr,f/
Oyrm-160.30.20.40/20
Subnet Mask : 255.255.240.0
255.255.255.255
Subnet Mask : - 255.255.240.0
Wildcard Mask : 0 . 0 . 15 .255
'gah Mumifapmapmuj
h ycJw
h Standard
hJ Access List &JUOyrmxJuHost Address
192.168.10.2 &JUWildcard Mask 0.0.0.255 jzpfcw
hJ mygy/J
'gaMumifHost
h Bit (3)ckuse& f ifBlock Size = 8 yg/
Network cGz J tv,f
Ykd uq
l ;kH enf;udajk ym&&ifawmhBlock Size &JUtvDudkomqdkNyD;cGJyg/
Block Size u' 8 ' qd& k if' 8 ' tvDudkomqdkygawmh/
8x0 = 0
} 0 to 7
8x1 = 8
} 8 to 15
8x2 = 16
} 16 to 23
8x3 = 24
} 24 to 31
8x4 = 32
(2) ' Any ' udkoHk;wmuWildcard udk' 0.0.0.0 255.255.255.255 ' vdkYoHk;vdkufwmeJYtwl
wlygy/J
Oyrm- Router(config)#access-list 7 deny 192.168.10.4 0 . 0 . 0 .3
9.3.4 Create vkyNf y;D om; Standard Access List udk Interface ay:wiG f
Apply vkyjf cif;/
Interface ay:udkApply vkyw f thJ cgpOf;pm;p&mESpcf ½k ydS gw,fvuR Ykd eaf wmfajymcJzh ;l w,f/
Inbound Traffic eJOutbound
Y Traffic qdkNyD;(2)rsdK;½Sdw,fvdkYajymcJhzl;ygw,f/'D(2)rsdK;&JUu@u
tck'rD mS ygvmygNy/D Router &JUInterface ay:rSmApply vkkyfwmawmh[kwfygNyD/t0ifbuf(Inbou
-nd) Interface rSmvm;?txGufbuf(Outbound) Interface rSmvm;b,frSmxnfh&rSmwkef;/
'Dvadk wGjzpfaerSmpd;k vdYk Oyrm (1)ckeYJ ½Si;f jyoGm;ygrh ,f/ aocsmMunfah y;ygaemf/
'DExample xJrmS qd&k ifukrP Ü Dwpfcx k rJ mS Department wpfcck si;f pDtwGuNetworkf
(3)ckcGx
J m;Ny;D awmhRouter eJjY yefcsw d x
f m;wmyg/
tckjzpfcsiw
f muMarketing bufuClient awGuFinance bufudkoGm;NyD;Access
vkyv
f rYkd &atmif ydwcf siw
f myg/
Product of YOUTH
- 199 -
yHk 9.4
yHk 9.5
Product of YOUTH
- 203 -
awGUMuvm;rodbl;/Extended twGufNumber u100 to 199 &,faemufNyD;2000 to
2699 twGufyJqdkNyD;a&;xm;ao;w,f/'DawmherlemtaeeJ150
Y vdkYay;vdkufr,fuGm/
Router(config)#access-list 150?
deny Specify packets to reject
dynamic Specify a DYNAMIC list of PERMITs or DENYs
permit Specify packets to forward
remark Access list entry comment
Source twGufa½G;ay;&ygr,f/
Router (Config)# Access List 150 deny tcp any host 192.168.10.2 eq?
<0-65535> Port number
ftp File Transfer Protocol (21)
pop3 Post Office Protocol v3 (110)
Product of YOUTH
- 205 -
smtp Simple Mail Transport Protocol (25)
telnet Telnet (23)
www World Wide Web (HTTP, 80)
Standard eJYywfoufwCommand
Jh awGawmhukefygNyD/ydkNyD;pkpkpnf;pnf;½Sdatmif
Oyrmav;wpfcek YjJ yygO;D r,f/wpfjcm;awmhr[kwyf gb;l /Standard rSmwkef;uay;cJhwJhMarketing eJY
Road to CCNA (Exam 640-802)
- 206 -
Finance Example av;udkyJjyefay;rSmyg/
Example for Extended Access List
yHk 9.6
tckOyrmrSmuMarketing udkydwfcsifayr,hMarketing
f Network BuD;wpfckvHk;udk
ydwfcsifwmr[kwfawmhbl;/Client 1 qdkwJhHost av;wpfcw
k nf;&JUFTP eJTelnet
Y Traffic awGudk
ydwyf pfcsiw
f myg/
uJ . . pNyaD emf-
RouterA(config)#int e1
RouterA(config-if)#ip access-group 150 out
Product of YOUTH
- 207 -
'gNyD;wJhaemufrSmawmhClient 1 uaeFinance bufudkvmwJFTP
h Traffic eJTelnet
Y
Traffic awGudkydwfypfvdkufygNyD/
yHk 9.7
Router A udConfigure
k vkyyf kH
Router>enable
Router#configure terminal
Router(config)#hostname RouterA
RouterA(config)#enable secret cisco
RouterA(config)#interface fastethernet 0/0
RouterA(config-if)#ip address 192.168.0.1 255.255.255.0
RouterA(config-if)#no shutdown
RouterA(config-if)#exit
Router>enable
Router#configure terminal
Router(config)#hostname RouterB
RouterB(config)#enable secret cisco
RouterB(config)#interface fastethernet 0/0
RouterB(config-if)#ip address 192.168.20.1 255.255.255.0
RouterB(config-if)#no shutdown
RouterB(config-if)exit
Product of YOUTH
- 209 -
'gNy;D &ifTraining Network xJuaeSale Network eJol
Y x
Y u
J Web Server ud0if
k Munfvh Ykd
r&wmawGU&ygvdrfhr,f/Basic ACL awGeJYywfoufNyD;ajymp&muawmh'DavmufygyJ/
Router(config)#line vty 0 4
Telnet Line b,fEp
S cf ck sw
d cf iG ½hf v
fdS o
J wfrw
S af y;wmyg/
Router(config-line)#access-class 50 in
trsKd;tpm;awGtrsm;MuD;&Sdayr,fhtoHk;rsm;wmawGuenf;enf;av;&,fyg/Named ACls
eJSwitch
Y Port ACL awGuawmhtoHk;rsm;ygw,f/'gaMumifh'D(2)ckudkyJuRefawmft"duxm;jyD;
&Si;f oGm;rSmyg/
yHk 9.8
LAN 1 xJuLAN2
dk Network xJuClient awGAccess vkyfvdkYr&atmifuRefawmfydwfcsif
Product of YOUTH
- 213 -
tckaemufydkif;uaepNyD;deny/permit ay;vdkY&oGm;ygNyD/ydwfcsifwmu192.168.10.0 Net-
work udkyg/
ACL Create vkyjf cif;'DrmS wifjy;D qH;k jyjD zpfygíApply vkyjf cif;vkyif ef;Mu;D pwifygawmhr,f
cifAsm/
Router#config t
Router(config)# int e1
Router(config-if)# ip access-group blockLAN2fromLAN1 out
ay;cJhwJhACL &JUname yg/
yHk 9.9
Product of YOUTH
- 215 -
olq Y 0D ifvmwJTraffic
h rSeof rQutJkd 'ACL
D eJwdY u
k pf pfMunhyf gw,f/'gaMumifv
h nf;ACL rSeo f rQ
tukefta&;MuD;ygw,fvdkYuRefawmfajymcJhwmyg/ajym&&ifACL [mNetwork wpfck&JU*dwfayguf
qdkvnf;rrSm;ygbl;/VLAN wnfaxmifwt hJ cgrmS vnf;ACL awGeJYtvkyfvkyfoGm;wmyg/VLAN
&JUTrunk Port rSmACL udkApply vkyfay;&wmaygh/'DtaMumif;udkawmhVLAN tcef;udoif k zwfxm;
&if odrSmyg/ uRefawmfr&Sif;jyawmhygbl;/
Switch Port ACL awGrSmawmhIP Traffic awGudkIP Access List awGeJYyJxdef;csKyfay;yg
w,f/ IP-Traffic r[kwfwTrafficJh awGudkawmhMAC Address eJFilter Y vkyaf y;&ygw,f/
tckuReaf wmfOyrmwpfcek Switch
YJ Port ACL tjzpfMAC Address eJAccess Y List vkyf
wmudkajymjyoGm;yghr,f/Extended eJYStandard ACL awGuawmht&ifOyrmawGwkef;uaqmufjycJh
ovkdyJqdkawmh odyfrxl;jcm;ygbl;/ uJ..pMu&atmif/aeOD;wpfcak wmh&w dS ,f/tck[muSwitch
ay:rSmCreate vkyaf ew,fqwmarh kd roGm;eJOY ;D /
Switch#config t
Switch#mac access-list?
extended Extended Access List
Switch(config-ext-macl)#deny?
H.H.H 48 bit source MAC address
any any source MAC address
host a single source host
Source&JUMAC ukxnh
d rf vm;?(okrYd [kw)f rnfonhSource
f udkrqdkvmwJhTraffic vkdY
owfrSwfrvm; ar;aeygjyD/
Switch(config-ext-macl)#deny any?
Source
H.H.H 48 bit destination MAC address
any any destination MAC address
host a single destination host
jyD;&ifawmhowfrSwfay;csifwhost
Jh &JUMAC address udkowfrSwfygr,f/
Switch(config-ext-macl)#deny any host 2abd.32ce.489f
Switch(config-ext-macl)#int f0/2
Switch(config-if)#mac access-group Mac-List
Access List Name
Product of YOUTH
- 217 -
'gq&dk ifawmhInterface wpfckay:rSmoifaqmufvkdufwSwitch
Jh Port ACL av;uaumif;
aumif; tvkyfvkyfaeygjyD/
yHk 9.10
Product of YOUTH
- 221 -
(1) oift
h aeeJInternet
Y udv
k nf;csw
d cf siwf ,f/'gayr,foif h Network &JUhost wpfcck si;f pD
twGufvnf;Public IP wpfcck si;f pDcsray;Edik b
f ;l qd&k ifNAT udkoHk;wmtaumif;qHk;ygyJ/
(2) ISPtopfwpfcu
k oif
kd ajymif;csiwf ,f/tJ'ISPD udajk ymif;&ifvnf;Internal Network
xJuip awGudkygvkdufajymif;ypfzkdYvdkw,fqdkwJhtcgrSmrajymif;&atmifoHk;wwfygw,f/
NAT udkConfigure
oGm;cs&rnfRouter
h
Product of YOUTH
- 225 -
10.4 NAT \ toH;k tEIe;f rsm;
yHk 10.3
olu
Y t
kd vG,rf w
S rf ,fq&kd ifOne-to-One Mapping vdrYk w S v
f &yg
Ykd w,f/'Daumifuh oH
kd ;k csi&f if
awmhoifh&JUNetwork xJrSm½SdwHost Jh wpfcck si;f pDrmS wu,fInternet
h IP Address wpfcp kD
½Szd v
Ykd ykd gw,f/ajym&&ifHost wpfcck si;f pDtwGuPublic
f IP wpfcpk ½SD x
d m;&r,fo
h abmyg/
yHk 10.4
Static NAT
Router(config)#interface e0
Router(config)#ip address 192.168.10.1 255.255.255.0
Router(config)#ip nat inside
[mtwGif;bufuInterface jzpfwJhtwGuf" ip
E0 nat inside " qdkNyD;Inside
Interface tjzpfaMujimvdu
k w
f myg/
Router(config)#interface s0
Router(config)#ip address 172.46.2.1 255.255.255.0
Router(config)#ip nat outside
Product of YOUTH
- 229 -
(2) Dynamic NAT
'DaumifhudkawmhOne-to-Many vdkYrSwfEdkifygw,f/olY&JUtpGrf;owåduUnregistered IP
Address (Private Address) wpfckuRegistereddk IP Address (Public Address) trsm;BuD;tjzpf
Translate vkya f y;Edik yf gw,f/t&ifStatic rSmwkef;uqdHost
k wpfct
k wGuq f &kd ifPublic IP wpfck
owfrSwfay;&ayr,fhtckDynamic rSmusawmhHost wpfct k wGuq f &kd ifPublic IP trsm;BuD;
owfrSwfay;ygw,f/tJ'Dtrsm;BuD;xJurStqifajywJPublic h IP wpfckudka½G;NyD;Internet udkt
0iftxGufjyKygw,f/qdkvdkwmuStatic wkef;uvdPublic k IP wpfcktaoowfrSwfay;p&mrvdkawmhyJ
oltqifajywJLine
h eJcsY ay;vdu
k fwmyg/
yHk 10.6
Dynamic NAT
yHk 10.7
Router(config)#int e0
Router(config)#ip address 192.168.10.1 255.255.255.0
Router(config)#ip nat inside
Router(config)# int s0
Router(config)#ip address 172.46.2.1 255.255.255.0
Router(config)#ip nat outside
yHk 10.8
yHk 10.9
Product of YOUTH
- 233 -
yHk 10.10
Router(config)#int s0
Router(config-if)#ip address 172.46.2.1 255.255.255.0
Router(config-if)#ip nat outside
Product of YOUTH
- 235 -
(3) Router#sh ip nat statistics
NAT eJYywfoufvError
dkY wpfcck ak y:wt
hJ cgus&ifTroubleshoot jyefvkyfzdkYtwGuf'DComm
-and utoH;k 0ifygw,f/oifCreate vkycf w
hJ hJNAT taMumif;udktao;pdwfjyefawGU&rSmyg/
NAT [mtoHk;jyK&wmxda&mufw,f?odyfaumif;w,ffqdkwmawmhrSefygw,f/odkYaomf
oluvnf;tNrJwrf;jyóemuif;aewJhaumifawmhr[kwfygbl;/NAT jyóemjzpfvmwJt h cg
oifb,fvdkvkyfrvJ/'DudpötwGufrcuf&atmifNAT udKG i½f mS wJth cgoifw
h aYkd wGppfaq;Munf½h &I r,fh
tqifhawGudk uRefawmfajymjyay;oGm;ygr,f/
NAT Bu;D uGKd ifwufaeygNy/D t&ifq;Hk 'DtqifhawGuoif
kd ppfaq;Munfyh g/
(2) oifaqmufxm;wJDynamic
h Pool awGxyfrsm;xyfaeovm;MunfhMunfhyg/
(5) ygoifhygxkdufwAddress
Jh awGxnfhxm;NyD;?rygoifhrygxdkufwAddress
Jh awGrxnfrY ad tmif
*½kpu
kd af y;yg/
yHk 10.11
Router>enable
Router#configure terminal
Router(config)#hostname RouterA
RouterA(config)#enable secret cisco
Product of YOUTH
- 239 -
Case Study 1 ( Static Route and Dynamic Route rsm;yg0ifonf/)
Router>enable
Router#configure terminal
Router(config)#hostname SRouterA
SRouterA(config)#enable secret cisco
RouterB udConfigure
k vkyyf kH
Router>enable
Router#configure terminal
Router(config)#hostname SRouterB
SRouterB(config)#enable secret cisco
Router>enable
Router#configure terminal
Router(config)#hostname RIPRouterC
Product of YOUTH
- 243 -
RIPRouterC(config)#enable secret cisco
RIPRouterC(config)#router rip
RIPRouterC(config-router)#network 100.0.0.0
RIPRouterC(config-router)#network 192.100.100.0
RIPRouterC(config-router)#network 200.0.0.0
RIPRouterC(config-router)#redistributed static
RIPRouterC(config-router)#exit
Router>enable
Router#configure terminal
Router(config)#hostname RIPRouterD
RIPRouterD(config)#enable secret cisco
RIPRouterD(config)#router rip
RIPRouterD(config-router)#network 200.0.0.0
RIPRouterD(config-router)#network 172.100.0.0
RIPRouterD(config-router)#network 192.200.200.0
RIPRouterD(config-router)#redistributed static
RIPRouterD(config-router)#exit
RIPRouterD(config)#exit
Product of YOUTH
- 245 -
RIPRouterD#copy running-config startup-config
Router>enable
Router#configure terminal
Router(config)#hostname RIPRouterE
RIPRouterE(config)#enable secret cisco
RIPRouterE(config)#router rip
RIPRouterE(config-router)#network 172.100.0.0
RIPRouterE(config-router)#network 200.200.0.0
RIPRouterE(config-router)#network 192.198.100.0
RIPRouterE(config-router)#redistributed static
RIPRouterE(config-router)#exit
Road to CCNA (Exam 640-802)
- 246 -
RIPRouterE(config)#ip route 1.0.0.0 255.0.0.0 200.200.0.1
RIPRouterE(config)#exit
Product of YOUTH
- 247 -
Case Study 2 ( NAT and Access List rsm;yg0ifonf/)
RouterA udConfigure
k vkyyf kH
Router>enable
Router#configure terminal
Router(config)#hostname RouterA
RouterA(config)#enable secret cisco
Product of YOUTH
- 249 -
RouterA(config-router)#exit
RouterB udConfigure
k vkyyf kH
Router>enable
Router#configure terminal
Router(config)#hostname RouterB
RouterB(config)#enable secret cisco
Product of YOUTH
- 251 -
RouterC udConfigure
k vkyyf kH
Router>enable
Router#configure terminal
Router(config)#hostname RouterC
RouterC(config)#enable secret cisco
RouterC(config)#interface fastethernet 0/0
RouterC(config-if)#ip address 100.0.0.2 255.0.0.0
RouterC(config-if)#no shutdown
1/ Ny;D oGm;jyefygNy/D
5/ uReaf wmf\
h cspZf eD;av; tdtNd zdK;tm;vnf; aus;Zl;wifygw,f/
pma&;ol
aZmfvif;
30 Mo*kwf 2009
Road to CCNA (Exam 640-802)