Vous êtes sur la page 1sur 233

Mobile: 00972598053163

Facebook : Ahmad H Mashaikh

E-Mail ahmad.private.mashaikh@gmail.com

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Networking Fundamentals



CCNP .CCDP

82............................................................IPv4 Header / IPv6 Header

71........................................................................................

WLAN

IPs IP .

CCNA 200-120:
CCNA :

: ) (ICND1 and ICND2


Interconnecting Cisco Network Devices 1 and 2

: CCNA CCNA 200-120 , 200-125

) (On Line

IP
). (WAN

CCNA
:
: IP EIGRP, VLANs, Ethernet,
ACLs.

Cisco Certified Network


Associate
.

61....................................................

59..................................................................

55.................................................................................

53..........................................................

51..............................................

45........................................................................................

27...................................................................................................OSI

25...................................................................... Protocols

17............................ Physical Media

12..............................................Network Architectures

11.......................................................

5 ......................................................................

Networking Fundamentals

Eng. Ahmad H Almashaikh

) Level ( 1

Eng. Ahmad H Almashaikh


.


.


.




. .

LAN


) (Satellite WAN
PAN
.

.
.
.

. Mesh networks
.Star networks
.Bus networks
.Tree networks
.Ring Topology



.
ARPANET Advanced
Research Project Agency Net .
) (NSF National Science Foundation
ARPANET

) (www ) (www (World
) Wide Web ) (ISOC
)( ..
Netscape Navigator. 1996 )(
.

)( . :
:
. .

: :

Local Area
Network LAN
.
500
hub switch
.

.
.

.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

)Storage Area Networks - (SAN

:



.

)Wireless Local Area Networks - (WLAN

)Metropolitan Area Networks - (MAN

)Personal Area Networks - (PAN

)Global Area Networks - (GAN

)Wide Area Networks - (WAN


)Campus Area Networks - (CAN

)Local Area Networks - (LAN

Types of Networks by Geographical Area

Eng. Ahmad H Almashaikh


:
-
.
- .
-

.
-
.





.

.
.

:
- .
- .
- .
- .
- .

Eng. Ahmad H Almashaikh

: MAN



) (MAN ) (LAN
.

: PAN

.

: WAN



.

: LAN




.

: CAN

.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Client / Server Networks

- .
- .
- .
- .
- 20
.Workgroup
- .

Peer to Peer -

Peer to Peer Networks

Network Architectures

: SAN

.

Eng. Ahmad H Almashaikh

: GAN
.

: WLAN


.

Eng. Ahmad H Almashaikh

: Star Topology




Terminator
.Backbone

: Bus Topology

Eng. Ahmad H Almashaikh

Physical Network Topologies

- .
- .
- .
- .
- .
- .

- Client / Server

Eng. Ahmad H Almashaikh

: Hybrid Topology Network


.

: Mesh Topology

: Point to Multipoint Topology

: Point to point Topology

: Ring Topology

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Coaxial Cable


.


.
.
- :



Fiber Optic Cable Twisted Pair Cable

Coaxial Cable . .
Twisted Pair Cable . .
Fiber Optic Cable . .

x
.

Physical Media

: Coaxial Cable -
,

. .
.
. - ,
.
.
.
.
. Ethernet

.

- : .
.
.


.
.
.
.

- :
.

.
.

. .

- :

.
AT&T
.
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

1000

Cat6

1000 .

Cat5

Cat5

16.

10.

4.

100.

Cat4

Cat3

Cat2

Cat 1

UTP 6 :

- Unshielded Twisted Pair / UTP

Eng. Ahmad H Almashaikh

Thin net Thick net.

net.

- Shielded Twisted Pair / STP

: Twisted Pair Cable -

mbps Thin

mbps Thick

Thick net Thin

- :

Eng. Ahmad H Almashaikh

- : Buffer coating
.

- : Cladding
.

- : Core

- : fiber optic cables

STP UTP RJ- 45

Eng. Ahmad H Almashaikh

Rj-45 :

) (Crossover cable

) (Straight cable

STP : UTP

- .

- .

- UTP :

- .

- .

- .

STP UTP :

Category 6

Eng. Ahmad H Almashaikh

- .
- .

- .

- .

-
.

- ) 100/ (
200,00/.

single mode fiber



.

micron 9 1 0,001
nm..-.
multi -mode fibers

.
micron . .

200000 .

- 100

- .

- .

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Lightweight Directory Access Protocol



TCP/IP
.

:LDAP - Lightweight Directory Access Protocol

IP
) (Network Layer osi
) (packet
.

:IP - Internet Protocol


) (www
. HTML

:HTTP - Hyper Text Transfer Protocol

) (HTTPS
/
.
.
.

:HTTPS - Secure HTTP

Secure Socket Layer SSL


.

:SSL - Secure Sockets Layer


ESMTP Extended SMTP

:SMTP - Simple Mail Transfer Protocol


. POP

:POP - Post Office Protocol

Eng. Ahmad H Almashaikh

:FTP - File Transfer Protocol


. 123
.UDP

:NTP - Network Time Protocol


IETF )(

.

:SNMP - Simple Network Management Protocol

IP Hosts
Workstation TCP/IP
) (IP address conflict IP
) (
.

:DHCP - Dynamic Host Configuration Protocol



IP
. IP

:DNS - Domain Name System

Port 0 65535
0 Port 1024
.

Protocols

Eng. Ahmad H Almashaikh

.
.
.
.

:UDP -User Datagram Protocol

.
.
VoIP.
.

:TCP - Transmission Control Protocol

PPP Point to Point Protocol


.
) (Data Layer . TCP/IP

:PPTP - Point to Point Tunneling Protocol

) (Reverse ARP : RARP


ARP
. RARP

:RARP - Reverse Address Resolution Protocol

Address Resolution Protocol


) (ARP
-
.

:ARP - Address Resolution Protocol

Ping Packet
Internet Groper
Troubleshoot

Ping Packets 32 bit Echo Packet

.

:. ICMP - Internet Control Message Protocol


IP /
).(TCP/IP

1994 .

x )(Routing

:
) (Layers.

) (ISO 1983 7498


.

: OSI Source device


.Destination device

Open Systems Interconnection

OSI

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

7- Application layer
6- Presentation layer
5- Session layer
4- Transport layer
3- Network layer
2- Data link layer
1- Physical layer

: 7 ) (
.

Eng. Ahmad H Almashaikh

- Troubleshooting.
- . Encapsulations
- OSI



Ping



Tcp/ip OSI

physical ) data link . ( Tcp
- OSI
.
-
.
-
.

: OSI Layers

Speed development of new technology


Allows for modular software development



Provides a standard for hardware development


: OSI

Eng. Ahmad H Almashaikh

6- Presentation layer

:
.

: Application layer -

)(Application

Mozilla Firefox Outlook



Application layer .


Google Chrome Mozilla
Firefox
FTP Client
Outlook Application layer
Application
layer
. Application layer

7- Application layer

OSI Layer :

SNMP , DNS , FTP , LDAP , LMP , NTP , HTTP , DHCP ,


Open VPN , SMTP , POP3 , IMAP , WAE , WAP , SSH, Telnet
, SIP , PKI , SOAP , rlogin , TLS / SSL .

: .

JPEG , MPEG , ASCII , EBCDIC , HTML , AFP , PAD , NDR ,


RDP , PAD , AVI .

: Presentation layer -

Presentation layer


Application layer
Presentation layer
png , jpeg
, gif .

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

UDP: User Datagram Protocol

TCP: Transmission Communication Protocol

Transport layer -




Session


Session

) (single

) (half duplex


,

SAP, RTP, NFS, SQL, RPC, NETBIOS NAM, NCP, SOCKETS,


SMB, NETBEUI, 9P.

: Session layer -

) ( Full duplex



)(Full duplex



TCP Connection oriented protocol



, UDP Connectionless


UDP

TCP
.

4-Transport layer

5- Session layer

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

x


.

x
) ( 0 to 1024
.

-:

- TCP
. or UDP
- .

Flow-control

flow control Sequencing



Acknowledgments .

- , flow control Error correction

: Transport layer

Eng. Ahmad H Almashaikh

FTP = Port 21, Telnet = Port 23, SMTP = Port 25, DNS = Port 53,
TFTP = Port 69, SNMP = Port 161, RIP = Port 520.

TCP UDP :

UDP
TCP
.

UDP TCP UDP


TCP
.

UDP : TCP

x
. TCP



.TCP

UDP: User Datagram Protocol

Eng. Ahmad H Almashaikh

TCP Connection-Oriented

.

UDP Connectionless
TCP

.Three Way handshake

UDP :

x
. TCP

Connection Based


Three Way handshake
, .

TCP: Transmission Communication Protocol

TCP : UDP

Eng. Ahmad H Almashaikh

.
.
.

.
.
).(IMP
.
) RAM ( .

Logical Link Control LLC Bits


Bytes Frames Frame
Logical Network Topology
Token ring star Frame
== Frame
== Media Access Control MAC :
Mac Address
Frame
.



.
.

SCCP, GRE, OSPF, ARP, RIP, Routed-SMLT

IPv4, IPv6 , IPx , ICMP , IPsec , IGMP,CLNP,EGP,EIGRP,IGRP,IPx

: Network layer -

Packet
Packet Transport layer
segment Network layer
segment Packet IP
Packet
routing
RIP , EIGRP , OSPF
.BGP

) (Packet ) (FRAME
) (binary data
.
)( .
) (Interface Message Processor IMP
.

2-data link layer

3- Network layer

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

PC
PC
PC
Switch Core
Router
Switch , HUB
NIC, Cable

Application layer
Presentation layer
Session layer
Transport layer
Network layer
Data link layer
Physical layer

x
:

Data
Data
Data
Segment
Packet
Frame
Bites

Application layer
Presentation layer
Session layer
Transport layer
Network layer
Data link layer
Physical layer

x :

Data link layer - Physical layer

Eng. Ahmad H Almashaikh

1-Physical layer

Physical layer


,
Frame
Frame BITS

.

Data link layer

Eng. Ahmad H Almashaikh

TCP/IP Transmission Control


Protocol/Internet Protocol TCP
.


.
.
.


PC

.
Linux )(php

) (ASP
). (HTML

Hypertext Transfer Protocol


)World Wide Web (www

) File Transfer Protocol (FTP .

(SMTP) Simple Mail Transfer Protocol


.

TCP/IP

TCP/IP :

TCP/IP
.

:

.

.
.

TCP/IP Hardware
Software
.

DARPA .

.

1970

Transmission Control Protocol / Internet Protocol

TCP/IP


.TCP/IP


OSI Layers
TCP/IP
. TCP/IP


.

TCP/IP

.


.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Passive Hub - .
Active Hub - .
Hybrid Hub - .
Smart (intelligent) Hub - .

x . HUB

x



.
x .
x Physical Layer
.

- : HUB
,

.

Network Devices

OSI
OSI .

Internet

Transport

Application

Network Interface

: TCP/IP

Transport Control Protocol / Internet Protocol


TCP/IP
DHCP
IP IP
) (


IP 32
8
131,107,2,200 8
1 255 )(

): (TCP/IP

: SOCKETS
TCP/IP
.
.
TCP/IP .

TCP/IP : IP
IP
IP.

.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

x
Twisted pair


.

- : Repeater



.

-----------------------------------------------------------------------------------

Eng. Ahmad H Almashaikh

- .

- .ffff.ffff.ffff

- .Mac-Address

- Mac-Address-Table .

- .OSI

- .Collision Domain

- ) . ( One to One

Mac-Address

Frame Mac-Address
Frame Broadcast
.

-

8
5

.

x Switch : Hub

- : Switch

Bridge Physical
Layer Data Link Layer OSI

Switch


.

Eng. Ahmad H Almashaikh

Gateway

: External Gateway -
.
: Internal Gateway -

Gateway .

x Gateway :

- : Router
. Newtork Layer

Modem -

Router -

: ADSL
ADSL .

x :
- 10.0.0.0
192.168.1.0

.
-
Source Destination
.

- : Gateway
OSI

Router
Gateway
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Full Duplex

Half Duplex

Simplex

-
-
-

. OSI
.

.CSMA/CD
.

NIC = Network Interface Card

- : NIC
NIC
) (Transceiver NIC NIC
MAC Address
.

---------------------------------------------------------------------------------

Bridge

- : Bridge LAN
Routing Table
.

Methods of Sending Data in the Physical Media


Networks

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

---------------------------------------------------------------------

Multicast

---------------------------------------------------------------------

Unicast


Any Cast IPv6
.

)(Simplex

)(Full Duplex

)(Half Duplex

Methods of Sending Data in the Network

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: Collision Domain
.

: Broadcast Domain
IP Broadcast Domain
.




Broadcast
Broadcast IPv6 . Any cast

Any cast

---------------------------------------------------------------------

: Any cast : - .
- DDOS
.
- .
-
.

Broadcast Domain : Collision Domain

x : Hub Broadcast .Collision Domain

x : Switch , Collision Domain


.Broadcast

x : Router Broadcast
. Collision Domain

x :

.

x Hub Repetar
LAN Switch
Router .
x :

.

:
,


.

Collision Domain

Broadcast

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

x Broadcast Domain 1
x Collision Domain 4

x Broadcast Domain 1
x Collision Domain 1

, .

x HUB
One Collision Domain


,





, ) ( IP
Broadcast , ffff.ffff.ffff
. Mac Address -

, .

x ,


, Mac Address
Broadcast .

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

1700 routers

2820 Switches

1900 Switches

700 routers

ACCESS Layer

6500 switches

12000 router

8500 switches

6500 switches

4000 switches

4000 routers

3600 routers

4000 switches

DISTRIBUTION Layer

CORE Layer

- : Core Layer
Distribution
.

- : Distribution Layer
Access Layer ) (Vlan
.

- : Access Layer
,

.
x
.

1- Access Layer
2- Distribution Layer
3- Core Layer

Collision Domain
.Broadcast Domian

x :


A . B
Broadcast A and B . Collision Domain 3x Broadcast Domain 2
x Collision Domain 5
CD : BD

Cisco Three Layers Hierarchical Model

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

(00000000) x 8
8 Bit Byte

32
.

x : Byte
8
0 1 8
:

x : Bit 0 1

.OSI

x 32 bit
Octet
.
x 8
255
8 .
x bit Byte
IP
.

IPv4 Address

.

Cisco Three Layers Hierarchical Model

Internet protocol

IP Address - IPv4 / IPv6

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: Class A A 1 126 0 127


0 127 A
1 126 0 127 .

x IPv4
IP
.

A , B , C , D , E :

x
x

x
x

0.0.0.0 = 00000000.00000000.00000000.00000000

255.255.255.255 = 11111111.11111111.11111111.11111111

255.255.255.255 IP
11111111.11111111.11111111.11111111
.

0.0.0.0 IP
00000000.00000000.00000000.00000000
.

IP
8 32
8 0
8
:

255.255.255.255

0.0.0.0

- : Decimal System
0 255
:

IP 8
32 .

11111111.11111111.11111111.11111111

00000000.00000000.00000000.00000000

Octet 8 bits Octet 8 bits Octet 8 bits Octet 8 bits

- :Binary System 0 1
:

x IP
.

A , B , C , D , E
A , B , C D , E
:
A B C
.
:Class D .
:Class E .

IP Address Class

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

2^7 = 128

2^6 = 64

2^5 = 32

2^4 = 16

2^3 = 8

2^2 = 4

2^1 = 2

2^0 = 1

0 7 :



8 .

: . IP

128 64 32 16 8 4 2 1

N Network H Host C
2,097,152 C
255 .

192.168.1.0

N. N. N. H

x C
, :

: Class C C 192 . 223

Subnetmask B 255.255.0.0 .

N Network H Host B
65,534 B
16,384 .

150.1.0.0

N. N. H. H

x B
, :

: Class B B 128 . 191

Subnetmask A 255.0.0.0 .Subnetmask

N Network H Host A
126 A 16,777,216
.

10.0.0.0

x A
:
N. H. H. H

x
.



IP
.

8 byte 8 bit

8 IP

.

Subnetmask C 255.255.255.0 .

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

8
:

x 1
1
0 .
x

:

0 0 0 0 0 0 0 1

128 64 32 16 8 4 2 1

x 50
50
32 16 2 50
32 + 16 + 2=50 50
1 32 , 16 , 2
0 .

1 1 0010

0 0

128 64 32 16 8 4 2 1

x 168
168
128 64 168
128 32 8
128 + 32 + 8 = 168
168 1
128 32 8 .

0 1 0 0 000

128 64 32 16 8 4 2 1

192

192
128 + 64 1

.

Eng. Ahmad H Almashaikh

x 192
192 192 128
128 1 128
128 192 192
192 64
1 , 64 128 + 64= 192

0 0 0 000

1 1

128 64 32 16 8 4 2 1

- :

192.168.50.1
8
.
- .
-
0 . 1
- .

8
byte . 32 byte

255.255.255.255

255 = 128 + 64 + 32 + 16 + 8 + 4 + 2 + 1

255 8 byte :

1 1 1 1 111

128 64 32 16 8 4 2 1

Eng. Ahmad H Almashaikh

:


.

- ISP

Public IP Address .

255.255.255.255

- General Broadcast Address

Reserved Multicast Address 224.0.0.0

-
.

- : E 239 254

169.254.0.0

APIPA = Automatic Private IP Addressing

- APIPA
. IP

127.0.0.1

- Loop Back Interface


.

-
-
-
-

1.0.0.0 : A 126.255.255.254
: B 172.16.0.0 172.31.255.254
192.168.0.0 : C 192.168.255.254
239.0.0.0 : D

- Private IPv4 Address

IPv4

Eng. Ahmad H Almashaikh

00000000 = 0
10000000 = 128
11000000 = 192
11100000 = 224
11110000 = 240
11111000 = 248
11111100 = 252
11111110 = 254
11111111 = 255


IP

:

-----------------------------------------------------------------------------------

Binary System: 01111110.11111111.11110000.00010100

Decimal System :126.255.240.20

126.50.1.1 A :

Binary System: 10101100. 00010000.00000001.00000001

Decimal System :172.16.1.1

172.16.1.1 B :

Binary System: 11000000. 10100000.00110010.00000001

Decimal System :192.168.50.1

192.168.50.1
:

Eng. Ahmad H Almashaikh

-
-
-
-

x
-

IP
A

Subnetting

.
:
Broadcast



Broadcast
.
.
.
.
.

:Subnetting
IP .


IP Subnetting

Eng. Ahmad H Almashaikh

-
. VLSM
- Subnet Mask
.
- Packet Default Router
.

Class Less

- IP Classes .
- Subnet Mask
.
- Packet
. Routing Table

Class Full

x
x

/8
/16
/24
/8

Class Full / Class Less :


: Class Full
ip: 10.0.0.0 / 8 /8
ip
. Class Full
: Class Less
Subnetting VLSM

ip : 10.0.0.0/16
Class Less

.
: Class Full / Class Less

Class A
Class B
Class C
Class D

0-127
128-191
192-223
224-239


255.0.0.0
255.255.0.0
255.255.255.0
255.0.0.0

Class Full / Class Less

Eng. Ahmad H Almashaikh

10.31.255.255

10.31.255.254

10.63.255.255

10.95.255.255

10.127.255.255

10.127.255.254

10.96.0.1

10.96.0.0/11 255.224.0.0


10.95.255.254


10.64.0.1

10.64.0.0/11 255.224.0.0

10.63.255.254

10.32.0.1

10.32.0.0/11 255.224.0.0

10. 31.0.1

10.0.0.0/11 255.224.0.0

10.0.0.0/11 255.224.0.0

Eng. Ahmad H Almashaikh

:Block size
Block size 32
64 Block size .

2^1 = 2 2
2^2 = 4 4
2^3 = 8 8
8 3
5

.
Subnet mask 255.224.0.0
. 128 + 64 + 32 = 224
CIDR /8
/11 11 /8
. 1 + 1 + 1 + 8 = 11

1 1 1

128 64 32 16 8 4 2 1

1
^
5 .
128 , 64 , 32 1
^
:

1 1 1

128 64 32 16 8 4 2 1

10.0.0.0/8 255.0.0.0

x
.
) 10.0.0.0/8 ( A 10.0.0.0/8 255.0.0.0
8
.

8 :

Eng. Ahmad H Almashaikh

CIDR /24
/27 27 /24
. 1 + 1 + 1 + 24 = 27
x A
.

Subnet mask 255.255.255.224


. 128 + 64 + 32 = 224

2^1 = 2 2
2^2 = 4 4
2^3 = 8 8
8

.

1 1 1

128 64 32 16 8 4 2 1

128 , 64 , 32 1
^ :

1
^
8 .

1 1 1

128 64 32 16 8 4 2 1

192.168.1.0/24 255.255.255.0


8 :

) 192.168.1.0/24 ( C 192.168.1.0/24 255. 255. 255.0


8
.

Eng. Ahmad H Almashaikh

10.159.255.255

10.191.255.255

10.223.255.255

10.255.255.255

10.255.255.254

10.224.0.1

10.224.0.0/11 255.224.0.0

10.223.255.254

10.192.0.1

10.192.0.0/11 255.224.0.0

10.191.255.254

10.160.0.1

10.160.0.0/11 255.224.0.0

10.159.255.254

10.128.0.1

10.128.0.0/11 255.224.0.0

Eng. Ahmad H Almashaikh

192.168.1.159

192.168.1.158

192.168.1.31

192.168.1.63

192.168.1.95

192.168.1.255

192.168.1.254

192.168.1.127

192.168.1.126


192.168.1.255

192.168.1.96/27 255.255.255.224

192.168.1.97

192.168.1.224/27 255.255.255.224

192.168.1. 223

192.168.1.222

192.168.1.94


192.168.1.193

192.168.1.64/27 255.255.255.224

192.168.1.65

192.168.1.192/27 255.255.255.224

192.168.1.191

192.168.1.62

192.168.1.190

192.168.1.32/27 255.255.255.224

192.168.1.30

192.168.1.1

192.168.1.0/27 255.255.255.224

192.168.1.0/27 255. 255. 255.224

192.168.1.33

192.168.1.161

192.168.1.160/27 255.255.255.224

192.168.1.129

192.168.1.128/27 255.255.255.224

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: 4 Colon
2005:5::100::70 Colon
.

2005:5:100::70



Colon :: :

2005:5:100:0:0:0:0:70


0005
:

2005:0005:0100:0:0:0:0:070

2005:0005:0100:0000:0000:0000:0000:070

x
IPv6 Address
Format :


64 bit Network ID
64 bit .Host

fec80:0000:0000:0000:0c41:1536:3f57:fef5 IPv6


BroadCast Any Cast .

Unicast, Multicast, Any Cast

: IPv6

Eng. Ahmad H Almashaikh

- 340
4.3 .

- DNS , BGP, OSPF, :


.DHCP RIPng, EIGRP ,IGMP , UDP ,TCP

- IP Header v6 IP Header v4
IP Header .

-
.

-
.

-
IPsec
IPsec .

- BroadCast
Any Cast
.

: IPv6

: IPv6 ) ( IPv4
IPv6
). (IPv4

x 128 bit
Octet 16
hexadecimal
16
.IPv6

Internet Protocol Version 6

IPv6

Eng. Ahmad H Almashaikh

: NAT
NAT-PT
.

: NAT Protocol Translation (NAT-PT) -



IPv4
IPv6


.

: Dual Stack - IPv4


IPv6

IPv4
IPv6
.

x IPv4 : IPv6

Eng. Ahmad H Almashaikh


IPv4 IPv6
, Transition IPv4 to IPv6

----------------------------------------------------------------------------------

Loopback interface
127.0.0.1 . :1

Loopback interface ::1 = 127.0.0.1 -

Multicast Address ff02::1 -


224.0.0.0
. ff02::1

Global Unicast Address = Public IP Address -



Public IP Address Global
.Unicast

Private IP Address
.Unique-Local Address

.Unique-Local Address = Private IP Address -

APIPA
.Link-Local Unicast Address

Link-Local Unicast Address = APIPA -

Private IPv6 Address

IPv6

Eng. Ahmad H Almashaikh

:IHL x IP 32 bit
. 4 bit

x :Version
IPv4
Header .4 bit

x
.

Version , IHL , Type of Service , Total Length , Identification ,


Flags , Fregment Offset , Time to live , Protocol , Header
Checksum , Source Address , Destination Address , Options ,
Padding .

x IPv4 Header 14 .

IPv4 Header . IPv6 Header

-----------------------------------------------------------------------------------

IPv4 Header / IPv6 Header

Eng. Ahmad H Almashaikh

:IPv6 Header 32 byte .40 byte

:IPv4 Header 32 byte .20 byte

IPv4 Header
IPv6 Header .

x IP Header Header
Header




Header
IPv4 Header IPv6 Header
.

IPv4 Header / IPv6 Header

-----------------------------------------------------------------------------------

: IPv6 Over IPv4 Tunels -


IPv6


IPv4


.

Eng. Ahmad H Almashaikh

Checksum, Option, Fragmentatio :

: Destination Address x IP
128 bit
128 bit .

: Source Address x IP
128 bit
32 bit . 128 bit

: Hop Limit x Time to live Hop


Limit .

: Next Header x Protocol Next


Header .

: Payload Length x Total Length


Payload Length .

: Flow Label x
.

: Traffic Class x Type of Service


.Traffic Class

x :Version
IPv6
Header .4 bit

:IPv6 Header
IPv4 Header 14 8
8 .

IPv6 Header

Padding x :Data


.
-----------------------------------------------------------------------------------------

Eng. Ahmad H Almashaikh

:Options x
0 .32

: Destination Address x IP
. 32 bit

: Source Address x IP
. 32 bit

: Header Checksum x


.

: Protocol x
. 8 bit

: Time to live x



. 8 bit

: Fregment Offset x

. 13 bit

: Flags x
. 3 bit

: Identification x
. 16 bit

: Total Length x
.16 bit

: Type of Service x

. 8 bit

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

238.................................................................Dynamic Routing IPv6

220............................................................................Passive Interface

217.............................................................Autonomous System (AS)

215...........................................................EIGRP Metric Calculation

213...........................................................

204.............Enhanced Interior Gateway Routing Protocol EIGRP

155...................................................Open shortest Path First OSPF

141.............................................Routing Information Protocol RIP

141..................................................................Dynamic Routing IPv4

124.......................................................................Static Routing IPv4

119................................................................................Routing

111............................................Remote Access , Telnet

104.......................................................................Password Recovery

98...........................................................................Router Passwords

95......................................................Install packet tracer

93.................................................................Basic Command Router

91...............................Cisco Modes DevicesNetwork Architectures

90.......................................................

88................................................ Router Devices

Routing Networks

Routing Networks

Level ( 2 )

123456-

CPU = Central Processing Unit


Memories
RAM = Random access memory
ROM = Read-Only memory
Flash Memory
NVRAM = Non Volatile Random access memory

-
-
-
-
-
-

: Router Components -

x
.

Devices Router

Eng. Ahmad H Almashaikh

-
-
-
-
-
-

: Boot Sequence
Post = Power on self-Test
Boot Strap
ISO = Internetwork OS
RAM
Startup Configuration
NVRAM RAM
Running Configuration
.

:



.

Cisco Router Boot Sequence

Eng. Ahmad H Almashaikh

:
) (DCE ) (DTE
) (Cisco 2522 .
) (DCE/DTE

: Port Serial
DCE = Data Communication Equipment -
DTE = Data Terminal Equipment -

:Console Port
Console

.
:Auxiliary Port

.
:LAN Interfaces
.
:WAN Interfaces

.

: Interface

Eng. Ahmad H Almashaikh

:NX-OS .

:IOS-XR
.

Router (config) #

Router (config-router) #

Router (config) # router eigrp 1

Routing Protocol Mode

Router (config-subif) #

Router (config) # interface fast Ethernet 0/1.1

)( Sub Interface Configuration


Mode

Router (config-if) #

Router (config) # interface fast Ethernet 0/1

Interface Configuration Mode

Router # Config Terminal

:IOS XE IOS

.

Router #

Router > Enable

Global Configuration Mode

:IOS .

> Router

Privilege Exec Mode

Cisco IOS

- - . - . .

Cisco Modes Devices

User Exec Mode

> Rommon 1

Rommon Mode

Continue with configuration dialog? [Yes/no]:

Setup Mode

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

>?
> enable
# disable
> terminal history size

All Command
To get to Privileged Mode
To get back to User Mode
To set the command buffer
size
Router > terminal no editing
To disable advanced editing
features
Router > show history
To show the command buffer
Router # config t
Enter global configuration
mode
Router # show version
View IOS version
Router # show interface
Display interfaces on router
and their status
Router # show ip interface brief
Check interface status
Router # show ip protocol
Display ip protocol info
Router # show protocol
Display which protocols are
configured on the router
Router # show flash
View IOS version, size of
IOS, and free space in
FLASH
Router # show running-config
View current configuration
file (RAM)
Router # show startup-config
View saved configuration file
(NVRAM)
Router # show processes cpu
View CPU utilization
Router # show processes
View info about programs in
RAM
Router # reload
Reboot the router and reload
the startup config from
NVRAM
Router(config) # no ip routing
Disable IP routing on a router
(enabled by default)
Router(config)# hostname Router1 Give the router a hostname
Ctrl+A
To move to the beginning of
the command line

Router
Router
Router
Router

Router

Basic Command

Eng. Ahmad H Almashaikh

To move to the end of the


command line
Ctrl+F
To move forward one
character
Ctrl+B
To move back one character
Ctrl+W
To move forward one word
Ctrl+U
To erase a line
Ctrl+R
To redisplay a line
Router # Ctrl+Z
Ends configuration mode and
returns to privileged mode
Router # show ip route
View the IP routing table
Router # debug ip rip
View RIP Debug
Router # debug ip igrp events
View IGRP Debug
Router(config) # no router rip
Disable RIP routing
Router # copy flash tftp
Backup IOS to file server
Router#copy tftp flash
Upgrade the IOS from the
file server
Router # copy running-config tftp Copy running config file
from RAM to TFTP
Router # copy tftp running-config Copy startup config file from
TFTP to RAM
Router # copy tftp startup-config Copy startup config file from
TFTP to NVRAM
Router # erase startup-config
Erase the configuration file in
NVRAM [run initial config
dialog]
Router(config)# boot system flash Tell router which IOS file in
(ios_filename)
Flash to boot from
Router(config) # boot system tftp Tell router which IOS to
(ios_filename) tftp_ip_address
request from the TFTP server
(fallback)
Router(config) # boot rom
Tell router to boot from IOS
in ROM
Routerconfig) # service password- Passwords can be encrypted
encryption
Routerconfig) # no service
To de-encrypt the passwords
password-encryption

Ctrl+E

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

https://www.itechtics.com/download-cisco- ..........
/packet-tracer-6-2-free-direct-download-link

-
-
-
-


. Next
.Next
Next . Install
.
.Finish

......

: Packet Tracer ,


.

Install packet tracer

Eng. Ahmad H Almashaikh

No :


Console
.
Console

.

x :

And Password Recovery

Router Passwords

Eng. Ahmad H Almashaikh

Router -
Switches -
Hubs -
Wireless Devices -
Connection -
End Devices -
-
-
-
-
-
-
-

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

Router (config-line) # login

Router (config-line) # Password cisco456

Router (config) # line aux 0

- : Aux

Ctrl + C Router # .

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

. Port Console - Aux .

Router (config-line) # login

Router (config-line) # Password cisco123

Router (config) # line console 0

Eng. Ahmad H Almashaikh

Router # show running-config

Router (config) # service password-encryption

Router # config t

- : .

Service password-encryption

Router > enable

Router (config) # enable password cisco789

Router # config t

Router > enable

. Port Aux - .

: Enable

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Password Recovery

Enter
, Enter
.
-------------------------------------------------------------------------------

. Enable

.

Router (config) # enable secret cisco789



:
Router # copy running-config startup-config

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Rommon > reset

Rommon > confreg 0x2142 :

Ctrl + C . Rommon

Eng. Ahmad H Almashaikh

: Ctrl
+ C . Rommon

:
.

-
-

-
-

Console .


Ctrl + C .
.Rommon

Rommon > confreg 0x2142 Enter
Rommon > reset
.

Eng. Ahmad H Almashaikh

Router (config) # no enable secret

Router # show running-config

Router # Copy running-config startup-config

Router (config) # end

Router (config) # config-register 0x2102

Router (config) # no service password-encryption

Router # copy startup-config running-config


:

Router (config-line) # exit

Aux

No :

Router > enable

Router (config-line) # no password

Router (config) # line aux 0

Router (config-line) # exit

Console

Router (config-line) # no password

Router (config) # line console 0

Enter .

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

. Console Port , Aux Port

Show running-config -

OK
.

Show running-config .
- Enable .

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh



vty
PC 2
. vty

Telnet Clients Telnet Serve r,


.
. Telnet
Local Logon
. Telnet

Telnet Server Telnet Clients .

) (Telnet TCP/IP TCP/IP


) (Telnet

Online
. ( Database , chat ) Services

: Telnet
TCP/IP

.

Remote Access , Telnet

: ) (Telnet ) (Telnet )(
:

) (Telnet ) (Telnet
.

LAB

x Telnet
Cisco Packet Tracer Student .

- Telnet TCP .Port 23

. Telnet
Source Telnet
.
. Telnet FTP Client
.Telnet
. Telnet POP Mail
POP
Mail . Post Office Protocol

- : Telnet

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router # show ip interface brief

Router > enable

No

Eng. Ahmad H Almashaikh

0/0
vty .

IP :192.168.1.1 -
Mask : 255.255.255.0 -
GY : 192.168.1.100 -

PC 2

, .

Interface FastEthernet 0/0 -

GY : 192.168.1.100 -

Mask : 255.255.255.0 -

.IP : 19.168.1.1 -

Eng. Ahmad H Almashaikh

Router (config) # line vty 0

Router # config t

Router > enable

Router # copy running-config startup-config

Router (config-line) # end

Router (config-line) # login

Router (config-line) # password cisco123

0 0 4

: - . vty

x vty :

vty .

192.168.1.100 0/0 up up .

Eng. Ahmad H Almashaikh

Router # config t

Router # show ip interface brief :

Ctrl + C

Router (config-if) # end

0/0 up

.

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.1.100 255.255.255.0

Router (config) # interface fastethernet 0/0

- :

Interface fast Ethernet 2 0/0 0/1 0/0


.

Eng. Ahmad H Almashaikh

Command Prompt DOS


.
- .

PC 2 Command Prompt :

vty

SSH
vty
.

:PC > telnet 192.168.1.100



. 789

- :

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

RIP v1, RIPv2

Distance Vector

Direct
Connected

IGRP

Static Routing

EIGRP

Default
Routing

Routing Table

Link Status

OSPF

Dynamic
Routing

x router
IP address
data link layer Ethernet token-ring
.
x
:

: Directly attached network IDs metric


.

-
-

: Network ID

: Network mask mask IP network
IP
: Gateway
: Interface Interface
"
Interface
: Metric

x :

Eng. Ahmad H Almashaikh

-
-

x
-

: Routing Table

) ( .
.
IP TCP/IP
.
IP
) (
) ( .
) (route print
) (command prompt
.route delete, route change , route add :
" .

x : Routing Table
Routing Table
Packet
.

x : Packet


Interface

Routing Table .

: Packet
.

: Routing

, Packet
.

Routing

Eng. Ahmad H Almashaikh

Classful Classless
, IP .

:Dynamic Routing - Interior


Gateway Protocols Exterior Gateway
Protocols
.

-
Distance Vector

IGRP RIP v1 RIP v2
.

-
Link Status Protocol

OSPF EIGRP
.

Dynamic Protocols

Packet
.

:Dynamic Routing -

Eng. Ahmad H Almashaikh

:Dynamic Routing -



,





.

:Default Routing -




, ) ( 1
" " S ip : 0.0.0.0 mask :
0.0.0.0 Gy : 192.168.1.100
.

:Static Routing -


,
" " S ) (Static
) (1 ) (0
.

:Direct Connected -

, " " C
) (Connected ) (0
.

- :

Eng. Ahmad H Almashaikh

Mask: 255.255.255.0 .

IP: 192.168.1.1 .

PC 0

f0/0 .

GY: 192.168.1.100

Mask: 255.255.255.0 .

IP: 192.168.1.0/24 .

x ) : Network ( 1

- .

- .

:Static Routing x Cisco Packet Tracer


Student
:

Static Routing IPv4

Eng. Ahmad H Almashaikh

Routing

x :

.

: Routed Protocols x Data



. Routing Table

:Routing Protocols x Packet


Network Layer 3 OSI
, Packet
.

x Routing Protocols
Routed Protocols :

Eng. Ahmad H Almashaikh

f0/1 . Router 0

Router 1 Router 1

Router 0 f0/1

x ) : Network ( 3

GY: 192.168.2.200 .

Mask: 255.255.255.0 .

IP: 192.168.2.1 .

PC 1

Eng. Ahmad H Almashaikh

GY: 192.168.2.200
f0/0 .

Mask: 255.255.255.0 .

IP: 192.168.2.0/24 .

x ) : Network ( 2

GY: 192.168.1.100 .

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

192.168.1.100 . f0/0 . Router (config-if) # exit - f0/1 .10.0.0.1

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.1.100 255.255.255.0

Router (config) # interface fastethernet 0/0

Eng. Ahmad H Almashaikh

No ................
- 192.168.1.0/24

Router 0

-------------------------------------------------------------------------------

Mask: 255.0.0.0 .

.Router 1

GY: 10.0.0.2 f0/1

.Router 0

GY: 10.0.0.1 f0/1

IP: 10.0.0.0/8 .

Eng. Ahmad H Almashaikh

x .

192.168.2.200 . f0/0 . Router (config-if) # exit - f0/1 .10.0.0.2

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.2.200 255.255.255.0

Router (config) # interface fastethernet 0/0

Router # config t

Router > enable

- 192.168.2.0/24

No ................

Router 1

-----------------------------------------------------------------------------------

10.0.0.0/8
Router 1 .

Eng. Ahmad H Almashaikh

10.0.0.1 . f0/1
. Router (config-if) # end
RAM .NVRAM
Router # copy running-config startup config

Router (config-if) # no shutdown

Router (config-if) # ip address 10.0.0.1 255.0.0.0

Router 0 f0/0 192.168.1.0/24 f0/1

Router # config t

Router > enable

Router (config) # interface fastethernet 0/1

Eng. Ahmad H Almashaikh

Router # show running-config

Router # show ip protocol

Router # show ip route


Up or Down

Router # show ip interface brief

x
:

x

192.168.1.0/24 192.168.2.0/24
10.0.0.0/8

Static Routing

.

Router 1 f0/0 192.168.2.0/24 f0/1


10.0.0.0/8 .

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

10.0.0.2 . f0/1
. Router (config-if) # end
RAM .NVRAM
Router # copy running-config startup config

Router (config-if) # no shutdown

Router (config-if) # ip address 10.0.0.2 255.0.0.0

Router (config) # interface fastethernet 0/1

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

Router # copy running-config startup-config

Router (config) # end


10.0.0.2
192.168.1.0/24 192.168.2.0/24

. Router 1

Router (config) # ip route 192.168.2.0 255.255.255.0 10.0.0.2

Static Routing : - Router 0 .............

192.168.1.0/24
.

: Router 1

Router # show ip rout

Eng. Ahmad H Almashaikh

10.0.0.0/8 192.168.1.0/24
" " C ,
192.168.2.0/24


192.168.1.0/24 Router 1
Router 1
:

Router 0

Router 0

:
Router # show ip route

Eng. Ahmad H Almashaikh

Static Routing : - Router 1 .............

192.168.1.0/24
.

Router 1

Router # show ip route

Router 1

:

-----------------------------------------------------------------------------------

[1/0] 192.168.2.0/24 Next Hop


] [1/0

.

Router 0 Router1
192.168.1.0/24 .

Eng. Ahmad H Almashaikh

192.168.2.0/24 10.0.0.2/8

: Router 0


Router # show ip route
192.168.2.0/24 .

Router 0

Eng. Ahmad H Almashaikh

Router 0 :

Router 0

ping 192.168.2.200 packet


5 packet 192.168.2.200
:

Router 0 Ping 10.0.0.2 Router 1


Success ping
5 packet packet 4 packet.

x 192.168.1.0/24 192.168.2.0/24
10.0.0.0/8 .
x

Ping .
x Ping
:

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

Router 1


Router # show ip route
192.168.2.0/24 .

Router # copy running-config startup-config

Router (config) # end

Router (config) # ip route 192.168.1.0 255.255.255.0 10.0.0.1

Eng. Ahmad H Almashaikh

Router (config) # ip route 192.168.1.0 255.255.255.0 10.0.0.1

x

.

Router (config) # ip route 192.168.1.0 255.255.255.0 10.0.0.1

x Static Routing

. Static Routing

-------------------------------------------------------------------------------

PC 0 192.168.1.1 4 packet .

ping PC 1 192.168.2.1 ping PC 0


192.168.1.1 :

PC 1 192.168.2.1 4 packet .

Eng. Ahmad H Almashaikh

PC 0

ping PC 0 192.168.1.1 ping PC 1


192.168.2.1 :

Router 1

Eng. Ahmad H Almashaikh

RIP
, RIP
.......

: Distance Vector
RIP 15 15
15
15 . Hop Count

RIP2
) (OSPF
IS-IS RIP IPv6
RIPng) RIP ( .1997

RIP = Routing Information Protocol

Dynamic Routing IPv4

x


.

Router (config) # ip route 192.168.1.0 255.255.255.0 f0/1

: RIP IGP

RIP
.

x 15 .
x RIP
.

x ) (Metric Hop Count


.

x RIP . 120

x
.Routing Table

x Distance Vector
. Protocol

x Application
. Layer

:RIP
. RIP
) ( .
15 RIP.
RIP . RIP
UDP . 520.

: RIP
) (Bellman-Ford
1967 . ARPANET

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: Metric
AD metric
RIP metric
EIGRP
Bandwidth, Delay, Reliability, Load
metric , OSPF bandwidth
AD metric.

x Administrative distance .

Eng. Ahmad H Almashaikh

x : Administrative distance

Administrative distance
Routing protocol Administrative
distance
AD
.

x PC 1
192.168.1.0/24
192.168.4.0/24 PC 4

,
.

Eng. Ahmad H Almashaikh

224.0.0.9

120

15


RIPv2

x RIPv2 224.0.0.9

x RIPv1
x 255.255.255.255
4 4
RIPv1 1 2
RIPv1 1
2 Broadcast 255.255.255.255
1
2 3 4 3 4 RIPv1
3 IS-IS 4
OSPF

1 2
RIPv1
RIPv2 .

255.255.255.255

120

15

RIPv1

RIPv2

- ( RIPv1 , RIPv2 , RIPng ) RIP :

Eng. Ahmad H Almashaikh

AD metric

RIP Table AD EIGRP EIGRP


192.168.9.0 3
metric .

EIGRP RIP show ip route Router 0 :

Eng. Ahmad H Almashaikh

x
-
-
-


RIPv2 ........
:
. 192.168.5.0/24
. 192.168.10.0/24
10.0.0.0/8
192.168.5.0/24 192.168.10.0/24
.RIPv2
RIPv2 R1 R2

.
R1 R2


.

RIP

RIP Configuration

Router (config-router) # network 100.0.0.0

Router (config-router) # network 200.0.0.0

Router (config-router) # version 2

Router (config) # router rip

Router # config t

Router > enable

- : RIP Configuration

R1 R2
RIPv2 R1 R2
224.0.0.9
RIPv2 .

: RIP - Update Timer


30
RIP
30 .

Distance Vector Protocol RIPv1 Classfull VLSM . Subnetting


RIPv2 Classless VLSM . Subnetting
: RIP 30

RIP

EIGRP
OSPF .

RIPv2

RIPv1

- Route Invalid Timer


180
.
- Hold Down Timer
180 .
- Route Flash Timer
240
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router (config-if) # end

Router (config-if) # no shutdown

Router (config-if) # ip address 10.0.0.1 255.0.0.0

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.5.1 255.255.255.0

Router (config) # interface fastethernet 0/0

Router # config t

Router > enable

: R1 -

Eng. Ahmad H Almashaikh

Router # copy running-config startup-config

Router (config-router) # end

R1 RIPv2 . R2

Router (config-router) # network 10.0.0.0

Router (config-router) # network 192.168.5.0

Router (config-router) # version 2

Router (config) # router rip

Router # config t

. RIPv2

R1

Eng. Ahmad H Almashaikh

.RIPv2

Router # show ip route

192.168.10.0/24 . ( R ) , RIPv2 10.0.0.2


-------------------------------------------------------------------------------

R1

RIPv2

: R2 R1
Router # show ip route

Router # copy running-config startup-config

Router (config-if) # end

R2

Router (config-router) # end

Router (config-if) # no shutdown

Router (config-if) # ip address 10.0.0.2 255.0.0.0

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.10.1 255.255.255.0

. R2 RIPv2 -

Router (config-router) # network 10.0.0.0

Router # config t

Router (config) # interface fastethernet 0/0

Router (config-router) # network 192.168.10.0

Router (config-router) # version 2

Router (config) # router rip

Router # config t

Eng. Ahmad H Almashaikh

Router > enable

: R2 -

-------------------------------------------------------------------------------

Eng. Ahmad H Almashaikh

-----------------------------------------------------------------------------------

: RIP EIGRP
OSPF

RIP
EIGRP OSPF
.

Packet Packet .

-----------------------------------------------------------------------------------

-----------------------------------------------------------------------------------

!!!!! .

R1

x R1 Router # ping 10.0.0.2


R2 !!!!!
..... .

10.0.0.1 10.0.0.2 Ping R1


R2 Packet

.

-----------------------------------------------------------------------------------

192.168.5.0/24 10.0.0.1 , RIPv2 ) . ( R

R2

!!!!!

R2

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

x OSPF .OSI Layer


x .IGP = Interior Gateway Protocol

OSPF

OSPF UDP
. 89
RIP
(BGP) . OSPF .




OSPF.
(ABR). ABR

.

) 0( 0.0.0.0
OSPF

OSPF
.
32
IPv4.

) (
.
.

OSPF
.

OSPF -
- .


) (LSDB .
LSDB OSPF

Eng. Ahmad H Almashaikh

: OSPF )(IP
) ( .
.

) (BGP
.

: link
state .

OSPF IGP = Interior


Gateway Protocol .


Autonomous System . OSPF

) : ( OSPF link
state . Link State
Routing

Open shortest Path First

OSPF

Eng. Ahmad H Almashaikh

- Routing Table OR Forwarding Database

Router # show ip ospf database



,



,
OSPF




.

- Topology Table LSDB


= Link State Data Base

Router # show ip ospf neighbors

OSPF


OSPF .

Eng. Ahmad H Almashaikh

OSPF Tables OSPF

- Adjacency Database OR Neighbor Table

x
x
x
x
x
x
x
x
x

x
x
x
x

.Standard
. Link State Protocol
.Open Source
SPF = Shortest Path First OR Dijikstra
.Algorithm
.IP = Internet Protocol
IPx . Apple Talk
SPF .
. Has Unlimited hop count
.
.Administrative Distance 110
VLSM . Subnetting
Classless .
4 Load
.Balancing to 4 equal Paths
Triggerd Update and
.Periodic Update
: ) (Topology Table
) (Neighbor Table ). (Routing Table

.Area
.Cost
it is the Metric .



.
OSPF OSPF Routers
224.0.0.5 . OSPF DR 224.0.0.6

Eng. Ahmad H Almashaikh

Area 0
. Backbone Router

Backbone Router -

OSPF - :

- 5 :

OSPF
.

OSPF Routers
OSPF

-----------------------------------------------------------------------------------

Area 0 Area 1
Area 0 .

Regular Area OR Non backbone Area -


Area 1 , Area 2 Area 0 Area 1 ,
. Area 2

Backbone Area OR Transit Area -

- : Area

Eng. Ahmad H Almashaikh

. Area 0

Area 0

Area 1 , Area 2 , Area 3

Area 0

Area 0

Area x : OSPF

.Area0

OSPF Area , OSPF

-----------------------------------------------------------------------------------

Router # show ip ospf route

Eng. Ahmad H Almashaikh


Frame Relay . MPLS

NBMA = No Boradcast Maulti-access Network -


DR . DBR

BMA = Boradcast Maulti-access Network -

OSPF
.

Point to Point Network -

OSPF

OSPF Networks Types

Eng. Ahmad H Almashaikh

(BDR) :
) ( DR
) . ( DR

Backup Designated Router = BDR -

(DR):
.

) (DR ) (NBMA .
NBMA
.

Designated Router = DR -

OSPF OSPF
OSPF
OSPF .

Autonomous System Border Router = ASBR -

Area
Area Area 0
Area 100 Area 0 Area 100
ABR .

Area Border Router = ABR -

Area 1 Backbone
Router . Area 1

Internal Router -

Eng. Ahmad H Almashaikh

:Two Way State -


Hello Packet
Unicast Reply Router ID

Adjacency
Database OR Neighbor Table Two
.Way State

:Init State - OSPF


Hello Packets
OSPF
OSPF

Adjacency Database OR Neighbor
.Table

Eng. Ahmad H Almashaikh

: Down State -
OSPF

OSPF
Hello
Packets
Hello Packets 224.0.0.5 Multicast
Point to Point Broadcast

Frame Relay
.Unicast

OSPF



OSPF
5
.

OSPF

OSPF Neighbor Adjacencies

Eng. Ahmad H Almashaikh

) (2

:Exstart State -
DataBase Description DBD

.

-
Link-State Update LSU ..
Router LSAck
..
area .. Routers
. Full-State

- Router
..
up-to-date .. Link-
State Request LSR ..
LSR . Loading State

- DBD Link-
State Acknowledgment .LSAck

: Exchange State -
DBD Router ID
Summary DBD


Sequence numbers
. DBD

) (1

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: Router Priority -
OSPF ).Priority Default (1
:
Router # show ip ospf neighbor

Router ID
..........

Router # show ip ospf interface

Eng. Ahmad H Almashaikh

Router ID . Neighbor Adjacency Database

: Router ID -
OSPF . BMA

Hello Packets
.

x : Hello Packets
1- Router ID
2- Router Priority
3- Hello (default 10s for broadcast network, default 30s for nonbroadcast network) and dead (4 times of hello) timers.
4- Authentication password.
5- Area ID
6- Subnet Mask
7- Designated router and backup designated router is ip address
8- Known neighbours

: Hello Packets -

.

OSPF .
5 .
LSA 0x80000001 0x7FFFFFFF . LSA

OSPF Packet Types

OSPF

Eng. Ahmad H Almashaikh

: Area ID - Area 0
Area 100 .

Router # show ip ospf interface

:
.

-
default 10s for broadcast network
.
- PPP
MPLS Frame Relay
default 30s for non-broadcast network
.
- 40
4 itmes of hello 10
4
.



.
Router # show ip ospf interface

: Authentication password -
.

Hello (default 10s for broadcast network, default 30s for non- -
broadcast network) and dead (4 times of hello) timers.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

6- Checksum, 7-AuType, 8-Authentication, 9- Data

1-Version , 2- Type, 3-Packet Length , 4- Router ID , 5- Area ID,

x OSPF Packet Header


: DBD

:DBD Header
Header 31 Bit
Header Hello Packets
.

: DBD = Data Base Description - Packets



OSPF
Packets

Packet .

Eng. Ahmad H Almashaikh

: Known neighbours -8

.

Router # show ip ospf neighbor

.........

: Designated router and backup designated router is ip address


-
DR and BDR
.

: OSPF
Wildcard Mask Wildcard Mask .

: Subnet Mask -
.

Eng. Ahmad H Almashaikh

3-Advertising Router

2-Link State ID

1-Link State Type

x Link State Request


: LSR

.LSR

Header

Header 32 Bit

:LSR Header

: Data -

.

: Authentication -
.

: AuType -

.

: Checksum - .

: Area ID -
ID .

:Router ID -
OSPF .

:Packet Length - OSPF


.Header

x
x
x
x
x

Hello Packets .
Data base Description .
Link State Request .
Link State Update .
Link State Acknowledgment .

:Type -
:

:Version - OSPF
.

: LSR = Link State Request -


,

LSR




LSR

.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

x Link State Update


: LSU
1- LS Age
2- Options
3- LS Type
4- Link State ID
5- Advertising Router
6- LS Sequence Number
7- LS Checksum
8- Length
9- LSA body / LS type

:Advertising Router -

.

:Link State ID -
.

x Neighbor Table
.

x Routing Table
.

x LSDB
.

:Link State Type -


.

:LSU
Header Header 32 Bit
.

:LSU = Link State Update - Link State


Advertisemant
OSPF .LSU

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: LSA Type 2 = Network LSA x LSA


broadcast
.

:LSA Type 1 = Router LSA x LSA


LSA
.

LSA Type 11 = AS Opaque

LSA Type 10 = Area Local Opaque

LSA Type 9 = Intra Area Prefix

LSA Type 8 = External Attributes

LSA Type 7 = External LSA for NSSA

LSA Type 6 =Multicast OSPF LSA

LSA Type 5 = External LSA

LSA Type 4 = Summary LSA = ASBR LSA

LSA Type 3 = Summary LSA = ABR LSA

LSA Type 2 = Network LSA

LSA Type 1 = Router LSA

Types of link-state advertisements

Eng. Ahmad H Almashaikh

LSU LSA Link State Advertisemant


11 LSA .

: LSA body / LS type - LSA


LSA LSA Packet Header
LSA body / LS type
. LSA

: Length - LSA .

: LS Checksum - LSA LSA


.

: LS Sequence Number - LSA


LSA
.4 bits

:Advertising Router -
IP .4 bits

: Link State ID -
OSPF IP
.4 bits

: LS Type - LSA
.1 bits

: Options - OSPF
OSPF .1 bits

: LS Age - LSA
. 2 bits

Eng. Ahmad H Almashaikh

:LSAck
Header Header 32 Bit
.

:LSA Type 10 = Area Local Opaque x



.OSPF

: LSA Type 9 = Intra Area Prefix x


.

:LSA Type 8 = External Attributes x


BGP OSPF
OSPF OSPFv3
IPv6 address .

: LSA Type 7 = External LSA for NSSA x


. OSPF

: LSA Type 5 = External LSA x



Area
Area
.
: LSA Type 6 =Multicast OSPF LSA x
.

: LSA Type 11 = AS Opaque x


.

:LSAck = Link State Acknowledgement -



header LSA headers
LSA
LSA headers
.

. Types of link-state advertisements

: LSA Type 3 = Summary LSA = ABR LSA x


Area


Area
.

: LSA Type 4 = Summary LSA = ASBR LSA x


ASBR
Router ID ABR . ASBR

11 7
7 :

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router Dead Interval : 40 seconds


40
.

x Hello
Packets .OSPF Header

OSPF x

.background network
x


.
R1 R2



.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

LSA .
R2 LSA . LSU

R2 DBD R1 LSR R1
. R2

Eng. Ahmad H Almashaikh

OSPF Header LSA


,
,
OSPF IPv4
Src 10.0.0.1 . Dst 10.0.0.2
LSA Type 1 , LSA Type 2. LSA Type 3 ,

R2 DBD R2 :

Eng. Ahmad H Almashaikh

:RID - Router ID Priority


RID
OSPF
OSPF

10.10.10.10
11.11.11.11 DR
Router ID 11.11.11.11
DR BDR
.

:Priority - Priority
Priority Default 1 0
255 0
DR BDR
Priority Default 1 Priority Default 2
DR Priority Default 2
Priority Default 1 BDR
Priority Default 1
RID .

Attached Router
.


header LSA headers
LSA
LSA headers
.

x :

DR and BDR

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

:Loopback IP Address -




100.100.100.100
200.200.200.200
DR BDR
.

:224.0.0.5 x DRother
.
:224.0.0.6 x DR BDR
.

OSPF DR BDR . DRother

: DRother DR BDR DRother Two


, Way State DR BDR . Full State

: BMA
Frame
Relay PPP
DR
.BMA


DR DR
OSPF DR
Broadcast
.

:High Physical Interface -


fastehternet
giga ethernet OSPF
DR BDR .

OSPF DR BDR

OSPF











.
: DR


.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

x

OSPF


DR BDR 10.0.0.0/8
DR . BDR

x OSPF 7
.
x 7
Area :
. . 192.168.1.0/24
. . 192.168.2.0/24
. . 192.168.3.0/24
. . 192.168.4.0/24
. . 192.168.5.0/24
. . 192.168.6.0/24
. 10.0.0.0/8 Area 0
.

OSPF

OSPF Configuration, Network BMA

Eng. Ahmad H Almashaikh

-----------------------------------------------------------------------------------

Router # show ip ospf database

Router # show ip ospf neighbor

Router # show ip route

-----------------------------------------------------------------------------------

Router (config-router) # network 15.0.0.0 0.0.0.255 area 1

Router (config-router) # network 10.0.0.0 0.0.0.255 area 0

Process id

Router # config t

Router > enable

Router (config) # router ospf 1

- : OSPF Configuration

Subnet Mask Wildcard Mask :


: Subnet Mask x 255.255.255.0
: Wildcard Mask x 0.0.0.255

- Process id 1 65,535

OSPF RIP EIGRP Subnet Mask


RIP Wildcard Mask
, OSPF Process id
OSPF

Process
id .

Eng. Ahmad H Almashaikh

Router (config-if) # no shutdown


Router (config-if) # exit
Router (config) # router ospf 1
Router (config-router) # network 10.0.0.0 0.0.0.255 area 0
Router (config-router) # network 192.168.2.0 0.0.0.255 area 0
Router (config-router) # end
Router # copy running-config startup-config
R3 R2
.

Router (config) # interface fastethernet 0/0

Router (config-if) # ip address 10.0.0.1 255.0.0.0

Router (config-if) # no shutdown

Router (config-if) # exit

Router (config) # interface fastethernet 0/1

Router (config-if) # ip address 192.168.1.1 255.255.255.0

Router (config-if) # no shutdown

Router (config-if) # exit

Router (config-if) # no shutdown


Router (config-if) # exit

Router (config) # interface fastethernet 0/0

Router (config-if) # ip address 10.0.0.2 255.0.0.0

Router (config-if) # ip address 192.168.3.1 255.255.255.0

Router # config t

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router > enable

Router (config-if) # no shutdown

Router (config-if) # ip address 10.0.0.3 255.0.0.0

-----------------------------------------------------------------------------------

: R2 -

Router (config) # interface fastethernet 0/0

Router # config t

Router > enable

: R3 -

R2 R1
.

Router # copy running-config startup-config

Router (config-router) # end

Router (config-router) # network 192.168.1.0 0.0.0.255 area 0

Router (config-router) # network 10.0.0.0 0.0.0.255 area 0

-----------------------------------------------------------------------------------

Router (config-if) # ip address 192.168.2.1 255.255.255.0

Router # config t

Router (config) # router ospf 1

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Eng. Ahmad H Almashaikh

Router > enable

: R1 -

Eng. Ahmad H Almashaikh

Router (config) # interface fastethernet 0/0


Router (config-if) # ip address 10.0.0.5 255.0.0.0

Router # copy running-config startup-config

R4 R3
.

Router (config) # interface fastethernet 0/0


Router (config-if) # ip address 10.0.0.6 255.0.0.0

Router # copy running-config startup-config

R5 R4
.

Router # config t

Router (config-router) # end

Router > enable

Router (config-router) # network 192.168.4.0 0.0.0.255 area 0

Router (config-router) # network 10.0.0.0 0.0.0.255 area 0

Router (config) # router ospf 1

: R6 -

-----------------------------------------------------------------------------------

Router (config-if) # exit

Router (config-if) # no shutdown

R6 R5
.

Router # copy running-config startup-config

Router (config-router) # end

Router (config-router) # network 192.168.5.0 0.0.0.255 area 0

Router (config-router) # network 10.0.0.0 0.0.0.255 area 0

Router (config) # router ospf 1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.5.1 255.255.255.0

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # ip address 192.168.4.1 255.255.255.0

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 10.0.0.4 255.0.0.0

Router (config) # interface fastethernet 0/0

Router # config t

Router > enable

: R4 -

Router (config-if) # no shutdown

Router # config t

Router (config-router) # end

-----------------------------------------------------------------------------------

Router > enable

: R5 -

Eng. Ahmad H Almashaikh

Router (config-router) # network 192.168.3.0 0.0.0.255 area 0

Router (config-router) # network 10.0.0.0 0.0.0.255 area 0

Router (config) # router ospf 1

Eng. Ahmad H Almashaikh

Router # show ip route

Router > enable

- R2 :

x 7
R1
OSPF
OSPF

7 ,
. OSPF

R1

Eng. Ahmad H Almashaikh

Router # show ip route

Router > enable

- R1 :

OSPF O O . OSPF

-----------------------------------------------------------------------------------

R6
OSPF .

Router # copy running-config startup-config

Router (config-router) # end

Router (config-router) # network 192.168.6.0 0.0.0.255 area 0

Router (config-router) # network 10.0.0.0 0.0.0.255 area 0

Router (config-if) # exit

Router (config) # router ospf 1

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.6.1 255.255.255.0

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Eng. Ahmad H Almashaikh

R4

R2

Router # show ip route

Router > enable

R3 R4 R5 R6
:


10.0.0.0/8 Area 0

10.0.0.0/8
10.0.0.1 10.0.0.2
BMA
.

7 R2 .

R3

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

DR 192.168.1.1
R1
.
BMA Point-to-Point
.

R2

Router # show ip ospf interface

R2 .

R1 DR

DR R2
DR
BDR 192.168.3.1
.

R1

DR BDR
OSPF :

7 Backbond
Area 0 10.0.0.0/8 .

R6

R5
Router # show ip ospf neighbor

OSPF R1 :

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

Router # config t

Router > enable

Router (config-if) # ip address 10.0.0.2 255.0.0.0

Router (config) # interface fastethernet 0/0

- R2 :

-----------------------------------------------------------------------------------

R1 R2
.

Router # copy running-config startup-config

Router (config-router) # end

Router (config-router) # network 192.168.1.0 0.0.0.255 area 1

Router (config-router) # network 10.0.0.0 0.0.0.255 area 1

Router (config) # router ospf 1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.1.1 255.255.255.0

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 10.0.0.1 255.0.0.0

Router (config) # interface fastethernet 0/0

- R1 :

Eng. Ahmad H Almashaikh

R1
OSPF

.

. . 192.168.1.0/24
. . 192.168.2.0/24
. 150.0.0.0/8
.
x

OSPF


DR BDR 10.0.0.0/8
DR . BDR

x OSPF 3
.
x 3
Area :

OSPF

OSPF Configuration, Network Point-to-Point

Eng. Ahmad H Almashaikh


.Cisco Routing Protocol
EIGRP Enhance to IGRP
EIGRP .EIGRP
EIGRP
Link Status Protocol
.Distance Vector
Netxt Hop Count 224
. EIGRP
Dual
.
.

.Triggered Update
Periodic Update

.
.224.0.0.10
OSPF
EIGRP .
= Autonomous System
AS OSPF .Area
Administrative distance 90 EIGRP
EIGRP

.

Enhanced Interior Gateway Routing Protocol

EIGRP

Eng. Ahmad H Almashaikh

R2

!!!!! R2 .
DR . BDR
R1

R1 Ping R2 !!!!!
.....
...........R1

-----------------------------------------------------------------------------------

R2
.

Router # copy running-config startup-config

Router (config-router) # end

Router (config-router) # network 192.168.2.0 0.0.0.255 area 1

Router (config-router) # network 10.0.0.0 0.0.0.255 area 1

Router (config) # router ospf 1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.2.1 255.255.255.0

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Eng. Ahmad H Almashaikh

EIGRP .
5 .
- : Hello Packet





EIGRP




Hello Packets, Update Packet, Query Packet, Relpy Packet, ACK Packet

EIGRP Packet Types

EIGRP

Eng. Ahmad H Almashaikh

EIGRP Table

EIGRP

Router # show ip route

- Routing Table OR Global Routing Table

Router # show ip ospf topology


Metric .

- Topology Table

Router # show ip ospf neighbors


EIGRP

. EIGRP

- Neighbor Tabe

.
.
.MD5
.IP, Apple Talk , IPx

.
EIGRP UDP . TCP
.Network Layer 3
Summarization .
CIDR . VLSM
.Classless

Eng. Ahmad H Almashaikh

Header .
1- Version
2- Opcode
- Flags
- Sequence
- Ack
- Autonomous System Numbers
3- Check sum
4- TLVs / EIGRP Message
- :

: EIGRP Packet Header


Header Header 31 bit :

:Type / Length / Values Types -


EIGRP Message
.Message Format

: EIGRP Packet Header -


AS Header
Header 31 Bit
.

Eng. Ahmad H Almashaikh

: IP Packet Header - IP Packet


IP Source
Address IP Destination Address
.EIGRP

:Data Link Frame Header -


MAC
Destination Address MAC Source Address
.

x
.

1- Data Link Frame Header, 2- IP Packet Header, 3- EIGRP


Packet Header , 4- Type / Length / Values Types.

Encapsulated EIGRP Message :

: Hello Packets
EIGRP Message Format
.

Eng. Ahmad H Almashaikh

: ACK Packet -
.

:Version .
: Opcode
.
: Flags Header .
: Sequence .Header : Ack AS AS .
:Autonomous System Numbers .
: Check sum .
: TLVs
.
------------------------------------------------------------------------------ : Update Packet -


EIGRP


.

: Relpy Packet - . Query Packet

ACK

.
: Query Packet -


Dual ACK
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

EIGRP ,
AS AS 1
AS 1
.

x 7
.
1- Hello Packet
2- Hello + Update
3- Ack
4- Modify Topology Table
5- Update
6- Ack
7- Modify Topology Table

- 224.0.0.10 . Multicast

: Periodic Update
.

: Triggered Update
.

Triggered Update Periodic: Update

NBMA = Non Broadcast Multiaccess


Frame Relay , MPLS 60
180
.

BMA= Broadcast Multiaccess Network /


Point to -Point

Hello Packet 5
15 .

: EIGRP x
.

EIGRP Neighbor Adjacencies

EIGRP

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

EIGRP .
x .Successor
x .Feasible Successor

EIGRP Successor, Feasible Successor Routes

Eng. Ahmad H Almashaikh

EIGRP Metric Calculation

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

:Protocol Dependent Modules (PDM) x


EIGRP Network Layer 3
IPx
. AppleTalk

:Diffusion Update Algorithm (Dual) x


EIGRP


.

:Reliable Transport Protocol (RTP) x


Packet Packet
EIGRP
.

:Neighbor Discovery / Recovery x





Hello Packets
.

)Neighbor Discovery / Recovery (NDR


)Reliable Transport Protocol (RTP
)Diffusion Update Algorithm (Dual
)Protocol Dependent Modules (PDM

1234-

AS = Autonomous System

AS 100 AS 200 AS
AS
EGP , BGP . AS

x : Exterior Gateway Protocol



AS AS 100 AS 200

EGP
, BGP .

AS

AS .AS

x : Interior Gateway Protocol

- AS AS :

:AS

AS EIGRP
AS

Exterior .

EIGRP

EIGRP Key Technologies

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

x : EIGRP

.

f 0/1 R1 .HOST1

R1
HOST1
... R1
Router (config) # router eigrp 1
Router (config -router) # passive-interface fastethernet 0/1

Passive
Interface .



R2 R3
R1
.

: Load Balancing x .

:Load Balancing .

EIGRP

EIGRP Load Balancing

: Passive Interface
.

Passive Interface

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

Router (config) # router eigrp 1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.1.1 255.255.255.0

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 100.0.0.1 255.0.0.0

Router (config) # interface fastethernet 0/0

- R1 :



EIGRP

.

Eng. Ahmad H Almashaikh

Router (config-router) # exit

Router (config-router) # network 192.168.2.0

Router (config-router) # network 192.168.1.0

x EIGRP 7
.
x 7
AS :
. . 192.168.1.0/24
. . 192.168.2.0/24
. . 192.168.3.0/24
. . 192.168.4.0/24
. . 192.168.5.0/24
. . 192.168.6.0/24
. 100.0.0.0/8
.
. . AS 1

EIGRP

EIGRP Configuration, Network BMA

-----------------------------------------------------------------------------------

Router # show ip eigrp neighbors

Router # show ip eigrp topology

Router # show ip route

-----------------------------------------------------------------------------------

AS number 1

Router # config t

Router > enable

Router (config) # router eigrp 1

- : EIGRP Configuration

Eng. Ahmad H Almashaikh

Router (config) # interface fastethernet 0/0


Router (config-if) # ip address 100.0.0.3 255.0.0.0

Router # copy running-config startup-config

R2 R1
.

Router (config) # interface fastethernet 0/0


Router (config-if) # ip address 100.0.0.4 255.0.0.0

Router # copy running-config startup-config

R3 R2
.

Router (config-if) # no shutdown

Router # config t

Router (config- router) # end

: R3 -

Router > enable

: R4 -

-----------------------------------------------------------------------------------

R4 R3
.

Router # copy running-config startup-config

Router (config- router) # end

Router (config-router) # network 192.168.3.0

Router (config-router) # network 100.0.0.0

Router (config) # router eigrp 1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.3.1 255.255.255.0

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-router) # network 192.168.2.0

Router (config-router) # network 100.0.0.0

Router (config) # router eigrp 1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.2.1 255.255.255.0

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 100.0.0.2 255.0.0.0

Router (config) # interface fastethernet 0/0

Router # config t

Router > enable

: R2 -

Router (config-if) # no shutdown

Router # config t

Router (config- router) # end

-----------------------------------------------------------------------------------

Router > enable

Eng. Ahmad H Almashaikh

Router (config-router) # network 192.168.1.0

Router (config-router) # network 100.0.0.0

Eng. Ahmad H Almashaikh

Router (config- router) # end


Router # copy running-config startup-config

Router (config-if) # ip address 192.168.4.1 255.255.255.0

Router (config-if) # no shutdown

Router (config-if) # exit


Router (config) # router eigrp 1
Router (config-router) # network 100.0.0.0
Router (config-router) # network 192.168.6.0
Router (config- router) # end
Router # copy running-config startup-config

Router (config-if) # ip address 100.0.0.5 255.0.0.0

Router (config-if) # no shutdown

Router (config-if) # exit

Router (config) # interface fastethernet 0/1

Router (config-if) # ip address 192.168.5.1 255.255.255.0

Router (config-if) # no shutdown

Router (config) # router eigrp 1

Router (config-if) # no shutdown

Router (config) # interface fastethernet 0/0

R6
. EIGRP

Router (config-if) # ip address 192.168.6.1 255.255.255.0

Router # config t

Router (config-if) # exit

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 100.0.0.6 255.0.0.0

Router (config) # interface fastethernet 0/0

Router # config t

Router > enable

: R6 -

-----------------------------------------------------------------------------------

Router > enable

: R5 -

-----------------------------------------------------------------------------------

R5 R4
.

Router # copy running-config startup-config

Router (config- router) # end

Router (config-router) # network 192.168.4.0

Router (config-router) # network 100.0.0.0

Router (config) # router eigrp 1

R6 R5
.

Router (config-router) # network 192.168.5.0

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-router) # network 100.0.0.0

Eng. Ahmad H Almashaikh

Router (config-if) # exit

Eng. Ahmad H Almashaikh

Router # show ip route

Router > enable

R2 7 R2
.
100.0.0.0/8


100.0.0.0/8
100.0.0.1 100.0.0.2

BMA
.
x R3 R4 R5
R6
:

- R2 :

x R1
7 R1

EIGRP
EIGRP

7 ,
. EIGRP

R1

Router # show ip route

Router > enable

- R1 :

x : EIGRP D
D .EIGRP

R2

Router # show ip route



.
Router > enable

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

R4

R5

R3

R6

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router> enable

- R1 :

-
-
-

fec1::1/64
fec2::1/64
2001::1 /64

- : 3

- .

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

x
IPv6
.

-----------------------------------------------------------------------------------

Router (configt) # show ipv6 route

Router (configt) # ipv6 route fec0:1::/64 2005::2

Router (configt-if) # ipv6 address fec0::1/64

Router (configt) # interface fastethernet 0/0

Router (configt) # ipv6 unicast-routing

Static Router IPv6

-----------------------------------------------------------------------------------

IP Address v6 -
Static Router IPv6 -
Routing Information Protocol Next Generation (RIPng) -
Enhanced Interior Gateway (EIGRP) -
Open Shortest Path First (OSPFv3) -

IPv4
IPv6 :

-----------------------------------------------------------------------------------

x
7
100.0.0.0/8 EIGRP
.

Eng. Ahmad H Almashaikh

: R2 -

:R1

Router # copy running-config startup-config

Router (config-if) # end

Router (config-if) # no shutdown

Router (config-if) # ipv6 address fce1::1/64

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ipv6 address 2001::1/64

Router (config) # interface fastethernet 0/0

Router (config) # ipv6 unicast-routing

Router # config t

Eng. Ahmad H Almashaikh


: R2

Router # copy running-config startup-config

Router (config-if) # end

Router (config-if) # no shutdown

Router (config-if) # ipv6 address fce2::1/64

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ipv6 address 2001::2/64

Router (config) # interface fastethernet 0/0

Router (config) # ipv6 unicast-routing

Router> enable
Router # config t

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

R1 R2
R1


Ping :
R2 R1 !!!!! .

R2
:R2

Router (config) # do show ipv6 route

Router (config) # ipv6 route fec1::/64 2001::1

R2 :

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

C

S
S Static L
APIPA

FEC1::2/64
FEC2::2/64
.2001::1/64

R1
: R1

Router (config) # do show ipv6 route

Router (config) # ipv6 route fec2::/64 2001::2

- R1 :

Eng. Ahmad H Almashaikh

Router (config) # show ipv6 router

Router (config-if) # exit

Router (config-if) # ipv6 rip 1 enable

Router (config) # interface fastethernet 0/0

Router (config-rtr) # exit

.
.
.

fec1::1/64
fec2::1/64
2001::1 /64

- : 3

- .

-----------------------------------------------------------------------------------

x RIPng
Process ID Process ID
.

-----------------------------------------------------------------------------------

Process ID

Router (config) # ipv6 router rip 1

Router (config) # ipv6 unicast-routing

x : RIPng

:RIPng x RIP RIPng


RIPng
RIPng Port
521 UDP Process ID
. Multicast Group FF02::9

)(RIPng

Routing Information Protocol Next Generation

Dynamic Routing IPv6

Eng. Ahmad H Almashaikh

x

. EIGRP , OSPFv3 , RIPng

IPv6 :

Eng. Ahmad H Almashaikh

- R2 :

RIPng :R1

Router # copy running-config startup-config

Router (config-if) # end

Router (config-if) # no shutdown

Router (config-if) # ipv6 rip 1 enable

Router (config-if) # ipv6 address fec1::1/64

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ipv6 rip 1 enable

Router (config-if) # ipv6 address 2001::1/64

Router (config) # interface fastethernet 0/0

Router (config-rtr) # exit

Eng. Ahmad H Almashaikh

Router (config) # ipv6 router rip 1

Router (config) # ipv6 unicast-routing

Router # config t

Router> enable

- R1 :



RIPng

Eng. Ahmad H Almashaikh

R2 RIPng . R

Router (config) # show ipv6 route

R2 RIPng .

R1 RIPng R
] [120/2 .

Router (config) # show ipv6 route

Router (config) # ipv6 router rip 1

Router (config) # ipv6 unicast-routing

x RIPng
:R2

Router # copy running-config startup-config

Router (config-if) # end

Router (config-if) # no shutdown

Router (config-if) # ipv6 rip 1 enable

Router (config-if) # ipv6 address fec2::1/64

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ipv6 rip 1 enable

Router (config-if) # ipv6 address 2002::1/64

Router (config) # interface fastethernet 0/0

Router (config-rtr) # exit

Router # config t

Router> enable

x RIPng


R1 :

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router (config) # ipv6 router ospf 1

Router (config) # ipv6 unicast-routing

Router # config t

Router> enable

Router (config) # interface fastethernet 0/1

Router (config-rtr) # exit

Router (config-rtr) # router-id 100.100.100.100

- R1 :



OSPFv3
.

Eng. Ahmad H Almashaikh

Router (config) # show ipv6 route

Router (config-if) # exit

Router (config-if) # ipv6 ospf 1 area 0

Router (config) # interface fastethernet 0/0

Router (config-rtr) # exit

Router (config-rtr) # router-id 200.200.200.200

.
.
.

fec1::1/64
fec2::1/64
2001::1 /64

- : 3

- .

-----------------------------------------------------------------------------------

x OSPFv3
Process ID
Area ID
.

-----------------------------------------------------------------------------------

Process ID

Router (config) # ipv6 router ospf 1

Router (config) # ipv6 unicast-routing

x : OSPFv3

:OSPFv3 OSPF
OSPF OSPFv3

IPsec Authentication Encryption
FF02::5 / FF02::6
OSPFv3 OSPF
.224.0.0.5 / 224.0.0.6

)Opne Shortest Path First (OSPFv3

Eng. Ahmad H Almashaikh

Router (config-if) # ipv6 address fec2::1/64


Router (config-if) # ipv6 ospf 1 area 0
Router (config-if) # no shutdown
Router (config-if) # end
Router # copy running-config startup-config
---------------------------------------------------------------------------------- OSPFv3 x


: R1

Router (config-if) # ipv6 ospf 1 area 0

Router (config-if) # no shutdown

Router (config-if) # exit

Router (config) # interface fastethernet 0/0

Router (config-if) # ipv6 address fec1::1/64

Router (config-if) # ipv6 ospf 1 area 0

Router (config-if) # no shutdown

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ipv6 ospf 1 area 0

Router (config-if) # ipv6 address 2001::2/64

Router (config) # interface fastethernet 0/1

Router (config-rtr) # exit

Router (config-rtr) # router-id 200.200.200.200

Router (config) # ipv6 router ospf 1

Router (config) # ipv6 unicast-routing

Router # config t

Router> enable

: R2 -

-----------------------------------------------------------------------------------

.OSPFv3 -

Router # copy running-config startup-config

R2 . OSPFv3

R1 O OSPFv3
. [ 110/2]

R1

Router (config) # show ipv6 route

Router (config) # interface fastethernet 0/0

Router (config-if) # ipv6 address 2001::1/64

Router (config-if) # end

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Process ID

Router # show ipv6 eigrp topology

Router # show ipv6 eigrp neighbors

Router # show ipv6 eigrp interfaces

Router # show ipv6 route

Router (config-if) # end

Router (config-if) # ipv6 eigrp 1

Router (config) # interface fastethernet 0/0

Router (config-rtr) # exit

Router (config-rtr) # router-id 1.1.1.1

Router (config) # ipv6 router eigrp 1

Router (config) # ipv6 unicast-routing

x : OSPFv3

:EIGRP

IPv6, Interior
Gateway
224.0.0.10 FF02::A
Router-ID .AS

)Enhanced Interior Gateway (EIGRP

Eng. Ahmad H Almashaikh

Router # show ipv6 ospf neighbor / Router # show ipv6 ospf database

R2 .BDR

R2

R1 DR R2 .

R1

Router # show ipv6 ospf neighbor , R1

R2 OSPFv3 . O

R2

Router (config) # show ipv6 route

Eng. Ahmad H Almashaikh

:Route Poisoning RIP


RIP


Route Poisoning Matric
16 .Next Hop

: Split Horizon

.

:
1- Maximum Hop Count
2- Split Horizon
3- Route Poisoning
4- Hold Downs
5- Periodic Updates Triggered Updates

Routing Loops Avoidance

: Maximum Hop Count




RIP , EIGRP
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

- . BGP

BGP TCP 179


.



BGP , EGP
.

)Exterior gateway routing (EGP

OSPF ,
.EIGRP , RIP,

)Interior gateway routing (IGP

- :

: BGP

ISP



.

Baisics

)Border Gateway Protocol (BGP

Eng. Ahmad H Almashaikh

: Periodic Updates Triggered Updates








.

:Hold Downs RIP


180
180 180
.

Eng. Ahmad H Almashaikh

List of best paths to destination networks

BGP BGP .
1- Neighbor Table
List of BGP Neighbors BGP peers, Configured statically
2- BGP forwarding database table
List of all Networks learned from each neighbor
3- IP routing table

BGP Table , BGP

-----------------------------------------------------------------------------------

x
x

x
x

Multi homed Coustomers

x
x

x
x

Single homed Customers

: BGP

Eng. Ahmad H Almashaikh

BGP
.
BGP . EGP
BGP AS
. EIGRP

.
BGP .Path Vectory
TCP
.
BGP Peers Table , Topology Table
.Routing Table
BGP .
BGP
BGP .

.
BGP .
BGP .
Application TCP
. Port 179
BGP
, BGP

.

30 Sec
AS
5 Sec .

.
Admin distance 20 BGP Ex
BGP In . Admin distance 200
. Vlsm , CIDR , Classless

. Split-horizon

Eng. Ahmad H Almashaikh

:Established State
.

: Open Message
ID.

BGP
.

3- Update Message
4- Keepalive Message

1- Open Message
2- Notification Message

x BGP

:

BGP

BGP Messages

-----------------------------------------------------------------------------------

:IP routing table


BGP
.

:BGP forwarding database table


BGP
.

:Neighbor Table
.BGP

- :

: Keepalive Message
60 Sec
.

:Open Confirm
.

:Active 2 State
.

:Open Sent
.

:Connect State
.

:Active 1 State
.Active

:Idel State
.

x BGP

.

BGP Startup Operation , BGP

-----------------------------------------------------------------------------------

: Notification Message
.

: Update Message
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

)377.............................................Network Time Protocol (NTP

: Full Mesh Fashion




:

- AS AS AS.
Route reflector - .

)367............................First Hop Redundancy Protocols (FHRP

)356................................... Network Address Translation (NAT

)340................... Dynamic Host Configuration Protocol (DHCP

339.................................................................Ether Channel

333...............................................................................Port Channel

)329...............................................Per Vlan Spanning Tree (PVST

Full Mesh Fashion (sessions between all BGP neighbors) to avoid


split horizon rule.


Loops


.Loops Network

328...............Optimizing Spanning Tree Protocol

STP switch port states 326...............

)314...................................................Spanning Tree Protocol (STP

Disables BGP Synchronization so a router can advertise routers


in BGP without lerning them in IGP , but make sure that you
make all restrictiong to avoid black holes .

Router (Config-Router) # no synchronization

Synchronization

x BGP Split horizone rule : Avoid routing loops inside the AS

311..........................................Switch Port Modes

308.......................................................................Router on a Staick

)295.....................................................VLAN Trunk Protocol (VTP

)278.....Virtual Local Area Network (VLAN

277.....................................Cisco Switch Configuration Command

270...................................................................................Switch

263....................................Ethernet Frame Format

260..............................................Ethernet LANs

Ethernet LANs and Switches

:Synchronization x BGP
Rule IBGP
IGP
.

Ethernet LANs and Switches

BGP Synchronization

Eng. Ahmad H Almashaikh

) Level ( 3

Eng. Ahmad H Almashaikh

ThinNet 5
Mbps 10 BaseBand
) (Network Span 925
30 500 Base2 10
Base 2

(Coaxial Cable) :
ThickNet 10 Mbps 10
BaseBand ) (Network Span
2500 100
500 Base5 10
Base .


) (Data Rate:

): (Medium

Giga Ethernet = 1 GB | Ten Giga Ethernet = 10 GB

Ethernet = 10 MB | Fast Ethernet = 100 MB

x : Ethernet




.
: Ethernet : Mbps Fast Ethernet : 10
Mbps Giga Ethernet : 100 Gbps 10 Giga
Ethernet 1 . Gbps 10

: Ethernet
) (frames
) (workstations ) (LANs 1
physical layer 2 data link layer
OSI Model
- 1 OSI -
-
OSI - MAC Address
).( Data Link Layer

Eng. Ahmad H Almashaikh


WAN . Router

: Ethernet Token
Ring
.

:Local Area Network = LAN



.

Ethernet LANs

Eng. Ahmad H Almashaikh

x Header Tralier
Data and Pad
Header ,
.

x Header Header 26 bytes


6
.
x Ethernet Frame Header
. Header
1- Preamble and Start Frame Delimiter Fields
2- Destination MAC Address Field
3- Source MAC Address Field
4- Length/Type Field
5- Data and Pad Fields
6- Trailer Field / Frame Check Sequence Field

:Ethernet Frame Format x



26 6 .

Ethernet Frame Format

Eng. Ahmad H Almashaikh

IEEE :

8023ab = 1 GB

802.3u = 100 MB

802.3at = POE

802.3ae = 10 GB

802.3x = Full Duplex

(Optical Fiber) : UTP


) (switches hubs
.

UTP Mbps 100 Mbps 100


Gigabit .

UTP .-.
Mbps 10 BaseBand
) (Network Span 500 100
. BaseT 10.

Twisted Pair : Shielded Twisted Pair


) (STP ) Unshielded Twisted Pair (UTP
.

10
Broad36 .-. Mbps 10
BroadBand )(Network Span
3600 1800.

Eng. Ahmad H Almashaikh

Carrier Sence Multiple Access with Collision Detection CSMA/CD

-----------------------------------------------------------------------------------


Length Bytes 2
MAC- client data . data

: Ethernet 802.3 :

x Destination Address DA Source


Address SA Type Header .
.

Preamble Bytes 7
Source Destination
.


Framing Data Link Layer 3
Network Layer 4
IP Packets .

Data and Pad Fields

: Data and Pat Field x



0800 IP
protocol 8137
. Protocol IPX

Length/Type Field

: Length / Type Field x

Bytes 6 MAC Address Frame


Frame
.

Source MAC Address Field

AS = Source MAC Address Field x

Destination MAC Address Bytes 6


,
Data Link Layer 2
MAC Address
, ) (Uni Cast ) (Multi Cast
). (Broad Cast

DS = Destination MAC Address Field x

Bytes 4
Frame Check Sequence FCS
) (Cyclic Redundancy Check CSC
DA
FCS
FCS .

Trailer Field / Frame Check Sequence Field x

: Preamble and Start Frame Delimiter Fields x

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Switch Ports
DCE - Hub Switch - DTE -
. Switch
Node Switch
) (Switched Networks Collision Free .

Switch :

Bridge

) ( ) (.

Bridge Hub


.. Bridge Hub
.

Bridge :

Hub Frame

Segment

.

Hub :

(Data communication
) equipment DCE
( Repeater
Hub( Bridge Switch Routers
Segment
Network Interface Cards NICs
.

Segmentation
..
)( ..

Segmentation :

Segment Collision Domain




Multiple Collision Domain
.

Segmentation :

:
..


) (grambled
/
) (back off time/delay

.

: ""
Carrier
..
. :
)
( .

: A B C D Medium
Segment.. A B
A
MAC D A
) C D ( .
) (BroadCast
.
.

)(Data Terminal Equipment DTE


.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

x :

.
Forward filter Table
Content Addressable Memory Physical Address MAC
Address Table

MAC Address Table

-----------------------------------------------------------------------------------

IEEE 802 MAC-48


.
) (- )(:
. : address2 01:23:45:67:89:ab
address1 01:23:45:67:89:ab Cisco


. ab 0123,4567,89 : .

Switch ..
Segment Switch
port

.


. ) (Data Link OSI
: Ethernet Hardware
)adapter address , physical hardware address Address (EHA
address.

)(Media Access Control


(LAN).

.

Media Access Control OR Mac Address

-----------------------------------------------------------------------------------

Full Duplex port


..
Mbps 100 Full Duplex
. Mbps 200

Half Duplex port switch


DCE DTE NIC
.

Switch : Full Duplex technology Half


Duplex Technology

TCP/IP
IP ) (ARP Address Resolution
Protocol ) (IPv4) (NDP Neighbor Discovery
Protocol (IPv6). broadcast
Ethernet ( Frame (
. Data
link OSI
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Address learning :
x
MAC - Address
Broad Cast: ffff.ffff.ffff


....

x

.

1- Address Learning
2- Filtering / Forwarding Deision
3- Loop Avoidance

x
.

x : Source MAC Address



.
x
One
, Collision Domain

Mb 100
.

: Switch Hub

Source MAC Address
.

Switch

Switch Three function

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Frame .........

Frame Frame
PC2 PC3
....

Eng. Ahmad H Almashaikh

Frame PC1 PC2 PC3


Frame Switch
Frame
.

Filtering / Forwarding Deision :


Frame



.....

Eng. Ahmad H Almashaikh

Loop

PC3 PC1 Frame Frame



....

Frame PC1 .

Frame Frame PC1


Port 1 ..........

Loop Avoidance :
) ( Switch

STP .

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: Rapid Frame Forwarding -



.
Header : Fragment Free -

.Fragment

: Automatic Buffering -

Frame FCS check Header
,
.Buffering
: Cut Through -

: Store and Forwarding Frame :Error Checking -


Header.

1- Store and Forwarding


2- Cut Through
3- Fragment Free

Frame
:

Cisco Switch Configuration

(Switch) Frame

All Command
Displays MAC address table
information for the specified
MAC address
show mac address-table agingDisplays the aging time in all
time
VLANs or the specified
VLAN.
show mac address-table count
Displays the number of
addresses present in all
VLANs or the specified
VLAN.
show mac address-table dynamic Displays only dynamic MAC
address table entries.
show mac address-table interface Displays the MAC address
table information for the
specified interface.
show mac address-table learning Displays MAC address
learning status of all VLANs
or the specified VLAN.
show mac address-table static
Displays only static MAC
address table entries.
show mac address-table vlan
Displays the MAC address
table information for the
specified VLAN.
end
Return to privileged EXEC
mode.
show mac address-table learning Verify the configuration.
[vlan vlan-id | interface interface
slot/port]
copy running-config startup(Optional) Save your entries
config
in the configuration file.

Switch > ?
show mac address-table address

Command

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Vlan .
1- Data Vlan
2- Default Vlan
3- Native Vlan
4- Voice Vlan
5- Management Vlan

Type of Vlan

Vlan

---------------------- -------------------------------------------------------------

: Vlan - . BroadCast
- .
- .
- .
- ,

.Vlan
Vlan - BroadCast Domain
BroadCast Domain
.

Vlan : Subnetting - Subnetting IP Address


IP Address A,B,C
.
Vlan -
.

: Vlan .

Vlan 1 Vlan
2 Vlan 3

. Vlan

Eng. Ahmad H Almashaikh

Vlan 3 ip: 192.168.3.1

Vlan 2 ip: 192.168.2.1

Vlan 1 ip: 192.168.1.1

Vlan 1, Vlan 2, Vlan 3 .

Vlan :

: Vlan


Vlan Vlan

.

)Virtual Local Area Network (VLAN

Eng. Ahmad H Almashaikh

1- Static Vlan Port


2- Dynamic Vlan Port

- .

Vlan

Vlan Switch Port Modes

-------------------------------------------------- ------------- --------------------

Normal Range x 1 1005


1005
1005
Vlan
,
Extended Range 1006
4096

4096 .

1- Normal Range From 1 up to 1005


2- Extended Range From 1006 up to 4096

Vlan Vlan ,
,
.

: Management Vlan
HTTP
Telent , SSH , SNMP . Vlan

: Voice Vlan Network Voice


Voice Vlan Voice

Voice Vlan . Network Voice

: Native Vlan Default Vlan


Native Vlan IEEE 802.1Q
Tag 4 byte
.

: Default Vlan Vlan



Vlan
Default Vlan
STP, CDP, VTP,

.

: Data Vlan Vlan




.

Vlan ID Range

Vlan

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

- ISL header .

) : Inter-Switch Link (ISL


, Frame Frame
ISL header ISL header 26
byte Vlan
.
x ISL header .

1- Inter-Switch Link (ISL) , 2- IEEE 802.1Q

Frame Trunk Port .

Trunk Port

-----------------------------------------------------------------------------------

x Trunk Port
SW2 SW3 Vlan 200
Trunk Port
. Vlan

: Static Vlan Port


Vlan , Vlan
.

: Access Port -
. Native Vlan
: Trunk Port -

Vlan Frame
Vlan . Trunk
x : Trunk Port
Vlan 1 Vlan 1
Vlan 1
,
Trunk
Vlan
Trunk ,
:

1- Access Port , 2- Trunk Port

Vlan .

Vlan Port Type

Vlan

: Dynamic Vlan Port



.Vlan

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: VLAN - DESTINATION VIRTUAL LAN ID FIELD 15 bits Virtual


LAN ID

- :

ISL header :

: HIGH BITS SOURCE ADDRESS (HSA) FIELD -

: LENGTH FIELD - 16 bits

: SOURCE ADDRESS (SA) FIELD Source MAC Address


, Frame . 48 bits

- :

ISL header :

: USER DEFINED FIELD 4 bits .Ethernet

Eng. Ahmad H Almashaikh

0011

0010

0001

0000

ATM

FDDI

Token-Ring

Ethernet

Encapsulated Frame

Type Value

, .

: TYPE FIELD - 4 bits

: DESTINATION ADDRESS (DA) FIELD 40 bits ,


.

VLAN - DESTINATION VIRTUAL LAN ID FIELD


BPDU FIELD
INDEX FIELD
RES FIELD

x
x
x
x

-------------------------------------------------------------------------------

SOURCE ADDRESS (SA) FIELD


LENGTH FIELD
AAAA03 (SNAP) FIELD
HIGH BITS SOURCE ADDRESS (HSA) FIELD

x
x
x
x

-------------------------------------------------------------------------------

x DESTINATION ADDRESS (DA) FIELD


x TYPE FIELD
x USER DEFINED FIELD

Eng. Ahmad H Almashaikh

Switch (config) # exit

Switch (config-if) # exit

Switch (config-if) # switchport access vlan 3

Switch (config) # interface fastethernet 0/7

Switch (config-if) # exit

Switch (config-if) # switchport access vlan 2

Switch (config) # interface fastethernet 0/1

Switch (config-vlan) # exit

Switch (config-vlan) # name PMP

Switch (config-vlan) # vlan 3

Switch (config-vlan) # exit

Switch (config-vlan) # name IT

Switch # copy running-config startup-configt

Switch # config t

Switch > enable

Switch (config) # vlan 2

Vlan Configuartion

Vlan Switch

. IEEE 802.1Q
.
-----------------------------------------------------------------------------------

Eng. Ahmad H Almashaikh

Frame format : encapsulate , .

x : IEEE
.ISL

ISL
IEEE 802.1Q , ISL IEEE
802.1Q Tag Frame 4 byte
ISL Encapsulation Frame 26 byte
IEEE 802.1Q
Tag Frame Frame
.

IEEE 802.1Q -

: RES FIELD FDDI


Token Ring Ethernet .16 bits

: INDEX FIELD ,
.

: BPDU FIELD 1 bit STP VTP , CDP


Frame

, Frame network loops
.

frame trunk VLAN



VLAN .

Eng. Ahmad H Almashaikh

Switch (config-vlan) # exit

Switch (config-vlan) # name IT

Switch (config) # vlan 2

Switch # config t

Switch> enable

Switch (config-if) # switchport access vlan 3

Switch (config) # interface fastethernet 0/3

Switch (config-vlan) # exit

Switch (config-vlan) # name HR

Switch (config) # vlan 3

Switch (config-if) # exit

Switch (config-if) # switchport access vlan 2

Switch (config) # interface fastethernet 0/2

Switch (config-if) # exit

Switch (config-if) # switchport access vlan 2

Switch (config) # interface fastethernet 0/1

- SW 1 :

-----------------------------------------------------------------------------------

: Vlan 2 Vlan 1
, 1002 , 1003
, 1004 , 1005

.

x
Vlan
Vlan .

x
-

Vlan , :
Vlan Trunk Port .

:
192.168.1.0/24
Vlan 2 . Name IT
192.168. 2.0/24
Vlan 3 . Name HR

.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

SW 1 SW 2
. Trunk

x Request timed out .


vlan 3


.

vlan 2 vlan 3 , vlan


2 vlan 3

...
Ping vlan 2 vlan 3 ,
vlan 2 Command
Prompt
vlan 3 .

Eng. Ahmad H Almashaikh

Switch # show vlan

vlan 2 vlan 3
:

SW 1

Switch # copy running-config startup-config

Switch (config-if) # end

Switch (config-if) # switchport access vlan 3

Switch (config-if) # interface fastethernet 0/4

Eng. Ahmad H Almashaikh

Switch # copy running-config startup-config

Switch (config-if) # end

Switch (config-if) # switchport access vlan 3

Switch (config-if) # interface fastethernet 0/4

Switch (config-if) # switchport access vlan 3

Switch (config) # interface fastethernet 0/3

Switch (config-vlan) # exit

Switch (config-vlan) # name HR

Switch (config) # vlan 3

Switch (config-if) # exit

Switch (config-if) # switchport access vlan 2

Switch (config) # interface fastethernet 0/2

Switch (config-if) # exit

Switch (config-if) # switchport access vlan 2

Switch (config) # interface fastethernet 0/1

Switch (config-vlan) # exit

Switch (config-vlan) # name IT

Switch (config) # vlan 2

Switch # config t

Switch> enable

: SW 2 -

Eng. Ahmad H Almashaikh

vlan 3 vlan 2 vlan 2 ,


vlan 3
,
SW 1 SW 2

Switch # show vlan

vlan 3 vlan 2
:

SW 2

Eng. Ahmad H Almashaikh

VTP Vlan
Vlan
Vlan



. VTP

Trunk port Frame .

VTP

Vlan

Vlan

VTP Vlan

: VTP

VTP
VLAN Trunk Protocol

Eng. Ahmad H Almashaikh

Switch # config t

Switch> enable

: trunk .
SW 2 SW 1 . trunk

x switchport mode trunk down


up ,
.

Switch # copy running-config startup-config

Switch (config-if) # end

Switch (config-if) # switchport mode trunk

Switch (config) # interface fastethernet 0/24

- SW 1 :


Trunk

Trunk .

Eng. Ahmad H Almashaikh

: VTP Pruning .

: : VTP Server -
VTP Domain
Vlan
Vlan
.
: VTP Client -


Vlan
.
: VTP Transparent -
VTP VTP
Server VTP Client
VTP Server .VTP Client

Client 3- VTP Transparent Server

2- VTP Client

1- VTP Server

:VTP Mode VTP


.

VTP Mode

: VTP Domain



VTP VTP Domain 1
VTP Domain 2 VTP
. Domain

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

VTP

VTP Advertisements

: VTP Advertisements


.

VTP Frame Structure

: VTP Revision Number .

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

VTP Version

VTP VTP
.
1- VTP Domain Name
2- VTP Password
3- VTP Version

: VTP Version 3
.

: VTP Version 2

.Token Ring Vlans : VTP Version 1

: VTP :VTP Version -

Eng. Ahmad H Almashaikh

Switch # show vtp password

Switch # show vtp status

. VTP

-----------------------------------------------------------------------------------

Switch (config) # vtp password 123

Switch (config) # vtp mode client

Switch (config) # vtp version 2

Switch (config) # vtp domain ABC

Switch # config t

Switch > enable

VTP Client

-----------------------------------------------------------------------------------

Switch (config) # vtp password 123

Switch (config) # vtp mode server

Switch (config) # vtp version 2

Switch (config) # vtp domain ABC

Switch # config t

Switch > enable

VTP Server

VTP
VTP Configuartion

Eng. Ahmad H Almashaikh

Switch # copy running-config startup-config

Switch (config) # end

Switch (config) # vtp password 123

Switch (config) # vtp mode server

Switch (config) # vtp version 2

Switch (config) # vtp domain ABC

Switch # config t

Switch > enable

: Vlan
SW 1 vtp
. VTP Server

SW 1 VTP Server

- SW 1 :

VTP Vlan
VTP

.

Eng. Ahmad H Almashaikh

VTP Server
VTP .

x
.

:
192.168.1.0/24
Vlan 2 . Name IT
192.168. 2.0/24
Vlan 3 . Name HR

.
SW 1 VTP Server
SW 2 SW 3 VTP Client
.

Vlan , :
Vlan VTP Server
Trunk Port
.

VTP

VTP Configuration LAB

Eng. Ahmad H Almashaikh

Switch (config) # end

Switch (config) # vtp password 123

Switch (config) # vtp mode client

Switch (config) # vtp version 2

Switch (config) # vtp domain ABC

Switch # config t

Switch > enable

Switch # copy running-config startup-config

- SW 2 :

SW 2

Eng. Ahmad H Almashaikh

SW 2 VTP . SW 2

,
VTP .

vtp SW 1 .VTP Server

SW 1

SW 1 Vlan HR , IT .

vtp SW 1 Vlan vtp


.

Eng. Ahmad H Almashaikh

- . VTP

SW 3
:

SW 2

SW 2 Vlan .

SW 1 Trunk Port f0/1 , f0/2 SW 2


SW 3 .

SW 1 : Trunk Port

Vlan vtp , SW 2
SW 1 , SW 2
Trunk Port ,
SW 1
.

SW 2

SW 2 :

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router (config-subif) # encapsulation dot1Q 2

Router on a Staick VLAN


Router on a Staick
.

-----------------------------------------------------------------------------------

Router (config-subif) # ip address 192.168.1.100 255.255.255.0

subif

Router (config) # interface fastethernet 0/0.1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config) # interface fastethernet 0/0

Router # config t

Router > enable

Vlan


Gy


Router on a Staick .

: Router on a Staick Vlan




Vlan Router on a
Staick .

:Router on a Staick Vlan


Vlan
Vlan

Gy .

Router on a Staick
Router on a Staick

Router on a Staick Configuration

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router # Show ip interface brief

f0/0
. Vlan
x : Vlan 1
Vlan 2 Router on a
. Staick
Router on a Staick .

.....

....

Router on a Staick Gy
. Vlan

: Trunk Port .

Router # config t

Router > enable

Router # copy running-config startup-config

Router (config-subif) # end

Router (config-subif) # ip address 192.168.4.100 255.255.255.0

Router (config-subif) # encapsulation dot1q 5

Router (config) # interface fastethernet 0/0.4

Router (config-subif) # exit

Router (config-subif) # ip address 192.168.3.100 255.255.255.0

Router (config-subif) # encapsulation dot1q 4

Router (config) # interface fastethernet 0/0.3

Router (config-subif) # exit

Router (config-subif) # ip address 192.168.2.100 255.255.255.0

Router (config-subif) # encapsulation dot1q 3

Router (config) # interface fastethernet 0/0.2

Router (config-subif) # exit

Router (config-subif) # ip address 192.168.1.100 255.255.255.0

Router (config-subif) # encapsulation dot1q 2

Router (config) # interface fastethernet 0/0.1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config) # interface fastethernet 0/0

x R1 :

f0/0 Router on a Staick


Trunk Port
...
f0/24
:
Switch > enable
Switch # config t
Switch (config) # interface fastethernet 0/24
Switch (config-if) # switchport mode trunk

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: No Negotiate
.

: Dynamic Auto Access


Access Access
Trunk .Trunk

: Access Access
.

: Trunk Trunk Port


.

: Dynamic Desirable
Access
Access .Dynamic Desirable

: Dynamic Desirable
Trunk Port ,

.

,
, .
1- Dynamic Desirable
2- Trunk
3- Access
4- Dynamic Auto Access
5- No Negotiate
6- DTP = Dynamic Trunking Protocol

Switch Port Modes

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Bridge ID ................................

1- Bridge Prioirty , 2- MAC Address

:Bridge ID
Root Bridge Non Bridge
Bridge ID ..

BPDU
Root Bridge .

x BPDU = Bridge
Protocol Data Units
,
,
.
x : BPDU

Root Bridge , Non Bridge


.

- . Root Bridge
- . Non Bridge

- : STP

Eng. Ahmad H Almashaikh

x
,
,

,
.

.Data Link Layer STP juniper .


- STP IEEE . 802.1D

:STP


STP



STP
.

Spanning Tree Protocol

STP

Eng. Ahmad H Almashaikh

: BP = Block Port .Cost

: DP RP
RP Non Bridg .

: RP = Root Port
Non Bridg
Root Bridge .

: DP = Designated Port Root


Bridge .

1- DP = Designated Port
2- RP = Root Port
3- BP = Block Port

: STP Port

, Cost
Cost STP Prot ,
.

STP Prot Cost Values

Eng. Ahmad H Almashaikh

Root Bridge
,


.

- : STP

BPDU
Bridge Prioirty MAC Address
, Prioirty
Prioirty
, Root Bridge Prioirty
Mac Address
BPDU

Root Bridge
.

- : Root Bridge

: Mac Address
.

: Bridge Prioirty
, 0 to 65535 .Default Value = 32768

Eng. Ahmad H Almashaikh

x
Root Bridge Non Bridg
,

, Non Bridg F 0/1 RP = Root Port


Root Bridge ,
F 0/ 2 BP = Block Port
STP loop

.
.STP

SW 2

- SW 2 :

Root Bridge DP = Designated Port


, SW
2 .

SW 1

Switch # show spanning-tree

Switch > enable

Root Bridge , SW 1
Prioirty 32768 SW 1 , SW 2

SW 1 MAC
Address : 0000.0000.0000.1 MAC SW 2
Address : 0000.0000.0000.2 SW 1

Root Bridge
, SW 1
Root
Bridge .

x SW 1 , SW 2
2 ,
STP
, Root Bridge

:

, STP
STP
.

SW 1
: STP

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh


.STP

SW3 , Non Bridg F 0/1 BP = Block Port



,
F 0/2 RP = Root Port
Root Bridge
.Root Bridge

- SW3 :

Root Bridge SW 2 DP = Designated Port


,
SW3 .

- SW 2 :

SW1 , Non Bridg F 0/1 RP = Root Port


Root Bridge
, Root Bridge F 0/ 2 = DP
Designated Port SW3 .Non Bridg

SW 1

Eng. Ahmad H Almashaikh

Switch # show spanning-tree

Switch > enable

SW 1 : STP

Root Bridge , SW 2
Prioirty 32768 SW 1 , SW 2 , SW 3

SW 1
MAC Address : 0000.0000.0000.2 SW 2
MAC Address : 0000.0000.0000.1 MAC SW 3
Address : 0000.0000.0000.3 SW
2 Root
Bridge , Non Bridg Cost

Cost 19 .

Eng. Ahmad H Almashaikh

SW 1

Root Bridge SW 1 DP = Designated Port


,
SW 2 .
- SW 2 :

Switch # show spanning-tree

x Root Bridge
, SW 1
Prioirty 32768 SW 1 , SW 2 , SW 3 ,
SW 4
SW 1
MAC Address : 0005.5EAE.6CBB
MAC Address : 000A.F3EE.0929 SW 2
MAC Address : 0060.47C9.E392 SW 3 SW4
, MAC Address : 00D0.BAC0.2BBA
SW 1
Root Bridge , Non Bridg
Cost
Cost 19 ,
SW 3 SW

x SW 1 , SW 2 , SW 3 , SW 4
2 ,
, STP

, Root Bridge

:

Switch > enable

4 SW 3 SW 1
SW 2
SW 4 ,
SW 3 SW 4 Cost 57
SW 3
SW 1 Cost 19
SW 1 SW 2 Cost 38
SW 2 SW 4 Cost 38
Cost 57 .
x SW 1
: STP
x :

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

SW 4

- SW 4 :

, Non Bridge SW 2
.

x
STP
,

.

Fa 0/4 Altn BLK


.Root Bridge SW 1

Fa0/3 Desg FWD SW 4 .

Fa0/2 Root FWD Root SW 1


.Bridge

Fa0/1 Desg FWD SW 4


Root Bridge .Non Bridge

SW 2

SW 3 : , Non Bridge SW 3
.
SW 3

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

:Disabled
.

: Forwarding
.

: Learning 15
Access

.

: Listening Access
Trunk 15
.

Fa 0/4 Altn BLK


Root Bridge SW 1 .Non Bridge

Fa0/1 Root FWD SW 1


.Root Bridge

SW 4 .

Blocking
Listening
Learning
Forwarding
Disabled

12345-

30
, .

STP switch port states

-----------------------------------------------------------------------------------

x STP


. STP

Blocking
30 :

: Blocking
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: Backbone Fast

RLQ BPDU

.

:
.

: Uplink Fast

.

: Access ,
.

:Port Fast
30 sec Listening,
Learning
30 sec
.

STP ,
, STP
.
1- Port Fast
2- Uplink Fast
3- Backbone Fast
4- RLQ BPDU = Root Link Query

STP

Optimizing Spanning Tree Protocol

:PVST
PVST
STP
Vlan

.Load Balancing

PVST

Per Vlan Spanning Tree

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

1- Point to Point
2- Shared
3- Edge

- :

RSTP

Root
Designated
Alternate Root
Backup
Disabled

12345-

x RSTP bridge port roles

1- Discarding
2- Learning
3- Forwarding

Eng. Ahmad H Almashaikh

RSTP Blocking Listening


Discarding Listening
15 Sec .

x RSTP switch port states

1- Blocking , 2- Listening , 3- Learning , 4- Forwarding , 5- Disabled

STP switch port states

. RSTP . STP
STP RSTP .

: RSTP STP
802.1w
STP 20 Sec
RSTP 6 Sec
STP .Root Bridge

RSTP

Rapid Spanning Tree Protocol

Eng. Ahmad H Almashaikh

- .OSI

- .Trunk

- :

100 Mb Port Channel


400 Mb .

x
STP
Loop ,

Port Channel ,
,
.

: Port Channel .

Port Channel

Eng. Ahmad H Almashaikh

Link Type

Eng. Ahmad H Almashaikh

Switch (config-if-range) # channel-protocol pagp

Switch (config-if-range) # channel-group 1 mode desirable

Switch (config) # interface range fastethernet 0/1 4

Switch # config t

Switch > enable

Port Channel Configuration

x
100 mb , STP
. Root Bridge
x Port Channel
400 mb
.

- :

IEEE .

2- Limk Aggregation Control Protocol (LACP) - IEEE 82.1AD

Eng. Ahmad H Almashaikh

1- Port Aggregation Protocol (PagP) - Cisco

Port Channel Protocols

Logical Port STP


, Logical Port
Physical Port .

- .

- .

,
.

, 100 mb / 100 mb , 10 mb /100 mb / 1000 mb


.

Eng. Ahmad H Almashaikh

Switch # show spanning-tree

SW 1 F 0/1 , F 0/2 , F0/3, F0/4 channel-


protocol pagp
.
- : STP

SW 1

Switch # show running-config

Switch > enable

x :

SW 1 :


.400 mb

. SW 2

Switch # copy running-config startup-config

Switch (config-if-range) # end

Switch (config-if-range) # channel-protocol pagp

Switch (config-if-range) # channel-group 1 mode desirable

Switch (config) # interface range fastethernet 0/1 4

Switch # config t

Switch > enable

SW 2 :


. SW 2

Switch # copy running-config startup-config

Switch (config-if-range) # end

Switch (config-if-range) # channel-protocol pagp

Switch (config-if-range) # channel-group 1 mode desirable

Switch (config) # interface range fastethernet 0/1 4

Switch # config t

Switch > enable

SW 1 Port Channel .

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Ether Channel
Ether Channel
.

: Ether Channel

Port
. Channel

:Port Channel .

:Ether Channel Port Channel


.

Ether Channel

Eng. Ahmad H Almashaikh

STP SW 2 , Non Bridge


Port Channel
400 mb .

SW 2 F 0/1 , F 0/2 , F0/3, F0/4 channel-


protocol pagp
.
- : STP

SW 2

Switch # show running-config

Switch > enable

SW 2 Port Channel .
x :

STP SW 1 , Root Bridge


Port Channel
400 mb .

Eng. Ahmad H Almashaikh

: Dynamic Configuartion

DHCP
DHCP ,
DHCP

.

: Static Configuration
,
,

.

Eng. Ahmad H Almashaikh

x


IP
IP
.

- .

3-Alternate Configuartion

2-Dynamic Configuartion

1-Static Configuration

- : DHCP

DHCP
DNS BOOT DHCP ) (MAC
IP DHCP BOOTP .

DHCP :
. -
) (Client-Server DHCP
. System Administrator

IP HOST
Workstations TCP / IP
) (IP address conflict
IP ) (
.

Dynamic Host Configuration Protocol = DHCP

Eng. Ahmad H Almashaikh

:Server Sends a DHCP ACK Unicast


, IP DHCP .

: Clinet Sends a DHCP Request Broadcast


DHCP
IP DHCP IP

, IP
IP .IP

:Server Sends a DHCP Offer Unicast


IP Unicast
IP
DHCP
.

: Client Sends a DHCP Discover Broadcast


, IP
, Broadcast
, IP
DHCP , IP
Offer
.

.
1- Client Sends a DHCP Discover Broadcast
2- Server Sends a DHCP Offer Unicast
3- Clinet Sends a DHCP Request Broadcast
4- Server Sends a DHCP ACK Unicast

: Alternate Configuartion
Static Dynamic
,
Alternate ,
Alternate APIPA
.

DHCP :
1- IP Address
2- Subnet Mask
3- IP Default Gateway
4- DNS Server
5- WINS
6- Time
IP ) (DHCP Lease Stages .

Alternate Configuartion

IP :

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

. - DHCP Server .
- A
. 10.0.0.0/8

DHCP Server
DHCP Server
.

Router # show ip dhcp binding

Router (dhcp-config) # end

Router (dhcp-config) # dns-server 10.0.0.99

Router (dhcp-config) # default-router 10.0.0.100

Router (dhcp-config) # network 10.0.0.0 255.0.0.0

Router (config) # ip dhcp pool HR


Excuded-address
.

Router (config) # ip dhcp excuded-address 10.0.0.1 10.0.0.50

DHCP Configuration

DHCP

-----------------------------------------------------------------------------------

:DHCP Relay Agents DHCP



DHCP
DHCP

Broadcast DHCP
DHCP Relay Agents

DHCP
DHCP Relay Agents

.

:DHCP 50% )(renew


DHCP IP
87.5% DHCP
DHCP DISCOVER
IP .

-----------------------------------------------------------------------------------

DHCP Client . UDP Port 68

Server DHCP . UDP Port 67

DHCP UDP :

DHCP DORA

- - MAC IP

: Client Reservation DHCP


IP IP
DHCP MAC
Address :

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

IP 10.0.0.1
.
IP DHCP Server .

Router # show ip dhcp binding

DHCP Server
.

Router # copy running-config startup-config

Router (dhcp-config) # end

Router (dhcp-config) # dns-server 10.0.0.99

Router (dhcp-config) # default-router 10.0.0.100

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

Router (dhcp-config) # network 10.0.0.1 255.0.0.0

Router (config) # ip dhcp pool HR

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 10.0.0.100 255.0.0.0

Router (config) # interface fastethernet 0/0

x :

- DNS .10.0.0.99/8 IP
- IP . GY : 10.0.0.100/8
- IP
DHCP Server .

Eng. Ahmad H Almashaikh

IP DHCP
DHCP
.
DHCP :
DHCP :
- DHCP
.
- .IP 192.168.1.0/24
- . IP 192.168.2.0/24
- DNS .
- IP .

Router # show ip dhcp binding

Eng. Ahmad H Almashaikh


DHCP :

IP DHCP Server :
PC 2 Static DHCP
IP 10.0.0.2
DNS .

Eng. Ahmad H Almashaikh

DHCP
:
IP , Fast Ethernet 0/0
....

DHCP :

,

Host-NM-10/100 ,

,

:
x
,
,
.
x

DHCP Server

,
............
,
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

IP , Fast Ethernet 0/1 ......

DHCP .......

Services DHCP :
Pool Name , IP Gy

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

IP DHCP .
Laptop 1 IP .

Eng. Ahmad H Almashaikh

IP PC
.1
PC1 .192.168.1.0/24

x :
,

.

x : DHCP
Off .ON
x
......
DHCP .

DNS Start
IP Address SubnetMask
. Add

Eng. Ahmad H Almashaikh

Static NAT Private IP Public IP


Public IP .

Private Network Public Network


,
Src 10.0.0.15 Dest
200.0.0.10 200.0.0.10


123.0.0.0/24
NAT
,
10.0.0.15




.

: Static NAT
Private IP
Public IP
Static NAT
Private IP Public IP

Eng. Ahmad H Almashaikh

1- Static NAT One To One


2- Dynamic NAT Group To Group
3- PAT NAT One To Group

- .
- .
- .

: NAT

: NAT

: NAT
Private IP
Public IP
Defult Gateways )
( ,



.

)(NAT

Network Address Translation

Eng. Ahmad H Almashaikh

: NAT NAT
.
x

RIP
NAT PAT

Pool , Public IP

NAT Pool
.


NAT
Pool
.

: Dynamic NAT NAT Pool


Public IP ,





.

NAT PAT
NAT
NAT PAT
.

:PAT NAT

Public IP


.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

Router # config t

Router > enable

Dynamic NAT Configuration

-----------------------------------------------------------------------------------

IP IP .Public IP

Router (config) # ip nat inside source static 192.168.1.9 52.53.54.55

Static NAT Configuration

NAT

-----------------------------------------------------------------------------------

Inside Outside
.

Eng. Ahmad H Almashaikh

1- Global Address = Public Address


2- Local Address = Private Address

NAT

NAT Names

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

Router (config) # interface fastethernet 0/0

R2 : x
. RIPv2
x : inside , outside
.

:
NAT

. NAT

: NAT

NAT NAT
. RIP

NAT

Eng. Ahmad H Almashaikh

Router # config t

Router > enable


NAT PAT .
192.168.1.0/24
.
192.168.50.0/24
RIPv2 .
192.168.2.0/24
. NAT




NAT

-----------------------------------------------------------------------------------

Router (config) # ip nat inside source list 1 pool IT overload

Router (config) # ip nat pool IT 65.65.65.1 65.65.65.10 netmask


255.255.255.0

Router (config) # access-list 1 permit 192.168.1.0 0.0.0.255

PAT NAT Configuration

-----------------------------------------------------------------------------------

Router (config) # ip nat inside source list 1 pool IT

Pool
ISP netmask
. Pool

Router (config) # ip nat pool IT 52.53.54.1 52.53.54.40 netmask


255.255.255.0

Router (config) # access-list 1 permit 192.168.1.0 0.0.0.255

Eng. Ahmad H Almashaikh

R2 .

R RIPv2 * S default gateway




0.0.0.0
.

Router # show ip route

x R2
.
x R1 .


. NAT-PAT
x R1 Ping .R2

Eng. Ahmad H Almashaikh

RIPv2 NAT-PAT NAT-PAT


RIPv2

Router # copy running-config startup-config

Router (config) # end

Router (config) # ip nat inside source list 1 pool IT overload

Router (config) # ip nat pool IT 65.65.65.1 65.65.65.10 netmask


255.255.255.0

Router (config) # access-list 1 permit 192.168.2.0 0.0.0.255

Router (config-if) # ip nat outside

Router (config) # interface fastethernet 0/0

Router (config-if) # exit

Router (config-if) # ip nat inside

Router (config) # interface fastethernet 0/1

Router (config) # ip route 0.0.0.0 0.0.0.0 192.168.50.2

Router (config-router) # network 192.168.1.0

Router (config-router) # network 192.168.50.0

Router (config-router) # version 2

Router (config) # router rip

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.1.1 255.255.255.0

Router (config) # interface fastethernet 0/1

Router (config-if) # exit

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.50.1 255.255.255.0

Eng. Ahmad H Almashaikh

:FHRP

IP

First Hop Redundancy Protocols = FHRP

x NAT

Packet
IP NAT




.

Eng. Ahmad H Almashaikh

R1
R2
NAT PAT .
Packet
192.168.1.0/24 192.168.2.0/24
R1
NAT PAT
Router # debug ip nat .
.

192.168.1.1 65.65.60.1
.
:

Eng. Ahmad H Almashaikh

: Standby
.

: Actice

- : HSRP


IPv4 IPv6
) IPv6 ff02::66 IPv4 224.0.0.102 (HSRP
UDP Port 1985
)(00:05:73:a0:0X:XX) IPv4 00:00:0c:9f:fX:XX
.IPv6

x
HSRP version 2

IPv4 224.0.0.2 all


routers UDP Port 1985
) (00:00:0c:07:ac:XX

.

x
HSRP version 1

:HSRP version HSRP .

: HSRP .

x FHRP

.

)1- Hot Standby Router Protocol (HSRP


)2- Virtual Router Redundancy Protocol (VRRP
)3- Gateway Load Balancing Protocol (GLBP

- : FHRP

IP .

: HSRP

Gateway


IP



.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

Router (config-if) # ip address 192.168.1.3 255.255.255.0

Router (config) # interface fastEthernet 0/0

R1 HSRP .

R1 f 0/0 192.168.1.3/24 f 0/1


. 192.168.2.2/24
R2 f 0/0 192.168.1.2/24 f 0/1
. 192.168.2.3/24
Virtual IP 192.168.1.1/24
.192.168.2.1/24
: Gy
192.168.1.1 Gy
.192.168.2.1

Eng. Ahmad H Almashaikh

Router # config t

Router > enable

Router (config-if) # standby 1 preempt

x :

x :
x 192.168.1.0/24 .
x 192.168.2.0/24 .

HSRP HSRP
.

Group

Virtual IP

Router (config-if) # standby 1 ip 10.0.0.0

Router (config-if) # standby 1 priority 90

Router (config) # interface fastethernet 0/1

HSRP Configuration

HSRP

-----------------------------------------------------------------------------------------------------------------

x HSRP
10
224.0.0.2 all routers
.

- : HSRP

x Actice
priority . Actice

Eng. Ahmad H Almashaikh

Router (config) # interface fastEthernet 0/1


Router (config-if) # ip address 192.168.2.3 255.255.255.0
Router (config-if) # no shutdown
Router (config-if) # exit
Router (config) # interface fastEthernet 0/0
Router (config-if) # standby 1 ip 192.168.1.1
Router (config-if) # standby priority 90

Router (config-if) # exit

Router (config) # interface fastEthernet 0/1

Router (config-if) # ip address 192.168.2.2 255.255.255.0

Router (config-if) # no shutdown

Router (config-if) # exit

Router (config) # interface fastEthernet 0/0

Router (config-if) # standby 1 ip 192.168.1.1

Router (config-if) # no shutdown

Router (config-if) # ip address 192.168.1.2 255.255.255.0

Router (config) # interface fastEthernet 0/0

Router # config t

Router > enable

: R2 -

. R2 R1 -

Router # copy running-config startup-config

Router (config-if) # end

HSRP R2 R1

. Actice
x
Gy




.

Router # copy running-config startup-config

Router (config-if) # end

Router (config-if) # standby 1 preempt

Group

Router (config-if) # standby 1 preempt

Router (config-if) # standby priority 90

Router (config-if) # standby 1 ip 192.168.2.1

Router (config-if) # standby priority 90

Router (config-if) # standby 1 ip 192.168.2.1

Router (config) # interface fastEthernet 0/1


Virtual IP

Router (config) # interface fastEthernet 0/1

Router (config-if) # exit

Router (config-if) # exit

Router (config-if) # standby 1 preempt

Group

Router (config-if) # standby 1 preempt

Router (config-if) # standby priority 90

Virtual IP

Router (config-if) # exit

Eng. Ahmad H Almashaikh

Router (config-if) # no shutdown

Eng. Ahmad H Almashaikh

Active = Master, Standby = Backup

VRRP Master
. Backup

HSRP Active
. Standby

HSRP
:

:VRRP HSRP

.

-----------------------------------------------------------------------------------

Gy 192.168.1.1

.

- :

Eng. Ahmad H Almashaikh

Router # show standby

HSRP
R1 :

R1 Virtual IP

. R2

Router # show standby brief

x
.

Eng. Ahmad H Almashaikh

Router (config-if) # vrrp 1 preempt

Router (config-if) # vrrp dby ip 11.1.1.1

Router (config-if) # vrrp 1 priority 90

Router (config) # interface fastethernet 0/1

Router # config t

Router > enable

VRRP Configuration

VRRP

-----------------------------------------------------------------------------------

224.0.0.18 Hello Packet -

Virtual Mac Address = 00-00-5E-00-01-XX

OSPF and EIGRP using IP Protocol -

Eng. Ahmad H Almashaikh

x
x
x
x
x

Router (config-if) # glbp 1 preempt

Router (config-if) # glbp ip 12.1.1.1

Router (config-if) # glbp 1 priority 100

Router (config) # interface fastethernet 0/0

Router # config t

Router > enable

GLBP Configuration

GLBP

-----------------------------------------------------------------------------------

. Active Virtual Gateway (AVG)


. Active Vritual Forword (AVF)
. Multicast ip 224.0.0.102
. UDP Port 3222
.Mac Address 0007.B400.XXYY

: GLBP
OSI
Load Balancing
.

Eng. Ahmad H Almashaikh

408................................Virtual Private Network VPN

405.................................Multi Protocol Label Switching MPLS

394.................... Frame Relay Protocol

388 ...................................................Authentication Methods PPP

386 ......................Point to Point Protocol PPP

379........................................................Wide Area Networks WAN

Router # config t

Router > enable

:
:

-----------------------------------------------------------------------------------

Router (config) # ntp update-calendar

Router (config) # ntp authentication-key 1 md5 cisco

Router (config) # ntp server 192.168.1.100

NTP Configuration

NTP

-----------------------------------------------------------------------------------

x NTP UDP .123

: NTP
, .

WAN

)Network Time Protocol (NTP

WAN

Eng. Ahmad H Almashaikh

) Level ( 4

Eng. Ahmad H Almashaikh

x


Leased Line .
x Leased Line

.Leased Line

: WAN






.

)Wide Area Networks (WAN

: WAN
.
WAN


WAN

x

.

- : Leased Line

: Leased Line -
ISP Leased Line

.

Leased Line, 2- Circuit Switching, 3- Packet Switching

x WAN Connection Types


.

Packets
.
WAN OSI Layer .
WAN .

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: Circuit Switching - Reverse Charging



.
- Call
.Redirect

Circuit Switching - Circuit-


Switching


.

: Flag


.

: FCS
FCS

.

: Data
.

: Protocol
PPP, HDLC .LLC Header

: Flag Frame

.8 bits

HDLCv2 - 7
Proprietary
.

HDLC - 6
.

HDLC .

HDLC
. IP Header

x Leased Line
. HDLC , PPP
) : High Level Data Link Control (HDLC



.

: Control
Flow Control
.8 bit

: Address IP
.8 bit

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

- Physical Layer
.
- Data-Link Layer
.

Serial
)Data Communication Equipment(DCE

X.25
OSI Layers :

: X.25 Packet-
Switching Data Communication Equipment
) (DCE )Data Terminal Equipment (DTE
X.25
Router . Gy

- .
- .
- .

-

.

-
.

-
.

-
.
-




.
-


.
-
.
: Packet Switching -





.

-

.
- : Circuit Switching

- : Packet Switching

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Header HDLC
Header PPP
HDLC
PPP
Header HDLC
Header PPP Header
:

PPP Header Header


HDLC .

: PPP WAN
Data Link OSI Layers
HDLC
PPP
.HDLC

Physical Layer, Data-Link Layer, Network Layer

X.25
Packet-Switching
. OSI Layers

x


.

x

DCE
DTE , X.25
.HDLC

x
Full Duplex
.

-
. Packets

)Point to Point Protocol (PPP

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

:
Clear Text .


User Name and Passowrd
Authentication

PPP

Authentication
User Name and Passowrd

.

Password Authentication Protocol (PAP) -

- Authentication :

PPP


Authentication
.

PPP Authentication Methods



PPP

Eng. Ahmad H Almashaikh

- Multilink
.

- Error Detections
Header

.

- Compression
.

- Authentication
.

- Negotiation
.

- , Network Control Protocol


) (NCP Encapsulation
PPP
Network Layers IP , IPx , Apple Talk
.
- ) Link Control Protocol (LCP

PPP
. PPP

PPP .

Feature
HDLC PPP
Error detection
Yes
Yes
Error recovery
No
Yes
Standard Protocol Type field
No
Yes
Default on IOS Serial links
Yes
No
No
Yes
Supports synchronous and as
asynchronous links
- PPP .HDLC

Eng. Ahmad H Almashaikh

Router # config t

Router > enable


Serial Cable
ppp

:

-----------------------------------------------------------------------------------

Router (config) # username R2 Password cisco123

Router (config-if) # exit

Router (config-if) # ppp authentication chap or pap

Router (config-if) # encapsulation ppp

Router (config-if) # ip address 223.255.255.254 255.255.255.0

Router (config) # interface Serial 1/0

Router (config) # hostname R1

Leased Line Configuration


Eng. Ahmad H Almashaikh

- : Leased Line Configuration



User Name and Passowrd


User Name and Passowrd
. MD5

Challenge Handshake Authentication Protocol (CHAP) -

Eng. Ahmad H Almashaikh

R1 R2 :

R1 # copy running-config startup-config

- :

R1

Router (config) # username R2 Password cisco123

Router (config-if) # exit

Router (config-if) # ppp authentication chap

Router (config-if) # encapsulation ppp

Router (config-if) # ip address 223.255.255.253 255.255.255.0

Eng. Ahmad H Almashaikh

Router (config) # interface Serial 0/3/0

Router (config) # hostname R1

Router # config t

Router > enable

R1 :

223.255.255.0 ppp
.






.
.

Eng. Ahmad H Almashaikh

- .
- .
- .X.25
- ANSI CCITT/ITU
Frame Relay Forum
. Frame Relay
-
.WAN
- Connection-Oriented
)Permanent Virtual (PVC
Circuit .
- PVC
.Frame Relay

: Frame Relay

:Frame Relay Packet Switching




Frame

56 kbps , 45 kbps

.

Frame Relay Protocol

Eng. Ahmad H Almashaikh

R2 # copy running-config startup-config

- :

Router (config) # username R1 Password cisco123

Router (config-if) # exit

Router (config-if) # ppp authentication chap

Router (config-if) # encapsulation ppp

Router (config-if) # ip address 223.255.255.254 255.255.255.0

Router (config) # interface Serial 0/3/0

Router (config) # hostname R2

Router # config t

Router > enable

- R2 :

Eng. Ahmad H Almashaikh

- Full
. Mesh

: Frame Relay



Frame Relay
Frame Relay
. Frame Relay

:CTE Frame Relay


.

-



Customer
) Termination Equipment (CTE PVC
, . Frame Relay Service Point
- .

Frame Relay :

-
.
- .
-
.

:Frame Relay

Eng. Ahmad H Almashaikh

-




In-Band Congestion Signaling






.

- Switch
DLCI
.

-
-

.
DLCI
. Frame Relay
Frame Relay
PVC
.

Frame .

: Frame Relay

-
-

-
-
-
-

.
.
.
ISDN
.
.
.

: Frame Relay

Eng. Ahmad H Almashaikh

- . Frame Relay
- .
-
. Frame Relay
-
Frame Relay
- RIPv2
.
- Frame Relay Frame
.Relay

Frame Relay Frame Relay



Frame Relay
Frame Relay




Frame
Relay .

- Hub and Spoke Topology



.

- Partial Mesh
.Topology

- :

Frame Relay
Frame Relay
Frame Relay
Frame Relay


RIPv2 , EIGRP , OSPF
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: -

: -

R1 (config-router) # end
R1 # copy running-config startup-config

DLCI 301

DLCI 302

R1 (config-router) # network 172.20.3.2

R1 (config-router) # network 172.20.1.1

Serial 0/0/0. 302

R1 (config-router) # network 192.168.1.0

R1 (config-router) # version 2

R1 (config) # router rip

R1 (config-if) # exit

R1 (config-if) # no shutdown

R1 (config-if) # ip address 192.168.1.1 255.255.255.0

R1 (config) # interface fastethernet 0/0

R1 (config-if) # exit

R1 (config-if) # no shutdown

R1 (config-subif) # interface serial 0/0/0

R1 (config-subif) # ip address 172.20.3.2 255.255.255.252

R1 (config-subif) # frame-relay interface-dlci 103

R1 (config-subif) # interface serial 0/0/0.103 point-to-point

R1 (config-subif) # ip address 172.20.1.1 255.255.255.252

R1 (config-subif) # frame-relay interface-dlci 102

R1 (config-if) # interface serial 0/0/0.102 point-to-point

R1 (config-if) # encapsulation frame-relay

R1 (config) # interface serial 0/0/0

Router (config) # hostname R1

Router # config t

Router > enable

:
R1

Eng. Ahmad H Almashaikh

Serial 0/0/0. 301

IP Address Serial 0/0/0.302 172.20.2.1

IP Address Serial 0/0/0.301 172.20.1.1

IP Address Private Network f0/0 192.168.2.1/24

(R3)

DLCI 203

DLCI 201

Serial 0/0/0.203

Serial 0/0/0.201

IP Address Serial 0/0/0.203 172.20.2.1

IP Address Serial 0/0/0.201 172.20.1.1

IP Address Private Network f0/0 192.168.3.1/24

(R2)

DLCI 103

DLCI 102

Serial 0/0/0.102

Serial 0/0/0.103

IP Address Serial 0/0/0.102 172.20.1.1

IP Address Serial 0/0/0.103 172.20.3.1

IP Address Private Network f0/0 192.168.1.1/24

(R1)

: -

Eng. Ahmad H Almashaikh

R3 (config) # interface serial 0/0/0


R3 (config-if) # encapsulation frame-relay
R3 (config-if) # interface serial 0/0/0.301 point-to-point
R3 (config-subif) # frame-relay interface-dlci 301
R3 (config-subif) # ip address 172.20.3.1 255.255.255.252
R3 (config-subif) # interface serial 0/0/0.302 point-to-point
R3 (config-subif) # frame-relay interface-dlci 302
R3 (config-subif) # ip address 172.20.2.2 255.255.255.252
R3 (config-subif) # interface serial 0/0/0
R3 (config-if) # no shutdown
R3 (config-if) # exit
R3 (config) # interface fastethernet 0/0
R3 (config-if) # ip address 192.168.2.1 255.255.255.0
R3 (config-if) # no shutdown
R3 (config-if) # exit
R3 (config) # router rip
R3 (config-router) # version 2
R3 (config-router) # network 192.168.2.0
R3 (config-router) # network 172.20.3.1
R3 (config-router) # network 172.20.2.2
R3 (config-router) # end
R3 # copy running-config startup-config

R2 (config) # interface serial 0/0/0

R2 (config-if) # encapsulation frame-relay

R2 (config-if) # interface serial 0/0/0.201 point-to-point

R2 (config-subif) # frame-relay interface-dlci 201

R2 (config-subif) # ip address 172.20.1.1 255.255.255.252

R2 (config-subif) # interface serial 0/0/0.203 point-to-point

R2 (config-subif) # frame-relay interface-dlci 203

R2 (config-subif) # ip address 172.20.2.2 255.255.255.252

R2 (config-subif) # interface serial 0/0/0

R2 (config-if) # no shutdown

R2 (config-if) # exit

R2 (config) # interface fastethernet 0/0

R2 (config-if) # ip address 192.168.3.1 255.255.255.0

R2 (config-if) # no shutdown

R2 (config-if) # exit

R2 (config) # router rip

R2 (config-router) # version 2

R2 (config-router) # network 192.168.3.0

R2 (config-router) # network 172.20.1.1

R2 (config-router) # network 172.20.2.2

R2 (config-router) # end

R2 # copy running-config startup-config

Router (config) # hostname R3

Router (config) # hostname R2

Router # config t

Router # config t

R3

R2
Router > enable

R2
.

R1 .

Router > enable

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Packets Successful
Faill
.

Add


.

Frame Relay
.

Config Serial :

Frame Relay :

DLCI

DLCI Frame Relay
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

:Customer Edg (CE) -


LAN .WAN

:Provider Edge (PE) -


.

:Provider Router (P) - .ISP

- : MPLS

Successful
:

MPLS

.

:MPLS WAN

MPLS Frame Relay
MPLS
OSI Layers
IP IP
Packets
Frame .

)Multi Protocol Label Switching (MPLS

-----------------------------------------------------------------------------------

MPLS

Frame Relay, ATM, or Ethernet.
.
.
.
) (RVSP
(CR-LDP).


.
.

.
RSVP ) (CR-LDP
Cisco
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: VPN


VPN
.

: VPN

Remote Access

VPN VPN

VPN




VPN .

Virtual Private Network

VPN

Eng. Ahmad H Almashaikh

: -
ISP




.
-



.

32 bits MPLS Header


:

Layer 2 Header [MPLS Header] IP Packets

Label Label :

MPLS Label
Header


MPLS Label
MPLS Routing
Table
MPLS Label
Label .

MPLS : Label

Eng. Ahmad H Almashaikh

)VPN, Security Protocol (IPSec

)Secure Socket Tunneling Protocol (SSTP

- .

)Layer Two Tunneling Protocol (L2TP

)Point T Point Tunneling Protocol (PPTP

- :

:VPN Tunneling x
VPN
.




)(Tunneling
.

VPN
GateWay
Target Network
Clients
.

Eng. Ahmad H Almashaikh

IP Public
.



VPN



VPN

. VPN

x :

x VPN :

Eng. Ahmad H Almashaikh

Dial up VPN
)Point to point VPN (IP VPN
Site to Site VPN
)Site to Multi Site VPN (DM VPN
MPLS VPN

12345-

VPN VPN

.

Point to point VPN (IP VPN) .

VPN

Dial up VPN
.

Dial up VPN .

: VPN

VPN
:

: VPN

Eng. Ahmad H Almashaikh

- Security

VPN
.

- Scalability
.

- Remotely Connection

. VPN

- Cost Saving VPN


VPN
. IP Public

: VPN

- Anti Reply

.

- Confidentiality

.

- Data Integrity
.

- Authentication
.

VPN VPN .

Eng. Ahmad H Almashaikh





Point to point VPN
.

Site to Multi Site VPN (DM VPN) .

MPLS VPN
.

MPLS VPN .

Site to Site VPN .

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: ACL -
.
-
.
- ACL Filtering
.
- OSI Layer .
-
.ACL
- .
-
.
- ACL
.
- ACL Premit , Deny
.
- .

: ACL



.

Networks Security

427.........................................................................Firewall

425..........................................................Network security

424 .............................................Authentication Methods

422 .......................................................Switch Security

)416.........................................................Access Control Lists (ACL

)Access Control Lists (ACL

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

) Level ( 5

Standard

Router # config t

Router > enable

Standard

Router (config-if) # exit

Router (config-if) # ip access-group internet out

Router (config) # interface fastethernet 0/0

Router (config) # exit

Router (config-std-nacl) # permit any

:
Premit
.

Premit

Deny

Router (config-std-nacl) # deny host 172.16.10.5

Router (config) # ip access-list standard internet

Router # config t

Router > enable

A Single Host Address

host 172.16.10.5

Any Source Host Any

Any

A . B . C . D Address to match 172.16.10.0 0.0.0.255

- :ACL

: Name ACL
.

: Extended
Web Server
http Telnet

. Destination IP Address , Source IP Address

: Standerd



Source IP Address . 1-99

ACL
.

1-Standerd , 2- Extended , 3- Name ACL

- WildCard Mask . ACL


- : ACL

Host

Standard Name ACL

-----------------------------------------------------------------------------------

Router (config-if) # exit

Router (config-if) # ip access-group 1 out

Router (config) # interface fastetherent 0/0

Router (config) # access-list 1 permit any

Router (config) # access-list 1 deny host 172.16.10.5

/ Extended ACL Configuration

ACL

ACL Configuration

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Router (config) # interface fastEthernet 0/1


Router (config) # ip access-group 101 in
Router (config) # exit

Router (config) # interface fastethernet 0/0

Router (config-if) # ip access-group 100 in

Router (config-if) # exit

Router (config) # access-list 101 permit ip any any

Router (config) # exit

Router # copy running-config startup-config

Router (config) # access-list 101 deny ip host 10.0.0.2


192.168.1.2 0.0.0.255

Router # config t

Router > enable

-
-
-

: -

. 192.168.1.0/24
. 172.16.1.0/16
ACL 10.0.0.0/8
.
.

: x

ACL
:

Eng. Ahmad H Almashaikh

Router (config-std-nacl) # permit ip any any

192.168.1.1 eq http

Router (config-std-nacl) # deny tcp host 172.16.10.5 host

Router (config) # ip access-list extended http

Router # config t

Router > enable

Extended Name ACL

-----------------------------------------------------------------------------------

Router (config-if) # exit

Router (config-if) # ip access-group 10 in

Router (config) # interface fastetherent 0/0

Router (config) # access-list 10 permit ip any any

192.168.1.1 eq http

Router (config) # access-list 10 deny host 172.16.10.5 host

Router # config t

Router > enable

Extended

Eng. Ahmad H Almashaikh





Hub Broad Cast
Hub



.

)Trucking Dynamic Protocol (TDP

-
.

x :

: Switch Security



.

ACL Extended 10.0.0.0/8


192.168.1.0/24 .

x 172.16.1.0/16


ACL 10.0.0.0/8
.

x 10.0.0.0/8
192.168.1.0/24
ACL
172.16.1.0/16
.

10.0.0.0/8 .

Switch Security

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

- CHAP
.

-
. Certifcate Authority

-
. Something You have

-
. Something You Know

: Authentication


.

Authentication Methods

-----------------------------------------------------------------------------------

- Vlan Vlan
Vlan
Vlan .

- Vlan 1

Vlan .

Eng. Ahmad H Almashaikh

- Vlan


.
-
.


Switch (config-if) # switchport port-security maximum 1

? Switch (config-if) # switchport port-security mac-address

? Switch (config-if) # switchport port-security violation

Switch (config) # interface fastethernet 0/10

-


. Port Security

---------------------------------------------------------------------

Switch (config-if-range) # switchport nonegotiate

Switch (config-if-range) # switchport mode access

Trunk
Trunk Trunk .

Switch (config-if-range) # switchport mode trunk

Switch (config) # interface fastetherent 0/1-10

Switch (config) # interface fastetherent 0/1

Eng. Ahmad H Almashaikh

- Kerberos
Tickets

Kerberos
.

:Availability








.

: Data Integrity



:


100 1000000
.

: Data Confidentiality



: .

-----------------------------------------------------------------------------------

:


.

:

:
.
.

.

Network security

.
.

- PAP

. Kerberos

.

.

.

.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh


AT&T "
) (Application Layer Firewall
) (Proxy server
DEC . SEAL

.

)( .

:
.
-

.

: Firewall
/

.

Firewall ,

.

.
.
"
" .

): (Application Layer Firewall

: Stateful Filters


.
:
.

) (TCP ) (UDP
" " )

.



) (TCP) (UDP .

) (packets
.
)
"" .

1988 )(DEC

.
AT&T
.

: Packet Filters

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

-
-

Backup , SNMP , Syslog , Wire shark , NetFlow

OSI
.
TCP/IP . OSI

.

.

.

:

x
.

:






OSI
Show


.

Troubleshooting

Eng. Ahmad H Almashaikh

Troubleshooting

461..........................................................Wireless LAN

457.........................................................................Quality of service

450........................................................................Cloud Technology

446.........................................................Virtualization

444.........................................Software - Defined Networking SDN

443..................................Vlans Allowed in Trunked Interface

442.............................Router Ways With Packets

441.................................

440.............................................................................................Syslog

437.........................Simple Network Management Protocol SNMP

436..............................

435....................................................Access List ACL

434............................IPv4 / IPv6

Troubleshooting 430 .........................

Eng. Ahmad H Almashaikh

) Level ( 6

- Physical


.

- Data Link

Data Link .

- Network


.

- Transport
TCP , UDP

FTP ,
TFTP .

- Session

Session

.

- OSI

- Application
Remote Control


.

- Presentation





.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh


.

.

.


.

Subnet
Mask .

IPv4 / IPv6

-----------------------------------------------------------------------------------

. STP

Switch # show spanning-tree

Portfast .

Switch (config-if) # spanning-tree portfast

Eng. Ahmad H Almashaikh

Switch (config) # interface fastetherent 0/5

STP
Vlan .

Switch (config) # no spanning-tree vlan 1,2,3,4

VTP .

Switch # show vtp status

Trunk .

Switch # show interfaces trunk

Vlan
.

Switch # show van

x : Vlan Problems

Router # show running-config

Router # show ip interface brief

Router # show controllers serial 0/0/0


.
- :

Eng. Ahmad H Almashaikh

Router # traceroute

Router # ping

Router # show running-config

Router # show ipv6 route

Router # show ip route

RIP Trobleshooting

: Dynamic Routing

Router # traceroute

Router # ping

Router # show ipv6 route

Router # show ip route

- : Static Routing

Router # show ip nat translations

Router # show running-config

- : NAT


ACL .

Eng. Ahmad H Almashaikh

Router # show ip interface

Router # show access-lists / Router # show ip access-lists

ACL - Access List

-----------------------------------------------------------------------------------

x DHCP
DHCP




Pool .

x
DHCP


DHCP
DHCP Realy Agent
DHCP .

x
DHCP
DHCP
.

x DHCP

Pool
.

-
192.168.1.1
.
- DHCP
:

Eng. Ahmad H Almashaikh

EIGRP Trobleshooting

Simple Network Management Protocol (SNMP)

-----------------------------------------------------------------------------------

Router # traceroute

Router # ping

Router # show running-config

Router # show ipv6 eigrp neighbor

Router # show ipv6 eigrp database

Router # show ip eigrp database

Router # show ipv6 route

Router # show ip route

Router # traceroute

Router # ping

Router # show running-config

Router # show ipv6 ospf neighbor

Router # show ip ospf neighbor

Router # show ipv6 ospf database

Router # show ip ospf database

Router # show ipv6 route

OSPF Trobleshooting
Router # show ip route

Router # show ip route

Eng. Ahmad H Almashaikh

1- SNMPv1 , 2- SNMPv2c , 3-SNMPv2u , 4-SNMPv3

: SNMP -

: Management Info Base


SNTP
.Object ID (OID)

: SNMP Agent
.SNTP

.SNTP : SNMP Manager

1- SNMP Manager , 2- SNMP Agent , 3- Management Info Base

: SNMP

.

Eng. Ahmad H Almashaikh

UDP . Port 514 - .(Spluck , Kiwi Syslog) Syslog

: Syslog


. Action

Syslog

Eng. Ahmad H Almashaikh

SNMP UDP 161. , 162

: Inform .

: Traps
.

: Set SNMP Manager


IP .

: Get Next .

: Respinse .

: GET SNMP Manager SNMP


Agent .

1- GET , 2- Respinse , 3- Get Next , 4- Set , 5- Traps , 6- Inform

- : SNMP

Eng. Ahmad H Almashaikh

1- Cut-Through

1- Process Switching


.
2- Fast Switching

Router Ways With Packets


64 .

3- Fragment-Free

2- Store and Forward

Eng. Ahmad H Almashaikh

Switch Ways With Frames

-----------------------------------------------------------------------------------

12345-

Emergencies
Alerts
Critical
Error
Warning

6- Notifications
7- Informational
8- Debugging

Syslog Levels
.

Eng. Ahmad H Almashaikh

Switch (config-if) # switchport trunk allowed vlan 1-2

Switch (config) # interface fastethernet 0/1

: Vlans Allowed
Vlan Vlan
Trunk Interface
Trunk Interface Vlan

.

Vlans Allowed in Trunked Interface

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

.

SDN
.

.

.

.


.
. GMPLS , MPLS


.

.

Eng. Ahmad H Almashaikh

SND




. virtualization

SDN
SDN


.

: SDN

OpenFlow
Control plane . Data planes



:
The control plane

The Data
plane .

)Software - Defined Networking (SDN

Eng. Ahmad H Almashaikh

: Binary Translation BT
XYZ
BT .

.

Virtualization ,

Emulation

Super Nintendo
Playstation Atari 2600

.

: Emulation

Paravirtualization , Binary Translation , Emulation







Vm Citrix
.

: Paravirtualization PV
Sun
.
. PV xBSD
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh





.

IBM

.


Bitmaps VMCS
. 32
VMResume
.

VMResume .
VMLaunch Virtual Machine Control Structure
.


VMPTLRD

.
VMLaunch . VMResume





.



. Virtual Machine Manager
VMM VT 4
""
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh





Transaction
. processing

) (Client-server model
)(

) (Autonomic Computing "


.

.




)( .

.

.

. IP
DNS

.

session id
.

: Cloud Technology

Eng. Ahmad H Almashaikh



Cloud Tech

.

:





.

Cloud Technology

Eng. Ahmad H Almashaikh

:
" " .



Payment
.Card Industry Data Security Standard

:

.
) (

.Gov Cloud

: Public Cloud

: Cloud Computing Types

Eng. Ahmad H Almashaikh

.



.
.
Cloud
.

. Cloud
.

: Cloud

"
Infrastructure as a Service
) (hardware virtualization

.

) ( .

.

: Cloud infrastructure

Eng. Ahmad H Almashaikh

:
) (segregation of duties


.

: Data protection


.

. - .


,


. :

: cloud storage


.


.

.
.

:Cloud engineering

.

.
.

: Private Cloud



.


Hybrid Web Hosting


)( :
.
) (
"
hybrid cloud computing
ibm hp
(VMware)

.
.
.


. "
) (Cloud Security Alliance
.

: Cloud computing security


.

.

.
.

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

"
" .

.

.

.



.
.
.



.

.
.




.
.

QOS

Quality of service

Eng. Ahmad H Almashaikh

x
x
x
x

x
x

.

.

.
.
.
.
.

:
.

:

.

:

.

:


.

:

) (Identity management
.federation services

Eng. Ahmad H Almashaikh


. .


.
.

.
. isochronicity

.

.
.


.

.

Eng. Ahmad H Almashaikh

.

.
.


"" "" . :
. :
.


.
" " . " "
"" .
DiffServer ) (
.

: QOS


.
) (QoE
"" " .

.


.
.

.

Eng. Ahmad H Almashaikh

: Wide Area Network WAN


Wireless LAN WLAN
.


.

.



WLAN




.
. .


.


.
.

/
.


. ''.




.
.


60


LAN ) (Local Area Network




:

: Networks Wireless

:


. .

Wireless LAN

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

: PCI
100 200 2004 30
.

:

.

:

.

:

) (

:

.

) (wirelessness

.

- -
.

Eng. Ahmad H Almashaikh



.
:

- 2 ) (access point
.

.

- 1 ) (wireless computer cards


.
.

) (WLAN
) (

2004

WLAN wireless local
area network radio
frequency RF .
.

:

.

Wireless
LAN


.

Eng. Ahmad H Almashaikh

Cisco CCNA Routing and Switching How to Master

)Cisco CCNA Routing and Switching (200-120


Official Cert Guide Library

CCENTCCNA ICND1 100-101 Official Cert


Guide By Wendell Odom

CCNA Routing and Switching ICND2 200-101


Official Cert Guide By Wendell Odom

:
.

MAC: .
: Distributed Coordination Function
Point Coordination Function MAC Layer

.

Direct Sequence Spread Spectrum DSSS

Frequency Hopping Spread Spectrum FHSS

Infrared IR

:
:

IEEE 802.11

: IEEE 802.11



Lakehead


.


.
Wired
Equivalent Privact WAP Wi
Fi Protected Access WPA
.


Ethernet

Eng. Ahmad H Almashaikh

Eng. Ahmad H Almashaikh

Vous aimerez peut-être aussi