Vous êtes sur la page 1sur 150

Chapter 5 Configuring Network Devices

Objectives

Configure a router with an initial configuration Use Cisco SDM to configure a Cisco ISR with LAN connectivity, Internet connectivity and NAT Configure a Cisco router for LAN connectivity, Internet connectivity and NAT using the Cisco IOS CLI of the Cisco IOS software. Configure a WAN connection from a customer premise to an ISP Describe, setup, and configure a stand-alone LAN switch

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

ISR - Integrated Services Routers



The Cisco Integrated Services Router (ISR) is one of the most popular series of networking devices designed to support growing business needs. The ISR combines features such as routing and switching functions, security, voice, LAN and WAN connectivity into a single device. This makes the ISR ideal for small to medium-sized businesses and for ISP managed customers.

ISR - Integrated Services Routers

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

ISR - Integrated Services Routers

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

ISR - Integrated Services Routers

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

ISR - Integrated Services Routers

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

ISR - Integrated Services Routers


System Power LED (SYS-PWR) Indicates power is received and that the internal power supply is functional. LED is solid green. System Activity (SYS ACT) A blinking LED indicates the system is actively transferring packets.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

ISR - Integrated Services Routers


High-speed WAN Interface Card (HWIC) Slots: These ports provide serial connectivity over a wide-area network. Compact Flash Module: This removable module is used to store the operating software for the ISR. Single Slot USB Port: The USB Flash feature allows users to store images and configurations and boot directly via USB Flash memory.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

ISR - Integrated Services Routers


Fast Ethernet Ports: These ports provide 10/100 Mbps connectivity for local area networks. Console Port: This port is used to configure the switch via a directly connected host. Auxiliary Port: This port is used to configure the switch via a modem. Four Port Ethernet Switch: These ports allow you to connect multiple devices on a local area network.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

10

ISR - Integrated Services Routers

Cisco IOS Sofware

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

11

ISR - Integrated Services Routers


Cisco IOS Software

The Cisco Internetwork Operating System (IOS) software provides features that enable a Cisco device to send and receive network traffic using a wired or wireless network. The entry-level Cisco IOS software image is called the IP Base image. The Cisco IOS IP Base software supports small to medium-sized businesses and supports routing between networks Other Cisco IOS software images add services to the IP Base image. For example, to use advanced security features, install the Advanced Security image. This gives the added functionality necessary to configure advanced security capabilities, private networking and firewalls. There are many different IOS images available, as well as different versions of each image. These images are designed to operate on specific models of routers, switches and ISRs.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

12

Physical Setup of the ISR


Items shipped with a new Cisco 1841 ISR include:

A RJ45-to-DB9 console cable A DB-9-to-DB-25 modem adapter A power cord Product registration card, called the Cisco.com card Regulatory Compliance and Safety Information for Cisco 1841 Routers Router and Security Device Manager (SDM) Quick Start Guide Cisco 1800 Series Integrated Services Routers (Modular) Quick Start Guide

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

13

Physical Setup of the ISR

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

14

Physical Setup of the ISR

To install a new Cisco 1841 ISR requires special tools and equipment, which most ISPs and technician labs usually have available. Additional specific equipment required depends on the model of the device and any optional equipment ordered.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

15

Physical Setup of the ISR

Before beginning any equipment installation, be sure to read the Quick Start guide and other documentation that is included with the device.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

16

Physical Setup of the ISR

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

17

Physical Setup of the ISR

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

18

Physical Setup of the ISR

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

19

Physical Setup of the ISR

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

20

Physical Setup of the ISR

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

21

Physical Setup of the ISR

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

22

In-band and Out-band Router Configuration

There are two possible methods to connect a PC to a network device for configuration and monitoring tasks: in-band and out-of-band management.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

23

In-band and Out-band Router Configuration


Out-of-band Management

Out-of-band management requires a computer to be directly connected to the console port or auxiliary port (AUX) of the network device being configured. This type of connection does not require the local network connections on the device to be active. Technicians use out-of-band management to initially configure a network device. Out-of-band management is also useful when the network connectivity is not functioning correctly and the device cannot be reached over the network Use in-band management to monitor and make configuration changes to a network device over a network connection. In order for a computer to connect to the device and perform in-band management tasks, at least one network interface on the device must be connected to the network and operational. Two TCP/IP protocols can be used to access a Cisco device for in-band management: Telnet and HTTP

In-band Management

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

24

Cisco ISO Programs

The Cisco IOS command line interface (CLI) is a text-based program that enables the entering and executing of Cisco IOS commands to configure, monitor, and maintain Cisco devices

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

25

Cisco ISO Programs

In addition to the Cisco IOS CLI, other tools are available to assist in configuring a Cisco router or ISR. Cisco Router and Security Device Manager (SDM) is a graphical user interface (GUI) device management tool. Unlike CLI, SDM can be used only for in-band management tasks. SDM Express simplifies initial router configuration. It uses a step-by-step approach to create a basic router configuration quickly and easily

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

26

Cisco ISO Programs


Use the full SDM package to perform more advance configurations such as:

Configure additional LAN and WAN connections Create firewalls Configure VPN connections Perform security tasks

SDM supports a wide range of Cisco IOS software releases and is available free of charge on many Cisco routers. SDM is pre-installed on the flash memory of the Cisco 1800 Series ISR.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

27

Cisco ISO Programs

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

28

Cisco ISO Programs

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

29

Cisco ISO Programs

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

30

Device Configuration Files

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

31

Device Configuration Files


Running Configuration File

The term running configuration refers to the current configuration running on the device. It contains the commands used to determine how the device operates on the network. The running configuration is stored within the device working memory (RAM) that does not keep information when the power is turned off. The startup configuration file is the saved configuration file that sets the configuration properties of the device each time the device is powered on. This file is stored in nonvolatile random access memory (NVRAM). NVRAM is used to store files that will be saved, even if power to the device is turned off.

Startup Configuration File


Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

32

Device Configuration Files



When a Cisco router is first powered on, it loads the IOS to working memory. Next, the startup configuration file is copied from NVRAM to RAM. This becomes the initial running configuration. Changes to the running configuration are not automatically saved to the startup configuration file. It is necessary to manually copy the running configuration to the startup configuration file if changes are to be saved when the device is powered off. Cisco CLI uses the command copy running-config startup-config to save the router's running configuration to the startup configuration.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

33

Device Configuration Files

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

34

Document Your Router Configuration



Planning the router installation and upgrade is a critical step in minimizing interruptions to employees Planning enables exploration of options on paper, when it is easy and inexpensive to correct errors. During those planning sessions, the technician determines: The configuration of the router to meet customer needs Software programs that rely on the network that may be affected by the upgrade The technician works with the client's IT personnel to decide which router configuration to use and to develop the procedure that verifies the router configuration.

35

Document Your Router Configuration

A configuration checklist is a useful tool for ensuring that everything is configured correctly on new router installations. Technicians also use the checklist when troubleshooting previously configured routers. The configuration checklist provides a list of the most commonly configured components.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

36

Document Your Router Configuration

Date and Work Order Used to record the date that the configuration checklist Used to record a number used to track the contract work ISP Contract The name and telephone number of the ISP representation if any questions or concerns arise Customer The name of company or customer Customer Contract The name and telephone number of the person at the customer site responsible for the project Router Manufacturer and Model The router manufacturer and model number Router serial number Configured Basic Parameters Check here to confirm that basic router parameters are configured Cisco SDM can be used to configure basic parameters, if supported by the device
Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com 37

Document Your Router Configuration

Configured Global Parameters Check here to confirm that the global parameters are configured Including: host name of the router, a privilege mode password, and disabling the router from recognizing typing mistakes as commands Configured Fast Ethernet LAN Interfaces Check here to confirm that the Fast Ethernet LAN Interfaces have been configured Configured WAN Interfaces Check here to confirm that the WAN interfaces have been configured Configured Command-Line Access to the Router Check here to confirm that the parameters used to control Cisco IOS CLI access to the router have been configured This includes: the interval of time that the EXEC command interpreter waits until user input is detected Configured Static Routes Check here to confirm that the static routes are configured An ISP may use a separate sheet to detail each static route configured Static routes are manually configured on the router and must be changed manually if new routes are required

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

38

Document Your Router Configuration

Configured Dynamic Routing Protocols Check here to confirm that the dynamic routing protocols are configured In dynamic routing, the network protocol adjusts the path automatically, based on network traffic or topology. Changes in dynamic routes are shared with other routers in the network Configured Security Features Check here to confirm that security features on the router are configured The Cisco SDM configuration tool makes it easy to configure the basic security features To configure security features using the Cisco IOS CLI requires an in-depth knowledge of the Cisco IOS security commands Roll over each checklist item to learn more

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

39

Configure an ISR with SDM

Cisco SDM express


Cisco SDM Express is a tool bundled within the Cisco Router and Security Device Manager that makes it easy to create a basic router configuration. SDM Express uses eight configuration steps to assist in creating a basic router configuration: Overview Basic Configuration LAN IP Address DHCP Internet (WAN) Firewall Security Settings Summary Refer 5.2.1.1

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

40

Configure an ISR with SDM

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

41

SDM Express

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

42

SDM Express

Basic Configuration
Host Name The name of the router Domain Name The domain name for the organization. (An example of a domain name is cisco.com, but domain names can end with a different suffix, such as .org or .net.) SDM Username and Password The username and password used to access SDM Express to configure and monitor the router (password must be at least 6 characters long) Enable Secret Password The password that controls user access to the router, which affects the ability to make configuration changes using CLI using Telnet or the console ports (password must be at least 6 characters long)

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

43

SDM Express

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

44

SDM Express

IP Address Field The IP address for the LAN interface in dotted-decimal format Address can be a private IP address if the device is installed in a network that uses Network Address Translation (NAT) or Port Address Translation (PAT) Subnet Mask Field The subnet mask for the network Identifies the network portion of the IP Subnet Bits Field Number of bits used to define the network portion of the IP Can be used instead of the subnet mask Wireless Parameters Fields Use to specify the SSID of the wireless network Appear if the router has a wireless interface and Yes was clicked in the Wireless Interface Configuration window

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

45

SDM Express

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

46

SDM Express

DHCP
The Dynamic Host Configuration Protocol (DHCP) is a simple way to assign IP addresses to host devices. DHCP dynamically allocates an IP address to a network host when the host is powered on, and reclaims the address when the host is powered off Enable DHCP server on the LAN interface Checkbox When checked, it enables the router to assign private IP addresses to devices on the LAN. IP addresses are leased to hosts for a period of one day. Starting IP Address Field The lowest address in the IP address range, based by default, on the IP address and subnet mask entered for the LAN interface Can be changed to a different starting IP address, if necessary, but should be the same network or subnet as a configured LAN interface Ending IP Address Field The highest valid address in the IP address range, based by default, on the IP address and subnet mask assigned to the LAN interface Can be changed to decrease the pool size Must be in the same network as the IP address in the starting IP address field
Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com 47

SDM Express

DHCP (continue)
Domain Name Field The domain name for the organization. This name is given to the hosts as part of the DHCP configuration. Primary Domain Name Server Field The IP address of the primary DNS server Used to resolve URLs and names on the network Secondary Domain Name Server Field The IP address of a secondary DNS, if available Used if the primary DNS server does not respond Use these DNS values for DHCP clients checkbox If checked, enables the DHCP server to assign DHCP clients with the configured DNS settings Available if a DHCP server has been enabled on the LAN interface

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

48

SDM Express

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

49

Configure a Serial WAN Connection

Configuring an Internet (WAN) Connection


Routers can also be connected via a serial connection, which connect networks that are separated by large geographic distances. These WAN network interconnections require that the serial connection be made through a telecommunications service provider, or TSP. Serial connections are usually lower-speed links

Serial Encapsulation
The protocol encapsulation must be the same at both ends of a serial connection Encapsulation types include: High-Level Data Link Control (HDLC) Frame Relay Point-to-Point Protocol (PPP)

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

50

Configure a Serial WAN Connection

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

51

Configure a Serial WAN Connection

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

52

Configure a Serial WAN Connection

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

53

Configure a Serial WAN Connection

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

54

Configure a Serial WAN Connection

Address Type List


Static IP Address Available with Frame Relay, PPP, and HDLC encapsulation types. Enter the IP address and subnet mask to configure a static IP address. IP Unnumbered Available with Frame Relay, PPP, and HDLC encapsulation types. Sets the serial interface address to match the IP address one of the router's other functional interfaces. IP Negotiated The router obtains an IP address automatically through PPP Select Easy IP (IP Negotiated). The router will obtain an IP address automatically through PPP

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

55

Configure a Serial WAN Connection

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

56

Cisco SDM and SDM Express

SDM supports many of the same features that SDM Express supports; however, SDM has a more advanced GUI interface, with more configuration options available.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

57

Configure Dynamic NAT Using SDM

Dynamic NAT enables the hosts on the internal local network to share the registered IP address assigned to the WAN interface. In this manner, hosts with internal private addresses can have access to the Internet.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

58

Configure Dynamic NAT Using SDM

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

59

Configure Dynamic NAT Using SDM

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

60

Configure Dynamic NAT Using SDM

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

61

Configure Dynamic NAT Using SDM

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

62

Command Line Interface Modes

The Cisco IOS supports two levels of access to the command-line interface: user EXEC access and privileged EXEC access.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

63

Command Line Interface Modes

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

64

Command Line Interface Modes

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

65

Command Line Interface Modes

Cisco help

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

66

Command Line Interface Modes

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

67

Command Line Interface Modes

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

68

Command Line Interface Modes

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

69

Command Line Interface Modes

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

70

Use Show commands



The Cisco IOS CLI enables a user to display relevant information about the configuration and operation of the device. To obtain this information, show commands are used. Some of the more popular show commands are: show running-config show interfaces show arp show ip route show users show version

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

71

Use Show commands

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

72

Basic Configuration

Router#show startup-config The startup configuration file is stored on the device in NVRAM Router#show running-config The running configuration is the set of commands that is currently active in the device RAM. Router#copy run start

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

73

Basic Configuration

74

Basic Configuration

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

75

Basic Configuration

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

76

Configure an Interface

In order for a router to direct traffic from one network to another, the interfaces on the router are configured to participate in each of the networks. There are many different types of interfaces available. Serial and Ethernet interfaces are the most common. Local network connections use Ethernet interfaces. WAN connections require the use of a serial connection through a TSP. They require a clock signal to control the timing of the communications, this is known as a clock rate. Data Communications Equipment (DCE) devices such as a modem, or CSU/DSU, provides the clock rate. By default, Cisco routers are DTE devices, or Data Terminal equipment. This means that they accept the clock rate from the DCE device. Router can be configured as DCE devices, if necessary

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

77

Configure an Interface

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

78

Configure an Interface

The steps to configure an interface include:


1. Specify the type of interface and the interface port number 2. Specify a description of the interface 3. Configure the interface IP address and subnet mask 4. Set the clock rate, if configuring a serial interface as a DCE 5. Enable the interface

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

79

Configure a default Route

The default route is used by the router only if the router does not know where to send a packet.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

80

Configure DHCP Services

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

81

Configure DHCP Services

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

82

Configure DHCP Services

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

83

Configure DHCP Services

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

84

Configure DHCP Services

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

85

Configure DHCP Services

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

86

Configure DHCP Services

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

87

Configure DHCP Services

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

88

Configure Static NAT using Cisco CLI

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

89

Configure Static NAT using Cisco CLI

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

90

Configure Static NAT using Cisco CLI

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

91

Configure Static NAT using Cisco CLI

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

92

Configure Static NAT using Cisco CLI

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

93

Configure Static NAT using Cisco CLI

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

94

Configure Static NAT using Cisco CLI

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

95

Configure Static NAT using Cisco CLI

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

96

Back up a Cisco Router Configuring to a TFTP Server

Once a router is configured, the running configuration should be saved to the startup configuration file. It is also a good idea to save the configuration file in another location, such as a network server. If the NVRAM fails or becomes corrupt and the router cannot load the startup configuration file, another copy is available. Configuration files can be saved to a network server using the TFTP protocol

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

97

Back up a Cisco Router Configuring to a TFTP Server

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

98

Standalone Switches

A switch is a device that is able to direct a stream of messages coming in one port, out of another port based on the destination MAC address within the frame. A switch cannot route traffic between two different local networks. In the context of the OSI model, a switch performs the Layer 2, known as the data-link layer function. This type of switch is a fixed-configuration, standalone device, and does not use modules or flash card slots. The physical configuration can not change. They are designed to provide 10/100 Fast Ethernet and 10/100/1000 Gigabit Ethernet connectivity to desktop computers.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

99

Standalone Switches

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

100

Standalone Switches

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

101

Standalone Switches

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

102

Standalone Switches

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

103

Standalone Switches

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

104

Standalone Switches

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

105

Standalone Switches

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

106

Standalone Switches

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

107

Standalone Switches

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

108

Standalone Switches

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

109

Standalone Switches

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

110

Standalone Switches

Each switch port can operate in either half-duplex or full-duplex mode When a port is in half-duplex mode, at any given time, it can either send or receive data but not both When a port is in full-duplex mode, it can simultaneously send and receive data, doubling the throughput. Both the port and the connected device must be set to the same duplex mode. Switch ports can have the speed and duplex set manually or can use auto negotiation. If the switch is in autonegotiation mode and the connected device does not support it, the switch will: Use the speed of the other device (10, 100, 1000) Default to half-duplex mode

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

111

Standalone Switches

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

112

Standalone Switches

Cisco IOS switch software

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

113

Power up the Cisco 2960 Switch

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

114

Power up the Cisco 2960 Switch

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

115

Power up the Cisco 2960 Switch

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

116

Initial Switch Configuration

There are multiple options available to configure and manage a Cisco LAN switch. These options include: Cisco IOS Command Line Interface (CLI) Cisco Network Assistant Cisco Device Manager CiscoView Management Software SNMP Network Management Products

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

117

Initial Switch Configuration

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

118

Initial Switch Configuration

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

119

Initial Switch Configuration

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

120

Initial Switch Configuration

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

121

Initial Switch Configuration

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

122

Initial Switch Configuration

To configure the IP address assigned to the management interface on VLAN 1

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

123

Connect the LAN Switch to the Router



To connect the switch to a router, use a straight-through cables. LED lights on the switch and router indicate that the connection is successful. Check connnection 1. Check the IP address configuration Use the show running-configuration command to verify that the IP address of the management interface on the switch VLAN 1, and the IP address of the directly connected router interface are on the same local network. 2. Use the ping command to test the connection. Switches provide a feature called port security. It is possible to limit the number of addresses that can be learned on an interface.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

124

Connect the LAN Switch to the Router

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

125

Cisco Discovery Protocol (CDP)



Cisco Discovery Protocol (CDP) is an information-gathering tool used on a switch, ISR or router to share information with other directly connected Cisco devices. By default, CDP begins running when the device boots up. It then sends periodic messages, known as CDP advertisements, onto its directly connected network CDP operates at Layer 2 only and can be used on many different types of local networks, including Ethernet and serial networks. Because it is a Layer 2 protocol, it can be used to determine the status of a directly connected link when no IP address has been configured, or if the IP address is incorrect. Two Cisco devices that are directly connected on the same local network are referred to as being neighbors. Information gathered by CDP includes: Device identifiers - configured host name Address list - Layer 3 address, if configured Port identifier - directly connected port, for example: serial 0/0/0 Capabilities list - function or functions provided by the device Platform - hardware platform of the device, for example Cisco 1841

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

126

Cisco Discovery Protocol (CDP)

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

127

Cisco Discovery Protocol (CDP)

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

128

Install the CPE



Network devices installed at the customer location are called customer premise equipment (CPE). Before any equipment is installed at the customer site, the devices are configured and tested at the ISP site. Once the router is known to be configured correctly, all network cables, power cables, management cables, manufacturer documentation, manufacturer software, configuration documentation and the special tools needed for router installation are assembled. An inventory checklist is used to verify that all necessary equipment needed to install the router is present.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

129

Install the CPE



The installation of a new router can be disruptive for a business. Need a plan. This plan ensures that the customer will experience a minimum of disruption in service while the new equipment is installed. When installing customer equipment, it is important to complete the job in a professional manner. This means that all network cables are labeled and fastened together or run through proper cable management equipment. Excess lengths of cable should be coiled and secured out of the way. Update the documentation to include the current configuration for the router, and update the network diagrams to show the location of the equipment and cables that are installed.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

130

Install the CPE



After the router is successfully installed and tested, the network technician completes the installation checklist When the customer representative is satisfied that the router has been correctly installed and is operational, they sign and date the checklist. Sometimes there is a formal acceptance document that is in addition to the checklist. This procedure is often called the sign-off phase. It is critical that the customer representative signs off on the job because then the ISP can bill the customer for the work.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

131

Install the CPE

Installation Documentation
When customer equipment is configured and installed on the customer premise, it is important to document the entire process. Documentation includes all aspects of how the equipment is configured, diagrams of how the equipment is installed, and checklists to validate the correct installation. If a new configuration is needed, compare the documentation with the previous router configuration to determine if and how the new configuration has changed. Start documenting the work during the installation of the router. All cables and equipment should be correctly labeled and indicated on a diagram to simplify future identification. Follow an installation and verification checklist when installing a router. Leave a copy of the final documentation with the customer.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

132

Install the CPE

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

133

Install the CPE

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

134

Install the CPE

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

135

Install the CPE

Professional Image Many IT jobs require site visits to customer premises on a regular basis to install and troubleshoot equipment. A professional knows how to make the customer feel at ease and confident in the technician's skills. Dress for Success On the first visit to a customer location, it is important for the technician to make a good first impression. The way the technicians are dressed and their personal grooming is the first thing the customer notices. If the technician makes a bad first impression, it may be difficult to change that impression and gain the customer's confidence. Many employers provide a uniform or have a dress code for their on-site technicians. Language and Attitude The language and attitude of the technician reflect on the organization that the technician represents. A customer may be anxious or concerned about how the new equipment will operate. When speaking with a customer, be polite and respectful, and answer all customer questions. If additional information is required, be sure to write down the customer inquiry and follow up on it as soon as possible.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

136

Install the CPE

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

137

Workplace Safety

Ladders High or Dangerous Locations Electrical Equipment Awkward Spaces Heavy Equipment

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

138

Customer Connections over a WAN


New equipment at the customer site must be connected back to the ISP to provide Internet services. Wide Area Networks (WAN)
When a company or organization has locations that are separated by large geographical distances, it may be necessary to use the telecommunications service provider (TSP) to interconnect the LANs at the different locations. These networks that connect LANs in geographically separated locations are referred to as Wide Area Networks (WANs). WAN connections come in a variety of different types. WAN connections vary in the type of connector used, in bandwidth and in cost.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

139

Customer Connections over a WAN

There are three types of serial WAN connections. Point-to-Point


A point-to-point WAN connection is a predefined communications path from the customer premises through a telecommunications service provider (TSP) network. Point-to-point lines are usually leased from a TSP. (called leased lines) Point-to-point connections are typically the most expensive of the WAN connection types and are priced based on bandwidth required and distance between the two connected points.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

140

Customer Connections over a WAN

Circuit Switched
A circuit switched connection functions similarly to the way a phone call is made over a telephone network An example of a circuit switched WAN connection is an ISDN or dial-up connection.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

141

Customer Connections over a WAN

Packet Switched
In a packet switched WAN connection, networks have connections into the TSP switched network. Many customers share this TSP network. A virtual circuit is a logical path between the sender and receiver, not a physical path. An example of a packet switched network is Frame Relay.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

142

Chose a WAN Connection

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

143

Chose a WAN Connection



There are many things to consider when planning a WAN upgrade. Existing Infrastructure Included in the proposal is an explanation of existing infrastructure. Customer Requirements
This section of the proposal describes why a WAN upgrade is necessary for the business.

WAN Options
A list of all of the available WAN choices with the corresponding bandwidth, cost, and other features that are applicable for the business is included in the proposal.

Present the Plan


When the WAN upgrade proposal is completed, expect to present it to the business decision makers

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

144

Configure a Cisco Router using SSH

Telnet
A Telnet client can be used over an IP network connection to connect to a device in-band for the purpose of monitoring and administering it Telnet is not a secure protocol

Secure Shell (SSH)


It is a protocol that functions similarly to Telnet. SSH protects all authentication and transmitted data using encryption.

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

145

Configure WAN Connections

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

146

Configure WAN Connections

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

147

Configure WAN Connections

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

148

Summary

The key components on a Cisco 1841 ISR Methods to connect a PC to a network device for configuration and monitoring tasks. (in-band and out-ofband) Cisco Router and Security Device Manager (SDM) Cisco IOS command line interface (CLI) Configure SSH The key components of a Cisco Catalyst 2960 Series Switch CPE WAN

Hc vin cng ngh thng tin Bach Khoa - Website: www.bkacad.com

149

150

Vous aimerez peut-être aussi