HanoiCTT HanoiCTT HanoiCTT HanoiCTT Networking Academy 11.1.2.0/24 OSPF ISP: 192.168.20x.1/24 lo6: LAN6 East NAT pool: 192.168.20x.3~5 lo5 EastGate IGRP.

Презентация:



Advertisements
Похожие презентации
HanoiCTT HanoiCTT HanoiCTT HanoiCTT Networking Academy IP addressing: Subnets of the major networks: IGRP: /24 EIGRP: /24 lo1: /16.
Advertisements

HanoiCTT HanoiCTT HanoiCTT HanoiCTT Networking Academy lab: ospf-001a date: Hanoi Saigon Cantho Phanthiet Hatay lo1 lo2 lo3lo4 static routing.
© 2006 Cisco Systems, Inc. All rights reserved. BCMSN v Implementing Inter-VLAN Routing Enabling Routing Between VLANs on a Multilayer Switch.
© 2006 Cisco Systems, Inc. All rights reserved. BSCI v Implementing BGP Explaining EBGP and IBGP.
© 2006 Cisco Systems, Inc. All rights reserved. MPLS v Integrating Internet Access with MPLS VPNs Introducing Internet Access Models with MPLS VPNs.
Copyright 2003 CCNA 4 Chapter 11 Scaling IP Addresses By Your Name.
© 2000, Cisco Systems, Inc. 7-1 Chapter 7 Access Configuration Through the Cisco Secure PIX Firewall.
© 2006 Cisco Systems, Inc. All rights reserved. ICND v Module Summary Using ACLs, you can classify or filter packets on inbound and outbound routed.
© 2006 Cisco Systems, Inc. All rights reserved. ICND v Determining IP Routes Introducing Routing.
© 2005 Cisco Systems, Inc. All rights reserved. BGP v BGP Overview Establishing BGP Sessions.
© 2007 Cisco Systems, Inc. All rights reserved.DESGN v Structuring and Modularizing the Network Designing the Network Hierarchy.
© 2004, Cisco Systems, Inc. All rights reserved. CSPFA Lesson 13 Switching and Routing.
© 2006 Cisco Systems, Inc. All rights reserved.SNRS v Adaptive Threat Defense Examining Cisco IOS Firewall.
© 2003, Cisco Systems, Inc. All rights reserved. CSPFA Chapter 9 Routing.
© 2007 Cisco Systems, Inc. All rights reserved.DESGN v Designing IP Addressing and Selecting Routing Protocols Designing a Routing Protocol Deployment.
© 2006 Cisco Systems, Inc. All rights reserved. CIPT1 v Deployment of Cisco Unified CallManager Release 5.0 Endpoints Configuring Cisco Unified CallManager.
© 2006 Cisco Systems, Inc. All rights reserved.ISCW v IPsec VPNs Implementing the Cisco VPN Client.
© 2006 Cisco Systems, Inc. All rights reserved. BCMSN v Minimizing Service Loss and Data Theft in a Campus Network Protecting Against Spoof Attacks.
© 2007 Cisco Systems, Inc. All rights reserved.SNRS v Layer 2 Security Configuring DHCP Snooping.
© 2005 Cisco Systems, Inc. All rights reserved. BGP v BGP Transit Autonomous Systems Configuring a Transit AS.
Транксрипт:

HanoiCTT HanoiCTT HanoiCTT HanoiCTT Networking Academy /24 OSPF ISP: x.1/24 lo6: LAN6 East NAT pool: x.3~5 lo5 EastGate IGRP AS # = 444 lab: routing-002a date: T T ISP: 10.2.x.5/24 lo1: LAN1 lo3: LAN3 Core West ServerClient vlan west IP addressing: subnets of the major network: IGRP: /16; EIGRP: /16. OSPF: /16. VLAN: vlans: 2=west, 3=east; VTP: domain=business, password=goodluck WestGate: NAT, ip route x.5; ip default-network ; Create static route to network redistribute static. Turn on TELNET+HTTP access on WestGate to test ACL (ip http server). EastGate: NAT, ip route x.1; default-information oringinate. East: Static routing redistribution; Route summary OSPF (-router): summary-address Core: Inter-VLAN routing; Create static route to network /27; redistribute static. Route summary: EIGRP (-if): ip summary-address eigrp West:: ACL (on Ethernet interface) do not allow LAN2 vlan east, except HTTP+TELNET access (two way); Automatic routing redistribution between IGRP/EIGRP. ip = 10.2.x.200/24 Fast Ethernet vlan east NAT pool: 10.2.x.201~.203 lo2: LAN2 WestGate ip = x.1/24 EIGRP AS # = 444 lo /27

HanoiCTT HanoiCTT HanoiCTT HanoiCTT Networking Academy lab: routing-003a date: ISP: 10.2.x.5/24 T T vlan mars vlan venus Earth Server Client Mars Venus Jupiter Mecury Neptune EIGRP AS = 555 OSPF area=0 OSPF area=1 OSPF area=2 IP addressing: subnets of the major network: EIGRP: /16. OSPF: /16. (id ) VLSM: lo1~lo5 need 8000 nodes each segment; mars and venus need 4000 nodes each. VLAN: vlans: 2=mars, 3=venus; VTP: domain=planet, password=solar. Neptune: NAT (pool=10.2.x.201~203/24); default route, default network. Jupiter+Mecury: routing redistribution (beware of default route/network/infomation); Mars+Venus: inter-area (OSPF), and network summary:(-router) area 0 range Earth: Inter-VLAN routing, static route to /24, and to /24, redistribute static. Authentication (optional): OSPF (md5 passwd=cat); EIGRP (key=11 string=mouse). lo1 lo2 lo3 lo4 lo / x.200/ /24

HanoiCTT HanoiCTT HanoiCTT HanoiCTT Networking Academy lab: routing-004a date: IP addressing: subnetting using two major networks: /16 and /16. Routing protocol: EIGRP, AS=234, hello interval=5, hold time=20. Food ACL: Disallow NET1NET4, except HTTP+TELNET one-way to NET1 which is allowed. ip http server. Gold ACL: Disallow NET2NET3, except HTTP+TELNET two-way which is allowed. ip http server. Iron and Coal: Routing: no auto-summary (because of discontinuous network). ACL (line vty 0 4): Deny all TELNET to these routers, except TELNET from NET3+NET4 which is allowed. Dynamic NAT: both Wood and Stone. DHCP: Wood is DHCP server (for NET5) and Iron is using ip helper-address on the Ethernet port. Static NAT: Stone ip nat inside source static tcp lo2_address Stone ACL: INTERNET cannot initialize TCP to the inside network (except to lo2_address). Option: EIGRP authentication, key=123, password=abc. Note for ACL: all connections are allowed by default policy. ISP: x.1/24 ISP: 10.2.x.5/24 Food Gold Iron Coal Wood Stone lo1 lo2 lo3 lo4 INTERNET NET1 NET2 NET3 NET / / x.10/24 pool: x.11~ x.200/24 pool: 10.2.x.201~.209 NET5