This course
Basis knowledge about Cisco hardware/software Introduction to Ciscos IOS How to configure an IOS based switch Examples for Cat2950 / Cat 3550 Basic admin tasks NO: advanced features, routing, CatOS
Cisco
World-wide one of the biggest supplier of network hardware (about 60% world-wide) Near 100% probability packet will pass a Cisco machine while traveling the internet Single point of failure? Monoculture are never good! Latest security bug (were we lucky?)
Cisco Hardware
Wide range from small (AP, VoIP-Phone, ...) ... ... to big (ISP core routers) Main Software is IOS But others exists: Web Interfaces (older AP, VoIP) CatOS for older Catalysts / Supervisor boards
Cisco IOS
Internetwork Operating System one-size fits all (??) Not really: highly dependant on hardware/version Main interface: command line (CLI)
Console and telnet
newer versions: web interface (dont use it!) and SSH (V1.5, single(/tripple) DES)
IOS configs
Getting started: show version -> sh ver (HW/SW info) show interfaces -> sh int
Two configurations:
running-config (the current configuration): sh run startup-config (config loaded after a reload): sh start
BEWARE: only non-default entries are shown (so what are the default entries? That depends ...)
IOS interfaces
Physical interfaces (numbers depending on HW): In general: Hardware{slot/}number FastEthernet0/X (F0/X) GigabitEthernet0/X (G0/X)
Rule of thumb: <1000 packets/sec are OK Look out for errors (== link/cabel problems)
IOS VLANs
Defining a VLAN: Older versions: logical interface: int vlanX New version: vlan database show vlans vlan X define a VLAN (options possible) apply save the latest VLAN modifications (dont forget)
username root privilege 15 password 7 0011223344 Enable password 7 4433221100 BEWARE: keep these line secret (not a one-way-func.!!!)
(3550 only)
(Switch should now be remotly accessible) Define VLANs for every interface
switchport access vlan X
IOS update
Dont do it! Im seriuos!!! First problem: CCO account with permissions to download software needed. (-> ZfN) Find out current SW version running (sh ver) Find out new needed version (Cisco documentation!) READ the documentation!! Always have a known good image ready Check reboot on serial console!! Worst case: machine does not boot -> Boot Rom