Professional Documents
Culture Documents
or
k.
co
o to v Cisco Router
-n
CC NI DUNG CHNH
xp
et
or
k.
co
-n
xp
et
or
k.
co
-n
xp
A CH MNG
Ph
Phn Network dng nh
nhn bi
bit lp mng
c s dng
Ph
Phn host nh
nhn bi
bit a ch
ch ca my trong lp mng
giao ti
tip vi nhau th
th cc my tnh v thi
thit b mng ph
phi
c a ch
ch.
a ch
ch hi
hin ang s dng hi
hin nay l IPv4, mi a ch
ch gm
c 32 bit gi
tr
,
chia
th
nh
2
ph
n
:
ph
n
Network
v
ph
gi tr
th
ph
ph
phn
Host. phn bi
bit gi
gia 2 ph
phn ny th
th s dng mt n
mng con (Subnet mask).
V d:
IP: 192.168.100.1
Subnet mask: 255.255.255.0
y l tr
trm lm vi
vic c a ch
ch 192.168.100.1 thu
thuc lp mng
192.168.100.0, lp mng ny c th
th ch
cha 254 host c gi
gi tr
tr t
192.168.100.1 n 192.168.100.254
xp
-n
et
or
k.
co
et
or
k.
co
-n
ch
h
p
v
i
m
ng
chi
nh
nh
v
ng
nh
Th
nh
nh
xp
et
or
k.
co
-n
xp
t
router,
khng
d
ng
truy
c
p
t
xa
c
.
tr
et
or
k.
co
-n
Console gi
gin ti
tip qua cng AUX ca Router: Nh
Nh qu
qun tr
tr c
th
ng
h
nh
th
c
quay
s
truy
c
p
Console
b
ng
modem
th
th
t xa.
xa. Sau khi kt ni
c th
thc hi
hin nh
nh qu
qun tr
tr c th
th
thao tc vi Router gi
ging nh console tr
trc ti
tip. Phng ph
php
ny c i
im thu
thun li l c th
th truy cp t xa nhng ph
phi
trang b modem v line i
in tho
thoi cho Router.
xp
c
Interface
c
a
Router
v
c interface ny u
ch
ho
hot ng tt tnh tr
trng Up/Up. u i
im ca phng ph
php
ny l nh
nh qu
qun tr
tr c th
th ng
ngi ti bt c v tr
tr no trn mng
IP (k
(k c Internet) nu mng ny thng vi mng ca Router
truy cp vo Router
-n
et
or
k.
co
xp
CC THAO TC CU HNH
CISCO ROUTER
or
k.
c
c
u
h
nh.
.
nh
Mode privilege: ti mode ny mn hnh hi
hin ra du nh
nhc
Router#, mode ny dnh cho nh
nh qu
qun tr
tr, cho ph
php xem
cu hnh y ca Router v t mode ny c th
th chuy
chuyn
sang cc mode kh
khc mc cao hn.
hn.
co
-n
et
xp
chuy
chuyn t mode Privilege sang mode Global dng lnh:
nh:
chuy
chuyn t mode Global sang mode Interface config dng lnh:
nh:
Router#config
Router#config terminal
Kt qu
qu: Router(config)#
Router(config)# (Mode Global)
Router>enable
Router>enable (Nu yu cu nh
nhp password th
th g password vo)
Kt qu
qu: Router# (Mode Privilege)
Router(config)#interface
Router(config)#interface <interfaceinterface-name>
name>
Kt qu
qu: Router(configRouter(config-if)# (Mode Interface config)
config)
co
chuy
chuyn t mode Global sang mode Line config dng lnh
Router(config)#line
Router(config)#line <con | aux | vty 0 4 | tty x y>
Kt qu
qu: Router(configRouter(config-line)#
et
or
k.
-n
chuy
chuyn ng
ngc li t mode cp cao hn xu
xung mode cp th
thp
hn dng lnh exit
exit. V d:
xp
Router(config)#router
Router(config)#router <protocol> <number>
Kt qu
qu: Router(configRouter(config-router)#
Router(configRouter(config-if)#exit
if)#exit
Kt qu
qu: Router(config)#
Router(config)#
Router(config)#exit
Router(config)#exit
Kt qu
qu: Router#
chuy
chuyn t mode bt k v ngay mode Privilege dng lnh end
end
ho
hoc bm t hp ph
phm ControlControl-Z:
Router(configRouter(config-if)#end
if)#end
Kt qu
qu: Router#
10
CC LNH CU HNH C BN
t tn cho Router:
t mt kh
i t mt kh
khu cho cng Telnet ca Router (ph
(ph
khu
ny th
th mi s dng phng ph
php Telnet vo Router
c)
Router#config
Router#config terminal
Router(config)#line
Router(config)#line vty 0 4
Router(configRouter(config-line)#login
line)#login
Router(configline)#password
Router(config line)#password cisco (v d t l cisco)
cisco)
Router(config)#hostname
Router(config)#hostname RTRT-01 (v d t l RTRT-01)
Kt qu
qu: RTRT-01(config)#
co
et
or
k.
-n
CU HNH CDP
xp
Router#show
Router#show cdp neighbors :Lnh ny s cho bi
bit thng tin v
cc thi
thit b kh
khc nh Devide Id, Capability, Platform, connected interface
xem chi ti
tit hn ta dng lnh:
nh:
Router#show
Router#show cdp neighbors detail :Lnh ny s cho thng
tin c th
th ca tng thi
thit b, bao gm cc a ch
ch IP ca Interface, IOS
version, VTP information
information
11
Tr
Trc khi ghi li nh
nhng thay i ca cu hnh Router vo
NVRAM, ch
chng ta nn xem li cu hnh bng lnh:
nh:
Router#show
Router#show run
Router#write
Router#write mem
Ta c th
th xem cu hnh hi
hin ang
c ghi trong NVRAM bng
lnh:
nh:
Router#show
Router#show start ho
hoc
Router#show
Router#show config
et
or
k.
co
xp
-n
Router#copy
Router#copy startupstartup-config tftp:
tftp:
Address or name of remote host []? 192.168.100.1
Destionation filename []? R1R1-config
ng
c
ng
yu
c
u
nh
a
ch
th
nh
ch ca TFTP Server v tn
file cu hnh
c lu tr
trc . Cc lnh nh sau:
sau:
Router#copy
Router#copy tftp:
tftp: startupstartup-config
Address or name of remote host []? 192.168.100.1
Destionation filename []? R1R1-config
12
kt ni vo cc phn o
on mng,
ng, cc interfaces ca Router ph
phi
c gn a ch
ch, cc a ch
ch ny ph
phi thu
thuc cc lp mng kh
khc nhau.
nhau.
C ph
php t a ch
ch cho interface nh sau:
sau:
Router#config
Router#config terminal
Router(config)#interface
Router(config)#interface <slot No/interface No>
Router(config> <mask>
Router(config-if)#ip
if)#ip address <address
<address>
Sau khi gn a ch
ch ch
chng ta cn dng lnh no shutdown
shutdown kch
ho
hot interface:
Router(configRouter(config-if)#no
if)#no shutdown
or
k.
co
-n
et
172.16.1.1/16
cho cng Serial 1/1:
ch
Router#config
Router#config terminal
Router(config)#interface
Router(config)#interface fastethernet 0/1
Router(configRouter(config-if)#ip
if)#ip address 192.168.10.1 255.255.255.0
Router(configif)#no
Router(config if)#no shutdown
Router(configRouter(config-if)#exit
if)#exit
Router(config)#interface
Router(config)#interface serial 1/1
Router(configRouter(config-if)#ip
if)#ip address 172.16.1.1 255.255.0.0
Router(configif)#no
Router(config if)#no shutdown
Router(configRouter(config-if)#end
if)#end
Router#
xp
13
V d ki
kim tra tnh tr
trng ca Interface Fast Ethernet 0/0, ta g
lnh:
nh:
Router#show
Router#show interface f0/0
V d ki
kim tra tnh tr
trng ca Interface Serial 0/1, ta g lnh:
nh:
Router#show
Router#show interface <interface
<interface name>
Router#show
Router#show interface s0/1
co
ki
kim tra tnh tr
trng tt c cc IP interface, ta dng lnh:
nh:
Router#show
Router#show ip interface brief
or
k.
-n
et
xp
V d sau khi gn a ch
ch cho interface f0/0 l 192.168.100.1/24 v
dng lnh:
nh:
Router#show
Router#show interface f0/0
S tm th
thy dng kt qu
qu:
FastEthernet0/0 is up, line protocol is up
Internet address is 192.168.100.1/24
14
Interface is down
Line protocol is down
Th
Th Router khng nh
nhn
c tn hi
hiu t HTU, ki
kim tra HTU
v bo cho cn b tin hc ti Trung tm mi
min
or
k.
co
-n
et
xp
Interface l interface cn ki
kim tra
IPIP-Address: a ch
ch ca Interface , ph
phi ng nh ta gn
Status: ph
phi l up
up
Protocol: cng ph
phi up
up
ng
cha,
g vo ng cha,
,
c
ng
ethernet
c
m
v
o
cha,
cha
dy mng c tt khng,
khng, tnh tr
trng NTU c tt khng
khng
15
Router c th
th thng bo ln nhau v thng tin nh tuy
tuyn trn
mng
nh tuy
tuyn tnh (Static Routing): dng cho nh
nhng mng nh
nh m
hnh n gi
gin
nh tuy
tuyn ng (Dynamic Routing): dng trong nh
nhng mng ln
m hnh kt ni ph
phc tp.
or
k.
Gi
Gip Router chuy
chuyn
c gi tin n ng mng ch
co
xp
-n
et
Trong v d trn:
trn:
Cc PC (PC1, PC2, PC3) thu
thuc cc phn o
on mng kh
khc nhau
Vi
Vic truy
truyn d li
liu gi
gia cc PC ny ph
phi i qua cc Router
Cc Router ny ph
phi nh
nhn th
thc
c routes
routes ti mng ch
cha cc
PC ny th
th mi c th
th nh tuy
tuyn d li
liu truy
truyn gi
gia ch
chng,
ng, mu
mun
vy ph
phi cu hnh nh tuy
tuyn trn cc Router trung gian.
gian.
16
Nh
Nhc i
im: khng ph
ph hp vi mng ln v khng t cp nh
nht
khi m hnh mng thay i.
u i
im: Router t ng cp nh
nht thng tin v routing trn
mng,
ng, nh
nh qu
qun tr
tr khng cn thao tc manual, ph
ph hp vi
mng ln v m hnh mng hay thay i
Nh
Nhc i
im: Cu hnh ph
phc tp hn nh tuy
tuyn tnh,
nh, s dng
bng thng mng cho vi
vic truy
truyn thng tin nh tuy
tuyn.
or
k.
u i
im: cu hnh n gi
gin, khng tn bng thng mng cho
vi
vic truy
truyn thng tin nh tuy
tuyn.
co
xp
-n
et
17
co
Router 1:
k.
or
R1>enable
R1>enable
R1#config
R1#config terminal
R1(config)#ip
R1(config)#ip route
R1(config)#ip
R1(config)#ip route
R1(config)#ip
R1(config)#ip route
R1(config)#ip
R1(config)#ip route
R1(config)#ip
R1(config)#ip route
xp
-n
et
Trong tr
trng hp ny ta th
thy i ra cc mng kh
khc t Router 1 th
th
ch
ch c mt
ng duy nh
nht l i ti cng Ethernet ca Router 2, do vy
ta c th
th cu hnh mt Default Route ti Router 2. Default Route dng
trong tr
trng hp Router khng tm th
thy bt k mt
ng i c th
th
no cho mt mng ch th
chuyn gi tin theo Default Route
th n s chuy
R1>enable
R1>enable
R1#config
R1#config terminal
R1(config)#ip
R1(config)#ip route 0.0.0.0 0.0.0.0 172.16.12.2
18
co
192.168.3.0/24 th
th a gi tin n nextnext-hop l 10.1.23.3 (c
(cng Serial ca Router 3)
192.168.1.0/24 th
th a gi tin n nextnext-hop l 10.1.24.4 (c
(cng Serial ca Router 4)
192.168.2.0/24 th
th a gi tin n nextnext-hop l 172.16.12.1 (c
(cng Ethernet ca Router 1)
k.
172.16.45.0/24 th
th a gi tin n nextnext-hop l 10.1.24.4 (c
(cng Serial ca Router 4)
or
xp
-n
et
Router 2:
R2>enable
R2>enable
R2#config
R2#config terminal
R2(config)#ip
R2(config)#ip route
R2(config)#ip
R2(config)#ip route
R2(config)#ip
R2(config)#ip route
R2(config)#ip
R2(config)#ip route
192.168.3.0
192.168.1.0
192.168.2.0
172.16.45.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
10.1.23.3
10.1.24.4
172.16.12.1
10.1.24.4
19
co
or
k.
i vi cc Router kh
khc nh Router 3, Router 4, Router 5 th
th
cu hnh ho
hon to
ton tng t, ta ch
ch cn ch
ch n nextnext-hop m
router cn ph
phi route gi tin ti ti
c mng ch,
ch, ti
Router 3 v Router 5 c th
th dng Default Route nh p dng
vi Router 1
xp
-n
et
20
or
k.
co
xp
-n
et
c rng n
c mng ny th
th cn chuy
chuyn gi tin ti nextnext-hop l a ch
ch ca Router
1, n l
lt n Router 2 s thng bo v cc mng ch m n bi
bit, gm c mng
172.16.12.0/24,
10.1.23.0/24, 10.1.24.0/24 v mng m n va bi
bit
c t Router 1 l
172.16.12.0/24, 10.1.23.0/24,
192.168.2.0/24 cho cc Router ln cn v qu
qu tr
trnh c th
th ti
tip di
din. Cu
Cui cng l tt c
cc Router u bi
bit
c thng tin v tt c cc mng ch
Khi a ch
ch v cc mng ny thay i, cc Router s t ng cp nh
nht thay i v thng
bo cho nhau bi
bit tt c router trong mng u c thng tin routing mi nh
nht.
21
co
Router 1:
or
k.
R1>enable
R1>enable
R1#config
R1#config terminal
R1(config)#router
R1(config)#router rip
R1(configR1(config-router)#network
router)#network 192.168.2.0
R1(configR1(config-router)#network
router)#network 172.16.0.0
R1(configR1(config-router)#no
router)#no autoauto-summary
R1(configR1(config-router)#version
router)#version 2
xp
-n
et
Router 2:
R2>enable
R2>enable
R2#config
R2#config terminal
R2(config)#router
R2(config)#router rip
R2(configR2(config-router)#network
router)#network 10.0.0.0
R2(configR2(config-router)#network
router)#network 172.16.0.0
R2(configR2(config-router)#no
router)#no autoauto-summary
R2(configR2(config-router)#version
router)#version 2
22
co
i vi cc Router kh
khc thi cu hnh ho
hon to
ton tng t
or
k.
xp
-n
et
Router 1:
R1>enable
R1>enable
R1#config
R1#config terminal
R1(config)#router
R1(config)#router eigrp 100
R1(configR1(config-router)#network
router)#network 192.168.2.0
R1(configR1(config-router)#network
router)#network 172.16.0.0
R1(configR1(config-router)#no
router)#no autoauto-summary
R1(configR1(config-router)#version
router)#version 2
23
co
Router 2:
or
k.
R2>enable
R2>enable
R2#config
R2#config terminal
R2(config)#router
R2(config)#router eigrp 100
R2(configR2(config-router)#network
router)#network 10.0.0.0
R2(configR2(config-router)#network
router)#network 172.16.0.0
R2(configR2(config-router)#no
router)#no autoauto-summary
R2(configR2(config-router)#version
router)#version 2
xp
-n
et
i vi cc Router kh
khc thi cu hnh ho
hon to
ton tng t
Sau khi cu hnh xong ht Router th
th t a ch
ch Default Gateway ca
PC nh khi lm vi Static Routing v ping th
th t cc PC cho nhau,
nhau, qu
qu
tr
trnh ph
phi th
thc hi
hin tt th
th vi
vic cu hnh mi l ng
24
show ip route
show ip protocol
ping
traceroute
et
or
k.
co
-n
Hi
Hin th
th bng nh tuy
tuyn ca Router, xem tt c cc mng ch
m Router c th
th chuy
chuyn gi tin ti
c
xp
Hi
Hin cc thng tin v Route:
c cu hnh bng static hay
dynamic v cc thng s lin quan
Cc route c k hi
hiu S l route
c cu hnh bng static
Cc route c k hi
hiu R l route
c cu hnh dynamic bng RIP
Cc route c k hi
hiu D l route
c cu hnh dynamic bng
EIGRP
Cc Default route (d
(d
c cu hnh bi static hay ly bng
dynamic u c thm k hi
hiu *)
25
Lnh ping ki
kim tra kt ni gi
gia 2 i
im trn mng
Lnh ny c th
th dng trn Router ho
hoc PC
Nu g ping <ip
<ip address> th
th router s th
thc hi
hin lnh ping chu
chun
th
thc hi
hin lnh ping m rng th
th g ping <Enter>, sau tr
tr
li cc cu hi v a ch
ch ngu
ngun, kch th
thc gi tin, timeout
timeout
et
or
k.
co
-n
xp
Dng ki
kim tra xem khi gi tin i gi
gia hai i
im trn mng th
th
i qua nh
nhng Router no, lnh ny rt c tc dng khi x l s
c v Routing trn mng
Khi traceroute n mt i
im b timeout (khng
(khng c tr
tr li) th
th ta
ki
kim tra ngay bng nh tuy
tuyn ti Router xc nh xem ti
sao Router khng chuy
chuyn
c gi tin.
26
co
Th
Th t cc b
bc troubleshooting v routing trn mng
Gi
Gi s ta ping t PC1 n PC3, c ping khng th
thnh cng,
cng, ta s ki
kim tra ln l
lt theo cc
b
bc sau:
sau:
B
Bc 1: Ki
Kim tra xem cc PC1 v PC3 cu hnh ng default gateway cha.
cha. Nu cha
ng,
c th
th lm ti
tip b
bc 2
ng, cu hnh li cho ng v ping li. Nu vn khng
k.
B
Bc 2: Ki
Kim tra tt cc cc interface trn Router v ch
chc ch
chn rng tnh tr
trng u up
up
or
B
Bc 3: Ti tng Router, ping th
th tt c cc Interface ca Router k vi n, ph
phi ch
chc ch
chn
rng cc c ping ph
phi th
thnh cng
xp
-n
et
Th
Th t cc b
bc troubleshooting v routing trn mng
B
Bc 4: Nu c ln ping no khng th
thnh cng,
cng, th
th ki
kim tra li xem a ch
ch IP ca Interface
t ng cha
B
Bc 5: Nu a ch
ch IP t ng m vn khng ping
c th
th show ip route ca tng router
ch
chc ch
chn rng tt c router trn
ng i u c route ti cc mng ch kh
khc trong h
th
thng
B
Bc 6: Nu c Router no khng nh
nhn
c mng ch trn
ng truy
truyn t PC1 n PC3
th
tuyn tnh tr
trc lo
loi b
th cu hnh li ph
phn nh tuy
tuyn cho Router n, nn s dng nh tuy
nguyn nhn li do giao th
thc nh tuy
tuyn
27
Vai tr ca ACL
Dng phn lo
loi traffic trn mng cho cc mc ch kh
khc (V d
nh cu hnh QoS)
QoS)
Cc loi ACL
Dng hn ch
ch truy cp i vi a ch
ch ngu
ngun, a ch
ch ch,
ch, lo
loi
dch v no , c th
th hn ch
ch theo th
thi gian
Dng chu
chun: hn ch
ch theo a ch
ch ngu
ngun ca gi tin
Dng m rng:
ng: hn ch
ch theo a ch
ch ngu
ngun, a ch
ch ch,
ch, cng
dch v ca gi tin
co
et
or
k.
-n
number: s hi
hiu nh
nhn dng ACL, c gi
gi tr
tr t 1 n 99
Statement: ch
chnh sch ca ACL, c 2 lo
loi l Permit
Permit v Deny
Deny
Address: a ch
ch mng cn p dng vo ACL
Mask: ph
phn b bit ca mt n mng con
xp
28
Statement: ch
chnh sch ca ACL, c 2 lo
loi l Permit
Permit v Deny
Deny
Protocol: giao th
thc p vo ACL, th
thng dng IP, TCP, UDP
Source address: a ch
ch ngu
ngun ca gi tin xem xt
Destination address: a ch
ch ch ca gi tin xem xt
et
or
k.
co
-n
xp
29
Router(config)#interface
Router(config)#interface <name>
Router(configRouter(config-if)#ip
if)#ip accessaccess-group <number> <in/out>
C th
th xem danh sch cc ACL v Interface bng lnh:
nh:
Router#show
Router#show accessaccess-list
or
k.
co
xp
-n
et
Lu : Mi ACL ph
phi c t nh
nht mt dng permit
permit, nu khng tt c traffic s b t
ch
chi truy nh
nhp
30
co
R2>enable
R2>enable
R2#config
R2#config terminal
R2(config)#access
-list 1 permit host 192.168.3.3
R2(config)#accessR2(config)#access
-list 1 deny 192.168.3.0 0.0.0.255
R2(config)#accessR2(config)#access
-list 1 permit any
R2(config)#accessR2(config)#interface
R2(config)#interface s0/0
R2(configR2(config-if)#ip
if)#ip accessaccess-group 1 in
R2(configR2(config-if)#end
if)#end
R2#
or
k.
Lu : Mi ACL ph
phi c t nh
nht mt dng permit
permit, nu khng tt c traffic s b t
ch
chi truy nh
nhp
xp
-n
et
Lu : Mi ACL ph
phi c t nh
nht mt dng permit
permit, nu khng tt c traffic s b t
ch
chi truy nh
nhp
31
LU CHUNG
Trong nhi
nhiu tr
trng hp, ch
ch nn dng cc lnh show xem
thng tin v h th
ng
v
chuy
th
chuyn cho ng
ngi c tr
trch nhi
nhim gi
gii
quy
t
(
c
c
l
nh
nh
show
run,
show
ip
protocol,
show
ip
route,
quy
show interface, show ip interface brief
brief
Ch
Ch nn th
th nghi
nghim cc bi th
thc hnh trn Router tch bi
bit vi
h th
thng mng chung tr
trnh lm nh h
hng n ho
hot ng
ca mng
et
or
k.
co
Cu hnh giao th
thc nh tuy
tuyn, a ch
ch, ACL
ACL u nh h
hng tr
trc
ti
tip n h th
thng do vy ph
phi th
tht cn th
thn khi s dng cc
phng ph
php cu hnh trn
xp
-n
Xin cm n v hn gp li!
32