O‘ZBEKISTON RESPUBLIKASI AXBOROT TEXNOLOGIYALARI VA KOMMUNIKATSIYALARINI RIVOJLANTIRISH VAZIRLIGI MUHAMMAD AL-XORAZMIY NOMIDAGI TOSHKENT AXBOROT TEXNOLOGIYALARI UNIVERSITETI 6,7,8,9 -laboratoriyalar Guruh: 715-20 Bajardi: Ergashev Tursunmurod Tekshirdi : Axmedova Naima 6 - LABORATORIYA ISHI RIP, EIGRP, OSPF VA BGP PROTOKOLLARI ASOSIDA DINAMIK MARSHRUTLASHNI SOZLASH Ishdan maqsad Dinamik marshrutizatsiya RIP, EIGRP, OSPF, BGP protokollari asosida qurilgan tarmoqda xavfsizlikni ta’minlash bo`yicha amaliy ko`nikmaga ega bo`lish. RIP R1 Router>en Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#ho Router(config)#hostname R1 R1(config)#int g 0/0 R1(config-if)#ip address 192.168.1.254 255.255.255.0 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/1 R1(config-if)#ip address 192.168.4.2 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/2 R1(config-if)#ip address 192.168.6.2 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#router rip R1(config-router)#version 2 R1(config-router)#no auto-summary R1(config-router)#passive-interface g0/0 R1(config-router)#network 192.168.1.0 R1(config-router)#network 192.168.4.0 R1(config-router)#network 192.168.6.0 R1(config-router)#exit R1(config)#do wr R2 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R2 R2(config)#int g0/2 R2(config-if)#ip address 192.168.2.254 255.255.255.0 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/1 R2(config-if)#ip address 192.168.4.1 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/0 R2(config-if)#ip address 192.168.5.1 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit R2(config)#router rip R2(config-router)#version 2 R2(config-router)#no auto-summary R2(config-router)#passive-interface g0/2 R2(config-router)#network 192.168.2.0 R2(config-router)#network 192.168.4.0 R2(config-router)#network 192.168.5.0 R2(config-router)#exit R2(config)#do wr R3 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R3 R3(config)#int g0/1 R3(config-if)#ip address 192.168.3.254 255.255.255.0 R3(config-if)#no sh R3(config-if)#exit R3(config)#int g0/0 R3(config-if)#ip address 192.168.5.2 255.255.255.252 R3(config-if)#no sh R3(config-if)#exit R3(config)#int g0/2 R3(config-if)#ip address 192.168.6.1 255.255.255.252 R3(config-if)#no sh R3(config-if)#exit R3(config)#router rip R3(config-router)#version 2 R3(config-router)#no au R3(config-router)#no auto-summary R3(config-router)#pass R3(config-router)#passive-interface g0/1 R3(config-router)#network 192.168.3.0 R3(config-router)#network 192.168.5.0 R3(config-router)#network 192.168.6.0 R3(config-router)#exit R3(config)#do wr EIGRP. R1 Router>en Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#ho Router(config)#hostname R1 R1(config)#int g 0/0 R1(config-if)#ip address 192.168.1.254 255.255.255.0 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/1 R1(config-if)#ip address 192.168.4.2 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/2 R1(config-if)#ip address 192.168.6.2 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#router eigrp 1 R1(config-router)#eigrp router-id 1.1.1.1 R1(config-router)#network 192.168.1.0 R1(config-router)#network 192.168.4.0 R1(config-router)#network 192.168.6.0 R1(config-router)#no auto-summary R2 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R2 R2(config)#int g0/2 R2(config-if)#ip address 192.168.2.254 255.255.255.0 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/1 R2(config-if)#ip address 192.168.4.1 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/0 R2(config-if)#ip address 192.168.5.1 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit R2(config)#router eigrp 1 R2(config-router)#eigrp router-id 2.2.2.2 R2(config-router)#network 192.168.2.0 R2(config-router)#network 192.168.4.0 R2(config-router)# R2(config-router)#network 192.168.5.0 R2(config-router)#no auto-summary R2(config-router)#exit R3 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R3 R3(config)#int g0/1 R3(config-if)#ip address 192.168.3.254 255.255.255.0 R3(config-if)#no sh R3(config-if)#exit R3(config)#int g0/0 R3(config-if)#ip address 192.168.5.2 255.255.255.252 R3(config-if)#no sh R3(config-if)#exit R3(config)#int g0/2 R3(config-if)#ip address 192.168.6.1 255.255.255.252 R3(config-if)#no sh R3(config-if)#exit R3(config)#router eigrp 1 R3(config-router)#eigrp router-id 3.3.3.3 R3(config-router)#network 192.168.3.0 R3(config-router)#network 192.168.5.0 R3(config-router)#network 192.168.6.0 R3(config-router)#no auto-summary R3(config-router)#exit OSPF R1 Router>en Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#ho Router(config)#hostname R1 R1(config)#int g 0/0 R1(config-if)#ip address 192.168.1.254 255.255.255.0 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/1 R1(config-if)#ip address 192.168.4.2 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/2 R1(config-if)#ip address 192.168.6.2 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#router ospf 1 R1(config-router)#network 192.168.1.0 0.0.0.255 area 1 R1(config-router)#network 192.168.4.0 0.0.0.3 area 1 R1(config-router)#network 192.168.6.0 0.0.0.3 area 1 R1(config-router)#router-id 1.1.1.1 R1(config-router)#exit R2 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R2 R2(config)#int g0/2 R2(config-if)#ip address 192.168.2.254 255.255.255.0 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/1 R2(config-if)#ip address 192.168.4.1 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/0 R2(config-if)#ip address 192.168.5.1 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit R2(config)#router ospf 1 R2(config-router)#network 192.168.2.0 0.0.0.255 area 1 R2(config-router)#network 192.168.4.0 0.0.0.3 area 1 R2(config-router)#network 192.168.5.0 0.0.0.3 area 1 R2(config-router)#router-id 2.2.2.2 R3 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R3 R3(config)#int g0/1 R3(config-if)#ip address 192.168.3.254 255.255.255.0 R3(config-if)#no sh R3(config-if)#exit R3(config)#int g0/0 R3(config-if)#ip address 192.168.5.2 255.255.255.252 R3(config-if)#no sh R3(config-if)#exit R3(config)#int g0/2 R3(config-if)#ip address 192.168.6.1 255.255.255.252 R3(config-if)#no sh R3(config-if)#exit R3(config)#router ospf 1 R3(config-router)#network 192.168.3.0 0.0.0.255 area 1 R3(config-router)#network 192.168.5.0 0.0.0.3 area 1 R3(config-router)#network 192.168.6.0 0.0.0.3 area 1 R3(config-router)#router-id 3.3.3.3 R3(config-router)#exit BGP R1 Router>en Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#ho Router(config)#hostname R1 R1(config)#int g 0/0 R1(config-if)#ip address 192.168.1.254 255.255.255.0 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/1 R1(config-if)#ip address 192.168.4.2 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/2 R1(config-if)#ip address 192.168.6.2 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#router bgp 7777 R1(config-router)#bgp router-id 1.1.1.1 R1(config-router)#neighbor 192.168.4.1 remote-as 8888 R1(config-router)#neighbor 192.168.6.1 remote-as 9999 R1(config-router)#network 192.168.1.0 mask 255.255.255.0 R1(config-router)#exit R2 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R2 R2(config)#int g0/2 R2(config-if)#ip address 192.168.2.254 255.255.255.0 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/1 R2(config-if)#ip address 192.168.4.1 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/0 R2(config-if)#ip address 192.168.5.1 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit R2(config)#router bgp 8888 R2(config-router)#bgp router-id 2.2.2.2 R2(config-router)#neighbor 192.168.4.2 remote-as 7777 R2(config-router)#neighbor 192.168.5.2 remote-as 9999 R2(config-router)#network 192.168.2.0 mask 255.255.255.0 R2(config-router)#exit R3 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R3 R3(config)#int g0/1 R3(config-if)#ip address 192.168.3.254 255.255.255.0 R3(config-if)#no sh R3(config-if)#exit R3(config)#int g0/0 R3(config-if)#ip address 192.168.5.2 255.255.255.252 R3(config-if)#no sh R3(config-if)#exit R3(config)#int g0/2 R3(config-if)#ip address 192.168.6.1 255.255.255.252 R3(config-if)#no sh R3(config-if)#exit R3(config)#router bgp 9999 R3(config-router)#bgp router-id 3.3.3.3 R3(config-router)#neighbor 192.168.5.1 remote-as 8888 R3(config-router)#neighbor 192.168.6.2 remote-as 7777 R3(config-router)#network 192.168.3.0 mask 255.25.255.0 R3(config-router)#exit 7 – LABORATORIYA ISHI ACL RO`YXATINI SOZLASH (STANDART, EXTENDED) Ishdan maqsad Ma’lumot uzatish tarmoqlarida qo‘llaniluvchi ACL-ro`yxati tuzish, sozlash va tekshirish qoidalarini tadqiq qilish. R1 Router>en Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#ho Router(config)#hostname R1 R1(config)#int g 0/0 R1(config-if)#ip address 192.168.1.254 255.255.255.0 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/1 R1(config-if)#ip address 192.168.4.2 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/2 R1(config-if)#ip address 192.168.6.2 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#router ospf 1 R1(config-router)#network 192.168.1.0 0.0.0.255 area 1 R1(config-router)#network 192.168.4.0 0.0.0.3 area 1 R1(config-router)#network 192.168.6.0 0.0.0.3 area 1 R1(config-router)#router-id 1.1.1.1 R1(config-router)#exit R1(config)#ip access-list standard R R1(config-std-nacl)#permit host 192.168.2.1 R1(config-std-nacl)#permit host 192.168.3.1 R1(config-std-nacl)#deny 192.168.2.0 0.0.0.255 R1(config-std-nacl)#deny 192.168.3.0 0.0.0.255 R1(config-std-nacl)#exit R1(config)#int g0/0 R1(config-if)#ip access-group R out R1(config-if)#exit R2 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R2 R2(config)#int g0/2 R2(config-if)#ip address 192.168.2.254 255.255.255.0 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/1 R2(config-if)#ip address 192.168.4.1 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/0 R2(config-if)#ip address 192.168.5.1 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit R2(config)#router ospf 1 R2(config-router)#network 192.168.2.0 0.0.0.255 area 1 R2(config-router)#network 192.168.4.0 0.0.0.3 area 1 R2(config-router)#network 192.168.5.0 0.0.0.3 area 1 R2(config-router)#router-id 2.2.2.2 R3 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R3 R3(config)#int g0/1 R3(config-if)#ip address 192.168.3.254 255.255.255.0 R3(config-if)#no sh R3(config-if)#exit R3(config)#int g0/0 R3(config-if)#ip address 192.168.5.2 255.255.255.252 R3(config-if)#no sh R3(config-if)#exit R3(config)#int g0/2 R3(config-if)#ip address 192.168.6.1 255.255.255.252 R3(config-if)#no sh R3(config-if)#exit R3(config)#router ospf 1 R3(config-router)#network 192.168.3.0 0.0.0.255 area 1 R3(config-router)#network 192.168.5.0 0.0.0.3 area 1 R3(config-router)#network 192.168.6.0 0.0.0.3 area 1 R3(config-router)#router-id 3.3.3.3 R3(config-router)#exit 8 – LABORATORIYA ISHI MARSHRUTIZATORLARDA NAT, PAT TEXNOLOGIYASINI SOZLASH Ishdan maqsad: Manzillarni translatsiya qilish (NAT) tamoyillari va vazifalarini tadqiq qilish va amaliy ko`nikmaga ega bo’lish. 1. Static Network Address Translation R1 Router>en Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R1 R1(config)#int g0/1 R1(config-if)#ip address 192.168.1.254 255.255.255.0 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/0 R1(config-if)#ip address 192.168.3.1 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#ip route 0.0.0.0 0.0.0.0 192.168.3.2 R1(config)#ip nat inside source static 192.168.1.1 7.7.7.7 R1(config)#ip nat inside source static 192.168.1.2 8.8.8.8 R1(config)#ip nat inside source static 192.168.1.3 9.9.9.9 R1(config)#int g0/0 R1(config-if)#ip nat outside R1(config-if)#exit R1(config)#int g0/1 R1(config-if)#ip nat inside R1(config-if)#exit R2 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R2 R2(config)#int g0/1 R2(config-if)#ip address 192.168.2.254 255.255.255.0 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/0 R2(config-if)#ip address 192.168.3.2 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit 2.Dynamic Address Translation R1 Router>en Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R1 R1(config)#int g0/1 R1(config-if)#ip address 192.168.1.254 255.255.255.0 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/0 R1(config-if)#ip address 192.168.3.1 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#ip route 0.0.0.0 0.0.0.0 192.168.3.2 R1(config)#ip nat pool R1 77.77.77.1 77.77.77.7 netmask 255.255.255.0 R1(config)#access-list 1 permit 192.168.1.0 0.0.0.255 R1(config)#ip nat inside source list 1 pool R1 R1(config)#int g0/1 R1(config-if)#ip nat inside R1(config-if)#exit R1(config)#int g0/0 R1(config-if)#ip nat outside R1(config-if)#exit R2 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R2 R2(config)#int g0/1 R2(config-if)#ip address 192.168.2.254 255.255.255.0 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/0 R2(config-if)#ip address 192.168.3.2 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit 3.NAPT, NAT Overload, PAT R1 Router>en Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R1 R1(config)#int g0/1 R1(config-if)#ip address 192.168.1.254 255.255.255.0 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/0 R1(config-if)#ip address 192.168.3.1 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#ip route 0.0.0.0 0.0.0.0 192.168.3.2 R1(config)#ip nat pool nad_pat 77.77.77.1 77.77.77.7 netmask 255.255.255.0 R1(config)#access-list 1 permit 192.168.1.0 0.0.0.255 R1(config)#ip nat inside source list 1 pool nad_pat overload R1(config)#int g0/1 R1(config-if)#ip nat inside R1(config-if)#exit R1(config)#int g0/0 R1(config-if)#ip nat outside R1(config-if)#exit R2 Router>enable Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R2 R2(config)#int g0/1 R2(config-if)#ip address 192.168.2.254 255.255.255.0 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/0 R2(config-if)#ip address 192.168.3.2 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit 9-Laboratoriya ishi Tarmoqni himoyalash protokollari SCP, SNMP ni sozlash va log fayllarni tadqiq etish SNMP R1 Router>en Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R1 R1(config)#int g0/1 R1(config-if)#ip address 192.168.1.254 255.255.255.0 R1(config-if)#no sh R1(config-if)#exit R1(config)#snmp-server community public ro %SNMP-5-WARMSTART: SNMP agent on host R1 is undergoing a warm start R1(config)#snmp-server community private rw R1(config)#exit R2 Router>en Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R2 R2(config)#int g0/2 R2(config-if)#ip address 192.168.2.254 255.255.255.0 R2(config-if)#no sh R2(config-if)#exit R2(config)#snmp-server community public ro %SNMP-5-WARMSTART: SNMP agent on host R2 is undergoing a warm start R2(config)#snmp-server community private rw R2(config)#exit SYSLOG R1 Router>en Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R1 R1(config)#int g0/1 R1(config-if)#ip address 192.168.1.254 255.255.255.0 R1(config-if)#no sh R1(config-if)#exit R1(config)#int g0/0 R1(config-if)#ip address 192.168.3.1 255.255.255.252 R1(config-if)#no sh R1(config-if)#exit R1(config)#ip route 0.0.0.0 0.0.0.0 192.168.3.2 R1(config)#logging host 192.168.2.1 R1(config)#logging trap debugging R1(config)#exit R2 Router>en Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R2 R2(config)#int g0/1 R2(config-if)#ip address 192.168.2.254 255.255.255.0 R2(config-if)#no sh R2(config-if)#exit R2(config)#int g0/0 R2(config-if)#ip address 192.168.3.2 255.255.255.252 R2(config-if)#no sh R2(config-if)#exit R2(config)#ip route 0.0.0.0 0.0.0.0 192.168.3.1 R2(config)#logging host 192.168.2.1 R2(config)#logging trap debugging R2(config)#exit