Uploaded by Lazizbek Irisov

1685169112

advertisement
O‘ZBEKISTON RESPUBLIKASI AXBOROT
TEXNOLOGIYALARI VA KOMMUNIKATSIYALARINI
RIVOJLANTIRISH VAZIRLIGI
MUHAMMAD AL-XORAZMIY NOMIDAGI
TOSHKENT AXBOROT TEXNOLOGIYALARI UNIVERSITETI
6,7,8,9 -laboratoriyalar
Guruh: 715-20
Bajardi: Ergashev Tursunmurod
Tekshirdi : Axmedova Naima
6 - LABORATORIYA ISHI
RIP, EIGRP, OSPF VA BGP PROTOKOLLARI ASOSIDA DINAMIK
MARSHRUTLASHNI SOZLASH
Ishdan maqsad
Dinamik marshrutizatsiya RIP, EIGRP, OSPF, BGP protokollari asosida
qurilgan tarmoqda xavfsizlikni ta’minlash bo`yicha amaliy ko`nikmaga ega
bo`lish.
RIP
R1
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#ho
Router(config)#hostname R1
R1(config)#int g 0/0
R1(config-if)#ip address 192.168.1.254 255.255.255.0
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/1
R1(config-if)#ip address 192.168.4.2 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/2
R1(config-if)#ip address 192.168.6.2 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#router rip
R1(config-router)#version 2
R1(config-router)#no auto-summary
R1(config-router)#passive-interface g0/0
R1(config-router)#network 192.168.1.0
R1(config-router)#network 192.168.4.0
R1(config-router)#network 192.168.6.0
R1(config-router)#exit
R1(config)#do wr
R2
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R2
R2(config)#int g0/2
R2(config-if)#ip address 192.168.2.254 255.255.255.0
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/1
R2(config-if)#ip address 192.168.4.1 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/0
R2(config-if)#ip address 192.168.5.1 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#router rip
R2(config-router)#version 2
R2(config-router)#no auto-summary
R2(config-router)#passive-interface g0/2
R2(config-router)#network 192.168.2.0
R2(config-router)#network 192.168.4.0
R2(config-router)#network 192.168.5.0
R2(config-router)#exit
R2(config)#do wr
R3
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R3
R3(config)#int g0/1
R3(config-if)#ip address 192.168.3.254 255.255.255.0
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#int g0/0
R3(config-if)#ip address 192.168.5.2 255.255.255.252
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#int g0/2
R3(config-if)#ip address 192.168.6.1 255.255.255.252
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#router rip
R3(config-router)#version 2
R3(config-router)#no au
R3(config-router)#no auto-summary
R3(config-router)#pass
R3(config-router)#passive-interface g0/1
R3(config-router)#network 192.168.3.0
R3(config-router)#network 192.168.5.0
R3(config-router)#network 192.168.6.0
R3(config-router)#exit
R3(config)#do wr
EIGRP.
R1
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#ho
Router(config)#hostname R1
R1(config)#int g 0/0
R1(config-if)#ip address 192.168.1.254 255.255.255.0
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/1
R1(config-if)#ip address 192.168.4.2 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/2
R1(config-if)#ip address 192.168.6.2 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#router eigrp 1
R1(config-router)#eigrp router-id 1.1.1.1
R1(config-router)#network 192.168.1.0
R1(config-router)#network 192.168.4.0
R1(config-router)#network 192.168.6.0
R1(config-router)#no auto-summary
R2
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R2
R2(config)#int g0/2
R2(config-if)#ip address 192.168.2.254 255.255.255.0
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/1
R2(config-if)#ip address 192.168.4.1 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/0
R2(config-if)#ip address 192.168.5.1 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#router eigrp 1
R2(config-router)#eigrp router-id 2.2.2.2
R2(config-router)#network 192.168.2.0
R2(config-router)#network 192.168.4.0
R2(config-router)#
R2(config-router)#network 192.168.5.0
R2(config-router)#no auto-summary
R2(config-router)#exit
R3
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R3
R3(config)#int g0/1
R3(config-if)#ip address 192.168.3.254 255.255.255.0
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#int g0/0
R3(config-if)#ip address 192.168.5.2 255.255.255.252
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#int g0/2
R3(config-if)#ip address 192.168.6.1 255.255.255.252
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#router eigrp 1
R3(config-router)#eigrp router-id 3.3.3.3
R3(config-router)#network 192.168.3.0
R3(config-router)#network 192.168.5.0
R3(config-router)#network 192.168.6.0
R3(config-router)#no auto-summary
R3(config-router)#exit
OSPF
R1
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#ho
Router(config)#hostname R1
R1(config)#int g 0/0
R1(config-if)#ip address 192.168.1.254 255.255.255.0
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/1
R1(config-if)#ip address 192.168.4.2 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/2
R1(config-if)#ip address 192.168.6.2 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#router ospf 1
R1(config-router)#network 192.168.1.0 0.0.0.255 area 1
R1(config-router)#network 192.168.4.0 0.0.0.3 area 1
R1(config-router)#network 192.168.6.0 0.0.0.3 area 1
R1(config-router)#router-id 1.1.1.1
R1(config-router)#exit
R2
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R2
R2(config)#int g0/2
R2(config-if)#ip address 192.168.2.254 255.255.255.0
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/1
R2(config-if)#ip address 192.168.4.1 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/0
R2(config-if)#ip address 192.168.5.1 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#router ospf 1
R2(config-router)#network 192.168.2.0 0.0.0.255 area 1
R2(config-router)#network 192.168.4.0 0.0.0.3 area 1
R2(config-router)#network 192.168.5.0 0.0.0.3 area 1
R2(config-router)#router-id 2.2.2.2
R3
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R3
R3(config)#int g0/1
R3(config-if)#ip address 192.168.3.254 255.255.255.0
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#int g0/0
R3(config-if)#ip address 192.168.5.2 255.255.255.252
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#int g0/2
R3(config-if)#ip address 192.168.6.1 255.255.255.252
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#router ospf 1
R3(config-router)#network 192.168.3.0 0.0.0.255 area 1
R3(config-router)#network 192.168.5.0 0.0.0.3 area 1
R3(config-router)#network 192.168.6.0 0.0.0.3 area 1
R3(config-router)#router-id 3.3.3.3
R3(config-router)#exit
BGP
R1
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#ho
Router(config)#hostname R1
R1(config)#int g 0/0
R1(config-if)#ip address 192.168.1.254 255.255.255.0
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/1
R1(config-if)#ip address 192.168.4.2 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/2
R1(config-if)#ip address 192.168.6.2 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#router bgp 7777
R1(config-router)#bgp router-id 1.1.1.1
R1(config-router)#neighbor 192.168.4.1 remote-as 8888
R1(config-router)#neighbor 192.168.6.1 remote-as 9999
R1(config-router)#network 192.168.1.0 mask 255.255.255.0
R1(config-router)#exit
R2
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R2
R2(config)#int g0/2
R2(config-if)#ip address 192.168.2.254 255.255.255.0
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/1
R2(config-if)#ip address 192.168.4.1 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/0
R2(config-if)#ip address 192.168.5.1 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#router bgp 8888
R2(config-router)#bgp router-id 2.2.2.2
R2(config-router)#neighbor 192.168.4.2 remote-as 7777
R2(config-router)#neighbor 192.168.5.2 remote-as 9999
R2(config-router)#network 192.168.2.0 mask 255.255.255.0
R2(config-router)#exit
R3
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R3
R3(config)#int g0/1
R3(config-if)#ip address 192.168.3.254 255.255.255.0
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#int g0/0
R3(config-if)#ip address 192.168.5.2 255.255.255.252
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#int g0/2
R3(config-if)#ip address 192.168.6.1 255.255.255.252
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#router bgp 9999
R3(config-router)#bgp router-id 3.3.3.3
R3(config-router)#neighbor 192.168.5.1 remote-as 8888
R3(config-router)#neighbor 192.168.6.2 remote-as 7777
R3(config-router)#network 192.168.3.0 mask 255.25.255.0
R3(config-router)#exit
7 – LABORATORIYA ISHI
ACL RO`YXATINI SOZLASH (STANDART, EXTENDED)
Ishdan maqsad
Ma’lumot uzatish tarmoqlarida qo‘llaniluvchi ACL-ro`yxati tuzish, sozlash va tekshirish
qoidalarini tadqiq qilish.
R1
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#ho
Router(config)#hostname R1
R1(config)#int g 0/0
R1(config-if)#ip address 192.168.1.254 255.255.255.0
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/1
R1(config-if)#ip address 192.168.4.2 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/2
R1(config-if)#ip address 192.168.6.2 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#router ospf 1
R1(config-router)#network 192.168.1.0 0.0.0.255 area 1
R1(config-router)#network 192.168.4.0 0.0.0.3 area 1
R1(config-router)#network 192.168.6.0 0.0.0.3 area 1
R1(config-router)#router-id 1.1.1.1
R1(config-router)#exit
R1(config)#ip access-list standard R
R1(config-std-nacl)#permit host 192.168.2.1
R1(config-std-nacl)#permit host 192.168.3.1
R1(config-std-nacl)#deny 192.168.2.0 0.0.0.255
R1(config-std-nacl)#deny 192.168.3.0 0.0.0.255
R1(config-std-nacl)#exit
R1(config)#int g0/0
R1(config-if)#ip access-group R out
R1(config-if)#exit
R2
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R2
R2(config)#int g0/2
R2(config-if)#ip address 192.168.2.254 255.255.255.0
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/1
R2(config-if)#ip address 192.168.4.1 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/0
R2(config-if)#ip address 192.168.5.1 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#router ospf 1
R2(config-router)#network 192.168.2.0 0.0.0.255 area 1
R2(config-router)#network 192.168.4.0 0.0.0.3 area 1
R2(config-router)#network 192.168.5.0 0.0.0.3 area 1
R2(config-router)#router-id 2.2.2.2
R3
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R3
R3(config)#int g0/1
R3(config-if)#ip address 192.168.3.254 255.255.255.0
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#int g0/0
R3(config-if)#ip address 192.168.5.2 255.255.255.252
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#int g0/2
R3(config-if)#ip address 192.168.6.1 255.255.255.252
R3(config-if)#no sh
R3(config-if)#exit
R3(config)#router ospf 1
R3(config-router)#network 192.168.3.0 0.0.0.255 area 1
R3(config-router)#network 192.168.5.0 0.0.0.3 area 1
R3(config-router)#network 192.168.6.0 0.0.0.3 area 1
R3(config-router)#router-id 3.3.3.3
R3(config-router)#exit
8 – LABORATORIYA ISHI
MARSHRUTIZATORLARDA NAT, PAT TEXNOLOGIYASINI
SOZLASH
Ishdan maqsad:
Manzillarni translatsiya qilish (NAT)
tamoyillari va vazifalarini tadqiq
qilish va amaliy ko`nikmaga ega bo’lish.
1. Static Network Address Translation
R1
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R1
R1(config)#int g0/1
R1(config-if)#ip address 192.168.1.254 255.255.255.0
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/0
R1(config-if)#ip address 192.168.3.1 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#ip route 0.0.0.0 0.0.0.0 192.168.3.2
R1(config)#ip nat inside source static 192.168.1.1 7.7.7.7
R1(config)#ip nat inside source static 192.168.1.2 8.8.8.8
R1(config)#ip nat inside source static 192.168.1.3 9.9.9.9
R1(config)#int g0/0
R1(config-if)#ip nat outside
R1(config-if)#exit
R1(config)#int g0/1
R1(config-if)#ip nat inside
R1(config-if)#exit
R2
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R2
R2(config)#int g0/1
R2(config-if)#ip address 192.168.2.254 255.255.255.0
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/0
R2(config-if)#ip address 192.168.3.2 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
2.Dynamic Address Translation
R1
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R1
R1(config)#int g0/1
R1(config-if)#ip address 192.168.1.254 255.255.255.0
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/0
R1(config-if)#ip address 192.168.3.1 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#ip route 0.0.0.0 0.0.0.0 192.168.3.2
R1(config)#ip nat pool R1 77.77.77.1 77.77.77.7 netmask 255.255.255.0
R1(config)#access-list 1 permit 192.168.1.0 0.0.0.255
R1(config)#ip nat inside source list 1 pool R1
R1(config)#int g0/1
R1(config-if)#ip nat inside
R1(config-if)#exit
R1(config)#int g0/0
R1(config-if)#ip nat outside
R1(config-if)#exit
R2
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R2
R2(config)#int g0/1
R2(config-if)#ip address 192.168.2.254 255.255.255.0
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/0
R2(config-if)#ip address 192.168.3.2 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
3.NAPT, NAT Overload, PAT
R1
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R1
R1(config)#int g0/1
R1(config-if)#ip address 192.168.1.254 255.255.255.0
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/0
R1(config-if)#ip address 192.168.3.1 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#ip route 0.0.0.0 0.0.0.0 192.168.3.2
R1(config)#ip nat pool nad_pat 77.77.77.1 77.77.77.7 netmask 255.255.255.0
R1(config)#access-list 1 permit 192.168.1.0 0.0.0.255
R1(config)#ip nat inside source list 1 pool nad_pat overload
R1(config)#int g0/1
R1(config-if)#ip nat inside
R1(config-if)#exit
R1(config)#int g0/0
R1(config-if)#ip nat outside
R1(config-if)#exit
R2
Router>enable
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R2
R2(config)#int g0/1
R2(config-if)#ip address 192.168.2.254 255.255.255.0
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/0
R2(config-if)#ip address 192.168.3.2 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
9-Laboratoriya ishi
Tarmoqni himoyalash protokollari SCP, SNMP ni sozlash va log fayllarni
tadqiq etish
SNMP
R1
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R1
R1(config)#int g0/1
R1(config-if)#ip address 192.168.1.254 255.255.255.0
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#snmp-server community public ro
%SNMP-5-WARMSTART: SNMP agent on host R1 is undergoing a warm start
R1(config)#snmp-server community private rw
R1(config)#exit
R2
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R2
R2(config)#int g0/2
R2(config-if)#ip address 192.168.2.254 255.255.255.0
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#snmp-server community public ro
%SNMP-5-WARMSTART: SNMP agent on host R2 is undergoing a warm start
R2(config)#snmp-server community private rw
R2(config)#exit
SYSLOG
R1
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R1
R1(config)#int g0/1
R1(config-if)#ip address 192.168.1.254 255.255.255.0
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#int g0/0
R1(config-if)#ip address 192.168.3.1 255.255.255.252
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#ip route 0.0.0.0 0.0.0.0 192.168.3.2
R1(config)#logging host 192.168.2.1
R1(config)#logging trap debugging
R1(config)#exit
R2
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R2
R2(config)#int g0/1
R2(config-if)#ip address 192.168.2.254 255.255.255.0
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#int g0/0
R2(config-if)#ip address 192.168.3.2 255.255.255.252
R2(config-if)#no sh
R2(config-if)#exit
R2(config)#ip route 0.0.0.0 0.0.0.0 192.168.3.1
R2(config)#logging host 192.168.2.1
R2(config)#logging trap debugging
R2(config)#exit
Download