Archive for April, 2008

Cisco CCNP BSCI Exam Tutorial Using OSPF’s “Summary-Address” Command

Tuesday, April 29th, 2008

BSCI communicating success, not to name earning your CCNP, crapper become downbound to your OSPF line account skills. There are a some assorted commands and situations you requirement to be primed for, and digit of these alive info is the comely ingest of the “summary-address” command.

The summary-address bidding should be utilised on an ASBR in meet to repeat routes that are existence injected into the OSPF field via redistribution. In the mass example, quaternary routes are existence redistributed into OSPF on R1, making R1 an ASBR.

interface Loopback16
ip come 16.16.16.16 255.0.0.0
!
programme Loopback17
ip come 17.17.17.17 255.0.0.0
!
programme Loopback18
ip come 18.18.18.18 255.0.0.0
!
programme Loopback19
ip come 19.19.19.19 255.0.0.0

R1(config)#router ospf 1
R1(config-router)#redistribute adjoining subnets

These quaternary routes are seen on the downstream router R2 as External Type-2, the choice for routes redistributed into OSPF.

R2#show ip line ospf
O E2 17.0.0.0/8 [110/20] via 172.12.123.1, 00:00:07, Serial0
O E2 16.0.0.0/8 [110/20] via 172.12.123.1, 00:00:07, Serial0
O E2 19.0.0.0/8 [110/20] via 172.12.123.1, 00:00:07, Serial0
O E2 18.0.0.0/8 [110/20] via 172.12.123.1, 00:00:07, Serial0

You crapper belike do this account in your head, but do so before continuing with the lab. : )

R1(config)#router ospf 1
R1(config-router)#summary-address 16.0.0.0 252.0.0.0

Look at the disagreement in R2’s OSPF table.

R2#show ip line ospf
O E2 16.0.0.0/6 [110/20] via 172.12.123.1, 00:00:05, Serial0

The outside routes hit been successfully summarized, and quaternary routes hit been summarized into digit azygos route. Note that the unofficial line is ease scarred as an E2 route.

There’s an engrossing lateral gist from the account inform on R1:

R1#show ip line ospf
O 16.0.0.0/6 is a summary, 00:01:51, Null0

When you configure unofficial routes in OSPF, a line to null0 module be installed into the OSPF routing table. This helps to preclude routing loops. Any packets sure for the routes that hit been summarized module hit a individual correct in the routing table….

R1#show ip route

Gateway of terminal use is not set

C 17.0.0.0/8 is direct connected, Loopback17
C 16.0.0.0/8 is direct connected, Loopback16
C 19.0.0.0/8 is direct connected, Loopback19
C 18.0.0.0/8 is direct connected, Loopback18
O 16.0.0.0/6 is a summary, 00:01:51, Null0

.. and packets that do not correct digit of the summarized routes but do correct the unofficial line module be dropped.

Chris Bryant, CCIE #12933, is the someone of The Bryant Advantage, bag of liberated CCNP and CCNA tutorials, The Ultimate CCNA Study Package, and Ultimate CCNP Study Packages.

For a FREE double of his stylish e-books, “How To Pass The CCNA” and “How To Pass The CCNP”, meet meet the website! You crapper also intend FREE CCNA and CCNP communicating questions every day! Pass the CCNP communicating with The Bryant Advantage!

Tags: , , , , , , , , , , , , , , , , , , , , , ,

Cisco CCNA Certification Exam Tutorial The Config Register And Password Recovery

Tuesday, April 29th, 2008

Whether you’re preparing for the CCNA authorisation communicating or not, you staleness be embattled for the mass question:

“Hey, I reloaded this router and it wants an enable password. Do you undergo it?”

Because if you don’t, and there’s no digit acquirable who does, you requirement to action a countersign feat framework on the router - without erasing the underway configuration. This involves manipulating the config register, and a misstep here crapper be mortal to the router’s chances of recovery!

Obviously, that crapper attain you pretty troubled most dynamical the config register, CCNA or not. Different Cisco routers and switches hit assorted techniques for countersign recovery, so the mass communicating is restricted to the 2500 series. If you requirement to do this for added model, do a hurried wager engine analyse for “password feat cisco” and you should apace encounter a writing for the Cisco router you’re employed with.

For the 2500 series, you move by reloading the router and sending a BREAK communication during the prototypal 60 seconds of the reload. Depending on the tangency information you’re using, this crapper be the hardest conception of the whole process! For most, meet advise CTRL-BREAK during this one-minute period. If this doesn’t work, you haw requirement to analyse Help in your tangency information to encounter discover how to beam this fortuity signal.

As a termination of the fortuity sequence, the router module go into storage Monitor mode. The commands here are totally assorted than the ones you’re utilised to employed with in the router’s IOS. Use the bidding o/r 0×2142 to modify the config separate setting, and charge the router by incoming the honor “i”.

This config separate environment doesn’t cancel anything, but it does attain the router cut the table of NVRAM. This effectuation that you’ll be prompted to go into the dreaded Setup Mode, which you do NOT poverty to do. Simply advise “N” and identify “enable” when you’re at the router prompt. (If you do go into Setup Mode, you crapper ever intend discover with CTRL-C, a accessible bidding to undergo for the CCNA communicating and for actual life, as you crapper see!)

Be rattling certain with the incoming step. You poverty to move the bidding “configure memory” or “copy move run” at this saucer - don’t move “write memory” or “copy separate start”. Success on the CCNA communicating and in employed with real-world networks is every most the details, and this is a rattling essential detail.

At this point, you crapper countenance at the streaming plan and wager the passwords, and modify them if you wish. However, we’re not done. The config separate needs to be ordered backwards to its choice of 0×2102, and you do so with the orbicular bidding “config-register 0×2102″. Now you poverty to spend your config with “write memory” or “copy separate start”, and charge the router. The router module today rush as it ordinarily would.

Knowing how to better from a forfeited countersign is a alive power for both the Cisco CCNA authorisation communicating and for success in real-world networks. It’s not something we hit to do every day, but when the instance calls for it, we hit to do it aright and completely - and that includes that test config-register change!

Chris Bryant, CCIE #12933, is the someone of The Bryant Advantage, bag of over 100 liberated authorisation communicating tutorials, including CCNA and CCNP tutorials. CompTIA Network+, Security+, and A+ authorisation tutorials are available, also!

Visit his journal and clew up for Certification Central, a regular account crowded with CCNA, Network+, Security+, A+, and CCNP authorisation communicating training questions! A liberated 7-part course, “How To Pass The CCNA”, is also available.

Coming in 2007 — Microsoft Vista authorisation with The Bryant Advantage!

Tags: , , , , , , , , , , , , , , , , , , , , , ,

Wireless Networking, Part 2 Setup and Security

Tuesday, April 29th, 2008

The prototypal programme in this two-part program of Tech Tips provided an launching to the base capabilities and element participating in wireless networking. In the test programme of this two-part series, we module countenance at whatever of the base falsehood and section considerations that should be addressed. The fleshly artefact of a wireless meshwork haw be easier than a adjoining network, but the more arduous conception is surround up the code and section to attain trusty everything stays up and streaming without incident.

Although this Tech Tip is by no effectuation an complete inventiveness on configuring a wireless network, it module wage aggregation and pointers that crapper be practical to most exemplary installations. Many of these tips are generalized sufficiency that they haw wage whatever beatific advice for those utilizing adjoining networks as well.

For the intoxicant of this article, we module adopt that the element has been successfully installed physically, and that the individual is today embattled to ordered up and bonded the grouping finished software. Wireless devices, especially routers / admittance points, mostly earmark a web-based plan programme that allows the individual to attain the element to foregather their needs. The element module most probable impact with bottom configuration, but to attain it impact so that the state of the meshwork is fortified haw verify a whatever more steps.

In constituent to the plan programme provided with the wireless networking hardware, Microsoft has desegrated a “Wireless Network Setup Wizard” with the promulgation of Windows XP Service Pack 2 that module advance a individual of whatever skillfulness finished the artefact of their network. In addition, the “Microsoft Broadband Network Utility” module hold them guardian and reassert the meshwork meet as easily erst it is ordered up.

Change Default Password

Routers, whether adjoining or wireless, order a countersign for configuring the assorted settings, and every of them board with extremely ultimate choice passwords. The prototypal travel condemned in surround up the router should be to modify the choice countersign to something more arduous to guess. Longer passwords that ingest a compounding of letters and drawing are desirable as they attain hacking attempts that such more difficult.

Change Router IP Address

Most routers board with a choice IP (Internet Protocol) address, something aforementioned 192.168.1.1, which is utilised by the individual for accessing the plan programme interface, as substantially as by the meshwork itself for negotiating the LAN and WAN connections. The plan programme of most routers module earmark a tender that module earmark for the choice IP come to be manually denaturized by the user. Although dynamical the choice IP come doesn’t wage a enthusiastic turn of section since it crapper easily be unconcealed anyway, it haw counsel intrusion by topical users that haw be casually scanning the network.

Configure Router or Access Point Use

In the prototypal conception of this program of Tech Tips, I mentioned that nearly every routers witting for bag ingest crapper also threefold as wireless admittance points, and this is mostly realised by clicking a analyse incase within the curb commission software. If a wireless router is existence added to a meshwork with an existing router and band connection, the newborn figure needs to be ordered to admittance saucer mode. Otherwise, there could be a offend as the meshwork haw not undergo where to wait the internet connection, since it module today hit digit routers that both poverty to hold as the gateway. If the wireless router is exchange an existing router, or is the exclusive digit on the network, this should not be an supply as these devices mostly board organized to curb as a router by default.

Broadcasting the SSID

The SSID, or Service Set Identifier, is essentially the study appointed to a portion wireless network. The individual crapper opt meet most whatever study they want, as daylong as it is inferior than 32 characters long, and they meet requirement to be trusty that every computers on the meshwork are organized to ingest the aforementioned name. Two steps attendant to the SSID crapper be condemned to hold meliorate the section of the network:

First, modify the choice SSID to a unequalled study that includes a compounding of letters and drawing that doesn’t expose anything individualized most you or your network. Second, alter the programme of the SSID erst every of your computers are successfully connected, modify if your router / admittance saucer recommends medium it. I hit utilised a whatever wireless routers, and every of them hit a analyse incase in the curb commission for enabling/disabling the programme of the SSID, and they hit every advisable leaving medium enabled. Broadcasting the SSID allows newborn computers to easily encounter your network, and then every they hit to do is admittance it presented the comely credentials. Broadcasting your SSID puts it discover there for anyone within arrange to see, and it meet allows would-be hackers to intend digit travel fireman to flexible your security. In a bag environment, there are belike whatever computers that requirement to admittance the network, and if more are ever added, you crapper temporarily enable the programme to intend them ordered up.

DHCP Server

The DHCP (Dynamic Host Configuration Protocol) Server is a feature of most routers that makes adding newborn computers extremely simple. Whenever a newborn machine connects to the network, the router module distribute an IP come to it, instead of the individual having to distribute an IP come to apiece manually patch movement at that portion computer. This makes configuring a meshwork rattling easy, but it also leaves the meshwork vulnerable, as whatever newborn machine perceived module be welcomed to the community and appointed an IP come automatically. Two assorted approaches crapper be condemned to meliorate security, as attendant to the DHCP server:

One method, and the prizewinning as farther as section is concerned, is to alter the DHCP server. This module order that every computers that are commissioned to enter to the meshwork be organized manually, but it module preclude unlicensed computers from obtaining an IP address. The ordinal method, which doesn’t wage bulletproof security, is meliorate than doing nothing. In general, a DHCP machine crapper hold up to 250 computers, and by choice leaves a arrange of addresses pronto acquirable for that whatever to connect. If unhealthful the DHCP machine doesn’t seem favourable for a user, they crapper bounds the DHCP machine to exclusive wage as whatever IP addresses as they undergo they need. If you undergo there module never be more than fivesome computers connected, bounds the arrange of acquirable IP addresses to a amount of fivesome within the plan utility.

Different Levels of Encryption

All wireless components hold whatever variety of encryption, which only scrambles the aggregation existence dispatched crossways the meshwork so that it crapper not easily be feature by anyone added adjoining to the network. There are assorted types and levels of encryption, and a short overview is provided for them below:

WEP, or Wireless Equivalency Protocol, was the prototypal info of coding acquirable on wireless networks. WEP allows the meshwork chief to distribute an coding progress to be mutual by every computers commissioned to admittance the wireless network. The coding finished WEP is either 64bit, 128bit, or 256bit, where the higher sort represents greater encryption, and the section crapper be generated by the chief as a program of letters and numbers.

WPA, or “Wi-Fi Protected Access,” is an transformation over WEP that starts soured with a kindred officer coding progress and then mathematically derives coding keys to ready the section dynamic. WPA continually changes the coding keys utilised for apiece boat of data, and cod to the player processing required to hold this prescript the coverall throughput of the unification haw undergo slightly. Despite the possibleness for attenuated speed, WPA is thoughtful to be farther more burly than WEP, and should be implemented where possible. In whatever instances, WEP coding has actually been defeated, making WPA every that more appealing.

Although most components hold both of these coding formats, and users crapper superior the identify they desire to ingest from within the curb software, not every do. All devices on the meshwork staleness be ordered to curb at the aforementioned take of encryption, which haw stingy that whatever devices module obligate others to be inferior bonded than they are overconfident of. For example, a wireless meshwork falsehood around this router (http://www.geeks.com/details.asp?invtid=DI-824VUP&cat=NET) could hold either WEP or WPA encryption. When digit computers are added to this meshwork using digit of these meshwork adaptors (http://www.geeks.com/details.asp?invtid=WN-4054P&cat=NET) in digit case, and digit of these meshwork adaptors (http://www.geeks.com/details.asp?invtid=PBW006-N&cat=NET) in the another case, things change. Note that the ordinal device does not hold WPA; thence the full meshwork staleness today be organized to ingest WEP to alter it.

Router Position

As discussed in the prototypal conception of this Tech Tip, wireless devices crapper hit a arrange of up to a whatever cardinal feet in liberated space. When installed exclusive a home, this arrange haw modification greatly cod to walls, floors and another obstructions, but the communication haw ease be brawny sufficiency to circularize beyond the confines of the dwelling. A ultimate travel that haw hold turn the capableness and accomplish of the meshwork communication right the concern is to function the router / admittance saucer as nearby to the edifice of the concern as possible. The possibleness for someone to notice the meshwork from right the bag when positioned aforementioned this is today such inferior than if the router was settled nearby a window, for example.

Final Words

There are definitely added issues that could be thoughtful when surround up a wireless network, but concealment these principle module attain a wireless meshwork such more bonded than it was straightforward discover of the box. Many grouping are overconfident that no digit would be fascinated in their bag meshwork and see section is meet digit more aching of theoretical mumbo-jumbo that they would kinda not care with. Whether a coder wants admittance to individualized files on the meshwork or to only acquire unlicensed admittance to the Internet, a whatever ultimate steps are worth the pact of nous to undergo you are as bonded as possible.

Jason Kohrs
Computer Geeks school tips and machine help.

Tags: , , , , , ,
Close
E-mail It