1.1.7 Lab - Basic Switch Configuration

Video Statistics and Information

Video
Captions Word Cloud
Reddit Comments
Captions
basic switch configuration this topology place the switch to the 960 switch here they will be as one with one time PC and will be PC a PC - a and this is the addressing table switch one belong 99 will have I've been for ipv6 address IP ipv6 link local address PCA will have an ipv4 ipv6 and Lin local on ipv6 Cisco switches can be configured with a special IP address known as the switch virtual interface SBI the SBI or management address can be used for remote access to the switch to display or configure settings the default be our stamp right you said by the switch database manager as the M does not provide ipv6 capabilities verify that SEM is using either the world ipv4 and ipv6 template or the numbers routing template the new template will be used after reboot even if the configuration is not stable so on privilege X except mount verify show as the M prefer verify the SDM template and just the and if the switch does not support ipv6 use the following comments to assigned well ipv4 and ipv6 template as the default SDM template so Arthur's configuration global configuration mode with configure terminal commands once you are on global configuration mode said SDM preferred wiping for an ipv6 default and to go British accent mode and reload the device but I'm pocket racer 2960 switch does not support SDM configurations and does not support ipv6 okay later I will use another switch to support ipv6 and for now use 2960 switch and don't worry about this required resources are we allowed one switch Cisco 2960 one PC console cable satellite cables cable the network okay use this topology cable the network is shown in the topology connect the console cable is shown in the topology they use this blue cable connections use the console cable and from port rs-232 or PC connect to switch console port the not connect PC a ethernet cable at this time okay do not connect the ethernet cable connect the switch from PCA using teraterm or other terminal emulation problem okay go to PCA in this case the emulation program is place it on desktop is the terminal okay okay press Enter you are on user access mode why would you use console connection to initially configure the switch why is it not possible to connect the switch via telnet or SSH no IP address parameters are configured yet and Cisco 2960 switch first place it into service has not networking configure verified at the far switch configuration you will examine the default switch settings assuming the switch had no configuration file stored in not valid in random access memory and we're on a console connection using the return or other terminal emulation program will place you the user exit mode ok user exit mode the oh he'll usurp sig mode just enable command to enter populations in mode enabled after now you are on privileged active mode notice the problem change it you can look at this prompt change verify that there is a clean default configuration file on the switch by issuing the show running config ok coffee if a configuration file was previously cited it must be remove it depending on the switch model and iOS version your configuration may look slightly different however there should be now configured passwords or IP addresses if your switch does not have a default configuration erase reload the switch okay look at this by default the name is switch nor configurations from interfaces no I P hours from belong wrong the belong is the default belong no passwords on lines ok Appendix A details the steps to initialize and reload a switch go at the end Appendix A initial lights Andrew notice which enable your own privilege example show flash to verify if belong belong beyond file exists this is the villa database useful example show flash on privileged access mode in my case I only have this fight this is the iOS image ok I don't have the ability the base so mice which is cling his eraser but anyway if you want to the let that fight use the lat we landed that file use the lead belong dot that the net bill that enter going to confirm enter again no such file or directory ok not problem in race the startup config to erase the startup configuration from my rom config enter enter ok very good the let belong is for remove the bill and database erases drop config to loop the stirrup config file then reload the device computer shock Sigma will load and confirm enter ok and maybe this message will appear you may receive a prompt to save running configuration prior to reload in the switch respond by typing now and press Enter ok system configuration has been modified and as well no okay their reload after the switch reloads now switch now is reloaded you should see a prompt to enter the initial configuration dialog respond by entering now okay would you like to enter initially configuration dialog no and now you will you will use the and now you will see the user docks of mode enter user works and modes okay go back examine the current running configuration file okay enabled privileged access modes show running config enter how many Hetal editor faces does 2960 switch hub okay space space space for cetera 0 1 2 4 7 8 0 24 24 for satellite interfaces 24 for me how many Gigabit Ethernet interfaces two gigabit ethernet interfaces 0 1 and 0 to 2 what is the range of values shown for the vty lines ok space between lines from 0 to 4 and from 5 to 15 from 0 to 4 and 4 5 to 15 you have 5 here and you have here 11 in total you have 16 beautiful lines pick something a startup configuration show a start-up - coffee okay enter okay display sit on em be wrong but a syrup confit startup coffee is not present why does this message appear now configurations have been Sabbath to NVRAM examine the characteristics of switch Twitter interface for milling one okay use the following common show interface vlan1 enter okay this is the output is there an IP address assign it to be long one okay no IP address no IP others what is the MAC address this is the MAC address 0 0 6 0 2 FD 1 7 8 7 2 software MAC address and Barnett in address the hardware address is 0 0 6 0 251 78728 the same the same mark others the difference is the software others can be software mark others can be modified and hardware cannot be modified is this interface up ok administratively down no protocol is down ok no no Cisco switches have the inertia term common configured by default on belong 1 but building 1 will not reach the up state until a port is assigned to it and this part is also up if there is no port in the Upstate in building 1 then the villa 1 interface will be up 9 portable down and line protocol down by default all ports are assigned initially to be long gone and some in the IP properties on the blonde one repeat the combat with at show IP interface vlan1 enter what output do you see okay shall I be interface vlan1 this villain Wan is administratively down blood protocol is down internet protocol processing disabled okay look at this belong one is administratively down this is the result on photo tray sir but a real lab should be belong is up VLAN one is up okay on real lab should be belong one is up but a bucket racer is belong one is administratively down to emulate real device do the following configure terminal once you are on block of evasion mode access interface vlan1 and apply the knowledge at down comp okay enter and now you are on privileged access mode and repeat okay I repeat show interface belong one so the answer for the previous question is is this interface up okay belong one is up with line protocol is done okay and for the next question take some in the IP properties of the switch boot or interface vlan1 so IP a space interface vlan1 enter you will see what output do you see belong one is up line protocol is down internal protocol processing disabled this is there a swirl okay this is the as work also for real lab connect an ethernet cable from PCA 246 on the switch okay use the ethernet cable from further denied to faceted at 6 on the switch faster than at 0 6 now time for the switch and PC to negotiate the plugs and speed parameters now you can see an orange indicator now is negotiating and wait a moment until you see the green indicators on both sides okay and wait a moment now but we did bring indicators and some in the IP properties of the switch built on interface vlan1 enter ok this is the love for eternity was exchanged in state walk okay but examing IP properties of the Sushruta interface vlan1 show IP interface vlan1 matter what output do you see okay belong one is up line protocol is up okay okay the difference is belong one will not reach the up state until a port is assigned to it and this port is also up okay so if for Thunderbird seats by default is assign it to belong one on the switch and if this port is up the switch will turn interface belong one long as one will be up belong is up and line protocol is up let's I mean the cisco iOS version information of the switch okay use show version common show barrage what is the Cisco IOS version ok you can see here bearish on 12.2 for Cisco 2960 switch ok and also space also you can see show flash Cisco 2960 switch version 12.2.2 what is the system image this is the system image ok you can see on flash system image this is that beam Phi what is the mark the base mac address of this which there is a talent mark other 0 0 6 0 - ft-17 I surrender and submit the hold properties of the first satellite interface used by PCA ok show interface for sadhana 6 the connection of the PCIe 4006 so interface for sentiment co6 endo is the interface up or down okay so interface faceted at six for settlement is up protocol up connected what even would make an interface go to up connecting a host or other device what is among others of the interface is this 0 0 0 see a five one six seven zero zero six what is the speed and duplex settings of the interface full duplex the speed is 100 megabits per second examine the default VLAN settings of the switch okay here space show below and space what is the default name of villain 1 okay pillar 1 is the default belong and the name is the fault the fault which ports are in belong 1 3 all the ports from for settlement 1 to 24 and gigabit 1 to his villa wanna tip tip yes what type of belong is the default belong okay belong 1 is in it and that means Ethernet Ethernet XM in flash memory so flash under show flash and or use your flush will work files have file extensions which stop being at the end of the file name the authorities did not have file extension but is the file name of the Cisco IOS image is this Seattle 960 lambaste mc12 225 effects that beam that means the extension this is the image of iOS now configure basic network device eating's now inside to configure the device the switch but this device from pocket riser does not support ipv6 I would use 3650 switch and I will connect that cable two gigabit six only has gigabit interfaces take here 1:06 connect to the from pca to the console of the switch console and don't forget to connect the power supply on this Ridge now it's connected very good now he's negotiating with orange indicator copy the following basic comments and paste it into as one okay go to PC a closed terminal open again terminal okay press Enter would you like to enter initial configuration dialog as well no under under user exit mode enabled enter privileged exam mode to copy this you need to go to configure terminal global configuration mode configure terminal and now you are on global configuration mode then paste this copy and click here paste now you can see you apply the new IP domain cap set the hostname as well encrypt all clear text passwords with service possible encryption common set the privilege exact password just enable secret class class is the password you said banner okay banner message of the day and this is the banner okay this is the banner now unauthorized access is strictly prohibited set the switch return interface IP others of the switch this allows remote management of the switch before you can manage as well remotely from pci you must assign the switch and IP others the default configuration when the switch is to have the management of the switch control it through belong one however our best practice for basic switch configurations is to change the management belong to happy now ordered are belong one for management purposes use belong 99 the selection of belong 99 is arbitrary and no way implies that you should always use belong 99 okay go to a dressing table switch one belong 99 you are on global configuration mode interface VLAN 99 and set the ipv4 address and subnet mask IP others 92 and 60 a 1 2 so bad - 285 285 285 0 enter the ipv6 address ipv6 address - 0 0 1 DBA AC ID column column to fix 64 enter the link local address on ipv6 ipv6 address if 8 0 column column to link - enter and don't forget the not shut down column and exit from interface configuration mode that's it now you are on global configuration mode and also you can create VLAN 99 will not die ok after exit from VLAN configuration mode ok you create that interface belong 99 but also you can you can create belong 99 own bill on database okay and you are belong configuration mode use exit to go global configuration assign all user boards to belong 99 to establish connectivity between the host and the switch the ports use it by the host must be in the same plan as the switch okay and to do this use interface range select all the ports for certain positive at 0 1 to 24 and gigabit 0 1 to 0 to enter okay but this switch does not support this range ok 2960 switch supports this range from 50 to 0 1 to 24 then from gigabit 0 1 to 2 but 3650 switch support another range so you can see this range and I'm privileged X amount use a show running coffee in touch config enter now you can see the range is from which you have it 1 0 1 two gigabit once your attorney for and from you have it one one one two gigabit one one four okay you have 24 closed for use you have 28 interfaces okay induce this range go to global configuration mode configure terminal interface here with 1 0 1 1 to 24 and okay don't forget is range interface range to select multiple interfaces gigabit 1 0 1 to 24 enter and assign all these ports to belong 99 sweet or be 99 and okay enter and don't forget that another range of interfaces from gigabit 1 1 1 2 Giga beat 1 1 4 enter interface range enter and apply the same common switch port access belong 99 enter very good exit to go global configuration mode and chauvelin brief comment verify ok exit from global configuration mode enter you are on privileged exec mode and show v lamp brief chauvelin brief enter and now expand this ok you can see here belong one the default belong active with no ports belong 99 the name by default is belong 0 0 99 active or ports assign it to this belong night-night configure the default gateway for s1 if not the forget way is set the switch cannot be management from remote network that is more than one router away also this activity does not include an external IP gateway assume that you will eventually connect the LAN to a router for external access assuming that the LAN interface on the router is 181 CCA one set the default gateway for the switch they go to global configuration mode configure terminal and I be scared way 182 and 60 a 1-1 and consult port access should also be restricted with a password use Cisco as a console log in password in this activity the default configuration is to allow all console connections with no password needed to prevent console messages from interrupting comments use the log in synchronous option ok access line console line console 0 establish the password password Cisco password Cisco the password will be Cisco enter login comment to enable that password and don't forget to apply no Jing seeing furnace and configure the virtual terminal vty lines for the switch to a Yahoo telnet access if you do not configure a vty password you will not be able to tell that to the switch ok line vty 0 to 15 or the range or beautiful lines from 0 to 15 you have 16 built while lines ok 16 connections virtual connections use the same password cisco login to enable the logging exit to go from line configuration mode to global configuration mode why is the login command required without the login combat the switch will not prompt for a password configure an IP address from pca okay assign the IP address and subnet mask to the PC as shown in the other sin table ok configure all this ok this is the PC close the terminal IP configuration and place here in time when I do 160 a1 1024 I forget the way 180 - 160 a11 use this use this default gateway ipv6 to 0 0 1 DB 8 acad column column column 3 they should be column column 3 this should be column column 3 traffic 64 ok and link local address use this fe80 column column 3 and you can enter when I do 160 a11 and fe80 column column want to simulate the a router attach it to us 1 ok and use this fe80 column column 1 for the default gateway every 8 0 column column 1 very good verify this connectivity ok close this go to command prompt on pc from pc IP switch grace which ping the IP address of the switch was is number two 182 and 60 a12 and on ipv6 is also 2 into c 1 DB 8 acad colon column to success and also you can test the talent access using IP before instead using ping telnet for remote management 180 168 1 tooth and password is cisco enter ok now you are on the switch very good exit and also use the LED using ipv6 telnet to 0 0 1 DB 8 acad column column to enter password Cisco now you are on the switch ok exit very good all is working very well display the switch configuration use the console connection on PC a to display amplify the switch configuration on s1 show running config ok close the command prompt and use this connection the console connection use terminal ok enter the password Cisco enable password class now you are on privileged exit mode and show run or show running coffee enter okay the city's you configurate are highlighted in yellow the other configuration cities are iOS defaults okay the service password encryption the hostname enabled secret password no I P domain lookup space a term at interfaces switch for access belong I didn't switch for access belong 99 or interface VLAN 99 ipv4 address link local ipv6 global unicast ipv6 address the for gateway might be before banner message of the day line console password login synchronous logging vty lines password login very good show interface belong 99 show interface VLAN 99 enter what is the bad way of this interface okay ban why 100,000 kilobits per second 100 megabits per second in this case what is they belong 99 state below 99 is hop what is the line protocol state line protocol is up test and we had connectivity with pink from the common prom on PC a pink the address of PCI fields okay PCI and close the terminal open command prompt okay IP coffee to verify my IP address PC a IP addresses tank beef to myself being 192 168 a success pink 1.2 that is the switch okay pink 1.2 success because PCA needs to resolve mark address of s1 through ARP the first packet may timeout the first packet may fail test and verify remote management of as one okay you will now use telnet to remotely access the switch open the rotor or other terminal emulation program with telnet capability okay close PCA you can use this term at ssh client okay this is the terminal emulation program selector that selector nuts and provide SBI management address remember 192 168 1 2 the IP address of the switch the password is cisco ok connect password cisco enter very good you will be at the user exit mode ok user x amount access privilege exit mode using enable common use enable header and the password is class class and now you are on privileged exec mode save the configuration okay publish action mode copy running-config to a start up - config enter confirm enter very good and exit to add that on that session and very good yes close this and now close this yes manage the mug other stable you will determine the map addresses that the switch has learned record the MAC address of the host IP config all on PC a okay command prompt on PC 8 okay on come up from IP config space slash call enter this is the marcado's 0 0 4 0 0 b 1 6 CC 0 8 determined among addresses the the switch has learning so much other stable okay go to terminal ok on switch as one privileged access mode so mark address table and now how many dynamic others is order dynamic one only one how many MAC addresses are there in total okay in this case only one does the dynamic MAC address much the MAC address of pca eight zero zero four zeros he will be 1/6 CC 0 8 okay from this comment bran cereal 0 4 0 0 b 1 6 c c 0 8 much okay much yes the answer is yes list the shall mark other stable options okay shall mark other stable and question mark okay go to terminal the console connection okay repeat so much other stable and question mark how many options are available for the show mark other stable comment ok on pocket racer only want a static option but real lab you will have 12 12 options show my other stable dynamic comment to display only the MAC addresses that were learning dynamically they show my other stable dynamic and a pocket racer does not support this comment how many dynamic others is out there okay will be only one only the dynamic okay will be only one you you build a mock gatherers entry for PCA okay so MAC address table address and place the PC a MAC address show mount address table address and mark others of PCA that is this copy/paste okay this is the common enter ok pocket racer does not support this carbon okay but you will see this you will see this again this output ok set up our static mark others great clear the mother stable the existing mount addresses used a clear mark other stable dynamic command in privileged x-amount repeat clear clear our mark others - table the space dynamic and success show mark other stable so much other stable under okay no entries how many studied MAC addresses are there okay a pocket racer no entries no aesthetic entries but our real love real device at least to any entries to any aesthetic entries hominid dynamic others are there okay zero no dynamic addresses and or maybe one depending on how quickly addresses are real learners by the switch and summon my gather is stable today more than likely an application running on your PC has I already said a frame out the network interface card - as one look at the Mac other stable gain they repeat the comments on mark other stable okay in my case on Pocket rates are no entries with unreal lab you will have one entry one dynamic entry okay to simulate real lab go to close terminal and go to common prom and space pink the switch pink 180 168 one two to generate traffic between PCA and switch enter okay and close this command prompt close and terminal okay show my other stable enter and now you will see you then the dynamic entry how many dynamic addresses are there one why did this change from the last display okay the switch dynamically learned that the PC Mag others if s1 has not yet learned that the MAC address of PC a pink they belong 99 IP others of the switch from PCA and then repeat show my other stable comments okay set up a static mark address okay use this comment but look at this on global configuration mode the access global configuration mode configure terminal now you are on global configuration mode and use this my other stable mark space - table space static entry use the MAC address of PC a PC a space belong 99 VLAN 99 space interface for certain r06 interface in this case you can beat 1 0 6 0 V 1 0 6 this is the entry static entry okay this is the dynamic entry but now you will configure the same entry we'd use the static method okay and okay this command is not supported you okay it can be okay interface for help question mark trade question mark and Gigabit Ethernet okay use Gigabit Ethernet and question mark the number of interface 1:06 okay MAC address table static the map others for PCA and belong 99 on the switch and is connected to gigabit Ethelred 1:06 connected to gigabit ethernet 1:06 enter okay one question mark slash question mark zero question mark okay so the number of interface was not supported okay and don't worry Yamagata stable okay you are on global configuration mode use exit to go to tribulations of mode and show my better stable chama-girl stable how many total back addresses are there okay in my case no mark other says no entries because this this comment was not accepted and with unreal lab this common this comment should be accepted for the turret for sentiment 0 6 using the mark others of your PC about with the real lab should should be about 22 mark other versus how many static addresses are there in my case now static because this comment was not said that been real AB about 22 static addresses okay and should be the same as the total MAC addresses great if double mark addresses are 22 static also 22 you remove the static muck entry okay hunter global of Eurasia mode and remove the comment by putting no in front of the commonest drink okay use the use the same comment with at no no keyword okay here okay now and you will remove this entry show mark other stable and how many total static MAC addresses are there and you will have 21 okay because you remove it one okay reflection questions why should you configure the BTY password for the switch if you do not configure vty password you will not be able to tell that to the switch why change the default belong one to a different billing number for improve it security how can you prevent password from being sent in plaintext use the service password encryption comments why configure a static map address on a port interface to map a specific port connected to a specific host thank you very much you
Info
Channel: Christian Augusto Romero Goyzueta
Views: 17,942
Rating: 4.9262671 out of 5
Keywords: switching, routing, wireless, essentials, srwe, basic settings, basic configuration, passwords, telnet, banner, line vty, line console, enable secret, encryption, ipv4, ipv6, int vlan 1, vlan 1
Id: rnJ-Ho4iO2o
Channel Id: undefined
Length: 57min 13sec (3433 seconds)
Published: Wed Jul 15 2020
Related Videos
Note
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.