ãã¹ãŠã®åé¡
8.æå°ã®ãããã¯ãŒã¯ã ããŒããšã€ãã BGPããã³IP SLA
7.æå°ã®ãããã¯ãŒã¯ã ããŒã7ã VPN
6.æå°ã®ãããã¯ãŒã¯ã ããŒã6 åçã«ãŒãã£ã³ã°
5.æå°ã®ãããã¯ãŒã¯ïŒããŒã5ã NATããã³ACL
4.æå°ã®ãããã¯ãŒã¯ïŒããŒã4ã STP
3.æå°ã®ãããã¯ãŒã¯ïŒããŒã3ã éçã«ãŒãã£ã³ã°
2.æå°ã®ãããã¯ãŒã¯ã ããŒã2 æŽæµ
1.æå°ã®ãããã¯ãŒã¯ã ããŒã1 Ciscoæ©åšã«æ¥ç¶ãã
0.æå°ã®ãããã¯ãŒã¯ã ããŒããŒãã èšç»äž
7.æå°ã®ãããã¯ãŒã¯ã ããŒã7ã VPN
6.æå°ã®ãããã¯ãŒã¯ã ããŒã6 åçã«ãŒãã£ã³ã°
5.æå°ã®ãããã¯ãŒã¯ïŒããŒã5ã NATããã³ACL
4.æå°ã®ãããã¯ãŒã¯ïŒããŒã4ã STP
3.æå°ã®ãããã¯ãŒã¯ïŒããŒã3ã éçã«ãŒãã£ã³ã°
2.æå°ã®ãããã¯ãŒã¯ã ããŒã2 æŽæµ
1.æå°ã®ãããã¯ãŒã¯ã ããŒã1 Ciscoæ©åšã«æ¥ç¶ãã
0.æå°ã®ãããã¯ãŒã¯ã ããŒããŒãã èšç»äž
ããã®ä»¶åciscoã¯ããã¥ã©ãŒãšã¯èšããŸãããå€ãã®å Žåãèå³æ·±ãèšäºã¯ã»ãšãã©èŠéããããŠããŸãã ããããç§ãã¡ã¯åã®åºçç©ã®èªå€§åºåã«åãã§é©ããã 1000人以äžããæ°ã«å ¥ãã«è¿œå ããŸããããããã¯ç¶ç¶ãå¿ èŠã§ããããšãæ確ã«ç€ºããŠããŸãã
ããã«ãå®éã®ãããã¯ãŒã¯èšç»ããã³æ§ç¯ã®çµéšãæã€å€ãã®äººã ããåé·æ§ã«ã€ããŠéåžžã«æ£ããç¹ãææããŸããã äºå®ãååææ¡ãããããã¯ãŒã¯ã¹ããŒã ã¯ã¢ãã«ã§ãããå®éšå®€ã§ããããã®äžã§æè¡ãè©Šããç解ããããããã®ãããªããšã«æžæãããšã¯ãããŸããã§ããã å®éã«ã¯ãç¹ã«éä¿¡äºæ¥è /ãããã€ããŒã§ããå Žåã VRRP ã STP ã ãªã³ã¯ã¢ã°ãªã²ãŒã·ã§ã³ ãåçã«ãŒãã£ã³ã°ãããã³ã«ãªã©ãããŸããŸãªåé·æ§ã¹ããŒã ãå¿ èŠã§ãã
ãã¹ãŠã®ã³ã¡ã³ããèæ ®ã«å ¥ããŠããµã€ã¯ã«ã®çµããã«ããããããããã¯ãŒã¯ã®æ§ç¯æ¹æ³ãæ€èšããŠãçºå£²åŸ6ãæã§ãšã³ãžãã¢ãèãé£ãã»ã©èŠçã«ãªããªãããã«ããŸãã
ä»æ¥ã¯å°ãéå±ã§ãããåå¿è ã«ãšã£ãŠéèŠãªéšåãã€ãŸãããã¹ã¯ãŒãã®æ¥ç¶ãèšå®ãŸãã¯ãªã»ãããtelnetçµç±ã§ã®ãã°ã€ã³ã®æ¹æ³ã«ã€ããŠèª¬æããŸãã ãŸããæ¢åã®ããã°ã©ã -ã·ã¹ã³ãšãã¥ã¬ãŒã¿ãŒãšæ©åšã€ã³ã¿ãŒãã§ã€ã¹ãèæ ®ããŸãã
çŽæãããããã«ãä»åã¯ãã¹ãŠå€§äººã«ãªã£ãïŒãããªãšå ±ã«ã
ã«ããã®äžã§ãåãããã¹ããšããå°ã詳现ãªãã©ãŒã ã
ã ããã圌ãã¯ããã«æ¥ãŸã-ç¢æã®ã·ã¹ã³ãä¹ã£ã倧åãªç®±ã
æ°Žææ¥
ç§ãã¡ãåãç°å¢ããå§ããŸãããã
çŸæç¹ã§ã¯ãã·ã¹ã³ã®æ©åšã§æ§ç¯ããããããã¯ãŒã¯ãã·ãã¥ã¬ãŒãã§ãã2ã€ã®æåãªãœãããŠã§ã¢ããã±ãŒãžããããŸãã
aïŒãã±ãããã¬ãŒãµãŒã¯ãçè«äžã¯èªç±ã«é åžãããªãTsiskovsky補åã§ãã ããã¯ãšãã¥ã¬ãŒã¿ã§ãããããã€ãã®Cisco IOSæ©èœã®ã¿ãåããŠããŸãã äžè¬çã«èšãã°ãããã¯éåžžã«éãããŠãããå€ãã®ãã®ãéšåçã«ããå®è£ ãããŠããŸããã 埮åŠãªèšå®ã¯ãããŸããã äžæ¹ãããŒãžã§ã³5.3.2ã¯çŸåšãGREãã³ãã«ãåçã«ãŒãã£ã³ã°ãããã³ã«ïŒBGPãå«ãïŒïŒã®äœæããµããŒãããŠããŸãã ããã«ãç¿åŸã¯éåžžã«ç°¡åã§ããµãŒããŒïŒFTPãTFTPãDHCPãDNSãHTTPãNTPãRADIUSãSMTPãPOP3ïŒãã¯ãŒã¯ã¹ããŒã·ã§ã³ãããã³ã¹ã€ãããè£ åãããŠããŸãã ä»ã§ã¯ãã§ã«Linuxã®äžã«ãããŸãããæã¯Wineã®äžã§ãããŸãåããŸããã
bïŒGNU GPLã®äžã§ã©ã€ã»ã³ã¹ãããGNS3ã·ãã¥ã¬ãŒã¿ãŒã ãã®ããã±ãŒãžã§ã¯ãçã®Cisco IOSã€ã¡ãŒãžãããŠã³ããŒãããå¿ èŠããããŸãã äžæ¹ã§ãããã¯ãã©ã¹ã§ã-å®éã®ciscoã€ã³ã¿ãŒãã§ã€ã¹ã§äœæ¥ããæ³ååãæ¢åã®æšæºãããã³ã¯ãŒã¯ã¹ããŒã·ã§ã³ã®ããã©ãŒãã³ã¹ã«ãã£ãŠã®ã¿å¶éãããŸããããŠç¬¬äžã«ãã«ãŒã¿ãŒãšãã¿ã€ããã¹ã€ããã®ã¿ããããŸãã
ååãç解ããã«ã¯ãPacket Tracerããå§ããŠãå¿ èŠã«å¿ããŠéç ²å µã«åãæ¿ããæ¹ãè¯ããšæããŸãã ç§ãã¡ã¯å°ããªåäŸã§ã¯ãªããå¿ èŠãªãã®ãã©ãã§æã«å ¥ããããæããŸããã
æ¥ç¶æ¹æ³
Packet Tracerã§ã¯ã次ã®æ¹æ³ã§æ©åšã管çã§ããŸãã
- GUI
- ã³ã³ãããŒã«ãŠã£ã³ããŠã®CLI
- ã³ã³ãœãŒã«ã±ãŒãã«ãä»ããã¯ãŒã¯ã¹ããŒã·ã§ã³ããã®ç«¯æ«æ¥ç¶
- telnet
æåŸã®3ã€ã®ã€ã³ã¿ãŒãã§ãŒã¹ã¯åäžã§ã-æ¥ç¶æ¹æ³ã®ã¿ãç°ãªããŸãã ãã¡ãããGUIã¯ç§ãã¡ã®æ¹æ³ã§ã¯ãããŸããã
å®éã«ã¯ã次ã®ãã®ãå©çšå¯èœã§ãã
- Telnet / SSH
- ã³ã³ãœãŒã«ã±ãŒãã«ãä»ããã¯ãŒã¯ã¹ããŒã·ã§ã³ããã®ç«¯æ«æ¥ç¶
- Webã€ã³ã¿ãŒãã§ã€ã¹ïŒ Cisco SDM ïŒã
æåŸã®éžæè¢ã¯ããŸãšããªç€ŸäŒã§ãèšåãããŠããŸããã ããªããããŠã¹ãšãã©ãŠã¶ã«åºå·ããŠããŠããç§ã¯æ¬åœã«ããããå§ãããŸããã
ç§ã®äŸã§ã¯ãä»ã®æ©åšã§äœæ¥ããŠãããšãã«ãWebãä»ããŠèšå®ããŠãæ©èœããªããšããäºå®ã«åºäŒããŸããã ããªããå²ããŸãããåäœããŸãããã ãŸããéåžžãåãé·ãã®ã¹ã€ããã®ãã¡ãŒã ãŠã§ã¢ã®1ã€ã®ããŒãžã§ã³ã«ãã°ããããŸãããLinuxããWebã€ã³ã¿ãŒãã§ã€ã¹ã®VLANèšå®ãå€æŽãããšãã¹ã€ããã管ççšã«ã¢ã¯ã»ã¹ã§ããªããªããŸãã ããã¯å ¬åŒã«èªèãããŠããåé¡ã§ãïŒã Telnetã¯sshã®ãããªæšæºã®æåãªãŠãŒãã£ãªãã£ã§ãã ãããã®ãããã³ã«ã䜿çšããŠciscoã«ã¢ã¯ã»ã¹ããã«ã¯ãã¢ã¯ã»ã¹ãã¹ã¯ãŒããèšå®ããå¿ èŠããããŸãã詳现ã¯åŸã§èª¬æããŸãã sshã䜿çšã§ãããã©ããã¯ãIOSã©ã€ã»ã³ã¹ã«ãã£ãŠç°ãªããŸãã
ã³ã³ãœãŒã«ç®¡ç
ããŠãããªãã¯ã«ãŒã¿ãŒãæã£ãŠããŠããããå°å·ããŠãé»æºãå ¥ããŸããã 圌ã¯ç©æãã«ã¯ãŒã©ãŒãã¬ãµã¬ãµé³Žããã圌ã®ããŒãã®LEDã§ãŠã€ã³ã¯ããŸããã ãããŠã次ã«äœããã¹ããïŒ
ã»ãŒãã¹ãŠã®ã¹ããŒãããã€ã¹ãå¶åŸ¡ããããã«ãæãå€ããæ代ãè¶ ããæ¹æ³ã®1ã€ã§ããã³ã³ãœãŒã«ã䜿çšããŸãã ãããè¡ãã«ã¯ãã³ã³ãã¥ãŒã¿ãŒãããã€ã¹èªäœãããã³é©åãªã±ãŒãã«ãå¿ èŠã§ãã
ããã§ã¯ããã¹ãŠã®ãã³ããŒã倧ããç°ãªããŸãã 䜿çšããªãã³ãã¯ã¿ã®çš®é¡ïŒRJ-45ãDB-9ãªã¹ãDB-9ãã¶ãŒãéæšæºãã³é åã®DB-9ãDB-25ã
tsiskaã¯ãããã€ã¹åŽã§RJ-45ã³ãã¯ã¿ãŒã䜿çšããPCåŽã§DB-9ãã¶ãŒïŒCOMããŒããžã®æ¥ç¶çšïŒã䜿çšããŸãã
ã³ã³ãœãŒã«ããŒãã¯æ¬¡ã®ããã«ãªããŸãã
åžžã«éã§åŒ·èª¿è¡šç€ºãããŸãã æè¿ãUSBå¶åŸ¡ãå¯èœã«ãªããŸããã
ãããŠããã¯Ciscoã³ã³ãœãŒã«ã±ãŒãã«ã§ãïŒ
以åã¯ãåããã¯ã¹ã«çŽåãããŠããŸããããä»ã§ã¯å€ãã®å Žåå¥ã ã®è²»çšãããããŸãã ååãšããŠãHPã®åæ§ã®ã±ãŒãã«ãé©ããŠããŸãã
åé¡ã¯ãæè¿ã®PCã«ã¯ãã°ãã°COMããŒãããªãããšã§ãã ãã䜿çšãããUSB-COMã³ã³ããŒã¿ãŒã圹ã«ç«ã¡ãŸãã
ãŸãã¯ããããã®ç®çã§ãã£ãã«äœ¿çšãããªãRS232ã€ãŒãµãããã³ã³ããŒã¿ãŒ
ã±ãŒãã«ãåºå®ããCOMããŒãçªå·ã決å®ããããWindowsã®HyperterminalãŸãã¯PuttyãšLinuxã®Minicomã䜿çšããŠæ¥ç¶ã§ããŸãã
ã³ã³ãœãŒã«ããã®ç®¡çã¯ããã«å©çšã§ããŸãããTelnetã®å Žåã¯ãã¹ã¯ãŒããèšå®ããå¿ èŠããããŸãã ã©ããã£ãŠããã®ïŒ
PTãã芧ãã ããã
ã«ãŒã¿ãŒãäœæããããšããå§ããŸããããäžã®ããã«ã§éžæããã¯ãŒã¯ã¹ããŒã¹ã«è»¢éããŸãã ååãã€ããŠ
ãããæãæ¬ç©ã®é補ã«ãŒã¿ãŒã ã£ããã©ãããŸããïŒ åœŒãã¯ã³ã³ãœãŒã«ã±ãŒãã«ãåããããããã³ã³ãã¥ãŒã¿ãŒãšæ¥ç¶ããŸãã ããã§ãåãããšãè¡ããŸãã
ã³ã³ãã¥ãŒã¿ãŒãã¯ãªãã¯ããããšã§ã[èšå®]ãŠã£ã³ããŠãåŒã³åºããŸãããã®ãŠã£ã³ããŠã§ã¯ã[ãã¹ã¯ããã]ã¿ãã«é¢å¿ããããŸãã 次ã«ãã¿ãŒããã«ãéžæããŸããããã§ããã©ã¡ãŒã¿ã®éžæè¢ã衚瀺ãããŸã
ãã ããããã©ã«ãã®ãã©ã¡ãŒã¿ãŒã¯ãã¹ãŠç§ãã¡ã«åã£ãŠãããå€æŽããæå³ã¯ãããŸããã
ããã€ã¹ã®äžæ®çºæ§ã¡ã¢ãªã«æ§æãã¡ã€ã«ïŒstartup-configïŒããªããæ°ããããŒããŠã§ã¢ãåããŠãªã³ã«ãããšãã«åãã«ãªãå Žåãåææ§æãã€ã¢ãã°ããã³ããã衚瀺ãããŸãã
èŠããã«ãããã¯åºæ¬çãªããã€ã¹ãã©ã¡ãŒã¿ãŒïŒãã¹ãåããã¹ã¯ãŒããã€ã³ã¿ãŒãã§ã€ã¹ïŒã段éçã«æ§æã§ãããŠã£ã¶ãŒãã§ãã ããããããã¯é¢çœããªãã®ã§ã ããããšçããŠæåŸ ç¶ãèŠã
Router>
ããã¯ããã¹ãŠã®ciscoåç·ã«å¯ŸããæšæºçãªæåŸ ç¶ã§ããã ãŠãŒã¶ãŒã¢ãŒããç¹åŸŽã¥ããŸãããã®ã¢ãŒãã§ã¯ãçµ±èšæ å ±ã衚瀺ããpingãªã©ã®æãç°¡åãªæäœãå®è¡ã§ããŸãã çå笊ãå ¥åãããšã䜿çšå¯èœãªã³ãã³ãã®ãªã¹ãã衚瀺ãããŸãã
倧ãŸãã«èšããšãããã¯æåã®ãã¯ãã«ã«ãµããŒãã©ã€ã³ã®ãšã³ãžãã¢ã§ãããããã¯ãŒã¯ãªãã¬ãŒã¿ãŒåãã®ã¢ãŒãã§ãããã®ããã圌ã¯ããã«äœããå·ã€ããããå°ç¡ãã«ããããåŠã³ããããããŸããã
ã¯ããã«å€§ããªæ©äŒã¯ã ç¹æš©çãªååã話ãã¢ãŒããæäŸããŸãã > enableãšå ¥åããããšã§ã¢ã¯ã»ã¹ã§ããŸãã æåŸ ç¶ã¯æ¬¡ã®ããã«ãªããŸãã
Router#
ããã§ã¯ãæäœã®ãªã¹ããããåºç¯å²ã«ãªããŸããããšãã°ãçŸåšã®ããã€ã¹èšå®ããconfigã #show running-configãšããŠç€ºãæãé »ç¹ã«äœ¿çšãããã³ãã³ãã®1ã€ãå®è¡ã§ããŸãã ç¹æš©ã¢ãŒãã§ã¯ãããã€ã¹ã«é¢ãããã¹ãŠã®æ å ±ã衚瀺ã§ããŸãã
èšå®ããåã«ãCisco CLIã䜿çšããŠäœæ¥ãå€§å¹ ã«ç°¡çŽ åã§ãã䟿å©ãªç¹ãããã€ã玹ä»ããŸãã
-ã³ã³ãœãŒã«ã®ãã¹ãŠã®ã³ãã³ããççž®ã§ããŸãã äž»ãªãã®ã¯ãåæžãæããã«ããŒã ãæããŠãããšããããšã§ãã ããšãã°ã show running-config㯠sh runã«ççž®ãããŸã ã ãªãsrãŸã§ã§ã¯ãªãã®ã§ããïŒ s ïŒãŠãŒã¶ãŒã¢ãŒãïŒã¯showã³ãã³ããšsshã³ãã³ãã®äž¡æ¹ãæå³ããããã ïŒ Ambiguous commandïŒâ srâãšã©ãŒã¡ãã»ãŒãžïŒææ§ãªã³ãã³ãïŒã衚瀺ãããããã§ãã
-TabããŒãšçå笊ã䜿çšããŸãã TabããŒãæŒããšãççž®ãããã³ãã³ããå®å šãªã³ãã³ãã«è¿œå ãããã³ãã³ãã«ç¶ãçå笊ã¯ããããªããªãã·ã§ã³ã®ãªã¹ããšãããã«é¢ããå°ãã®ãã«ãã衚瀺ããŸãïŒPTã§èªåã§è©ŠããŠãã ããïŒã
-ã³ã³ãœãŒã«ã§ããŒããŒãã·ã§ãŒãã«ããã䜿çšããŸãã
Ctrl + A-ã«ãŒãœã«ãè¡ã®å é ã«ç§»åããŸã
Ctrl + E-ã«ãŒãœã«ãè¡æ«ã«ç§»åããŸã
ã«ãŒãœã«ãäžãäž -ã³ãã³ãã®å±¥æŽå ã移åãã
Ctrl + W-åã®åèªãæ¶å»
Ctrl + U-è¡å šäœãæ¶å»
Ctrl + C-æ§æã¢ãŒããçµäº
Ctrl + Z-çŸåšã®ã³ãã³ããé©çšããæ§æã¢ãŒããçµäºããŸã
Ctrl + Shift + 6-é·ãããã»ã¹ãåæ¢ããŸãïŒãããããšã¹ã±ãŒãã·ãŒã±ã³ã¹ïŒ
-ã³ãã³ãåºåãã£ã«ã¿ãªã³ã°ã䜿çšããŸãã ããšãã°ãç¹å®ã®åèªãèŠã€ããããã«é·æéæãå¿ èŠãããå€ãã®æ å ±ãããŒã ã衚瀺ããããšããããŸãã
ãã£ã«ã¿ãªã³ã°ã«ããäœæ¥ãä¿é²ããŸããèšå®ããã³ãã³ãã®åŸã«| ããã£ã«ã¿ãªã³ã°ã®ã¿ã€ããšãå®éã«ãç®çã®åèªïŒãŸãã¯ãã®äžéšïŒãèšè¿°ããŸãã ãã£ã«ã¿ãªã³ã°ã®ã¿ã€ãïŒå¥ååºå修食åïŒïŒ
begin-åèªãèŠã€ãã£ãè¡ããå§ãŸããã¹ãŠã®è¡ã®åºåã
section-åèªãåºçŸããæ§æãã¡ã€ã«ã®åºåã»ã¯ã·ã§ã³ã
include-åèªãçŸããåºåè¡ã
exclude-åèªãåºçŸããªãåºåè¡ã
ããããã¢ãŒãã«æ»ããŸãã 3çªç®ã®ã¡ã€ã³ã¢ãŒããšãŠãŒã¶ãŒããã³ç¹æš©ïŒ ã°ããŒãã«æ§æã¢ãŒã ã ååã瀺ãããã«ãããã€ã¹ã®èšå®ãå€æŽã§ããŸãã ããã¯ãã³ãã³ã#configure terminalã«ãã£ãŠç¹æš©ã¢ãŒãããã¢ã¯ãã£ãåããã次ã®ããã³ããã衚瀺ãããŸãã
Router(config)#
ã°ããŒãã«ã³ã³ãã£ã®ã¥ã¬ãŒã·ã§ã³ã¢ãŒãã§ã¯ãä»ã®ã¢ãŒãã®éåžžã«å¿ èŠãªã³ãã³ããå®è¡ãããªãå ŽåããããŸãïŒåãshow running-configãpingãªã©ïŒã ãããã doã®ãããªäŸ¿å©ãªãã®ããããŸã ã ãã®ãããã§ãèšå®ã¢ãŒããçµäºããããšãªãããããã®åãã³ãã³ããå®è¡ã§ããŸãããããã®åã«doãè¿œå ããã ãã§ãã ãã®ãããªãã®ïŒ
Router(config)#do show running-config
Telnetã¢ã¯ã»ã¹æ§æ
ãã®ã¢ãŒããããtelnetçµç±ã§ã³ã³ãã¥ãŒã¿ãŒãæ¥ç¶ããããã®ã€ã³ã¿ãŒãã§ã€ã¹ãæ§æããŸãã
FastEthernet 0/0 ã€ã³ã¿ãŒãã§ã€ã¹ã³ã³ãã£ã®ã¥ã¬ãŒã·ã§ã³ã¢ãŒããéå§ããã³ãã³ãïŒ
# Router(config)# interface fa0/0
ããã©ã«ãã§ã¯ããã¹ãŠã®ã€ã³ã¿ãŒãã§ãŒã¹ãç¡å¹ã«ãªã£ãŠããŸãïŒç®¡çäžã®ããŠã³ç¶æ ïŒã ã€ã³ã¿ãŒãã§ã€ã¹ããªã³ã«ããŸãã
Router(config-if)#no shutdown
IPã¢ãã¬ã¹ãæ§æããŸãã
Router(config-if)#ip address 192.168.1.1 255.255.255.0
ã·ã£ããããŠã³ -ãã€ã³ã¿ãŒãã§ãŒã¹ããªãã«ãããããšãæå³ããŸãã ãããã£ãŠãã³ãã³ãããã£ã³ã»ã«ããå Žåã¯ãã³ãã³ãã®åã«noã䜿çšããŠãã ããã ãã®ã«ãŒã«ã¯CLIã«å ±éã§ãããã»ãšãã©ã®ã³ãã³ãã«é©çšãããŸãã
æ¥ç¶ãããŠããŸãã ãããè¡ãã«ã¯ã ã¯ãã¹ã±ãŒãã«ã䜿çšããŸã ã ïŒå®éã«ã¯ããã¯ãã°ãã°äžèŠã«ãªããŸã-ãã¹ãŠã®ã«ãŒãã¯åä¿¡/éä¿¡ãç解ã§ããŸãããééã£ãã¿ã€ãã®ã±ãŒãã«ã䜿çšããŠãããŒããäžæããªãã«ãŒã¿ãŒããŸã ãããŸã-泚æããŠãã ããïŒ
ãã¹ã¯ãããããã³ã³ãã¥ãŒã¿ãŒã®IPã¢ãã¬ã¹ãæ§æããŸãã
ãããŠããã¹ã¯ãããããã«ã§ã³ãã³ãããã³ãããéžæããŠæ¥ç¶ããŠã¿ãŠãã ããïŒ
äºæ³ã©ãããtsiskaã¯ãã¹ã¯ãŒããªãã§ã¯èµ·åããŸããã å®éã«ã¯ãããã¹ã¯ãŒããå¿ èŠã§ããèšå®ãããŠããŸããããšãããã¬ãŒãºã衚瀺ãããŸãã
ãã¹ã¯ãŒã
telnetãŸãã¯sshæ¥ç¶ã¯ä»®æ³ç«¯æ«ïŒvtïŒãšåŒã°ãã次ã®ããã«æ§æãããŸãã
Router(config)#line vty 0 4 Router(config-line)#password <i>cisco</i> Router(config-line)#login
0 4ã¯5ãŠãŒã¶ãŒä»®æ³ç«¯æ«= telnetã»ãã·ã§ã³ã§ãã
ããã¯ãã§ã«ãŠãŒã¶ãŒã¢ãŒãã«å ¥ãã®ã«ååã§ãããç¹æš©ãåŸãã«ã¯ååã§ã¯ãããŸããã
ã€ããŒãã«ã¢ãŒãã®ãã¹ã¯ãŒããèšå®ããŸãã
Router(config)#enable secret <i>test</i>
secretãšpasswordã®éãã¯äœã§ããïŒ telnetã®sshãšã»ãŒåãã§ãã ã·ãŒã¯ã¬ãããèšå®ãããšããã¹ã¯ãŒãã¯æå·åããã圢åŒã§æ§æãã¡ã€ã«ã«ä¿åããã ãã¹ã¯ãŒããéãããŸãã ãããã£ãŠã ã·ãŒã¯ã¬ããã®äœ¿çšããå§ãããŸãã
passwordã³ãã³ãã§ãŸã ãã¹ã¯ãŒããèšå®ããŠããå Žåã¯ã ãµãŒãã¹ãã¹ã¯ãŒãæå·åã䜿çšããå¿ èŠããããŸããèšå®ãã¡ã€ã«ã®ãã¹ã¯ãŒãã¯æå·åãããŸãã
line vty 0 4 password 7 08255F4A0F0A0111
ç§ã®å人ãç§ã«è©±ãããïŒ
圌ã¯ãã€ãŠäœå® ã®å»ºç©ã«ãã圌ã®çµã³ç®ã®è¿ãã§ãã°ããåžã£ãŠããŸããã ããŒã«ããã°ãã©ããããããæã«ã çªç¶ãããã±ãŒãžãæã£ã2人ã®é ã£ã±ãããçŸããè³Œå ¥ãç³ãåºãŠãããã±ãŒãžãéããŠãããçš®ã®ã¹ã€ãããèŠããŸãã 圌ãã¯500ã«ãŒãã«ãèŠæ±ããŸãã ãŸãã圌ã¯ãããè²·ã£ãã ã¹ã€ããã®ã©ãã«ââãšã¢ãã«ã«ããããã®ç·ã¯èªåãæå±ãããããã€ããŒã決å®ããŸããã 圌ã¯å®¶ã«åž°ãããããã³ã°ãå§ããŸãããTelnetã¯éããããã³ã³ãœãŒã«ã¯ãã¹ã¯ãŒãã§ä¿è·ãããŠããŸãã snmpã®èšå®ããã³ãããŸããã ãã¹ã¯ãŒãã¯ã¯ãªã¢ãªåœ¢åŒã§ä¿åãããååã¯ãããã€ããŒããæäŸãããŸãã 圌ã¯å人çã«ç®¡çè ã«ç²ŸéããŠããããHelloãã®ä»£ããã«åœŒã«é»è©±ããåä¿¡è ã«ãŠãŒã¶ãŒåãšãã¹ã¯ãŒããçºè¡ããŸããã æåã®20ç§éã«è³ãã©ã®ããã«ãããã®ããèãããŸãããã©ãã«ã§ãã¢ã¯ã»ã¹ãªã¹ããèªèšŒãã±ã·ã®ã¢ãã¬ã¹ãžã®ãã€ã³ãããããŸãã ã©ãããŠïŒïŒ äžè¬ã«ããã¹ãŠãããŸããããããã§çµããã§ãã
ããã§å°ãèªãããšãã§ããŸã ã ããŠããŸãã¯ãã·ã¢èªã§ããå°ãããã« ã
次ã®ç¹ã«æ³šæãåèµ·ããããšæããŸãã
çŸåšã§ã¯ãä»®æ³ç«¯æ«ã§ã¯ãªããã³ãã³ã#usernameããã³#aaa new-modelã䜿çšããŠã¢ã¯ã»ã¹ãæ§æããã®ãæ £äŸãšãªã£ãŠããŸãã ããŒãžã§ã³PT 5.3.2ã«ã¯æ¢ã«ååšããéåžžã«ããŸãæ©èœããŸãã
ãããè¡ãã«ã¯ã次ãå®è¡ããŸãã
Router(config)#aaa new-model Router(config)#username admin password 1234
æåã®ã³ãã³ãã¯ãæ°ããã¢ãã«ãã¢ã¯ãã£ãã«ããããšã§ã AAAïŒèªèšŒãæ¿èªãã¢ã«ãŠã³ãã£ã³ã°ïŒã ããã¯ãRADIUSãŸãã¯TACACSããã€ã¹èªèšŒã«ãµãŒããŒã䜿çšã§ããããã«ããããã«å¿ èŠã§ãã ãããåå¥ã«æ§æãããŠããªãå Žåã usernameã³ãã³ãã§æå®ãããããŒã«ã«ãŠãŒã¶ãŒããŒã¹ã䜿çšãããŸãã
泚æ ïŒaaa new-modelã³ãã³ãã®åªå 床ã¯ä»®æ³ç«¯æ«ã³ãã³ãã®åªå 床ãããé«ããããline vtyã¢ãŒãã§ãã¹ã¯ãŒããèšå®ããŠããŠããããŒã«ã«ããŒã¿ããŒã¹ã«ãŠãŒã¶ãŒãããªãå Žåããªã¢ãŒãã§ããã€ã¹ã«ãã°ã€ã³ããããšã¯ã§ããŸããã
æ¥ç¶ãããšãã«ãŒã¿ãŒã¯ãŠãŒã¶ãŒåãšããã«å¯Ÿå¿ãããã¹ã¯ãŒããèŠæ±ããŸãã
line vtyã®ããæ·±ãæ§æã«ã¯1ã€ã®å±éºããããŸã ã
ãã®ãããªãã©ã¡ãŒã¿ãŒããããŸãïŒ access-class ã ãã®æ§æã«ãããæ¥ç¶ã§ããIPã¢ãã¬ã¹ãå¶éã§ããŸãã ãããŠãããæ¥ãã¹ããŒãããŒã·ã£ãšããŠãèãé£ã°ãªãããã«ããããã¯ãŒã¯ãšãããã®ã¢ã¯ã»ã¹ãªã¹ããåããã»ãšãã©ãã¹ãŠã®æ©åšã«ã»ãã¥ãªãã£ãèšå®ããããšã«ããŸããã ããç¬éãç§ã¯ãã£ãŒã«ãã«å ¥ãå¿ èŠãããããã®æ¥ãèªåã®æ£ç¢ºããåªããŸãã-ã©ãã«ãå°éã§ããŸããã§ãã-ç§ã¯ããããªæãç©Žãæ®ããŸããã§ããã äžè¬çã«ããã®ããŒã ã«ã¯æ³šæããããæãç©Žãæ®ããŠãã ããã
誀ã£ãèšå®ã«ããããã€ã¹ãžã®ã¢ã¯ã»ã¹ã奪ãããå¯èœæ§ã®ããã¢ã¯ã»ã¹ãªã¹ãããã®ä»ã®å±éºãªãã®ãæäœããå Žåã minã³ãã³ãã§çŽ æŽãããreloadã䜿çšã§ããŸããminã¯ååäœã®æéã§ãã ãã®ã³ãã³ãã¯ã reload cancelã³ãã³ãã«ãã£ãŠäžæãããªãå Žåãæå®ãããæéåŸã«ããã€ã¹ãåèµ·åããŸãã ã€ãŸã äœæ¥ã®ã¹ããŒã ã¯æ¬¡ã®ãšããã§ããçè«çã«ã¯ïŒããŒãã£ãŒã®æ³åã¯å¿ããããªãïŒããã€ã¹ãšã®éä¿¡ã»ãã·ã§ã³ãäžæã§ãããã®ããªã¢ãŒãã§æã£ãŠããŸãã çŸåšã®ïŒäœæ¥äžã®ïŒèšå®ãstartup-configã«ä¿åãïŒããŒãæã«äœ¿çšïŒãreloadã15ã«å ¥ããçãããããŒã³ãã³ããå ¥åããŸã;-)ãæ¥ç¶ãåæããŸããææªã®æãã¯æ£åœåãããŸããã 15åéåŸ æ©ããåäœããæ§æã§ããã€ã¹ãåèµ·åãããæ¥ç¶ãå®äºããæ¥ç¶ã確ç«ãããŸãã ãŸãã¯ïŒæ¥ç¶ãäžæãããŠããªãå ŽåïŒããã¹ãŠãæ©èœããããšã確èªãã ãªããŒããã£ã³ã»ã«ãå®è¡ããŸãã
ã³ã³ãœãŒã«ããŒããä»ãããã¹ã¯ãŒãã¢ã¯ã»ã¹ãå¶éããå Žåã¯ãã³ãã³ããå¿ èŠã§ãã
Router(config)#line console 0 Router(config-line)#login Router(config-line)#password <i>cisco</i>
ç¹æš©ã¬ãã«
èšäºã§ã»ãšãã©æ³šæãæãããŠããªããã1ã€ã®éèŠãªãã€ã³ãã¯ãç¹æš©ã¬ãã«ã§ãã
ã©ãã³èªã®é³ããæãããªããã«ãããã¯ãŠãŒã¶ãŒæš©å©ã®ã¬ãã«ã§ãã åèš16ã¬ãã«ããããŸãïŒ0ã15ã
ç¹æš©ã¬ãã«0ã¯ããã¹ãŠã®ã¢ãŒãã§æ©èœããdisableãenableãexitãhelpãããã³logoutã³ãã³ãã§ã
ç¹æš©ã¬ãã«1-ãããã¯ãŠãŒã¶ãŒã¢ãŒãã³ãã³ãã§ããã€ãŸããtsiskaã«å°éããŠRouter>ããã³ããã衚瀺ããããšããã«ãã¬ãã«1ã«ãªããŸãã
ç¹æš©ã¬ãã«15-ãããã¯Unixã®ã«ãŒããªã©ã®ç¹æš©ã¢ãŒãã³ãã³ãã§ã
äŸ1
Router(config)#line vty 0 4 Router(config-line)privilege level 15
ãã®æ§æã§ã«ãŒã¿ãŒã«ãã°ã€ã³ãããšãé¢é£ãããã¹ãŠã®æš©éãæã€ã«ãŒã¿ãŒïŒãããã«è¡šç€ºãããŸãã
ã¬ãã«2ã14ã¯ãã¹ãŠæåã§æ§æãããŸãã ã€ãŸããããšãã°ãç¹æš©ã¬ãã«2ã®ãŠãŒã¶ãŒã«ãŽãŒã¢ããããäžããŠã show running-configã³ãã³ããå®è¡ã§ããŸãã
äŸ2
åè¿°ã®usernameã³ãã³ãã¯ãç¹å®ã®ãŠãŒã¶ãŒã®æš©å©ãæ§æããã®ã«åœ¹ç«ã¡ãŸãã
Router(config)#username pooruser privilege 2 secret poorpass Router(config)#privilege exec level 2 show running-config Router(config)#enable secret level 2 l2poorpass
æåã®è¡ã§ã¯ãŠãŒã¶ãŒã«æš©å©ã®ã¬ãã«ãå²ãåœãŠã2çªç®ã®ã³ãã³ãã§ã¯ãã®ã¬ãã«ã§èš±å¯ããã3çªç®ã®è¡ã§ã¯ãã¹ã¯ãŒããèšå®ããŠãã®ã¬ãã«ã§ç¹æš©ã¢ãŒãã«å ¥ããŸãã
ãã®åŸããŠãŒã¶ãŒã¢ãŒãããenable 2ã³ãã³ããå®è¡ãããã¹ã¯ãŒãl2poorpassãå ¥åããŠç¹æš©ã¢ãŒãã«å ¥ããŸãããã®ã¢ãŒãã§ã¯ããã¹ãŠã®ã¬ãã«1ã³ãã³ã+ã¬ãã«2ã³ãã³ãã䜿çšã§ããŸãã
ããã¯äœã®ããã§ããããïŒ ãã·ã¢ã®çŸå®ã§ã¯ãã»ãšãã©ã®å Žåããšã³ãžãã¢ã¯å®å šãªæš©å©ãæã£ãŠããã«ããã€ã¹ã«ã¢ã¯ã»ã¹ããå¿ èŠãããããã§ãã ãŸãã圌ãã¯äºéèªèšŒããã¹ããªãããã«ã圌ãã¯15ã¬ãã«ã眮ãããšãé€ããŠã ãŸããä»ã®ãã¹ãŠã®ã¬ãã«ã§ã¯ããžã¥ãã¢ã¹ã¿ããïŒæè¡ãµããŒããªã©ïŒãåå ããŠãããã€ãã®ãã©ã¡ãŒã¿ãŒãç£èŠããããéèŠã§ãªãæ©èœãæ§æãããã§ããŸãã
Ssh
telnetãä¿è·ãããŠããªããããã³ã«ã§ããããã¹ã¯ãŒããšããŒã¿ãã¯ãªã¢ããã¹ãã§éä¿¡ããããšã¯èšããŸã§ããããŸããã ä»»æã®ãã±ããã¢ãã©ã€ã¶ãŒã䜿çšããŠããã¹ã¯ãŒããèšç®ã§ããŸãã
ãã®ãããsshã䜿çšããããšã匷ããå§ãããŸãããã¡ãŒã ãŠã§ã¢ãããŸãããªãã³ã°ãããŠããªãCiscoããã€ã¹ã¯ãsshãµãŒããŒãšããŠåäœã§ããŸãã
次ã®äžé£ã®ã³ãã³ãã䜿çšãããšãsshãæå¹ã«ããtelnetã¢ã¯ã»ã¹ãç¡å¹ã«ããããšãã§ããŸãã
Router(config)#hostname R0 Router(config)#ip domain-name cisco-dmn Router(config)#crypto key generate rsa Router(config)#line vty 0 4 Router(config-line)#transport input ssh
ãã¹ãåã¯ã«ãŒã¿ãŒãšç°ãªãå¿ èŠãããããã¡ã€ã³åãæå®ããå¿ èŠããããŸãã 3è¡ç®ã¯ããŒãçæããsshã®ã¿ãèš±å¯ãããŸãã sshããŒãžã§ã³2ã䜿çšãããå Žåãéµã®é·ãã¯768ããããã倧ãããªããã°ãªããŸããã ããã ãã§ã
åå¿è ãžã®ããäžã€ã®æåŸã®æ³šæ ïŒ write memoryã³ãã³ããå¿ããªãã§ãã ãã-ããã¯çŸåšã®èšå®ãä¿åããŸãã ãã ãããããæ°žä¹ ã«å é€ããããã«ã¯ãä¿åãå¿ããŠ2åçããã°ååã§ããå€éã«ãšã³ã³ãŒããã人ãåŠææ«ã¬ããŒããæžãã人ãªã誰ã§ãç解ã§ããŸãã
PTã䜿çšããŠã端æ«ãŸãã¯telnetã§ã¯ãªããããã€ã¹ã®CLIããçŽæ¥æ©åšãèšå®ããŸããããã¯ãã«ãŒã¿ãŒã¢ã€ã³ã³ãã¯ãªãã¯ããŠåŒã³åºãããŸããããã¯ãã䟿å©ã§ãã
ãŸããçããã®ïŒãã¹ã¯ãŒãã®ãªã»ãã
ããã§ãããããŒãã«ã«æªç¥ã®ãã¹ã¯ãŒããä»ãããµããµãããtsiskaãæã«å ¥ããå ŽåããŸãã¯ãããéåžžã«é ãå¿ããå Žåã¯ã©ãããŸããïŒ å®éãç¹°ãè¿ãèšè¿°ãããŠãããç°¡åã«ã°ãŒã°ã«ã§æ€çŽ¢ã§ããŸãããç¹°ãè¿ãå¿ èŠããããŸãã
ã»ãšãã©ãã¹ãŠã®ãããã¯ãŒã¯ããã€ã¹ã§ãç©ççã«ã¢ã¯ã»ã¹ããŠãã¹ã¯ãŒãããªã»ããããããšãã§ããŸãã ãããäžå¯èœã§ããããå¥ã®ææãµãŒãã¹ã§ããå Žåããããããã·ã¢ã®å·¥èžåãããã€ãæå ã«ãããŸãïŒãã¡ãããç§ãã¡ã®ã¡ãŒã«ãŒã«ãšã£ãŠã¯ç¯çœªã§ã¯ãããŸããããããã¥ã¡ã³ãã§ãããã®è¡ã2åèªãã§ããŸã:)ïŒ
ciscoïŒ
1ïŒã³ã³ãœãŒã«ã±ãŒãã«ã§ããã€ã¹ã«æ¥ç¶ãã
2ïŒåèµ·åããããã«éä¿¡ããŸãïŒå°ãªããšã#reloadã³ãã³ãã䜿çšããŠãæ é€è£çµŠã®ããïŒ
3ïŒãã®ãããªè¡######## ... ###ãç»é¢äžã§å®è¡ãããå Žåãã€ãŸããã€ã¡ãŒãžãããŒãããïŒã¹ã€ãããå ¥ããŠãã40-60ç§åŸïŒå Žåã ãã¬ãŒã¯ä¿¡å·ãéä¿¡ããå¿ èŠããããŸãã ããŸããŸãªããã°ã©ã ã§ãããè¡ãæ¹æ³ã«ã€ããŠã¯ã ãã¡ããã芧ãã ãã ã ROMMONã¢ãŒãã§ãã
4ïŒãã®ã¢ãŒãã§ã¯ãã³ãã³ãconfreg 0x2142ãå ¥åããŸããããã«ãããããã€ã¹ã¯ããŒãæã«startup-configãç¡èŠããŸãã
5ïŒ ãªã»ãããå ¥åããŠåèµ·åããŸã
6ïŒããŒãåŸãrunning-configã¯åæç¶æ ã«ãªããstartup-configã«ã¯æåŸã«ä¿åãããæ§æãåŒãç¶ãå«ãŸããŸãã ä»ããããã¹ã¯ãŒããå€æŽããããæ§æãããŒãžãããšãã§ãã
7ïŒæãéèŠãªãã®ïŒ ã¬ãžã¹ã¿ãè¿ã ïŒ
Router(config)#config-register 0x2102
ããããªããšãæåã®åèµ·åãŸã§èšå®å šäœãé¢é£ããããšã«ãªããŸãïŒãããŠããã®ããã€ã¹ãè¿ãã«ããã°è¯ãã®ã§ãæ··ä¹±ããããšãèŠããŠããã§ãããã ç§ã¯éãæªãã§ãïŒ
次ã®èšäºã§ã¯ãvlanãšããŒã«ã«ãããã¯ãŒã¯ã«ã€ããŠèª¬æããŸãã å¿ é ã®èªæžïŒ
OSI
VLAN
Habrahabrã®æªç»é²ã®èªè ã¯ã LJã§è³ªåããããšãã§ããŸãã
ãã®èšäºãæžããŠãããthegluckãŠãŒã¶ãŒã«æè¬ããŸãã