Cisco Configuration Professional Workshop Basic Lab-Configuration
28.05.2011 07:47 uwe.starke@hs-wismar.de 2
Intuitive device management GUI for easily configuring access routers / switches! Windows Based Application GUI based Device Management tool for access routers Unified Communications License Management (CCP 2.5 and later) Application Management... 28.05.2011 07:47 uwe.starke@hs-wismar.de 3
Windows Based Application 28.05.2011 07:47 uwe.starke@hs-wismar.de 4
Limitations and Restrictions 28.05.2011 07:47 uwe.starke@hs-wismar.de 5
Supported Routers 28.05.2011 07:47 uwe.starke@hs-wismar.de 6
GUI based Device Management tool for access routers 28.05.2011 07:47 uwe.starke@hs-wismar.de 7
Toolbar! GUI based Device Management tool for access routers Home - > Community View, add, edit and discover Devices Configure button - > Router features werden links angezeigt - > nicht vorhandene Features ; keine Anzeige Monitor button - > Anzeige der monitorbaren Funktionen z.b. Tunnelstatistik, Interfaceauslastung... Community icon - > add or edit communitys 28.05.2011 07:47 uwe.starke@hs-wismar.de 8
Device Views! - check the status - test the possibilities - configure your devices - monitor... 28.05.2011 07:49 uwe.starke@hs-wismar.de 9
GUI based Device Management tool for access routers Interface Management Interfaces Supported LAN WAN Wireless LAN Cellular WAN (3G) Power Management ( Energy wise) Analog Trunks Digital Trunks 28.05.2011 07:49 uwe.starke@hs-wismar.de 10
GUI based Device Management tool for access routers Router Basic Router Functionalities: Hostname Username, Password DHCP, DNS NAT Static Routing Dynamic Routing ( RIP, OSPF, EIGRP) Advanced Functionalities QoS Performance Routing (PFR) 28.05.2011 07:50 uwe.starke@hs-wismar.de 11
GUI based Device Management tool for access routers Performance Routing 28.05.2011 07:50 uwe.starke@hs-wismar.de 12
GUI based Device Management tool for access routers Security Security Functionalities: One step router lockdown Security audit of the router Firewall ( Zone Based and CBAC) VPN Advanced Functionalities Intrusion Prevention System (IPS) Content Filtering 28.05.2011 07:51 uwe.starke@hs-wismar.de 13
GUI based Device Management tool for access routers Security 28.05.2011 07:51 uwe.starke@hs-wismar.de 14
GUI based Device Management tool for access routers Security 28.05.2011 07:51 uwe.starke@hs-wismar.de 15
GUI based Device Management tool for access routers Unified Communications 28.05.2011 07:51 uwe.starke@hs-wismar.de 16
GUI based Device Management tool for access routers Unified Communications 28.05.2011 07:52 uwe.starke@hs-wismar.de 17
GUI based Device Management tool for access routers Unified Communications 28.05.2011 07:52 uwe.starke@hs-wismar.de 18
GUI based Device Management tool for access routers License Management (CCP 2.5 and later) Installing and enabling permanet license Enabling evaluation license Displaying of error message if license is not enabled for a particular feature 28.05.2011 07:52 uwe.starke@hs-wismar.de 19
GUI based Device Management tool for access routers License Management (CCP 2.5 and later) 28.05.2011 07:52 uwe.starke@hs-wismar.de 20
GUI based Device Management tool for access routers Application Management z.b. Creating a user profile Importing a user profile Discovering a router to verify profile settings Working with templates creating, editing applying rollback 28.05.2011 07:52 uwe.starke@hs-wismar.de 21
GUI based Device Management tool for access routers Application Management 28.05.2011 07:52 uwe.starke@hs-wismar.de 22
GUI based Device Management tool for access routers Application Management CCP allows you to perform the following on an Application Extension platform module. Configure interfaces on the module SSH and Syslog server system admin, DNS, Timezone and NTP management of third party applications 28.05.2011 07:52 uwe.starke@hs-wismar.de 23
GUI based Device Management tool for access routers Application Management Management of third party applications http://www.cisco.com/en/us/prod/routers/isrg2_management_capabilities_app.html#~third-party 28.05.2011 07:52 uwe.starke@hs-wismar.de 24
CCP bietet noch wesentlich mehr an Funktionen. Fragen zum Allgemeinen? Weiter mit der Installation und Netzwerkkonfiguration unseres Labornetzes! Quellen: Cisco CCP-Web-Pages CCP User Guid 2.5 Shankar Ramachandran Cisco Configuration Professional 28.05.2011 07:53 uwe.starke@hs-wismar.de 25
Labornetzwerk zur Anwendung CCP Lab-Cloud Platz Nr.1 Inside 192.168.1.0/24 Outside 10.10.1.0 /30 RIP v2 Platz Nr. n Inside 192.168.n.0/24 Outside 10.10.1.n /30 RIP v2 28.05.2011 07:53 uwe.starke@hs-wismar.de 26
Steps: 1. Überprüfung Java-Settings 2. Installation CCP cisco-config-pro-k9-pkg-2_5-en.exe 28.05.2011 07:53 uwe.starke@hs-wismar.de 27
Step: 3. Router preconfiguration with CLI Configure: Router>ena Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname CCP1 CCP1(config)#ip domain-n CCP1(config)#ip domain-name CCP.test.de CCP1(config)#username admin privilege 15 secret cisco CCP1(config)#ip http authentication local CCP1(config)#ip http server CCP1(config)#ip http secure-server % Generating 1024 bit RSA keys, keys will be non-exportable...[ok] CCP1(config)# May 23 13:04:17.414: %SSH-5-ENABLED: SSH 1.99 has been enabled CCP1(config)#interf fastethernet0/0 CCP1(config-if)#ip address 192.168.1.1 255.255.255.0 CCP1(config-if)#no shut CCP1(config-if)#line vty 0 4 CCP1(config-line)#login local CCP1(config-line)#transport input ssh telnet CCP1(config-line)#ip dhcp pool CCP1 CCP1(dhcp-config)#network 192.168.1.0 /24 CCP1(dhcp-config)#default-router 192.168.1.1 CCP1(dhcp-config)#dns-server 192.168.1.1 CCP1(dhcp-config)#domain-name ccp.test.de CCP1(dhcp-config)# CCP1#wr 28.05.2011 07:53 uwe.starke@hs-wismar.de 28
Step: 4. Start Using Cisco CP Cisco CP works with device communities. A community consists of one or more devices that you specify by providing their IP addresses and login credentials. After you create the community, you can begin working with the devices in it. This section contains the following parts: Creating a Community and Adding Devices Creating an Initial Configuration of a Feature Editing a Configuration 28.05.2011 07:53 uwe.starke@hs-wismar.de 29
Step: 4. Start Using Cisco CP 28.05.2011 07:53 uwe.starke@hs-wismar.de 30
Step: 5. Creating a Community and Adding Devices You can also open the Manage Community dialog box in the following ways: From the toolbar, click the Manage Community icon. From the menu bar, choose Application > Manage Community. 28.05.2011 07:53 uwe.starke@hs-wismar.de 31
Step: 5. Creating a Community and Adding Devices If you want Cisco CP to connect securely with the device, check the Connect Securely check box. HTTPS port 443 and SSH port 22 information is automatically added to the device. Use the Discover 28.05.2011 07:53 uwe.starke@hs-wismar.de 32
Step: 5.1 If you use Cisco CP to connect securely with the device Accept the certificate yes! 28.05.2011 07:53 uwe.starke@hs-wismar.de 33
Step: 6. Community View Page 28.05.2011 07:53 uwe.starke@hs-wismar.de 34
Step: 6. Community View Page - check the status - test the possibilities - configure your devices - monitor... 28.05.2011 07:53 uwe.starke@hs-wismar.de 35
Step: 7. Configure Tree 28.05.2011 07:53 uwe.starke@hs-wismar.de 36
Step: 8. Interfaces and Connections 28.05.2011 07:53 uwe.starke@hs-wismar.de 37
Step: 9. Edit Interfaces/Connections Inside Network 192.168.n.0 /24 Create New Connection for Outside (WAN/ or LAN) 10.10.10.n /30 Steps: 10. Connect to your neighbours 11. Configure the neighbours connection 28.05.2011 07:53 uwe.starke@hs-wismar.de 38
Step: 12. Configure Routing Edit Dynamic Routing Select RIP Select Vers. 2 ADD your networks Verify and deliver the commands 28.05.2011 07:53 uwe.starke@hs-wismar.de 39
Step: 13. Test the connectivity to your neighbours, ping, traceroute, Telnet..., End of the Basic- CCP-LAB 28.05.2011 07:53 uwe.starke@hs-wismar.de 40