Cisco Configuration Professional Workshop



Similar documents
Configuring Devices for Use with Cisco Configuration Professional (CCP) 2.5

PT Activity: Configure Cisco Routers for Syslog, NTP, and SSH Operations

Note: This case study utilizes Packet Tracer. Please see the Chapter 5 Packet Tracer file located in Supplemental Materials.

Objectives. Background. Required Resources. CCNA Security

Device Interface IP Address Subnet Mask Default Gateway

Cisco Configuration Professional Quick Start Guide

Skills Assessment Student Training Exam

Configuring a customer owned router to function as a switch with Ultra TV

Lab Organizing CCENT Objectives by OSI Layer

Chapter 8 Lab B: Configuring a Remote Access VPN Server and Client

TotalCloud Phone System

Securing Networks with PIX and ASA

Configuring Basic Settings

ADTRAN 3120 / 3130 Internet Configuration Guide

Getting Started with Cisco Configuration Professional

VoIPon Tel: +44 (0) Fax: +44 (0)

Lab Configuring Access Policies and DMZ Settings

CCNA Security. Chapter Two Securing Network Devices Cisco Learning Institute.

This document is exclusive property of Cisco Systems, Inc. Permission is granted to print and copy this document for non-commercial distribution and

CISCO IOS NETWORK SECURITY (IINS)

Cisco Networking Professional-6Months Project Based Training

Cisco Certified Network Associate Exam. Operation of IP Data Networks. LAN Switching Technologies. IP addressing (IPv4 / IPv6)

Broadband Phone Gateway BPG510 Technical Users Guide

ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD SEGURIDAD EN REDES. NIVEL I. VERSION 2.0

Multi-Homing Security Gateway

Unified Threat Management

NEFSIS DEDICATED SERVER

Shield Pro. Quick Start Guide

Lab 3.3 Configuring QoS with SDM

Administering Cisco ISE

Network Simulator Lab Study Plan

Lab Configure Basic AP Security through IOS CLI

Network Security Pod Version 2.0

SSL-VPN 200 Getting Started Guide

Installation of the On Site Server (OSS)

Using the NetVanta 7100 Series

Configuring SSH Sentinel VPN client and D-Link DFL-500 Firewall

User Manual. Page 2 of 38

Lab 8.3.3b Configuring a Remote Router Using SSH

(d-5273) CCIE Security v3.0 Written Exam Topics

Lab Developing ACLs to Implement Firewall Rule Sets

Create a VPN on your ipad, iphone or ipod Touch and SonicWALL NSA UTM firewall - Part 1: SonicWALL NSA Appliance

SIP Trunking using Optimum Business SIP Trunk Adaptor and the Cisco Call Manager Express Version 8.5

How to configure your Thomson SpeedTouch 780WL for ADSL2+

M2M Series Routers. Port Forwarding / DMZ Setup

Cisco ISE Command-Line Interface

Cisco Certified Security Professional (CCSP)

Firewall VPN Router. Quick Installation Guide M73-APO09-380

Lab Configuring Access Policies and DMZ Settings

LAN-Cell to Cisco Tunneling

Multi-Homing Dual WAN Firewall Router

Polycom Phones User Guide Bicom Systems

Phone Inventory 1.0 (1000) Installation and Administration Guide

nexvortex Setup Guide

Using VDOMs to host two FortiOS instances on a single FortiGate unit

UIP1868P User Interface Guide

Abstract. Avaya Solution & Interoperability Test Lab

Cisco Certified Network Expert (CCNE)

Enterprise Security Interests Require SSL with telnet server from outside the LAN

Lab Configure Cisco IOS Firewall CBAC

Enabling Multiple Wireless Networks on RV320 VPN Router, WAP321 Wireless-N Access Point, and Sx300 Series Switches

IIS, FTP Server and Windows

QUICK START GUIDE. Cisco C170 Security Appliance

Chapter 4 Customizing Your Network Settings

Cisco Discovery 3: Introducing Routing and Switching in the Enterprise hours teaching time

Using LiveAction with Cisco Secure ACS (TACACS+ Server)

Optimum Business SIP Trunk Set-up Guide

Configuring Global Protect SSL VPN with a user-defined port

How To Configure Syslog over VPN

Configuring WAN Failover with a Cisco 881 Router and an AirLink ES440

CCT vs. CCENT Skill Set Comparison

Mobility System Software Quick Start Guide

Lab Creating a Logical Network Diagram

Only LDAP-synchronized users can access SAML SSO-enabled web applications. Local end users and applications users cannot access them.

Transparent Firewall/Filtering Bridge - pfsense By William Tarrh

Welcome to Todd Lammle s CCNA Bootcamp

Cisco Unified Communications 500 Series

NetBrain Workstation Professional Edition 2.3 Release notes

Magnum Network Software DX

Cisco CNR and DHCP FAQs for Cable Environment

Dynamic DNS How-To Guide

Chapter 4 Customizing Your Network Settings

A Guide to New Features in Propalms OneGate 4.0

NAPT. (SV8100 version 3.0 or higher)

Integration Guide. Help Desk Authority, Perspective and sl

Barracuda Link Balancer Administrator s Guide

CREATING AN IKE IPSEC TUNNEL BETWEEN AN INTERNET SECURITY ROUTER AND A WINDOWS 2000/XP PC

If you have questions or find errors in the guide, please, contact us under the following address:

How To - Deploy Cyberoam in Gateway Mode

CT5760 Controller and Catalyst 3850 Switch Configuration Example

SonicWALL SRA Virtual Appliance Getting Started Guide

Configuring a Cisco 2509-RJ Terminal Router

Sophos UTM. Remote Access via PPTP. Configuring UTM and Client

Configuring SSL VPN on the Cisco ISA500 Security Appliance

DEPLOYMENT GUIDE. This document gives a brief overview of deployment preparation, installation and configuration of a Vectra X-series platform.

How to Remotely Access Hikvision Devices User Manual

Lab: Basic Router Configuration

Lab Configuring Syslog and NTP (Instructor Version)

THINKTEL COMMUNICATIONS DIGIUM G100/G200 PRI OVER IP SIP TRUNKING

Transcription:

Cisco Configuration Professional Workshop Basic Lab-Configuration

28.05.2011 07:47 uwe.starke@hs-wismar.de 2

Intuitive device management GUI for easily configuring access routers / switches! Windows Based Application GUI based Device Management tool for access routers Unified Communications License Management (CCP 2.5 and later) Application Management... 28.05.2011 07:47 uwe.starke@hs-wismar.de 3

Windows Based Application 28.05.2011 07:47 uwe.starke@hs-wismar.de 4

Limitations and Restrictions 28.05.2011 07:47 uwe.starke@hs-wismar.de 5

Supported Routers 28.05.2011 07:47 uwe.starke@hs-wismar.de 6

GUI based Device Management tool for access routers 28.05.2011 07:47 uwe.starke@hs-wismar.de 7

Toolbar! GUI based Device Management tool for access routers Home - > Community View, add, edit and discover Devices Configure button - > Router features werden links angezeigt - > nicht vorhandene Features ; keine Anzeige Monitor button - > Anzeige der monitorbaren Funktionen z.b. Tunnelstatistik, Interfaceauslastung... Community icon - > add or edit communitys 28.05.2011 07:47 uwe.starke@hs-wismar.de 8

Device Views! - check the status - test the possibilities - configure your devices - monitor... 28.05.2011 07:49 uwe.starke@hs-wismar.de 9

GUI based Device Management tool for access routers Interface Management Interfaces Supported LAN WAN Wireless LAN Cellular WAN (3G) Power Management ( Energy wise) Analog Trunks Digital Trunks 28.05.2011 07:49 uwe.starke@hs-wismar.de 10

GUI based Device Management tool for access routers Router Basic Router Functionalities: Hostname Username, Password DHCP, DNS NAT Static Routing Dynamic Routing ( RIP, OSPF, EIGRP) Advanced Functionalities QoS Performance Routing (PFR) 28.05.2011 07:50 uwe.starke@hs-wismar.de 11

GUI based Device Management tool for access routers Performance Routing 28.05.2011 07:50 uwe.starke@hs-wismar.de 12

GUI based Device Management tool for access routers Security Security Functionalities: One step router lockdown Security audit of the router Firewall ( Zone Based and CBAC) VPN Advanced Functionalities Intrusion Prevention System (IPS) Content Filtering 28.05.2011 07:51 uwe.starke@hs-wismar.de 13

GUI based Device Management tool for access routers Security 28.05.2011 07:51 uwe.starke@hs-wismar.de 14

GUI based Device Management tool for access routers Security 28.05.2011 07:51 uwe.starke@hs-wismar.de 15

GUI based Device Management tool for access routers Unified Communications 28.05.2011 07:51 uwe.starke@hs-wismar.de 16

GUI based Device Management tool for access routers Unified Communications 28.05.2011 07:52 uwe.starke@hs-wismar.de 17

GUI based Device Management tool for access routers Unified Communications 28.05.2011 07:52 uwe.starke@hs-wismar.de 18

GUI based Device Management tool for access routers License Management (CCP 2.5 and later) Installing and enabling permanet license Enabling evaluation license Displaying of error message if license is not enabled for a particular feature 28.05.2011 07:52 uwe.starke@hs-wismar.de 19

GUI based Device Management tool for access routers License Management (CCP 2.5 and later) 28.05.2011 07:52 uwe.starke@hs-wismar.de 20

GUI based Device Management tool for access routers Application Management z.b. Creating a user profile Importing a user profile Discovering a router to verify profile settings Working with templates creating, editing applying rollback 28.05.2011 07:52 uwe.starke@hs-wismar.de 21

GUI based Device Management tool for access routers Application Management 28.05.2011 07:52 uwe.starke@hs-wismar.de 22

GUI based Device Management tool for access routers Application Management CCP allows you to perform the following on an Application Extension platform module. Configure interfaces on the module SSH and Syslog server system admin, DNS, Timezone and NTP management of third party applications 28.05.2011 07:52 uwe.starke@hs-wismar.de 23

GUI based Device Management tool for access routers Application Management Management of third party applications http://www.cisco.com/en/us/prod/routers/isrg2_management_capabilities_app.html#~third-party 28.05.2011 07:52 uwe.starke@hs-wismar.de 24

CCP bietet noch wesentlich mehr an Funktionen. Fragen zum Allgemeinen? Weiter mit der Installation und Netzwerkkonfiguration unseres Labornetzes! Quellen: Cisco CCP-Web-Pages CCP User Guid 2.5 Shankar Ramachandran Cisco Configuration Professional 28.05.2011 07:53 uwe.starke@hs-wismar.de 25

Labornetzwerk zur Anwendung CCP Lab-Cloud Platz Nr.1 Inside 192.168.1.0/24 Outside 10.10.1.0 /30 RIP v2 Platz Nr. n Inside 192.168.n.0/24 Outside 10.10.1.n /30 RIP v2 28.05.2011 07:53 uwe.starke@hs-wismar.de 26

Steps: 1. Überprüfung Java-Settings 2. Installation CCP cisco-config-pro-k9-pkg-2_5-en.exe 28.05.2011 07:53 uwe.starke@hs-wismar.de 27

Step: 3. Router preconfiguration with CLI Configure: Router>ena Router#conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname CCP1 CCP1(config)#ip domain-n CCP1(config)#ip domain-name CCP.test.de CCP1(config)#username admin privilege 15 secret cisco CCP1(config)#ip http authentication local CCP1(config)#ip http server CCP1(config)#ip http secure-server % Generating 1024 bit RSA keys, keys will be non-exportable...[ok] CCP1(config)# May 23 13:04:17.414: %SSH-5-ENABLED: SSH 1.99 has been enabled CCP1(config)#interf fastethernet0/0 CCP1(config-if)#ip address 192.168.1.1 255.255.255.0 CCP1(config-if)#no shut CCP1(config-if)#line vty 0 4 CCP1(config-line)#login local CCP1(config-line)#transport input ssh telnet CCP1(config-line)#ip dhcp pool CCP1 CCP1(dhcp-config)#network 192.168.1.0 /24 CCP1(dhcp-config)#default-router 192.168.1.1 CCP1(dhcp-config)#dns-server 192.168.1.1 CCP1(dhcp-config)#domain-name ccp.test.de CCP1(dhcp-config)# CCP1#wr 28.05.2011 07:53 uwe.starke@hs-wismar.de 28

Step: 4. Start Using Cisco CP Cisco CP works with device communities. A community consists of one or more devices that you specify by providing their IP addresses and login credentials. After you create the community, you can begin working with the devices in it. This section contains the following parts: Creating a Community and Adding Devices Creating an Initial Configuration of a Feature Editing a Configuration 28.05.2011 07:53 uwe.starke@hs-wismar.de 29

Step: 4. Start Using Cisco CP 28.05.2011 07:53 uwe.starke@hs-wismar.de 30

Step: 5. Creating a Community and Adding Devices You can also open the Manage Community dialog box in the following ways: From the toolbar, click the Manage Community icon. From the menu bar, choose Application > Manage Community. 28.05.2011 07:53 uwe.starke@hs-wismar.de 31

Step: 5. Creating a Community and Adding Devices If you want Cisco CP to connect securely with the device, check the Connect Securely check box. HTTPS port 443 and SSH port 22 information is automatically added to the device. Use the Discover 28.05.2011 07:53 uwe.starke@hs-wismar.de 32

Step: 5.1 If you use Cisco CP to connect securely with the device Accept the certificate yes! 28.05.2011 07:53 uwe.starke@hs-wismar.de 33

Step: 6. Community View Page 28.05.2011 07:53 uwe.starke@hs-wismar.de 34

Step: 6. Community View Page - check the status - test the possibilities - configure your devices - monitor... 28.05.2011 07:53 uwe.starke@hs-wismar.de 35

Step: 7. Configure Tree 28.05.2011 07:53 uwe.starke@hs-wismar.de 36

Step: 8. Interfaces and Connections 28.05.2011 07:53 uwe.starke@hs-wismar.de 37

Step: 9. Edit Interfaces/Connections Inside Network 192.168.n.0 /24 Create New Connection for Outside (WAN/ or LAN) 10.10.10.n /30 Steps: 10. Connect to your neighbours 11. Configure the neighbours connection 28.05.2011 07:53 uwe.starke@hs-wismar.de 38

Step: 12. Configure Routing Edit Dynamic Routing Select RIP Select Vers. 2 ADD your networks Verify and deliver the commands 28.05.2011 07:53 uwe.starke@hs-wismar.de 39

Step: 13. Test the connectivity to your neighbours, ping, traceroute, Telnet..., End of the Basic- CCP-LAB 28.05.2011 07:53 uwe.starke@hs-wismar.de 40