Professional Documents
Culture Documents
Cisco Certified Networking Asssociate Mode Prompt Command To Enter Command To Exit
Cisco Certified Networking Asssociate Mode Prompt Command To Enter Command To Exit
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
In first command mode of cisco you can run limited type of show commands, basic reachability
tests. This command mode is represented by symbol “>”.
Cisco Privileged Mode
Privileged EXEC is second command level mode with the symbol “#”. Use “enable” command
in user mode for accessing the privileged mode. In this mode you can have access to all
monitoring commands of router.
What is global configuration mode of cisco router?
The Global configuration mode is for administrator where you can configure your Cisco router
and the running configuration. You can access global configuration mode from Privileged EXEC
mode using a command “configure terminal”
How to Check Current Configurations on Cisco Router?
Once your cisco router is boot up you can check already performed configuration or default
configuration Using command show running-config. If you are new to cisco just run this
command in privileged mode this will give you a brief of all physical interfaces of cisco routers
as well as all the protocols configuration
How to configure console Password on Cisco Router?
The most basic password that you can configure on cisco router is to set the console password.
This password blocks the unauthorized access through console cable on Cisco router. You can
set the console password by using the following commands.
Router2>enable
Router2# configure terminal
Router2(config)#line console 0
Router2(config-line)#password cisco
Router2(config-line)#login
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
Router2(config)#ip default-gateway 172.16.1.13
R1(config)#router rip
R1(config-router)#network 10.1.1.0
R1(config-router)#network 11.1.1.0
R1(config)#
R1(config)#router eigrp 1
R1(config-router)#network 10.0.0.0
R1(config-router)#network 20.0.0.0
Exit
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
Router>enable
Router#configure terminal
Router(config t)# hostname Cisco
Cisco (config-if) interface fa 0/1
Cisco (config-if)ip address 192.168.10.1 255.255.255.0
Cisco (config-if) no shut
SWITCH CONFIGURATION
Global configuration
Switch>enable
Switch #configure terminal
Switch (config)#hostname cisco
Assign a Password to the Switch
Once you’ve assigned a hostname you will want to create a password to control who has access
to the privileged EXEC mode (to prevent everyone from being able to log in). To assign an
administrator password to enter the following command:
The next step is to configure passwords for Telnet and console access. Configuring passwords
for these is important because it makes your switch more secure. If someone without
authorization gains telnet access then it puts your network at serious risk. You can configure
passwords by entering the following lines
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
Telnet
access-switch1(config-line)# login
access-switch1(config-line)# exit
access-switch1(config)#
Console
access-switch1(config-line)# login
access-switch1(config-line)# exit
access-switch1(config)#
VLANs
Creating a VLAN and naming it.
Switch(config)#
Switch(config)#vlan 2
Switch(config-vlan)#name red
Switch(config-vlan)#exit
Switch(config)#vlan 3
Switch(config-vlan)#name blue
Switch(config-vlan)#exit
Switch(config)#vlan 4
Switch(config-vlan)#name green
Switch(config-vlan)#exit
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
Assigning interfaces with vlan to the range of interfaces. Here, I am going configure Interfaces 1
to 3 to VLAN 2 so , we can specify a range start to end that is going to be configured to a single
VLAN.
Switch(config)#
Switch(config)#interface range fastethernet0/4-6
Switch(config-if-range)#switchport mode access
Switch(config-if-range)#switchport access vlan 3
Switch(config-if-range)#exit
Switch(config)#
Switch(config)#interface range fastethernet0/7-9
Switch(config-if-range)#switchport mode access
Switch(config-if-range)#switchport access vlan 4
Switch(config-if-range)#exit
After configuring VLAN and assigning ports to a Vlan, Only host in same Vlan can
communicate with each other, Host from different Vlan can't communicate each other.
To check VLAN configuration details, give this command in Privileged Mode. It will give the
configured VLAN information in Cisco Switch
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
OSPF
Open Shortest Path First(OSPF) is one of the dynamic routing protocols amongst others such
as EIGRP, BGP and and RIP. It is perhaps one of the most popular link state routing
protocols. It is an open standard, so it can be run on routers from different vendors.
OSPF has a default administrative distance of 110. It uses cost as the parameter for
determining route metric. It uses the multicast address of 224.0.0.5 and 224.0.0.6 for
communication between OSPF-enabled neighbors
OSPF areas
An area is simply a logical grouping of adjacent networks and routers. All routers in the same
area have the same topology table and don’t know about routers in other areas. The main benefits
of using areas in an OSPF network are:
Each area in an OSPF network must be connected to the backbone area ( also known as area
0 ). All routers inside an area must have the same area ID .
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
A router that has interfaces in more than one area (for example area 0 and area 1) is known as an
Area Border Router (ABR). A router that connects an OSPF network to other routing networks
(for example, to an EIGRP network) is called an Autonomous System Border Router (ASBR).
Router 1
R1(config)#int fa 0/0
R1(config-if)#ip add 10.0.0.1 255.0.0.0
R1(config-if)#no shut
R1(config-if)#
R1(config-if)#int serial 0/0/0
R1(config-if)#ip add 20.0.0.1 255.0.0.0
R1(config-if)#no shut
Router 2
R2(config-if)#int fa0/0
R2(config-if)#ip add 30.0.0.1 255.0.0.0
R2(config-if)#no shut
R2(config-if)#
R2(config-if)#int serial0/0/0
R2(config-if)#ip address 20.0.0.2 255.0.0.0
R2(config-if)#no shut
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
Router 1
R1(config)#
R1(config)#router ospf 1
R1(config-router)#network 10.0.0.0 0.255.255.255 area 0
R1(config-router)#network 20.0.0.0 0.255.255.255 area 0
Router 2
R2(config)#
R2(config)#router ospf 2
R2(config-router)#network 20.0.0.0 0.255.255.255 area 0
R2(config-router)#network 30.0.0.0 0.255.255.255 area 0
Verify that R1 has learnt the route to 30.0.0.0/8 network, we’ll use show ip route ospf command
on R1:
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
RouterA>enable
RouterA#configure terminal
RouterA(config)#interface FastEthernet0/0
RouterA(config-if)#ip address 192.168.10.1 255.255.255.0
RouterA(config-if)#no shutdown
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
Turn on the IP Phones and give them time to pick the default gateway and the assigned
extension numbers.
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
Switch(config)#interface fa0/1
Switch(config-if)#switchport mode access
Switch(config-if)#switchport port-security
Switch(config-if)#switchport port-security mac-address sticky
Switch(config-if)#switchport port-security violation shutdown
Switch(config-if)#switchport port-security maximum 1
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
Defining the action that the switch will take when a frame from an unauthorized device is
received. This is done using the switchport port-security violation {protect | restrict |
shutdown} interface command. All three options discard the traffic from the
unauthorized device.
Defining the maximum number of MAC addresses that can be received on the port using
the switchport port-security maximum NUMBER interface sub mode command
Let’s add the above 2 commands to our configuration:
Switch(config-if)#switchport port-security violation shutdown
Switch(config-if)#switchport port-security maximum 1
To verify if the switch has learnt the MAC address of PC1, you can use the command:
show port-security interface fa0/1
show port-security address
Erasing the nvram file system will remove all configuration files!
Firm)
(Ok)
By Henry
CISCO CERTIFIED NETWORKING ASSSOCIATE
By Henry