Cisco switch: Unterschied zwischen den Versionen

Aus xinux.net
Zur Navigation springen Zur Suche springen
 
(51 dazwischenliegende Versionen von 2 Benutzern werden nicht angezeigt)
Zeile 1: Zeile 1:
 +
=Grundlegendes=
 +
*[[Cisco Grundlegendes]]
 
=Configuration dialog=
 
=Configuration dialog=
 
*[[Cisco-switch-initial configuration dialog?]]
 
*[[Cisco-switch-initial configuration dialog?]]
 
 
=Grundkonfiguration=
 
=Grundkonfiguration=
 
*[[Cisco Switch Grundkonfiguration]]
 
*[[Cisco Switch Grundkonfiguration]]
 +
=Cisco Layer 2 oder Layer 3=
 +
*[[Cisco Layer 2 oder Layer 3]]
 +
 
=Interface Konfiguration=
 
=Interface Konfiguration=
 
*[[Cisco Interface Konfiguration]]
 
*[[Cisco Interface Konfiguration]]
 
+
=Show Befehle=
=Unprivilegierter Modus=
+
*[[Cisco Showbefehle]]
*Switch>
 
 
 
=Befehle anzeigen=
 
*Switch>?
 
=Unprivilegierter Modus=
 
*Switch>enable
 
*Switch#
 
=Version anzeigen=
 
*Switch#show version
 
=Konfigurations Modus=
 
*Switch#configure terminal
 
*Switch(config)#
 
=Passwort setzen=
 
*Switch(config)#enable password strenggeheim
 
=IP setzen=
 
*Switch(config)#interface vlan1
 
*Switch(config-if)#ip address 192.168.240.153 255.255.248.0
 
*Switch(config-if)#exit
 
=Default Gateway=
 
*Switch(config)#ip default-gateway 192.168.240.100
 
=Webinterface aktivieren=
 
*Switch(config)#ip http server
 
*Switch(config)#end
 
=Speichern=
 
*Switch# write memory
 
=Schnittstelle aktivieren=
 
*Switch#configure terminal
 
*Switch(config)#interface vlan 1
 
*Switch(config-if)#no shutdown
 
 
=Webinterface=
 
=Webinterface=
Als Passwort strenggeheim eingeben kein Username
+
*[[Cisco Webinterface]]
[[Datei:cisco-switch1.png]]
+
=Filesystems=
=Ping=
+
*[[Cisco Switch Filesystems]]
*Switch#ping 192.168.240.200
+
=Ssh und Telnet=
<pre>
+
*[[Cisco Switch Ssh und Telnet]]
 +
=Vlans Grundlagen=
 +
*[[Cisco Vlans Grundlagen]]
 +
=Vlan Trunking=
 +
*[[Cisco Vlan Trunking]]
  
Type escape sequence to abort.
+
=Vlans=
Sending 5, 100-byte ICMP Echos to 192.168.240.200, timeout is 2 seconds:
+
*[[Cisco Vlans]]
!!!!!
+
=DHCP on Vlans=
</pre>
+
*[[Cisco DHCP on Vlans]]
=Dateisystem anzeigen=
+
*[[Cisco DHCP relay]]
*c3750g#show file systems
 
=Inhalt von einer Datei anzeigen=
 
*c3750g#more  config.text
 
  
=Anzeige Flash=
+
=Native Vlan=
*Switch#show flash
+
*[[Cisco Native Vlan]]
Directory of flash:/
+
=VLAN-Trunking Protocol=
+
*[[Cisco VLAN-Trunking Protocol]]
    2  -rwx        3096  Jan 26 2016 15:22:16 +00:00  multiple-fs
+
=Vlan Beschränkung=
    3  -rwx        1590  Mar 1 1993 00:44:44 +00:00  config.old
+
*[[Cisco Vlan Beschränkung]]
  457  drwx        192  Mar 1 1993 00:35:33 +00:00  c3750-ipbasek9-mz.122-55.SE6
+
=Delete Config=
    84  -rwx        1940  Jan 26 2016 15:22:16 +00:00  private-config.text
+
*[[Cisco Delete Config]]
    85  -rwx        3021  Jan 26 2016 15:22:16 +00:00  config.text
+
=Cisco Switch Port Security=
 +
*[[Cisco Switch Port Security]]
  
=Anzeige Flash mit dir=
+
=Spanning Tree Protocol=
*Switch#dir flash:
+
*[[Cisco Spanning Tree Protocol]]
<pre>
+
=ACLs=
Directory of flash:/
+
*[[Cisco ACLs]]
  
    2  -rwx        3096  Jan 26 2016 15:22:16 +00:00  multiple-fs
+
=Link Aggregation=
    3  -rwx        1590  Mar 1 1993 00:44:44 +00:00  config.old
+
*[[Link Aggregation]]
  457  drwx        192  Mar 1 1993 00:35:33 +00:00  c3750-ipbasek9-mz.122-55.SE6
+
*[[Cisco LACP Linux]]
  84  -rwx        1940  Jan 26 2016 15:22:16 +00:00  private-config.text
+
*[[Cisco Etherchannel]]
  85  -rwx        3021  Jan 26 2016 15:22:16 +00:00  config.text
 
</pre>
 
  
=Anzeige Directory=
+
=Cisco Switch sicher einrichten=
*Switch#dir c3750-ipbasek9-mz.122-55.SE6 
+
*[http://www.nwlab.net/know-how/Cisco/ Sicherheit]
<pre>
 
Directory of flash:/c3750-ipbasek9-mz.122-55.SE6/
 
  
    4  drwx        1792  Mar 1 1993 00:28:51 +00:00  html
+
=LLDP=
  82  -rwx    12098384  Mar 1 1993 00:35:33 +00:00  c3750-ipbasek9-mz.122-55.SE6.bin
+
*[[Cisco LLDP]]
  83  -rwx        681  Mar 1 1993 00:35:33 +00:00  info
+
=Phone on Switch=
</pre>
+
*[[Cisco Phone on Switch]]
 +
=Cisco Switch an Esxi=
 +
*[[Cisco Switch an Esxi]]
 +
=Cisco Portmirroring=
 +
*[[Cisco Portmirroring]]
 +
=Cisco Radiusanbindung=
 +
*[[Cisco Radiusanbindung]]
  
=Ios sichern=
+
=Cisco 802.1X=
*Switch#copy  flash:/c3750-ipbasek9-mz.122-55.SE6/c3750-ipbasek9-mz.122-55.SE6.bin tftp://192.168.240.200/cisco/
+
*[[Cisco 802.1X]]
Address or name of remote host [192.168.240.200]?
 
Destination filename [cisco/c3750-ipbasek9-mz.122-55.SE6.bin]?
 
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
 
=Konfig sichern=
 
*Switch#copy running-config tftp://192.168.240.200/cisco/c3750g.conf
 
Address or name of remote host [192.168.240.200]?
 
Destination filename [cisco/c3750g.conf]?
 
!!
 
4356 bytes copied in 1.409 secs (3092 bytes/sec
 
=Telnet aktivieren=
 
*Switch#configure terminal
 
*Switch(config)#aaa new-model
 
*Switch(config)#username admin password 0 geheim
 
*Switch(config)#line vty 0 4
 
*Switch(config-line)#transport input telnet
 
=SSH aktivieren=
 
*Switch(config)#ip domain-name xinux.org
 
*Switch(config)#hos
 
*Switch(config)#hostname c3750g
 
*c3750g(config)#
 
*c3750g(config)#crypto key generate rsa
 
<pre>
 
The name for the keys will be: c3750g.xinux.org
 
Choose the size of the key modulus in the range of 360 to 2048 for your
 
  General Purpose Keys. Choosing a key modulus greater than 512 may take
 
  a few minutes.
 
  
How many bits in the modulus [512]:
+
=Cisco Mac Authentication Bypass=
% Generating 512 bit RSA keys, keys will be non-exportable...[OK]
+
*[[Cisco Mac Authentication Bypass]]
</pre>
 
*c3750g(config)#ip ssh time-out 60
 
*c3750g(config)#ip ssh authentication-retries 2
 
=Abschalten von telnet=
 
*c3750g#configure terminal
 
Enter configuration commands, one per line.  End with CNTL/Z.
 
*c3750g(config)#line vty 0 4
 
*c3750g(config-line)#transport input ssh
 
=Switche anzeigen=
 
*c3750g#show switch
 
Switch/Stack Mac Address : 0012.d9a3.4400
 
                                          H/W  Current
 
Switch#  Role  Mac Address    Priority Version  State
 
----------------------------------------------------------
 
*1      Master 0012.d9a3.4400    1      0      Ready             
 
  3      Member 0000.0000.0000    0      0      Provisioned
 
  
=Löschen von Dateien=
+
=Policy-Based Routing=
*c3750g#dir  flash: 
+
*[[Cisco Policy-Based Routing]]
<pre>
+
=Cisco Switch Diagnose=
Directory of flash:/
+
*[[Cisco Switch Diagnose]]
 
 
    2  -rwx        4501  Jan 26 2016 18:03:22 +00:00  c3750g.conf
 
    3  -rwx        1590  Mar 1 1993 00:44:44 +00:00  config.old
 
  457  drwx        192  Mar 1 1993 00:35:33 +00:00  c3750-ipbasek9-mz.122-55.SE6
 
  84  -rwx        3096  Jan 26 2016 16:40:08 +00:00  multiple-fs
 
  85  -rwx        3019  Jan 26 2016 16:40:08 +00:00  private-config.text
 
  86  -rwx        3166  Jan 26 2016 16:40:08 +00:00  config.text
 
  87  -rwx        4501  Jan 26 2016 18:06:51 +00:00  c3750g.cfg
 
  88  -rwx    1556480  Jan 26 2016 18:08:11 +00:00  ccpexpressAdmin27.tar
 
 
 
15998976 bytes total (1767936 bytes free)
 
</pre>
 
*c3750g#delete  flash:/c3750g.conf
 
Delete filename [c3750g.conf]
 
Delete flash:/c3750g.conf? [confirm]
 
 
 
=md5 verifizieren=
 
*c3750g#verify /md5 flash:/c3750-ipbasek9-mz.122-55.SE6/c3750-ipbasek9-mz.122-55.SE6.bin
 
=Modify Switch Boot path-list testen=
 
*c3750g#boot system switch all flash:/c3750-ipbasek9-mz.122-55.SE6/c3750-ipbasek9-mz.122-55.SE6.bin
 
=Boot konfig anzeigen=
 
*c3750g#show boot
 
<pre>
 
BOOT path-list      : flash:c3750-ipbasek9-mz.122-55.SE6/c3750-ipbasek9-mz.122-55.SE6.bin
 
Config file        : flash:/config.text
 
Private Config file : flash:/private-config.text
 
Enable Break        : no
 
Manual Boot        : no
 
HELPER path-list    :
 
Auto upgrade        : yes
 
Auto upgrade path  :
 
NVRAM/Config file
 
      buffer size:  524288
 
Timeout for Config
 
          Download:    0 seconds
 
Config Download
 
      via DHCP:      disabled (next boot: disabled)
 
</pre>
 
 
 
=Vlans=
 
*[[Cisco Vlans]]
 
  
 +
=Kurzreferenz=
 +
*http://kohnlehome.de/netz/Switchgrundkonfiguration.pdf
 
=Links=
 
=Links=
 
  
 
*http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst3750x_3560x/software/release/12-2_55_se/configuration/guide/3750xscg/swvlan.html
 
*http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst3750x_3560x/software/release/12-2_55_se/configuration/guide/3750xscg/swvlan.html
 
*http://www.cisco.com/c/en/us/support/docs/switches/catalyst-3750-series-switches/45002-intervlan3750-45002.html
 
*http://www.cisco.com/c/en/us/support/docs/switches/catalyst-3750-series-switches/45002-intervlan3750-45002.html
 
*http://www.thegeekstuff.com/2011/06/upgrade-cisco-ios-image/
 
*http://www.thegeekstuff.com/2011/06/upgrade-cisco-ios-image/
 +
*http://computernetworkingnotes.com/switching-vlan-stp-vtp-dtp-ether-channels/basic-switch-configurations.html
 +
*http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst3750/software/release/12-2_55_se/commmand/reference/3750cr/cli2.html
 +
*http://www.cisco.com/c/en/us/support/docs/switches/catalyst-4500-series-switches/69632-configuring-cat-ip-phone.html
 +
*http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst6500/ios/12-2SXF/native/configuration/guide/swcg/voip.html?referring_site=bodynav#wp1046284
 +
*http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst6500/ios/12-2SXF/native/configuration/guide/swcg/voip.html?referring_site=bodynav#wp1030860
 +
*http://www.cisco.com/en/US/docs/ios/12_4t/ip_addr/configuration/guide/htdhcpre.html

Aktuelle Version vom 5. Februar 2020, 12:04 Uhr

Grundlegendes

Configuration dialog

Grundkonfiguration

Cisco Layer 2 oder Layer 3

Interface Konfiguration

Show Befehle

Webinterface

Filesystems

Ssh und Telnet

Vlans Grundlagen

Vlan Trunking

Vlans

DHCP on Vlans

Native Vlan

VLAN-Trunking Protocol

Vlan Beschränkung

Delete Config

Cisco Switch Port Security

Spanning Tree Protocol

ACLs

Link Aggregation

Cisco Switch sicher einrichten

LLDP

Phone on Switch

Cisco Switch an Esxi

Cisco Portmirroring

Cisco Radiusanbindung

Cisco 802.1X

Cisco Mac Authentication Bypass

Policy-Based Routing

Cisco Switch Diagnose

Kurzreferenz

Links