Escolar Documentos
Profissional Documentos
Cultura Documentos
Daftar Isi
Materi 1. Subnetting
1.1 Soal Subnetting Pretest
Pengecekan Hardware
Router#show version
Cisco Internetwork Operating System Software
IOS (tm) C2600 Software (C2600-J1S3-M), Version 12.2(15)T7,
TAC Support: http://www.cisco.com/tac
Copyright (c) 1986-2003 by cisco Systems, Inc.
Compiled Sat 09-Aug-03 07:18 by ccai
Image text-base: 0x80008098, data-base: 0x8195144C
router#
router#
router#
router#
router#
show ?
sh version
sh flash
sh start
sh run
Router#sh run
Building configuration...
Current configuration : 852 bytes
!
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname Router
>>> Hostname dari router
!
boot-start-marker
boot-end-marker
!
no aaa new-model
memory-size iomem 5
no ip icmp rate-limit unreachable
ip cef
!
no ip domain lookup
!
multilink bundle-name authenticated
!
archive
log config
hidekeys
!
!
ip tcp synwait-time 5
!
interface FastEthernet0/0 >>>> nama interface
no ip address
>>> IP address
shutdown
>>>>> Status port
duplex auto
speed auto
!
interface FastEthernet0/1 >>>> nama interface
no ip address
>>> IP address
shutdown
>>>>> Status port
duplex auto
speed auto
!
no ip http server
no ip http secure-server
!
!
control-plane
!
line con 0
exec-timeout 0 0
privilege level 15
logging synchronous
line aux 0
exec-timeout 0 0
privilege level 15
logging synchronous
line vty 0 4
login
!
!
end
IP-Address
unassigned
unassigned
router# conf t
router(config)# hostname SEMARANG
SEMARANG(config)#
SEMARANG# conf t
SEMARANG(config)# enable password rahasia
SEMARANG(config)# enable secret cisco
SEMARANG#show run
------------------------------------------------!
enable secret 5 $1$BpGg$rELq32AxPK6Z6AD4cdQyt/
enable password rahasia
!
--------------------------------------------------
SEMARANG#disable
SEMARANG>enable
Password:
Password:
SEMARANG #
Router(config)#banner motd z
(TEKAN ENTER)
Enter the text followed by the 'z' to finish
SELAMAT DATANG DI ROUTERKU z
(TEKAN ENTER)
router(config)#(tekan ctrl+z)
router# exit
SEMARANG#write erase
Erasing the nvram filesystem will remove all configuration files! Continue? [confirm]
>> (TEKAN ENTER)
semarang# delete flash:vlan.dat
SEMARANG#reload
Proceed with reload? [confirm] >> (TEKAN ENTER)
Switch#configure terminal
Switch(config)#vlan 10
Switch(config-vlan)#name Marketing
Switch(config)#vlan 20
Switch(config-vlan)#name Sales
Switch(config)#int f0/1
Switch(config-if)#switchport
Switch(config-if)#switchport
Switch(config)#int f0/2
Switch(config-if)#switchport
Switch(config-if)#switchport
Switch(config)#int f0/3
Switch(config-if)#switchport
Switch(config-if)#switchport
Switch(config)#int f0/4
Switch(config-if)#switchport
Switch(config-if)#switchport
mode access
access vlan 10
mode access
access vlan 10
mode access
access vlan 20
mode access
access vlan 20
Switch#sh vlan
VLAN Name
Status
Ports
---- -------------------------------- --------- ------------------------------1
default
active
Fa0/5, Fa0/6, Fa0/7, Fa0/8
Fa0/9, Fa0/10, Fa0/11,Fa0/12
Fa0/13, Fa0/14, Fa0/15,Fa0/16
Fa0/17, Fa0/18, Fa0/19,Fa0/20
Fa0/21, Fa0/22, Fa0/23,Fa0/24
10
Marketing
active
Fa0/1, Fa0/2
20
Sales
active
Fa0/3, Fa0/4
1002 fddi-default
act/unsup
1003 token-ring-default
act/unsup
1004 fddinet-default
act/unsup
1005 trnet-default
act/unsup
Switch#show mac-address-table
Mac Address Table
------------------------------------------Vlan
---10
10
20
20
Mac Address
-----------
Type
--------
Ports
-----
0030.a3d3.8c27
0090.2b28.0093
0001.4350.7080
0060.3e41.3a8d
DYNAMIC
DYNAMIC
DYNAMIC
DYNAMIC
Fa0/1
Fa0/2
Fa0/4
Fa0/3
Sw1(config)#int fa0/10
Sw1(config-if)#switchport mode trunk
Sw2(config)#int fa0/10
Sw2(config-if)#switchport mode trunk
Encapsulation
802.1q
Status
trunking
Native vlan
1
Port
Fa0/10
Port
Fa0/10
Port
Fa0/10
Encapsulation
802.1q
Status
trunking
Native vlan
1
Port
Fa0/10
Port
Fa0/10
Port
Fa0/10
SW1#conf t
SW1(config)#vlan 10
SW1(config)#vlan 20
SW2#conf t
SW2(config)#vlan 10
SW2(config)#vlan 20
SW1(config)#int f0/1
SW1(config)#int f0/11
SW1(config-if)#switchport mode trunk
SW1(config)#int f0/12
SW1(config-if)#switchport mode trunk
IP-Address
unassigned
unassigned
ROUTER(config)#int Fa0/0
ROUTER(config-if)#no shut
ROUTER(config)#int Fa0/0.10
>> SUB INTERFACE
ROUTER(config-subif)#encapsulation dot1q 10
ROUTER(config-subif)#ip addr 10.10.10.1 255.255.255.0
ROUTER(config)#int Fa0/0.20
ROUTER(config-subif)#encapsulation dot1q 20
ROUTER(config-subif)#ip addr 20.20.20.1 255.255.255.0
Router#sh ip int br
Interface
FastEthernet0/0
FastEthernet0/0.10
FastEthernet0/0.20
IP-Address
unassigned
10.10.10.2
20.20.20.1
OK?
YES
YES
YES
Method
unset
manual
manual
Status
up
up
up
Protocol
up
up
up
Router#show arp
Protocol Address
Internet 10.10.10.2
Internet 10.10.10.3
Internet 10.10.10.4
Internet 20.20.20.2
Internet 20.20.20.3
Internet 20.20.20.4
Age (min)
2
1
0
0
0
2
Hardware Addr
0090.2B28.0093
0030.A3D3.8C27
00D0.D39D.5A73
0001.4350.7080
0060.3E41.3A8D
000A.4134.4E8A
SW2#show mac-address-table
Mac Address Table
------------------------------------------Vlan
Mac Address
Type
--------------------1
0001.64b3.b601
DYNAMIC
1
00d0.d3e0.db0a
DYNAMIC
10
0001.64b3.b601
DYNAMIC
10
0030.a3d3.8c27
DYNAMIC
10
0090.2b28.0093
DYNAMIC
10
00d0.d39d.5a73
DYNAMIC
20
0001.4350.7080
DYNAMIC
20
0001.64b3.b601
DYNAMIC
20
000a.4134.4e8a
DYNAMIC
20
0060.3e41.3a8d
DYNAMIC
SW1(config)#vlan 30
SW1(config-vlan)#name MANAGEMENT
SW1(config-vlan)#int vlan 30
SW1(config-if)#ip address 30.30.30.1
255.255.255.0
SW1(config-if)#no shutdown
SW1(config-if)#ip default-gateway 30.30.30.30
SW1(config)#line vty 0 4
SW1(config-line)#password cisco
SW1(config-line)#login
SW1(config-line)#enable secret cisco
SW2(config)#vlan 30
SW2(config-vlan)#name MANAGEMENT
Type
ARPA
ARPA
ARPA
ARPA
ARPA
ARPA
Interface
FastEthernet0/0.10
FastEthernet0/0.10
FastEthernet0/0.10
FastEthernet0/0.20
FastEthernet0/0.20
FastEthernet0/0.20
Ports
----Fa0/2
Fa0/10
Fa0/2
Fa0/10
Fa0/10
Fa0/1
Fa0/10
Fa0/2
Fa0/3
Fa0/10
SW2(config-vlan)#int vlan 30
SW2(config-if)#ip address 30.30.30.2
255.255.255.0
SW2(config-if)#no shutdown
SW2(config-if)#ip default-gateway 30.30.30.30
SW2(config)#line vty 0 4
SW2(config-line)#password cisco
SW2(config-line)#login
SW2(config-line)#enable secret cisco
Tambahkan konfigurasi di sisi Router.
ROUTER(config)#int Fa0/0.30
ROUTER(config-if)#encapsulation dot1q 30
ROUTER(config-if)#ip addr 30.30.30.30 255.255.255.0
switch(config)#vlan 10
switch(config)#vlan 20
switch(config)#int fa0/1
Switch(config-if)#switchport
switch(config-if)#switchport
switch(config)#int fa0/2
Switch(config-if)#switchport
switch(config-if)#switchport
switch(config)#int fa0/3
Switch(config-if)#switchport
switch(config-if)#switchport
switch(config)#int fa0/4
Switch(config-if)#switchport
mode access
access vlan 10
mode access
access vlan 10
mode access
access vlan 20
mode access
switch(config)#int vlan 10
switch(config-if)#ip address 10.10.10.1 255.255.255.0
switch(config)#int vlan 20
switch(config-if)#ip address 20.20.20.1 255.255.255.0
switch(config)#ip routing
Switch#show ip int br
Interface
IP-Address
FastEthernet0/1
unassigned
FastEthernet0/2
unassigned
FastEthernet0/3
unassigned
FastEthernet0/4
unassigned
FastEthernet0/5
unassigned
FastEthernet0/6
unassigned
FastEthernet0/7
unassigned
FastEthernet0/8
unassigned
FastEthernet0/9
unassigned
FastEthernet0/10
unassigned
FastEthernet0/11
unassigned
FastEthernet0/12
unassigned
GigabitEthernet0/1
unassigned
GigabitEthernet0/2
unassigned
Vlan1
unassigned
Vlan10
10.10.10.1
Vlan20
20.20.20.1
Switch#
Switch#show mac-address-table
Mac Address Table
------------------------------------------Vlan
---10
10
20
20
Mac Address
----------0060.5c4c.4bb9
0060.7082.1b9d
0002.1762.2eb3
000c.cf4b.3ae9
Switch#show arp
Protocol Address
Type
-------DYNAMIC
DYNAMIC
DYNAMIC
DYNAMIC
Age (min)
Ports
----Fa0/1
Fa0/2
Fa0/4
Fa0/3
Hardware Addr
Type
Interface
Internet
Internet
Internet
Internet
Internet
Internet
10.10.10.1
10.10.10.2
10.10.10.3
20.20.20.1
20.20.20.2
20.20.20.3
9
0
0
9
00D0.BCA2.C9E6
0060.5C4C.4BB9
0060.7082.1B9D
00D0.BCA2.C9E6
000C.CF4B.3AE9
0002.1762.2EB3
ARPA
ARPA
ARPA
ARPA
ARPA
ARPA
Vlan10
Vlan10
Vlan10
Vlan20
Vlan20
Vlan20
10.10.10.10
20.20.20.20
Lease expiration
-----
Type
Automatic
Automatic
Automatic
Automatic
interface FastEthernet0/1
switchport mode access
switchport port-security
switchport port-security mac-address sticky
switchport port-security violation shutdown
!
interface FastEthernet0/2
switchport mode access
switchport port-security
switchport port-security mac-address sticky
o
o
o
o
o
MAC : A.A.A
Priorit y : 3276 8
ROOT BRIDGE
D
Speed 100Mbps
Cost = 19
Speed 100Mbps
Cost = 19
R
D
MAC : C.C.C
Priorit y : 3276 8
MAC : B.B.B
Priorit y : 3276 8
Speed 100Mbps
Cost = 19
NON-ROOT BRIDGE
NON-ROOT BRIDGE
Blocking Port
SW0#show spanning-tree
VLAN0001
Spanning tree enabled protocol ieee
Root ID
Priority
32769
Address
0001.C926.B750
Cost
19
Port
1(FastEthernet0/1)
Hello Time 2 sec Max Age 20 sec
Bridge ID
Interface
---------------Fa0/1
Fa0/2
Priority
Address
Hello Time
Aging Time
Role
Sts
Cost
Prio.Nbr Type
---- --- --------- -------- -------------------------------Root
FWD
19
128.1
P2p
Altn
BLK
19
128.2
P2p
SW1#show spanning-tree
VLAN0001
Spanning tree enabled protocol ieee
Root ID
Priority
32769
Address
0001.C926.B750
Interface
---------------Fa0/1
Fa0/2
Priority
32769 (priority 32768 sys-id-ext 1)
Address
0001.C926.B750
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
Aging Time 20
Role
Sts
Cost
Prio.Nbr Type
---- --- --------- -------- ------------------------------Desg
FWD
19
128.1
P2p
Desg
FWD
19
128.2
P2p
SW0#show spanning-tree
VLAN0001
Spanning tree enabled protocol ieee
Root ID
Priority
1
Address
0060.4713.D9D6
This bridge is the root
Hello Time 2 sec Max Age 20 sec
Bridge ID
Priority
Address
Hello Time
Aging Time
Interface
---------------Fa0/1
Fa0/2
1 (priority 0 sys-id-ext 1)
0060.4713.D9D6
2 sec Max Age 20 sec Forward Delay 15 sec
20
Role
Sts
Cost
Prio.Nbr Type
---- --- --------- -------- ------------------------------Desg
FWD
19
128.1
P2p
Desg
FWD
19
128.2
P2p
SW1#show spanning-tree
VLAN0001
Spanning tree enabled protocol ieee
Root ID
Priority
1
Address
0060.4713.D9D6
Cost
19
Port
1(FastEthernet0/1)
Hello Time 2 sec Max Age 20 sec
Bridge ID
Priority
Address
Hello Time
Aging Time
Interface
---------------Fa0/1
Fa0/2
Role
Sts
Cost
Prio.Nbr Type
---- --- --------- -------- -------------------------------Root
FWD
19
128.1
P2p
Altn
BLK
19
128.2
P2p
SW2(config)#int f0/1
SW2(config-if)#speed 10
SW2(config-if)#do show spanning-tree
VLAN0001
Spanning tree enabled protocol ieee
Root ID
Priority
1
Address
0060.4713.D9D6
Cost
19
Port
2(FastEthernet0/2)
Hello Time 2 sec Max Age 20 sec
Bridge ID
Priority
32769 (priority 32768 sys-id-ext 1)
Address
0001.C926.B750
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
Aging Time 20
Interface
---------------Fa0/1
Fa0/2
SW2(config-if)#
Role
Sts
Cost
Prio.Nbr Type
---- --- --------- -------- ------------------------------Altn
BLK
100
128.1
P2p
Root
FWD
19
128.2
P2p
Etherchannel
d - default port
Number of channel-groups in use: 1
Number of aggregators:
1
Group Port-channel
Protocol
Ports
------+-------------+-----------+---------------------------------------------1
Po1(SU)
LACP
Fa0/1(P) Fa0/2(P) Fa0/3(P)
SW1#show interface port-channel 1
Port-channel1 is up, line protocol is up (connected)
Hardware is EtherChannel, address is 0011.218e.9d81 (bia 0011.218e.9d81)
MTU 1500 bytes, BW 300000 Kbit, DLY 1000 usec,
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation ARPA, loopback not set
Full-duplex, 100Mb/s
input flow-control is off, output flow-control is off
Members in this channel: Fa0/1 Fa0/2 Fa0/3
- 2
SW2(config)#
SW2(config)#
SW2(config)#
SW3(config)#
SW3(config)#
SW3(config)#
SW4(config)#
SW4(config)#
SW4(config)#
SW1(config)#
SW1(config)#
vlan 10
vlan 20
SW2(config)#
SW2(config)#
vlan 30
vlan 40
SW3(config)#
SW3(config)#
vlan 50
vlan 60
SW4(config)#
SW4(config)#
vlan 70
vlan 80
:
:
:
:
Transparent
1005
35
<<<<< jumlah vlan nya
0
PR/Tugas Hari-1
IP-Address
unassigned
unassigned
IP-Address
10.10.10.1
unassigned
router#sh run
------------------------------------------!
interface FastEthernet0/0
ip address 12.12.12.1 255.255.255.0
description ### LINK KE INTERNAL ###
-------------------------------------------
Router#conf t
Router(config)#line vty 0 4
Router(config-line)#login local
Router(config)#enable secret cisco
Router(config)#username cisco password cisco
Router(config)#hostname JAKARTA
JAKARTA(config)#int s0
JAKARTA(config-if)#ip addr 10.10.10.2 255.255.255.252
JAKARTA(config-if)#no shutdown
JAKARTA(config-if)#exit
JAKARTA(config)#ip route 192.168.0.0 255.255.255.252 10.10.10.1
Router#conf term
Router(config)#line vty 0 4
Router(config-line)#login local
Router(config)#enable secret cisco
Router(config)#username cisco password cisco
Router(config)#hostname SEMARANG
SEMARANG(config)#int s0
SEMARANG(config-if)#ip addr 10.10.10.1 255.255.255.252
SEMARANG(config-if)#no shut
SEMARANG(config-if)#exit
SEMARANG(config)#int eo
SEMARANG(config-if)#ip addr 192.168.0.1 255.255.255.252
SEMARANG(config-if)#no shut
SEMARANG(config-if)#exit
Router#conf t
Router(config)#line vty 0 4
Router(config-line)#login local
Router(config)#enable secret cisco
Router(config)#username cisco password cisco
Router(config)#hostname SURABAYA
SURABAYA(config)#int s0
SURABAYA(config-if)#ip addr 192.168.0.2 255.255.255.252
SURABAYA(config-if)#no shut
SURABAYA(config-if)#exit
SURABAYA(config)#ip route 10.10.10.0 255.255.255.252 192.168.0.1
Jakarta#sh ip route
10.0.0.0/30 is subnetted, 1 subnets
C
10.10.10.0 is directly connected, Serial0/0/0
192.168.0.0/30 is subnetted, 1 subnets
S
192.168.0.0 [1/0] via 10.10.10.1
Semarang#sh ip route
10.0.0.0/30 is subnetted, 1 subnets
C
10.10.10.0 is directly connected, Serial0/0/0
192.168.0.0/30 is subnetted, 1 subnets
C
192.168.0.0 is directly connected, FastEthernet0/0
Surabaya#sh ip route
10.0.0.0/30 is subnetted, 1 subnets
S
10.10.10.0 [1/0] via 192.168.0.1
192.168.0.0/30 is subnetted, 1 subnets
C
192.168.0.0 is directly connected, FastEthernet0/0
Dynamic Routing
JAKARTA(config)#int loopback0
JAKARTA(config-if)#ip add 1.1.1.1 255.255.255.255
JAKARTA(config)#router eigrp 10
JAKARTA(config-router)#network 10.10.10.0
JAKARTA(config-router)#network 1.1.1.1
JAKARTA(config-router)#no auto-summary
SEMARANG(config)#int loopback0
SEMARANG(config-if)#ip add 2.2.2.2 255.255.255.255
SEMARANG(config)#router eigrp 10
SEMARANG(config-router)#network 10.10.10.0
SEMARANG(config-router)#network 192.168.0.0
SEMARANG(config-router)#network 2.2.2.2
SEMARANG(config-router)#no auto-summary
SURABAYA(config)#int loopback0
SURABAYA(config-if)#ip add 3.3.3.3 255.255.255.255
SURABAYA(config)#router eigrp 10
SURABAYA(config-router)#network 192.168.0.0
SURABAYA(config-router)#network 3.3.3.3
SURABAYA(config-router)#no auto-summary
Jakarta#sh ip route
C
D
D
C
D
Jakarta#ping 2.2.2.2
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 2.2.2.2, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 31/31/32 ms
Jakarta#ping 3.3.3.3
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 3.3.3.3, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 34/53/63 ms
Jakarta#sh cdp neighbors
Capability Codes: R - Router, T - Trans Bridge, B - Source Route Bridge
S - Switch, H - Host, I - IGMP, r - Repeater, P - Phone
Device ID
Semarang
Local Intrfce
Ser 0/0/0
Holdtme
162
10.10.10.1
Se0/0/0
Capability
R
Hold Uptime
(sec)
13
00:03:58
Platform
C2800
SRTT
(ms)
40
Port ID
Ser 0/0/0
RTO
Q
Cnt
1000 0
Seq
Num
17
A
rea 0
Area 10
JAKARTA(config)#router ospf 10
JAKARTA(config-router)#network 10.10.10.0
0.0.0.3 area 0
JAKARTA(config-router)#network 1.1.1.1
0.0.0.0 area 0
SEMARANG(config)#router ospf 10
SEMARANG(config-router)#network 10.10.10.0
0.0.0.3 area 0
SEMARANG(config-router)#network 192.168.0.0 0.0.0.3 area 10
SEMARANG(config-router)#network 2.2.2.2 0.0.0.0 area 10
SURABAYA(config)#router ospf 10
SURABAYA(config-router)#network 192.168.0.0
0.0.0.3 area 10
SURABAYA(config-router)#network 3.3.3.3 0.0.0.0 area 10
Semarang#sh ip route
Codes: C - connected, S - static, I - IGRP, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP
i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2, ia - IS-IS inter area
* - candidate default, U - per-user static route, o - ODR
P - periodic downloaded static route
Gateway of last resort is not set
1.0.0.0/32 is subnetted, 1 subnets
O
1.1.1.1 [110/65] via 10.10.10.2, 00:08:02, Serial0/0/0
2.0.0.0/32 is subnetted, 1 subnets
C
2.2.2.2 is directly connected, Loopback0
3.0.0.0/32 is subnetted, 1 subnets
O
3.3.3.3 [110/2] via 192.168.0.2, 00:06:47, FastEthernet0/0
10.0.0.0/30 is subnetted, 1 subnets
C
10.10.10.0 is directly connected, Serial0/0/0
192.168.0.0/30 is subnetted, 1 subnets
C
192.168.0.0 is directly connected, FastEthernet0/0
Neighbor ID
Pri
State
Dead Time
Address
Interface
1.1.1.1
0
FULL/ 00:00:38
10.10.10.2
Serial0/0/0
3.3.3.3
1
FULL/DR
00:00:30
192.168.0.2
FastEthernet0/0
Jakarta#sh ip route
Codes: C - connected, S - static, I - IGRP, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP
i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2, ia - IS-IS inter area
* - candidate default, U - per-user static route, o - ODR
P - periodic downloaded static route
Gateway of last resort is not set
1.0.0.0/32 is subnetted, 1 subnets
C
1.1.1.1 is directly connected, Loopback0
2.0.0.0/32 is subnetted, 1 subnets
O IA
2.2.2.2 [110/65] via 10.10.10.1, 00:04:22, Serial0/0/0
3.0.0.0/32 is subnetted, 1 subnets
O IA
3.3.3.3 [110/66] via 10.10.10.1, 00:03:17, Serial0/0/0
10.0.0.0/30 is subnetted, 1 subnets
C
10.10.10.0 is directly connected, Serial0/0/0
192.168.0.0/30 is subnetted, 1 subnets
O IA
192.168.0.0 [110/65] via 10.10.10.1, 00:04:32, Serial0/0/0
Jakarta#sh ip ospf database
OSPF Router with ID (1.1.1.1) (Process ID 10)
Router Link States (Area 0)
Link ID
1.1.1.1
2.2.2.2
ADV Router
1.1.1.1
2.2.2.2
Age
1288
1286
Seq#
Checksum Link count
0x80000006 0x00feff 3
0x80000007 0x00feff 2
Link ID
192.168.0.0
2.2.2.2
3.3.3.3
Checksum
0x00fa02
0x00fa02
0x00fa02
Jakarta#ping 2.2.2.2
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 2.2.2.2, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 31/31/32 ms
Jakarta#ping 3.3.3.3
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 3.3.3.3, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 62/62/63 ms
R2(config)#int fa0/0
R2(config-if)#ip access-group 1 out
PC>ping 20.20.20.2
R2#show access-lists
Standard IP access list 1
deny 10.10.10.0 0.0.0.255 (4 match(es))
permit any
R1#ping
Protocol [ip]:
Target IP address: 20.20.20.2
Repeat count [5]:
Datagram size [100]:
Timeout in seconds [2]:
Extended commands [n]: y
Source address or interface: 1.1.1.1
Type of service [0]:
Set DF bit in IP header? [no]:
Validate reply data? [no]:
Data pattern [0xABCD]:
Loose, Strict, Record, Timestamp, Verbose[none]:
Sweep range of sizes [n]:
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 20.20.20.2, timeout is 2 seconds:
Packet sent with a source address of 1.1.1.1
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 4/6/10 ms
R2#sh ip access-lists
Standard IP access list 1
deny 10.10.10.0 0.0.0.255 (4 match(es))
permit any (5 match(es))
R1#ping
Protocol [ip]:
Target IP address: 20.20.20.2
Repeat count [5]: 11
Datagram size [100]:
Timeout in seconds [2]:
Extended commands [n]: y
Source address or interface: 10.10.10.1
Type of service [0]:
Set DF bit in IP header? [no]:
Validate reply data? [no]:
Data pattern [0xABCD]:
Loose, Strict, Record, Timestamp, Verbose[none]:
Sweep range of sizes [n]:
Type escape sequence to abort.
Sending 11, 100-byte ICMP Echos to 20.20.20.2, timeout is 2 seconds:
Packet sent with a source address of 10.10.10.1
UUUUUUUUUUU
Success rate is 0 percent (0/11)
R2#sh access-lists
Standard IP access list 1
deny 10.10.10.0 0.0.0.255 (15 match(es))
permit any (5 match(es))
Konfigurasi ACL
R2(config)#access-list 2 deny 10.10.10.2 0.0.0.0
R2(config)#access-list 2 permit any
R2(config)#int fa0/0
R2(config-if)#ip access-group 2 out
PC>ping 20.20.20.2
R2#sh access-lists
Standard IP access list 1
deny 10.10.10.0 0.0.0.255 (15 match(es))
permit any (5 match(es))
Standard IP access list 2
deny host 10.10.10.2 (4 match(es))
permit any
PC>ipconfig
IP Address......................: 10.10.10.3
Subnet Mask.....................: 255.255.255.0
Default Gateway.................: 10.10.10.1
PC>ping 20.20.20.2
R2#sh access-lists
Standard IP access list 1
deny 10.10.10.0 0.0.0.255 (15 match(es))
permit any (5 match(es))
Standard IP access list 2
deny host 10.10.10.2 (4 match(es))
permit any (4 match(es))
R2(config)#no access-list 1
R2(config)#no access-list 2
PC>ping 20.20.20.2
R1#sh access-lists
Extended IP access list 100
deny tcp 10.10.10.0 0.0.0.255 host 20.20.20.2 eq www (12 match(es))
permit ip any any (4 match(es))
0.0.0.0 12.12.12.2
10.10.10.2
12.12.12.12
SERVER>ping 12.12.12.12
Reply from 12.12.12.12: bytes=32 time=6ms TTL=126
SERVER>ping 10.10.10.2
Reply from 20.20.20.1: Destination host unreachable.
Ping statistics for 10.10.10.2:
Packets: Sent = 4, Received = 0, Lost = 4 (100% loss),
R1#sh ip nat statistics
Total translations: 1 (1 static, 0 dynamic, 0 extended)
Outside Interfaces: Serial2/0
Inside Interfaces: FastEthernet0/0
Hits: 4 Misses: 8
Expired translations: 4
Dynamic mappings:
R1#sh ip nat translations
Pro Inside global
Inside local
--12.12.12.12
10.10.10.2
Outside local
---
Outside global
---
R1#sh ip route
Gateway of last resort is 0.0.0.0 to network 0.0.0.0
C
C
C
S*
Outside global
20.20.20.2:88
20.20.20.2:89
20.20.20.2:90
20.20.20.2:91
R1#conf t
R1(config)#int s2/0
R1(config-if)#no sh
sh int s2/0
Serial0/0 is up, line protocol is up
Hardware is GT96K Serial
Internet address is 12.12.12.1/24
MTU 1500 bytes, BW 1544 Kbit, DLY 20000 usec,
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation HDLC, loopback not set
R1#conf t
R1(config)#int s2/0
R1(config-if)#no sh
R2#sh int s0/0
Serial0/0 is up, line protocol is up
Hardware is GT96K Serial
Internet address is 12.12.12.2/24
MTU 1500 bytes, BW 1544 Kbit, DLY 20000 usec,
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation HDLC, loopback not set
router(config)#hostname R1
R1(config)#username R2 password idn
R1(config)#int s2/0
R1(config-if)#encapsulation ppp
R1(config-if)# ppp authentication chap
router(config)#hostname R2
R2(config)#username R1 password idn
R2(config)#int s2/0
R2(config-if)#encapsulation ppp
R2(config-if)# ppp authentication chap
R2#sh ip int br
*Mar
*Mar
*Mar
*Mar
*Mar
*Mar
*Mar
*Mar
*Mar
*Mar
*Mar
1
1
1
1
1
1
1
1
1
1
1
00:05:08.743:
00:05:08.751:
00:05:08.755:
00:05:08.759:
00:05:08.763:
00:05:08.767:
00:05:08.767:
00:05:08.771:
00:05:08.775:
00:05:08.783:
00:05:08.803:
Se0/0
Se0/0
Se0/0
Se0/0
Se0/0
Se0/0
Se0/0
Se0/0
Se0/0
Se0/0
Se0/0
R1#
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
changed
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
*Mar 1
00:08:44.083:
00:08:44.095:
00:08:44.095:
00:08:44.103:
00:08:44.111:
00:08:44.111:
00:08:44.111:
00:08:44.115:
00:08:44.119:
00:08:44.123:
00:08:45.079:
state to down
00:08:46.163:
00:08:48.211:
00:08:48.211:
00:08:48.219:
00:08:48.223:
00:08:48.223:
00:08:48.227:
00:08:48.231:
00:08:48.235:
00:08:48.239:
R1(config)#int s2/0
R1(config-if)#ip add 13.13.13.1 255.255.255.0
R1(config-if)# description ### LINK KE INET ###
R1(config)#int Fa0/0
R1(config-if)#ip add 12.12.12.1 255.255.255.0
R1(config-if)#standby 1 ip 12.12.12.12
R1(config-if)#standby 1 preempt
R1(config-if)# description ### LINK KE LOCAL ###
R1(config)#router eigrp 1
R1(config-router)#network 12.12.12.0
R1(config-router)#network 13.13.13.0
R1(config-router)#passive-interface fa0/0 (port menuju switch)
R2(config)#int s2/0
R2(config-if)#ip add 23.23.23.2 255.255.255.0
R2(config-if)# description ### LINK KE INET ###
R2(config)#int Fa0/0
R3(config)#interface s2/0
R3(config-if)# ip address 13.13.13.3
255.255.255.0
R3(config)#interface S3/0
R3(config-if)# ip address 23.23.23.3 255.255.255.0
R3(config)# interface Loopback 0
R3(config-if)# ip address 3.3.3.3 255.255.255.255
R3(config)# router eigrp 1
R3(config-router)# net 0.0.0.0
R3(config-router)#no auto-summary
Prio
105
P State
P Active
Active
local
Standby
12.12.12.1
Virtual IP
12.12.12.12
R1(config)#Int f0/0
R1(config-if)#no standby 1
R2(config)#Int f0/0
R2(config-if)#no standby 1
interface FastEthernet0/0
ip address 12.12.12.1 255.255.255.0
vrrp 1 ip 12.12.12.12
vrrp 1 priority 110
vrrp 1 track 1 decrement 20
!
track 1 ip route 3.3.3.3/32 reachability
interface FastEthernet0/0
ip address 12.12.12.2 255.255.255.0
vrrp 1 ip 12.12.12.12
Time
3570
Own
Pre
Y
State
Master
Master addr
12.12.12.1
Group addr
12.12.12.12
Time
3609
Own
Pre
Y
State
Backup
Master addr
12.12.12.1
Group addr
12.12.12.12
R1(config)#int f0/0
R1(config-if)#shutdown
*Mar 1 03:56:07.083: %VRRP-6-STATECHANGE: Fa0/0 Grp 1 state Master -> Init
*Mar 1 03:56:09.087: %LINK-5-CHANGED: Interface FastEthernet0/0, changed state to
administratively down
R2(config-if)#
*Mar 1 03:56:07.707: %VRRP-6-STATECHANGE: Fa0/0 Grp 1 state Backup -> Master
R1(config-if)#do sh vrrp brief
Interface
Grp
Pri
Time Own
Fa0/0
1
110
3570
Pre
Y
State
Master addr
Init 0.0.0.0
Group addr
12.12.12.12
Pre
Y
State
Master
Group addr
12.12.12.12
Master addr
12.12.12.2
interface FastEthernet0/0
ip address 12.12.12.1 255.255.255.0
glbp 1 ip 12.12.12.12
Konfigurasi di R2
interface FastEthernet0/0
ip address 12.12.12.2 255.255.255.0
glbp 1 ip 12.12.12.12
State
Standby
Listen
Active
State
Active
Active
Listen
Address
Active router
12.12.12.12
12.12.12.2
0007.b400.0101 12.12.12.2
0007.b400.0102 local
Address
12.12.12.12
0007.b400.0101
0007.b400.0102
PC1#traceroute 3.3.3.3
Type escape sequence to abort.
Tracing the route to 3.3.3.3
1 12.12.12.2 40 msec 44 msec 20 msec
2 23.23.23.3 64 msec * 72 msec
PC2#traceroute 3.3.3.3
Type escape sequence to abort.
Tracing the route to 3.3.3.3
1 12.12.12.1 56 msec 28 msec 36 msec
2 13.13.13.3 64 msec * 88 msec
Active router
local
local
12.12.12.1
Standby router
local
-
Standby router
12.12.12.1
-
Pri
0
State
FULL/
Dead Time
00:00:34
Interface ID
3
Interface
Jakarta#ping 2::2
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 2::2, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 31/31/32 ms
Jakarta#ping 3::3
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 3::3, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 31/56/63 ms
PR/Tugas Hari-2
PRTG
WHATSUP GOLD
TFTP SERVER
Switch#
Switch#show flash:
Directory of flash:/
2 -rwx
3 -rwx
25.SEE2.bin
4 -rwx
409 -rwx
1299
7963038
config.text
c3560-advipservicesk9-mz.122-
24
3463
private-config.text
config.old
KIWI CATTOOLS
Syslog Server
-
R1(config)#logging 10.10.10.2
MYLANVIEWER
Netflow Analyzer
GNS 3
rommon1 >
Router>enable
Router#
Router#copy start run
Router#conf t
Router(config)#enable secreet idn
Router(config)#config-register 0x2102
Router#write
The system has been interrupted prior to initializing the flash file system to finish
loading the operating system software:
flash_init
load_helper
boot
switch:
switch:flash_init
switch:load_helper
switch: dir flash:
Directory of flash:/
2
-rwx 1803357
<date>
c3500xl-c3h2s-mz.120-5.WC7.bin
4
-rwx 1131
<date>
config.text
5
-rwx 109
<date>
info
6
-rwx 389
<date>
env_vars
7
drwx 640
<date>
html
18
-rwx 109
<date>
info.ver
403968 bytes available (3208704 bytes used)
Switch: rename flash:config.text flash:config.text.old
Switch: boot
R3(config-router)#
R3(config-router)#
R3(config-router)#
R3(config-router)#
network 192.168.77.32
network 192.168.60.64
network 192.168.60.80
no auto-summary (harus ditambahkan)
Corp1(config)#interface fa0/1
Corp1(config-if)#ip access-group 100 out
Pilihan Ganda
Exam A
Correct Answer: D
Explanation
Exam B
Exam C
Exam D
Exam E
Exam G
Exam H
==================================================================
====================================================================
=======================================================================
Exam I
Exam J
Exam K
Exam L
R1(config-if)#standby 1 timers ?
<1-254> Hello interval in seconds
msec Specify hello interval in milliseconds
R1(config-if)#standby 1 timers 1 ?
<2-255> Hold time in seconds