• No results found

comandos Switch

N/A
N/A
Protected

Academic year: 2021

Share "comandos Switch"

Copied!
6
0
0

Loading.... (view fulltext now)

Full text

(1)

Comandos para configurar un Switch Cisco Rip

NewYork(config)#interface fastethernet0/0

NewYork(config-if)#ip address 192.168.50.129 255.255.255.192 NewYork(config-if)#ip rip send version 1

NewYork(config-if)#ip rip receive version 1 NewYork(config)#interface fastethernet0/1

NewYork(config-if)#ip address 172.25.150.193 255.255.255.240 NewYork(config-if)#ip rip send version 1 2

Show ip protocols

show interface interface show ip interface interface show running-config

Show ip rip database OSPF

Router(config)#router ospf process-id

Router(config-router)#network address wildcard-mask area area-id Router(config)#interface lookback 0

Router(config-if)#ip address 192.168.3.33 255.255.255.255 Rtr(config-if)# bandwidth 64

Rtr(config-if)# ip ospf cost 1562 Autenticación sin md5

Router(config-if)#ip ospf authentication-key password Router(config-router)#area area-number authentication Autenticación con md5

Router(config-if)#ip ospf message-digest-key key-id encryption-type md5 key Router(config-router)#area area-id authentication message-digest

Router(config-if)#ip ospf hello-interval seconds Router(config-if)#ip ospf dead-interval seconds debug ip ospf events

--aumentar la prioridad para elegir un router DR sw(config)#interface fasethernet 0/0

sw(config-if)#ip osfp priority 50 sw(config-if)#end

EIGRP

Router(config)#router eigrp as-id

Router(config-router)#network 192.168.3.0 Router(config-router)#end

Router# show ip eigrp topology eigrp log-neighbor-changes

resumen de rutas: router(config-router)#no auto-summary

Switch

Switch# dir flash: Switch#show flash

(2)

Switch#show vlan Switch#vlan database

Switch(vlan)#vlan vlan_number Switch(vlan)#exit

Switch(config)#interface fastethernet 0/9

Switch(config-if)#switchport access vlan vlan_number Switch#vlan database

Switch(vlan)#no vlan 300

Switch(config)#interface fastethernet 0/9

Switch(config-if)#switchport access vlan vlan_number Sw1#delete flash:vlan.dat

Sw1#erase startup-config Sw1#reload

Interface web

Sw1(config)#ip http port 80 Ver la tabla MAC:

Switch#show mac-address-table (? Mas opciones) Switch#clear mac-address-table

Asignar una mac estatica

â?¢Switch(config)#mac-address-table static interface FastEthernet vlan â?¢Switch(config)#no mac-address-table static interface FastEthernet vlan Seguridad de Puerto

Sw1(config)#interface fastETehernet 0/2

Sw1(config-if)#switchport port-security ?(sale las opciones) Limitar la cantidad de host por puerto

1900:

Sw1(config)#interface fastETehernet 0/2 Sw1(config-if)#port secure mas-mac-count 1

2950:

Sw1(config)#interface fastETehernet 0/2

Sw1(config-if)#switchport port-security maximum 1

Configuracion del Puerto que se desconecte cuando se produce una violacion de se guridad

Sw(config-if)#switchport port-security violation shutdown

2900xl:

Sw(config-if)#port security action shutdown

Poner Ip a la Vlan1 Catalyst 2950

Sw(config)#interface Vlan1

Sw(config-if)#ip address 192.168.1.2 255.255.255.0 Sw(config-if)#no shutdown

(3)

Sw(config)# ip default-gateway 192.168.1.1 Catalyst 1900

Sw(config)#ip address 192.168.1.2 255.255.255.0 Sw(config)# ip default-gateway 192.168.1.1 Archivos de configuracion

Sw# copy running-config startup-config 1900:

Sw#copy nvram tftp://tftp server ip add/destination_filename

COnfiguracion de la velocidad

Switch(config)#interface fastethernet 0/9 Switch(config-if)#duplex full

Switch(config-if)#speed 100

Crear el trunk del switch

Sw(config)#interface fastethernet 0/1 Sw(config-if)#swicthport mode trunk Sw(config-if)#end

2900:

Sw(config)#interface fastethernet 0/1 Sw(config-if)#swicthport mode trunk

Sw(config-if)#swicthport trunk encapsulation dot1q Sw(config-if)#end

1900:

Sw(config)#interface fastethernet 0/1 Sw(config-if)#swicthport mode trunk

Sw(config-if)#swicthport trunk encapsulation dot1q Sw(config-if)#end

Trunk en el router

Router(config)#interface fastethernet 0/0 Router(config-if)#no shutdown

Router(config-if)#interface fastEthernet 0/0.1

Router(config-subif)#encapsulation dot1q vlan-number Router(config-subif)#ip address��.

router1#copy running-config tftp

Quitar un Puerto de una VLAN

Switch(config)#interface fasethernet 0/9

Switch(config-if)#no switchport access vlan 300 Eliminar una vlan

(4)

Switch(vlan)#no vlan 300 Spanning tree show spanning-tree Configuracion de VTP switch#vlan database switch#vtp v2-mode

switch(vlan)#vtp domain password

switch#vtp {client | server | transparent}

Copiar el IOS a un server tftp Sw#copy flash tftp

2900: sw#copy flash:nombre_del_archivo tftp

Copiar IOS desde un Server tftp Sw#copy TFTP flash

Sw# copy Start tftp

1900: sw#copy nvram tftp://numero-ip/name Sw#copy tftp startup-config

1900: sw#copy tftp://numero-ip/name nvram

Recuperar el acceso al switch

1. Apagar el switch, Vuelva a encenderlo mientras presiona el boton MODE en la parte delantera del switch. Deje de presionar el boton MODE una vez que se a pague el led de STAT

2. introducir los siguientes comandos: flash_init

load_helper dir flash:

3. rename flash:config.text flash:config.old 4. reiniciar el sistema original:

4.1 despues de entrar al switch hacer: rename flash:config.old flash:config. text

4.2 sw#copy flash:config.text system:running-config 4.3 Cambiar los password

Actualizar el firmware

Sw#show boot (muestra el archive de boteo)

Cambiar el nombre del archivo de la ios,con el commando #rename flash:nombre fla sh:Nuevo_nombre

Sw(config)#no ip http Server Sw# delete flash:html/*

(5)

Sw#archive tar /x tftp://192.168.1.3/nombre_del_archivo.tar flash: Sw(config)#ip http Server

Sw(config)#boot system flash:nombre.bin

Spanning-Tree

#show spanning-tree brief

Cambiar prioridad: ios 12.0 sw(config)#spanning-tree priority 1 sw(config)#exit

ios 12.1 sw(config)#spanning-tree vlan 1 priority 4096 sw(config)#exit

Configurar VLAN Sw#vlan database

Sw(vlan)#vlan 2 name Logistica Sw(vlan)#vlan 3 name Licitaciones Sw(vlan)#end

1900:

Sw#config terminal

Sw(config)#vlan 2 name VLAN2 Sw(config)#vlan 3 name VLAN3 Configurar puertos en las VLAN Sw#conf term

Sw(config)#interface fastethernet 0/2 Sw(config-if)#switchport mode access Sw(config-if)#switchport access vlan2 Sw(config-if)#end

Elminar el Puerto de la vlan

Sw(config-if)#no switchport access vlan2 Sw(config-if)#end

1900:

Sw#conf term

Sw(config)#interface fastethernet 0/2 Sw(config-if)#vlan static 2

Para eliminar un Puerto de la vlan Sw(config-if)#no vlan-membership 2 Sw#show vlan Sw#show vlan id 2 1900: Show vlan-membership Show vlan 2 Eliminar un vlan Sw#valn database Sw(vlan)#no vlan 3 Sw(vlan)# exit

(6)

1900: sw(confgi)# interface ethernet 0/7 sw(confgi)#no vlan 3

enlacen troncal ISL

sw(Config.)#interafce fastethernet 0/1 sw(Config-if)#switchport mode trunk

sw(Config-if)#switchport trunk encapsulation isl sw(Config-if)#end

enlace troncal 802.1q 2950: por defecto dotiq

sw(Config.)#interafce fastethernet 0/1 sw(Config-if)#switchport mode trunk 2900:

sw(Config.)#interafce fastethernet 0/1 sw(Config-if)#switchport mode trunk

sw(Config-if)#switchport trunk encapsulation dot1q Vtp , servidor y cliente

Sw# Vlan database Sw(vlan)# vtp server

Sw(vlan)# vtp domain group1 Sw(vlan)# exit

Sw# Vlan database Sw(vlan)# vtp client

Sw(vlan)# vtp domain group1 Sw(vlan)# exit

Ruteo entre VLAN

Poner el encapsulamiento en las subinterfaces del router (config-if)#interface fastethernet 0/0.1

References

Related documents

On [VLAN / Port VLAN] page, you can observe the VLAN settings of all the current port switch and can set several functions such as [Port range], [Link type], [Default VLAN ID],

Tagging Rules Tagging Rules VLAN Aware Bridge VLAN Aware Bridge VLAN Unaware End Stations VLAN-aware End Station Hybrid Link VLAN B VLAN B VLAN A VLAN A VLAN C VLAN C VLAN B

Perform SQL Injection in order to get sensitive data back to the hacker VLAN 3 VLAN 4 DMZ-2 VLAN 3 VLAN 4 External Servers Database Server Intranet Internet Internet Internet

Leadership is the ability to inspire people to make a total, willing, and voluntary commitment to accomplishing or exceeding organizational goals Good leaders overcome

Internet vlan 100 vlan 200 (outside) vlan 221 (inside) vlan 223 vlan 222 Context A MSFC ISP router inside DMZ1 DMZ2 Cat6000 switch vlan 200 (outside) vlan 231 (inside) vlan 233 vlan

A company wants to separate the Engineer Department, Sales Department, Marketing Department and guest to limit their communication with any department to ensure

Supermicro L2/L3 Switches Configuration Guide 7 Users can add one or more ports to an LACP mode port channel.. When more than eight member ports are configured, only the first

Switch(config-if)# switchport trunk allowed vlan remove 12 To add a specific VLAN back into the allowed list:.. Switch(config)#