50
5 продвинутых технологий Cisco, которые нужно знать Ruslan Savchenko 09.08.2013 [email protected] ведущий:

5 продвинутых технологий Cisco, которые нужно знать

Embed Size (px)

DESCRIPTION

Руслан Савченко, инструктор онлайн-школы SkillFactory – о самом интересном из программы курсов CCNP Route и CCNP Switch от Cisco и о том, какие знания в области маршрутизации и коммутации нужно иметь, чтобы решать по-настоящему сложные задачи.

Citation preview

Page 1: 5 продвинутых технологий Cisco, которые нужно знать

5 продвинутых технологий

Cisco, которые нужно знать

Ruslan Savchenko

09.08.2013

[email protected]

ведущий:

Page 2: 5 продвинутых технологий Cisco, которые нужно знать

#

CCNP is: Routing: EIGRP, OSPF, RIP, BGP Switching Routing and switching troubleshooting

CCNP is NOT:

Voice Wireless Security Specific WAN protocols (MPLS,

advanced BGP)

What Is CCNP-R&S Coverage

Page 3: 5 продвинутых технологий Cisco, которые нужно знать

#

CCENT: install and verify basic IP network with supervision

CCNA: also… configure and maintain a multisite enterprise network, as directed

CCNP: also… plan and troubleshoot enterprise networks with advanced solutions, collaborating with network specialists

CCIE: also… independently troubleshoot and optimize network performance in complex and integrated enterprise networks

Certification for Network Engineers

Page 4: 5 продвинутых технологий Cisco, которые нужно знать

#

Cisco Career Certifications

Page 5: 5 продвинутых технологий Cisco, которые нужно знать

#

Switching (SWITCH)

Page 6: 5 продвинутых технологий Cisco, которые нужно знать

#

SWITCH is: Campus layer 2 management (VLANs, STP –all flavors) Campus layer 3 management (Inter-VLAN Routing, first hop

redundancy) Campus network management (network design, security,

voice) SWITCH is NOT: “Only layer 2” Deep wireless, security or voice

What Is Switch Coverage

Page 7: 5 продвинутых технологий Cisco, которые нужно знать

#

Enterprise Campus Architecture

Page 8: 5 продвинутых технологий Cisco, которые нужно знать

#

VLAN Deployment

End-to-end VLANs Users are grouped into VLANs independent of physical location If users are moved within the campus, their VLAN membership remains the same Local VLANs Recommended solution in the enterprise campus architecture Users are grouped into VLANs depending of physical location If users are moved within the campus, their VLAN membership changes

Page 9: 5 продвинутых технологий Cisco, которые нужно знать

#

Trunk Configuration

Configure VLANs Disable trunk negotiation Configure trunk mode Set native VLAN to unused VLAN Allow only required VLANs on trunks

Page 10: 5 продвинутых технологий Cisco, которые нужно знать

#

Common Trunk Link Problems

Trunks can be configured statically or autonegotiated with DTP For trunking to be autonegotiated, the switches must be in the same

VTP domain Some trunk configuration combinations will successfully configure a

trunk, some will not

Page 11: 5 продвинутых технологий Cisco, которые нужно знать

#

Issues with 802.1Q Native VLAN

Native VLAN frames are carried over the trunk link untagged Native VLAN must match at the ends of a trunk A native VLAN mismatch will merge traffic between VLANs Default native VLAN is VLAN 1 Configure an unused VLAN as native VLAN on trunks

Page 12: 5 продвинутых технологий Cisco, которые нужно знать

#

Spanning Tree Standards

802.1D-1998: The legacy standard for bridging and STP CST: Assumes one spanning-tree instance for the entire bridged

network, regardless of the number of VLANs PVST+:A Cisco enhancement of STP that provides a separate 802.1D

spanning tree instance for each VLAN configured in the network 802.1D-2004: An updated bridging and STP standard 802.1s (MST):Maps multiple VLANs into the same spanning-tree

instance 802.1w (RSTP):Improves convergence over 1998 STP by adding roles to

ports and enhancing BPDU exchanges PVRST+: A Cisco enhancement of RSTP using PVST+

Page 13: 5 продвинутых технологий Cisco, которые нужно знать

#

Spanning Tree Recommendations

Use PVRST+ or MSTP for best convergence

Take advantage of the Cisco STP toolkit

Keep STP domain as simple as possible

Do not disable STP—it protects against unplanned loops

Use routed links if possible

Page 14: 5 продвинутых технологий Cisco, которые нужно знать

#

Cisco STP Toolkit

PortFast: configures access port as edge ports which transition directly to forwarding state

BPDUGuard: disables a PortFast-enabled port if a BPDU is received

BPDUfilter: suppresses BPDUs on ports (not recommended)

RootGuard: prevents external switches from becoming roots

LoopGuard: prevents an alternate port or root port from becoming the designated port if no BPDUs are received

UplinkFast*: provides from 3 to 5 seconds convergence after link failure

BackboneFast*: cuts the convergence time by max_age for an indirect failure

Page 15: 5 продвинутых технологий Cisco, которые нужно знать

#

Process switching Slowest method—every packet examined by CPU, all forwarding decisions made in software Fast switching (route caching) Faster method—first packet in each flow examined by CPU, forwarding decision cached in hardware for subsequent packets in flow Cisco Express Forwarding (topology-based switching) Fastest method—hardware forwarding table created regardless of traffic flows, all packets switched using hardware Switching mode for multi-layer switches

Cisco Layer 3 Switching Methods

Page 16: 5 продвинутых технологий Cisco, которые нужно знать

#

Configure SVI and Routed Interface

switch(config)# ip routing switch(config)# interface vlan10 switch(config-if)# ip address 10.1.10.1 255.255.255.0 switch(config-if)# no shutdown switch(config)# interface vlan20 switch(config-if)# ip address 10.1.20.1 255.255.255.0 switch(config-if)# no shutdown

Page 17: 5 продвинутых технологий Cisco, которые нужно знать

#

HSRP Configuration

Page 18: 5 продвинутых технологий Cisco, которые нужно знать

#

HSRP and Spanning Tree

Configured active router should be the same as STP root bridge

Blocked uplink caused traffic to take less than optimal path

Page 19: 5 продвинутых технологий Cisco, которые нужно знать

#

GLBP Operation

Page 20: 5 продвинутых технологий Cisco, которые нужно знать

#

GLBP Weights and Decrements

Page 21: 5 продвинутых технологий Cisco, которые нужно знать

#

GLBP Configuration

Page 22: 5 продвинутых технологий Cisco, которые нужно знать

#

Routing (ROUTE)

Page 23: 5 продвинутых технологий Cisco, которые нужно знать

#

ROUTE is: IGP Routing: EIGRP, OSPF, RIP Path control: route maps, filters, redistribution, policy-based

routing ISP connection management: standard BGP IPv6 Branch offices and remote workers connectivity: VPN, GRE ROUTE is NOT: Voice Wireless Security Specific WAN protocols (MPLS, IS-IS, advanced BGP) Multicast

What Is Route Coverage

Page 24: 5 продвинутых технологий Cisco, которые нужно знать

#

Example: Enterprise network

Page 25: 5 продвинутых технологий Cisco, которые нужно знать

#

Routing Protocol Comparison

Page 26: 5 продвинутых технологий Cisco, которые нужно знать

#

OSPF. Link-State Protocols

Page 27: 5 продвинутых технологий Cisco, которые нужно знать

#

Link-state routing requires a hierarchical network structure: Transit area (backbone or area 0) Normal areas (non-backbone areas)

Area Terminology and Router Types

ABR:Area Border Router ASBR:Autonomous System Boundary Router R5, R6:Internal routers R1:Backbone router

Page 28: 5 продвинутых технологий Cisco, которые нужно знать

#

OSPF Packet Types

Page 29: 5 продвинутых технологий Cisco, которые нужно знать

#

Example of Different LSAs

Page 30: 5 продвинутых технологий Cisco, которые нужно знать

#

Types of Areas

Page 31: 5 продвинутых технологий Cisco, которые нужно знать

#

Design Limitations of OSPF

If more than one area is configured, one of these areas has be to be area 0—backbone area

All areas must be connected to area 0 Area 0 must be contiguous

Page 32: 5 продвинутых технологий Cisco, которые нужно знать

#

No Direct Physical Connection to Area 0

Area 20 added with no physical access to area 0 A virtual link provides logical path to the backbone The OSPF database treats the link between routers ABR1 and

ABR2 as a direct link

Page 33: 5 продвинутых технологий Cisco, которые нужно знать

#

Discontinuous Area 0

Two companies merge without a direct link between them Virtual links are used to connect a discontinuous area 0 A logical link is built between routers ABR1 and ABR2 Virtual links are recommended for backup or temporary

connections too

Page 34: 5 продвинутых технологий Cisco, которые нужно знать

#

EIGRP Capabilities and Attributes

Advanced distance vector Multicast and Unicast instead of broadcast address Support for multiple network-layer protocols 100% loop-free classless routing Fast convergence Partial updates Flexible network design

Page 35: 5 продвинутых технологий Cisco, которые нужно знать

#

EIGRP Capabilities and Attributes

Support for VLSM and discontinuous subnets Provides load balancing across equal-and unequal-cost

pathways Easy configuration for WANs and LANs Manual summarization at any point Sophisticated metric

Page 36: 5 продвинутых технологий Cisco, которые нужно знать

#

Example: EIGRP Tables

Page 37: 5 продвинутых технологий Cisco, которые нужно знать

#

Successor and Feasible Successor

Page 38: 5 продвинутых технологий Cisco, которые нужно знать

#

Example: Successor and Feasible Successor Solve Loop Issue

R1 receives information about the 10.0.0./8 from R8 and R4 FD on R1 is smaller than AD from R4 and the update from R4 is not FS

Page 39: 5 продвинутых технологий Cisco, которые нужно знать

#

Verifying EIGRP Neighbors

Page 40: 5 продвинутых технологий Cisco, которые нужно знать

#

Factors that Influence EIGRP Scalability

Amount of routing information exchanged between peers Number of routers Depth of topology—the number of hops that information must

travel to reach all routers Number of alternate paths through the network

Page 41: 5 продвинутых технологий Cisco, которые нужно знать

#

EIGRP Query Process Stuck-in-Active

The router must get replies to all its queries for a lost route to start calculating successor information If any reply to the query is lost or missing within three minutes: The route is SIA The router resets the neighbor relationship with the neighbor that fails to reply

Page 42: 5 продвинутых технологий Cisco, которые нужно знать

#

Enterprise Network to ISP Connection Options

Single-homed Dual-homed Multihomed Dual-multihomed

Page 43: 5 продвинутых технологий Cisco, которые нужно знать

#

BGP Routing Between Autonomous Systems

BGP is to provide an interdomain routing system BGP guarantees the exchange of loop-free routing information BGP works differently than IGPs BGP is a policy-based routing protocol Control traffic flow using multiple BGP path attributes

Page 44: 5 продвинутых технологий Cisco, которые нужно знать

#

Basic EBGP Configuration

Page 45: 5 продвинутых технологий Cisco, которые нужно знать

#

BGP Path Selection Decision Process

Consider only (synchronized) routes with no AS loops and a valid next hop, and next steps for evaluation are:

Page 46: 5 продвинутых технологий Cisco, которые нужно знать

#

Set AS Path with Route Map

Page 47: 5 продвинутых технологий Cisco, которые нужно знать

#

Redistribution Techniques

Page 48: 5 продвинутых технологий Cisco, которые нужно знать

#

Two-Way Multipoint Redistribution Issue

Page 49: 5 продвинутых технологий Cisco, которые нужно знать

#

Questions?

Page 50: 5 продвинутых технологий Cisco, которые нужно знать

#

Thank you!