RIP Advanced
Slika 1. Dijagram topologije
IOS:c3640-jk9s-mz.124-16.bin
1
Korak 1: Konfigurisanje adresa
Prema adresnoj šemi na slici 1., konfigurišu se IP adrese za Loopback, serijske i Fast Ethernet interfejse, na ruterima R1, R2, R3 i R4.
Ruter R1Router>
Router>enable # prelazak u privilegovani mod
Router#configure terminal # ulazak u mod za konfiguraciju
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# interface fa0/0
Router(config-if)# ip address 10.10.12.1 255.255.255.0
Router(config-if)# no shutdown # podizanje interfejsa
Router(config-if)#exit
Router(config)# interface fa1/0
Router(config-if)# ip address 10.10.13.1 255.255.255.0
Router(config-if)# no shutdown
Router(config-if)#exit
Router(config)# interface loopback 0 # konfiguracija Loopback0 interfejsa
Router(config-if)# ip address 1.1.1.1 255.255.255.0
Router(config-if)#exit
Router(config)#exit
Router# copy running-config startup-config #snimanje konfiguraije
Ruter R2
Router>
Router>enable # prelazak u privilegovani mod
Router#configure terminal # ulazak u mod za konfiguraciju
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# interface fa0/0
Router(config-if)# ip address 10.10.12.2 255.255.255.0
Router(config-if)# no shutdown # podizanje interfejsa
Router(config-if)#exit
2
Router(config)# interface serial1/0 # konfiguracija serijskog interfejsa s1/0
Router(config-if)# ip address 10.10.24.2 255.255.255.0
Router(config-if)# no shutdown
Router(config-if)#exit
Router(config)# interface loopback 0 # konfiguracija Loopback0 interfejsa
Router(config-if)# ip address 2.2.2.2 255.255.255.0
Router(config-if)#exit
Router(config)#exit
Router# copy running-config startup-config #snimanje konfiguraije
Ruter R3
Router>
Router>enable # prelazak u privilegovani mod
Router#configure terminal # ulazak u mod za konfiguraciju
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# interface fa0/0
Router(config-if)# ip address 10.10.34.3 255.255.255.0
Router(config-if)# no shutdown # podizanje interfejsa
Router(config-if)#exit
Router(config)# interface fa1/0
Router(config-if)# ip address 10.10.13.3 255.255.255.0
Router(config-if)# no shutdown
Router(config-if)#exit
Router(config)# interface loopback 0 # konfiguracija Loopback0 interfejsa
Router(config-if)# ip address 3.3.3.3 255.255.255.0
Router(config-if)#exit
Router(config)#exit
Router# copy running-config startup-config #snimanje konfiguraije
Ruter R4
Router>
Router>enable # prelazak u privilegovani mod
3
Router#configure terminal # ulazak u mod za konfiguraciju
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# interface fa1/0
Router(config-if)# ip address 10.10.34.4 255.255.255.0
Router(config-if)# no shutdown # podizanje interfejsa
Router(config-if)#exit
Router(config)# interface serial0/0 # konfiguracija serijskog interfejsa s1/0
Router(config-if)# ip address 10.10.24.4 255.255.255.0
Router(config-if)# no shutdown
Router(config-if)#exit
Router(config)# interface loopback 0 # konfiguracija Loopback0 interfejsa
Router(config-if)# ip address 4.4.4.4 255.255.255.0
Router(config-if)#exit
Router(config)#exit
Router# copy running-config startup-config #snimanje konfiguraije
Korak 2: Konfigurisanje RIPverzije 2 na svim ruterima
R1,R2,R3,R4:
Router>
Router>enable # prelazak u privilegovani mod
Router#configure terminal # ulazak u mod za konfiguraciju
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# router rip
Router(config-router)#version 2
Router(config-router)#no auto-sumary
Router(config-router)#network 0.0.0.0
Router(config-router)#exit
4
Korak 3: Onemogućiti da RIP šalje ispravke prema loopback interfejsu pPosle debaga na ruteru R1, primecujemo da RIP salje ispravke prema loopback interfejsu).Provera da li je ovo tacno ili ne:
Router#debug ip rip
Router R1:
Router>
Router>enable # prelazak u privilegovani mod
Router#configure terminal # ulazak u mod za konfiguraciju
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# router rip
Router(config-router)#passive-interface loopback 0
Router(config-router)#exit
Router(config)#exit
5
Korak 4: Veza između rutera R2 i R4 nije dozvoljeno da šalju RIP saobraćaj koristeći broadcast(prenos) ili multicast
Router R2:
Router>
Router>enable # prelazak u privilegovani mod
Router#configure terminal # ulazak u mod za konfiguraciju
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# router rip
Router(config-router)#neighbor 10.10.24.4
Router R4:
Router>
Router>enable # prelazak u privilegovani mod
Router#configure terminal # ulazak u mod za konfiguraciju
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# router rip
Router(config-router)#neighbor 10.10.24.2
PROVERA na ruteru R2
Router#debug ip rip
Vidimo da smo ne koristi broadcast ali da koristi multicast(zutom bojm je obelezeno) a pise da ne sme ni jedan ni drugi. Tako da moramo to da promenimo
Router R2:
Router>
Router>enable # prelazak u privilegovani mod
Router#configure terminal # ulazak u mod za konfiguraciju
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# router rip
Router(config-router)#passive-interface serial1/0
6
Router R4:
Router>
Router>enable # prelazak u privilegovani mod
Router#configure terminal # ulazak u mod za konfiguraciju
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# router rip
Router(config-router)#passive interface serial0/0
Provera na R2
Router#debag ip rip
Korak 5: Kada pokrenemo ping a Ruter R2 do 4.4.4.4 primetite da se saobraćaj šalje niz spor serijski link, promeniti RIP konfiguraciju na ruteru R4 tako da FastEthernet veze mogu da koriste. Ne sme se dozvoliti gašenje serijske veze.
Router#traceroute 4.4.4.4
Router#show ip route
Router R2:
7
Router>enable
Router2#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#router rip
Router(config-router)#no offset-list 1 in 5
Router(config-router)#offset-list 1 in 5 serial1/0
Router(config-router)#exit
Router(config)#exit
Korak 6: Kreiranje novog loopback10 interfejsa na ruteru R4, koristeći IP adresu 44.44.44.44 /24 Router R4:
Router>enable
Router2#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#interface loopback10
Router(config-if)# ip address 44.44.44.44 255.255.255.0
Router(config-if)#exit
Router(config)#exit
8
Korak 7: Promena konfiguracije na ruteru R1 tako da kada pinguje 44.44.44.44 šalje samo preko serijske veze, ne preko veze ka R3.Router R1:
Router#show ip route
Vidimo da mozemo da saljemo preko R2 I R3.
Router R1:
Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#router rip
Router(config-router)# distribute-list?
Router(config-router)# distribute-list 1 in FastEthernet 1/0
Router(config-router)#exit
Router(config)#access-list 1 deny 44.44.44.0 0.0.0.255
Router(config)#access-list 1 permit any
Router(config)#exit
Router#clear ip route
9
Router#show access-lists
Router#show ip route
Korak 8: Promena konfiguracije na ruterima R2 i R4 tako da se aktivirane ispravke šalju samo preko serijske veze.R2:
Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#interface serial1/0
Router(config-if)#ip rip triggered?
Router(config-if)#ip rip triggered
R4:
Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#interface serial0/0
Router(config-if)#ip rip triggered
10
Korak 9: Konfigurisanje rutera R2 tako da se RIP V1 ispravke šalju preko R1. Bez menjanja RIP verzije na ruteru R1.R2:
Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#interface fa0/0
Router(config-if)#ip rip send version 1 2
R1:
Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#interface fa0/0
Router(config-if)#ip rip recive version 1 2
Korak 10: Konfigurisite autentifikaciju izmedju rutera R3 i R4:a. key-chain: VAULTb. key-id: 1c. key-string: FREE
Router R3:Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#key chai VAULT
Router(config-keychain)#key 1
Router(config-keychain-key)#key-string FREE
Router(config-keychain-key)#exit
Router(config-keychain)#exit
Router(config)#interface fa0/0
Router(config-if)# ip rip authentication mode md5
Router(config-if)# ip rip authentication key-chain VAULT
Router R4:
Router>enable
11
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#interface fa1/0
Router(config-if)#ip rip authentication?
Router(config-if)#ip rip authentication mode nd5
Router(config-if)#ip rip authentication key-chain VAULT
Router(config-if)#exit
Router(config)#key chain VAULT
Router(config-keychain)#key 1
Router(config-keychain-key)#key-string FREE
Router(config-keychain-key)#exit
Router(config-keychain)#exit
Router(config)#exit
Router#
Provera:
R4:
Router#debug ip rip
12
Korak 11: Konfigurisanje cetiri loopback interfejsa na ruteru R4:a. Loopback1: 172.16.0.1 /24b. Loopback2: 172.16.1.1 /24c. Loopback3: 172.16.2.1 /24d. Loopback4: 172.16.3.1 /24
R4:Router>
Router>enable # prelazak u privilegovani mod
Router#configure terminal # ulazak u mod za konfiguraciju
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# interface loopback1
Router(config-if)# ip address 172.16.0.1 255.255.255.0
Router(config-if)#exit
Router(config)# interface loopback2
Router(config-if)# ip address 172.16.1.1 255.255.255.0
Router(config-if)#exit
13
Router(config)# interface loopback3
Router(config-if)# ip address 172.16.2.1 255.255.255.0
Router(config-if)#exit
Router(config)# interface loopback4
Router(config-if)# ip address 172.16.3.1 255.255.255.0
Router(config-if)#exit
Korak 12: Kofigurisanje rezimea na ruteru R3 tako da ruter R1 ima 172.16.0.0/22 ulazak u njenu rutering tabelu.R3:Router#show ip route
Router#configure terminal # ulazak u mod za konfiguraciju
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# interface fa1/0
Router(config-if)# ip summary-address rip 172.16.0.0 255.255.252.0
Router R1:Router#show ip routeRouter#Debug ip rip
14