ccie security lab experience
-
- 2323 Reviews
The line is damaged , the interface does not have any connection cable. Serial1 is up, line protocol is down
B (config-if) #ip nat inside configured S0 interface inside the network
enable secret provided in the ciphertext enable password ( in preference to the use plaintext ) service password-encryption of all encryption system cleartext password ( weak )
1900 only supports ISL trunk protocol 2950 only supports 802.1Q trunk protocol 3550 supports 802.1Q and
VTP is a messaging system . Ensures that all of the switches in the same management domain below network VLAN
border router ( border router ) ----- generally Open Shortest Path First (OSPF) is defined as a region connected to the backbone routers region. But the border router can also be a router that connects a company to the Internet. See
Clear line * Force interrupt "telnet to local " session
Sended and is not reliable. Compare connection-oriented . See virtual circuit .
The twisted pair transmission distance is 100 meters .
Extended IPX accesslist ( extended IPX access table ) through logical IPX address, network layer header
Please refer to the fourth part of the CCNA Professional English Vocabulary Collection : Classic Recommendations ; CCNA Professional English Vocabulary Collection
Beacon ( beacon ) An FBDT device or token ring frame that indicates a serious problem on the ring, such as electricity
A recognized serial interface processor that provides four or eight high-speed serial interfaces.
choke packet ( packet that was blocked ) when congestion exists, it is sent to the sender of a packet, it should inform
The process of outputting a single stream. See multiplexing .
The BPDU is exchanged between switches every two seconds. Periodic.
discovery mode ( discoverable mode ) also called dynamic configuration, this technology is AppleTalk interface is used from
Connectionless ( no connection ) does not require the creation of data transfers from virtual circuits. It has no overhead,ccie security lab experience, try its best
EFCI Explicit Forward Congestion indication (Explicit Forward Congestion Indication) ATM network
Equipment and Tnter have jointly improved. Ethernet is similar to the TEEE802.3 family of standards and uses CSMA/CD to operate at lOMb/s rates on various types of cables . Also known as DIX (Digital/Intel/Xerox) Ethernet. See
ELAP EtherTalk Link Access Protocol (EtherTralk Link Access Protocol) on EtherTalk Network
E channel (E channel ) loopback channel (Echo channel) ----- for a circuit switched 64Kb / s ISDN control channel. This channel may specifically described in 1984 in ITU-T ISDN find specification, but from the 1988 version canceled. See Bchannel , D channel H channel .
CO central office (central office) , all circuits in a certain area are connected here, is the subscriber line
And the protocol to close the session and the sequential request. See ATP .
DCE data communication device ( by JIA defined ) or a data circuit-terminating equipment ( according to ITU-T defined ) constituted by
Other bridges operate the same spanning tree algorithm, but allow packet encapsulation to be transmitted over a Frame Relay network.
1. Neighbor table => all neighbors
=========================================================== ===============
Show ip access-lists to view specific list conditions and matching information
A superset of the BootP protocol. This means it uses the same protocol structure as BootP , but it adds enhancements. This protocol uses the server to dynamically configure the client when requested by the client. The two main enhancements are the address pool and lease time.
Ethernet link overhead:
Version 2 configures the rip version to version 2 no auto-summary to turn off automatic summarization
The convergence algorithm provides loop-free operation throughout the routing calculation. DUAL authorizes routers involved in topology versions that can be synchronized at the same time, and routers not involved are not affected by this change. See Enhanced IGRP .
There are two types of ACLs :
active monitor ( activity monitor ) for Token Ring management mechanism. The highest MAC address on the ring
Count to infinity ( calculation to infinity ) routing problem in a routing algorithm, routers continue to increase
Caused by simultaneous transmission of the network segment. Its appearance may exhaust the network bandwidth and cause a timeout.
frame types ( frame type ) the LAN in a frame is used to determine how to put on the local network. Ethernet
Expansion ( competition ) directs compressed data through an algorithm that restores the information to its original size.
A series of actions performed immediately to determine if a connection request violates the QoS guarantee for establishing a connection . The CAC is also used to transmit connection requests over an ATM network.
ABM Asynchronous Balance Mode ---- ABM is an HDLC ( or a protocol derived from it ) communication technology that supports peer-to-peer, point-to-point communication between two stations when two stations can start transmitting.
B(config)#ip nat pool abc 1.1.1.1 1.1.1.30 prefix-length 24 translate list 1 host IP to pool abc free IP B(config)#ip nat inside source list 1 pool abc
Externally connected to each interface of the device. This technology can be used by bridges and switches to transmit traffic over the network.
Table or logical address table.
A Cisco hierarchical network. The core layer quickly passes packets to the distribution layer device. No packet filtering is performed at this level.
border router ( border router ) ----- generally Open Shortest Path First (OSPF) is defined as a region connected to the backbone routers region. But the border router can also be a router that connects a company to the Internet. See
bridge priority ( bridge priority ) disposed bridge STP priority. By default all bridges take precedence
Startup -config will be actively loaded every time the router or switch is started .
Routers running BGP ; they use a TCP port on layer 4 of the OSI Reference Model . Especially using TCP
B (config-if) #ip nat inside configured S0 interface inside the network
expedited delivery ( accelerated delivery ) may be the same or other layers of protocol of a different network device in
B(config)#inte s 0
Physical layer :
A Cisco hierarchical network. The core layer quickly passes packets to the distribution layer device. No packet filtering is performed at this level.
DLCI Data Link Connection Identifier (Data-Link Connection Identifier) for identifying FR
=========================================================== ===============
One of the two ATM address formats " contrast ICD .
administrative distance ( management distance ) from 0 to 255 a number between, which represents one routing information
The bit, that is, a number cannot be divisible by 8 . Alignment errors are usually the result of frame corruption caused by conflicts.
ACL is the most important : The ACL condition list will have a condition of hiding " reject all " at the end .
!
Enhanced IGRP ( Enhanced IGRP) ----- Enhanced Interior Gateway Routing Protocol (Enhanced Interior GatewayRouting Protocol): Cisco an advanced routing protocol created, which combines the advantages of link-state and distance between the amount of protocol. Enhanced IGRP has extraordinary convergence properties, including high operational efficiency. See IGP ,
Adopt standard :
cost ( cost ) , also known as path cost, an arbitrary value, according to the number of hops, bandwidth, or other juice operator,
B(config)#inte s 0
Programmable after shipment, these non-volatile memory chips can be wiped off and reprogrammed with high power light when needed. See EEPROM and PROM .
Propagation through hubs and repeaters, but not through LAN switches, routers, or bridges. See collision . COmposite metric ( complex metrics ) with IGRP and EIGRP use with such routing protocol,
distance-vector routing algorithm ( Distance Vector Routing Algorithm ) In order to find the shortest path,
UDP ( User Message Protocol ), no connection , no retransmission mechanism , unreliable transmission
AS AS (autonomous system) a group of networks under the management of another, they share the same
Serial1 is down, Line protocol is down
=========================================================== ===============
Frame-relay map ip 10.1.1.2 110 broadcast for manual static mapping
Exchange routing information.
Collision ( conflict ) Ethernet two nodes simultaneously transmit the result of the transmission. When they are on physical media
A technique that differs from ordinary TDM in that time slots are allocated when necessary rather than pre-assigned to certain transmitters. Compare FDM , statistical multiplexing, and TDM .
Physical layer :
H channel (H channel ) high-speed channel (high-speed channel): a full-duplex, the 384Kb / s work on rate ISDN primary rate channel. See B channe , D channel , and E channel .
A logical collection of information. IP datagrams have become the main unit of information for the Internet. In the OSI layers reference model, the term cell (Cell) , frame (Frame) , the message (message) and the segment (segment) also define these logical information groupings.
Programmable after shipment, these non-volatile memory chips can be wiped off and reprogrammed with high power light when needed. See EEPROM and PROM .
FQDN Fully Qualified Domain Name (fully qualified domain name) in the DNS for the domain structure due to
BECN between the Explicit Congestion through-pipe (Backward Explicit Congestion Notification) BECN is
Beacon ( beacon ) An FBDT device or token ring frame that indicates a serious problem on the ring, such as electricity
( ++<6> ) + x
Physical layer : rate , voltage , pin interface type Bit
BDR backup designated router (Backup Designated Router) an OSPF network used to prepare
The signal has been established.
CSU channel service unit (channel service unit) connecting end-user equipment to a local digital telephone
EFCI Explicit Forward Congestion indication (Explicit Forward Congestion Indication) ATM network
List Access ( access list ) to save the router a set of test conditions, which determine the various services on the network " interested
A digital device of the loop. Often referred to as a CSU/DSU along with a data service unit . See DSU .
Vtp server configures this switch to enable pruning for server mode [server|client |transparent] vtp pruning
B(config)#inte s 0
=========================================================== =============== EIGRP
Network or subnet, which part represents the host. Sometimes referred to as a mask. Playing subnet mask
Designated router (DR , designated router ) creates an OSPF for the LSA for a multiaccess network
IGPs: Internal Gateway Routing Protocol , which maintains routes within an autonomous system
Session layer : Differentiate data from different applications . The operating system works on this layer of DATA
Show interfaces fastethernet 0/1 switchport
R14#debug isdn events R14#show isdn active
The requested VCC determines the likelihood of a path containing the appropriate bandwidth.
1. Transmission area ( backbone area ) 2. Common area ( non-backbone area )
ABM Asynchronous Balance Mode ---- ABM is an HDLC ( or a protocol derived from it ) communication technology that supports peer-to-peer, point-to-point communication between two stations when two stations can start transmitting.
algorithm ( algorithm ) to a set of rules or procedures to solve a problem. Algorithms in the network are generally used
Show users to see " who " login to local
Connectionless ( no connection ) does not require the creation of data transfers from virtual circuits. It has no overhead, try its best
Part of the original IEEE802.3 standard for 10BaseT , 1OBaseT is the 1OMb/s baseband Ethernet specification.
It can be provided by a secondary router added to a remote network.
buffer ( Buffer ) designed to store data processed in the transmission. Buffer for receiving / storage
=========================================================== ===============
0x1 Router will load the mini ios software and enter BOOT mode.
interface fastethernet 0/1 enter fa0 / 1 interface
An ATM network configured with a ring of LAN . Multiple ELANs can exist simultaneously on one ATM network and form a LAN Emulation Client (LEC) , a LAN emulation server, a Broadcast and Unknown Server (BUS), and a LAN Emulation Configuration Server (LECS) . ELAN is defined by the LANE specification. See LANE , LEG , LEGS, and LES .
Disable returns from privileged mode to user mode
Show sessions show the current outgoing TELNET session
=========================================================== ===============
CDVT call delay variation tolerance (Cell Delay Variation Tolerance) ATM network for communications
The name of the Cisco Fusion Cisco Internetwork architecture on which Cisco IOS completes operations. design
Session layer : Differentiate data from different applications . The operating system works on this layer of DATA
CDP Cisco Discovery Protocol (Cisco Discovery Protocol) Cisco proprietary protocol, used to tell the neighbor
Protocol, which holds a wide range of file types and is defined in RFC 959 , see TFTP .
Encapsulation PPP enables PPP on the interface
ROM: Rom monitor is a lower-level os system than Mini IOS , similar to BIOS Mini IOS (2500 serial
A method of maintaining framing on an interface (T-3 or E-3 circuit ) . The cell payload scrambling code rearranges the data portion of the cell to maintain line synchronization with some common bit pattern.
End exit port configuration device
OSPF only supports IP network environments and only supports equivalent load balancing.
Binding ( binding ) in LAN configuration on a network layer protocol to use some type of frame
Hostname configures the host local ID
BGP peers (BGP peers ) See BGP neighbors .
1. Standard Access Control List 1-99, 1300-1999 2. Extended Access Control List 100-199, 2000-2699
UTR Data Terminal Ready (Data Terminal Ready) ----- an activated with DCE communication
Router rip selection rip as the routing protocol
B(config)#inte s 1
Fast switching ( fast switching ) that utilizes a route cache to speed up packet switching through a router
Autoreconfiguration ( automatic reconfiguration ) token ring domain failure of a process performed by the node,
An octet divided into four points, followed by a forward slash and the number of the masked bit ( abbreviation of the subnet symbol ) . See
The twisted pair transmission distance is 100 meters .
DLSw Data Link Switching (Data Link Switching) IBM in 1992 Exploitation AC data link
Bypass relay ( bypass relay ) enables an interface of the token ring to be closed and effectively detached from the ring
Show sessions to view " I " telnet outgoing sessions
Note :
The client's local broadcast request is changed by unicasting the service to the server.ATCP AppleTalk control program (the AppleTalk Control Program) : establishing and configuring AppleTalk over
CBR constant bit rate ----- ATM forum created for use in ATM networks
Medium is classified by channel with a bandwidth greater than 4 kHz ( typical voice level ) . It uses simulation in LAN technology
Three forwarding modes of the switch :
EGPs: External Gateway Routing Protocol , Maintaining Routes between Autonomous Systems
The power is erased and reprogrammed. Play EPROM and PROM .
Disconnect * Forced interruption of "telnet out " session
Basic Management Setup ( basic management established ) Cisco routers to establish mode. only
Passive-interface configures the corresponding interface to not send any notifications
No port is activated with the no shutdown command
Datagram ( datagram ) as a network layer unit without the need to pre-establish virtual circuits and transmit them on the medium
Interface s 1 encapsulation frame-relay
Data rate between 622Mb/s and higher. See BRI , ISDN, and PRI .
=========================================================== ===============
Physical layer :
designated port ( designated port ) and the Spanning Tree Protocol (STP) used together to specify the forwarding port. If
AppleShare and Mac OS file sharing allows users to share files and applications on the server.
switchport access vlan 10 Add this port to 10 VLAN in .
10Mbps 100
BRI Basic Rate Interface (Basic Rate Interface) facilitate cross-circuit between video, data and voice
An interface processor used by the device to provide two lOOMb/s lOOBaseT ports.
broadcast storm ( broadcasting storm ) on the network an unwelcome event, it turned on by any number of broadcast
DDP Datagram Delivery Protocol (Datagram Delivery Protocol) for the AppleTalk protocol as Group
Access layer : Provides network access points , and the corresponding device ports are relatively dense . Main devices : switches , hubs .
vlan 10 name cisco create a named CISCO 's 10 Hao VLAN vlan 20 create a system of self-named 20 Hao VLAN
Address mapping .
More details are configured. Allow multi-protocol support and interface configuration.
bridging loop ( bridging loops ) bridged network, to a network if there is more than one link and STP
The law finds a word. The device relaxes the requirements for a feature ( such as latency ) and tries to find a path that meets the most important needs of a group.
the alignmentError ( alignment error ) Ethernet The error occurring in the network, the received frame in which the additional
1.0.0.0 2.0.0.0 3.0.0.0 4.0.0.0
The line is damaged , the interface does not have any connection cable. Serial1 is up, line protocol is down
NextHopIP: Next hop IP
The name of the Cisco Fusion Cisco Internetwork architecture on which Cisco IOS completes operations. design
Using private IP addresses host , you can not directly access the public network (Internet) private IP public network router will not appear in the routing table .
CER cell error ratio (cell error ratio) ATM cell, a transmission error within a certain time and
Interface s 1.??? point-to-point enables a peer -to- peer subinterface . ??? is the interface number . ip add 10.1.1.1 255.255.255.0 configures the ip for the subinterface
The switch will first cache the frame source address.
show ip eigrp topology view EIGRP topology database ( table )
Endpoint ATM (ATM endpoint ) beginning or end of an ATM network is connected. ATM endpoints include
Packaging method. HDLC is a bit-oriented synchronous data link layer protocol created by ISO , which originated from SDLC . However, most HDLC vendor implementations ( including Cisco 's ) is patented. See SDLC .
accounting ( statistics ) ----- AAA one of the three components. Statistics provide auditing and recording skills for security models
A LAN standard that can run at speeds up to 200 Mb/s and use token transfer media access technology on fiber optic cable. For redundancy, a double loop structure can be used.
expedited delivery ( accelerated delivery ) may be the same or other layers of protocol of a different network device in
The credibility value of the source. The smaller the value, the higher the level of constitutionality
Bandwith on demand (BoD , bandwidth on demand ) This feature allows an additional B channel to be used for
outside interface address is unknown , how do PAT configuration commands
Port Auxiliary ( auxiliary port ) the Cisco console port on the router backplane, which allows the call routing
Line : PPP, HDLC, SLIP
classful routing ( hierarchical routing ) does not transmit the subnet mask information when sending routing update routing
Area ( Area -----) rather than physical segment of a set of logical ( based CLNS , DECnet , or OSPF) and their attached devices. Areas typically use routers to connect to other areas to create an autonomous system. See autonomous system .
CER cell error ratio (cell error ratio) ATM cell, a transmission error within a certain time and
" The main explanation is D , E vocabulary beginning.
RA:
administrative weight ( administrative weights ) value for a given network administrator specified hierarchical network links.
Vtp server configures this switch to enable pruning for server mode [server|client |transparent] vtp pruning
Packet .
Communication between two ATM service users ( such as ATMM processes ) . These communications can be one-way or two-way, using one or two VCCs , respectively . See ATM layer and ATMM .
ARA AppleTalk Remote Access (AppleTalk Remote Access) is built for Macintosh users
nvRam : Startup-config startup configuration file , or user profile
PAP: Two handshakes , the password is transmitted in clear text.
Cable Crossover ( crossover cable ) is connected to the switch switches, host-to-host, hub to hub
Segment, even the port field in the transport layer header filters the IP address table of the network
AAL2 ATM Adaptation Layer ----- ITU-T 2 recommendations four AAL one , to support variable bit rate connection-oriented traffic, such as voice traffic see AAL
1. Bandwidth 2. Delay 3. Reliability 4. Load 5. MTU
Interface serial 0
Media type : twisted pair , coaxial cable , fiber
Frame-relay lmi-type cisco frame-relay intf-type dce
Router igrp as number is the autonomous system number ( autonomous domain ) network main class network number ABC number debug ip igrp events debug igrp related events
Enable password
Layer Access ( Access Stratum ) ----- the Cisco three-layer hierarchical model. The access layer allows users to access the Internet.
FECN forward explicit explicit notification (Forward Explicit Congestion Notification) by Frame Relay Network
The program accepts the data and brings it into the 48- byte payload segment of the ATM layer . CS and SAR are the two sublayers of AAL . Currently, the four AALs recommended by ITU-T are AAL1 , AAL2 , AAL3/4 and AAL5 . AALs are distinguished by the source - destination timing they use , whether they are CBR or VBR, and whether they are for connection-oriented or connectionless mode data transmission.