Switch
Switch
By : Dahy Mansour
LinkedIn
slidesdocs.com
01 02 03
❑What is Switch ?
▪ A switch is a network device that connects multiple devices (like computers, printers, servers) within a (LAN).
▪ It operates at the Data Link layer (Layer 2) of the OSI model.
▪ using MAC addresses to forward data frames directly between devices within the same network.
❑What is Switching ?
▪ Switching in networking is the process of directing data between devices within the same(LAN).
▪ It involves using switches that operate at the Data Link layer (Layer 2) of the OSI model , using MAC addresses
01
❑ What is Mac Address ?
▪ MAC (Media Access Control) MAC ID
▪ Using in Data Link Layer (2) 00.1A.3F.F1.4C.C6
▪ Physical address 00 1A 3F F1 4C C6
▪ Write hexadecimal 0-9,A-F
▪ Unique in World .
▪ 6 Octets = 6*8= 46 bits
▪ Burned-in address in NIC (Network Interface Card)
IP Internet Protocol MAC Media Access Control
▪ Logical Address ▪ Physical Address
▪ Using Layer 3 Network ▪ Using Layer 2 Data Link
▪ 4 Octets = 4*8 = 32 bits ▪ 6 Octets = 6*8 = 48 bits
▪ Decimal ▪ Hexadecimal
▪ Using in Router ▪ Using in Switch
▪ EX :- 192.168.1.1 ▪ EX : - 00.F1.3D.4C.23.FF
01
02
طرق إرسال البيانات في داخل الشبكات ❑ Methods of Sending Data in the Network
❖ Unicast One To One يعني جهاز واحد يبعت لجهاز واحد فقط في الشبكة
❖ Multicast One To Group يعني جهاز واحد يبعت لمجموعة أجهزة في الشبكة
❖ Broadcast One to All يعني جهاز واحد يبعت لجميع األجهزة في الشبكة Unicast
v
Broadcast
Multicast
02
❑ اوجد عدد نطاق البث Broadcast Domainوعدد مجاالت التصادم Collision Domainفي الشكل التالي ؟
03
Cables
❑ Console Cable يسـتخدم بشـكل أساسـي ف ادارة أجهزة الشبكات
❑ Crossover Cables يسـتخدم بشـكل أساسـي لتوصيـل جهازيـن مـن نفـس النـوع مثـل راوتـر مـع راوتـر
❑ Straight Cables يسـتخدم بشـكل أساسـي لتوصيـل جهازيـن مختلفين مثل حاسوب وراوتر
❑ Serial Cables يُستخدم بشكل أساسي لربط أجهزة الشبكات مثل ال راوترات مع بعضها البعض
01
Console mode>>
01
❖ Switch modes:
❑ To switch from Console mode to Privileged Mode type the command: enable
>>>>
❑To switch from Privileged Mode to Global Configuration Mode type the
command: configure terminal
01
Hostname
❑ To change the switch name type the command: hostname...#the new name
Ex: Change the name from Default to Smart
❑ To give a password for Privileged Mode type the command: enable password...#
new password
EX: Give password 1111 Privileged Mode
01
Step2>>>
Step3>>>
Step4>>>
01
Task1
VLAN
❑ What is VLANs?
1.VLAN :Virtual Local Area Network
2. A VLAN is a virtual network within a local area network (LAN)
used to divide a large network into smaller logical networks.
3.Devices in the same VLAN communicate as if they were in a separate network
even if they are connected to different switches.
1. Access Port:
▪ It is a port on the switch designated for only one VLAN.
▪ Devices connected to the Access Port follow the VLAN assigned to it.
2. Trunk Port:
▪ It is a port on the switch that passes data from more than one VLAN at the
same time.
▪ The data coming out of the trunk port will be marked with a tag to distinguish
each VLAN from the other.
▪ the Trunk Port is used between switches or between the switch and the router
❑ To activate port access:
1. Specify the port with the command: interface...#port name
2. switchport mode access
ر
Switches علي جميعVLANS يجب انشاء جميعSwitch واكتر منVLAN يف حالة وجود اكت من:ملحوظة
Switch(config)#vlan 10 LAB 1
Switch(config-VLAN)#exit
Switch(config)#interface f0/1
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access VLAN 10
Switch(config-if)#exit
Switch(config)#interface f0/2
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access VLAN 10
Switch(config)#vlan 20
Switch(config- VLAN)#exit
Switch(config)#interface f0/3
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access VLAN 20
Switch(config-if)#exit
Switch(config)#interface f0/4
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access VLAN 20
LAB 2
❑ Configuration Switch1:
Switch1(config)#vlan 10
Switch1(config- VLAN)#vlan 20
Switch1(config)#interface f0/1
Switch1(config-if)#switchport mode access
Switch1(config-if)#switchport access VLAN 10
Switch1(config-if)#interface f0/2
Switch1(config-if)#switchport mode access
Switch1(config-if)#switchport access VLAN 20
Switch1(config-if)#interface f0/3
Switch1(config-if)#switchport mode trunk
❑ Configuration Switch2:
Switch2(config)#vlan 10
Switch2(config- VLAN)#vlan 20
Switch2(config)#interface f0/1
Switch2(config-if)#switchport mode access
Switch2(config-if)#switchport access VLAN 10
Switch2(config-if)#interface f0/2
Switch2(config-if)#switchport mode access
Switch2(config-if)#switchport access VLAN 20
Switch2(config-if)#interface f0/3
Switch2(config-if)#switchport mode trunk
Task 2
port-security
❑Someone may connect to our network without our knowledge and thus be able to
access and exploit the resources of this network.
قد يقوم أحد االشخاص باالتصال بشبكتنا دون علم منا وبذلك يستطيع الوصول لموارد هذه الشبكة واستغاللها
❑He can connect his computer to a branch port on one of the switch devices in
our network
حيث يمكن ان يقوم بتوصيل جهازه الكمبيوتر الخاص به الي منفذ فارع في احد اجهزة السويتش في شبكتنا
❑Or he can remove one of the devices connected to the switch to connect his
device if he does not find an empty port
او يمكنه نزع احد االجهزة المتصلة بجهاز السويتش ليقوم بتوصيل جهازه اذا لما يجد منفذ فارغ
❑ Action types:
❖ Protection: Blocks data from unauthorized MAC without notifications.
❖ Restriction: Same protection but adds alerts (logs).
❖ Shutdown: Port is locked (Err-disabled)
✓ interface range from f0/... to f0/... >>> لتحديد عدد بورتات مره واحدة
✓ Show port-security >>>لعرض معلومات عن خيارات االمن
❑ Steps to apply Port Security on Switch:
لتفعيل عملية التمرير او التوجيه داخل جهاز متعدد الطبقات لكي يتمكن من تمرير البيانات بين الشبكات
:المختلفة نكتب امر التفعيل التالي
❑ IP Routing
: محددة نستخدم االمرVLAN ال نشاء منافذ وهمية داخل جهاز متعدد الطبقات وتخصيص كل منفذ لشبكة
Configuration SVI:
1. Create VALN
2. Interface VLAN
3. Ip Address and Subnet mask
➢ LAP 1: Use SVI in the following form:
➢Configuration on SW 2:
Switch(config)#int f0/1
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access VLAN 10
Switch(config)#int f0/2
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access VLAN 20
Switch(config)#int f0/3
Switch(config-if)#switchport mode trunk
➢ Configuration SVI on SW 1 MULT:
Switch(config)#ip routing
Switch(config)#int f0/1
Switch(config-if)#switchport trunk encapsulation dot1q
Switch(config-if)#switchport mode trunk
Switch(config-if)#exit
Switch(config)# VLAN 10
Switch(config-VLAN)#exit
Switch(config)# VLAN 20
Switch(config- VLAN)#exit
Switch(config)#int VLAN 10
Switch(config-if)#ip address 10.10.10.1 255.255.255.252
Switch(config-if)#exit
Switch(config)#int VLAN 20
Switch(config-if)#ip address 20.20.20.1 255.255.255.252
THANK YOU