Category Archives: Network

Konfigurasi IOS DHCP Server

The Dynamic Host Configuration Protocol (DHCP) adalah protokol jaringan yang digunakan untuk mengkonfigurasi perangkat jaringan sehingga bisa berkomunikasi di jaringan IP. DHCP client menggunakan protokol DHCP untuk mendapatkan informasi konfigurasi, seperti alamat IP, default route dan satu atau lebih alamat server DNS dari server DHCP. DHCP client menggunakan informasi ini untuk mengkonfigurasi host-nya.

Berikut topologi sederhana untuk router DHCP

[1] Konfigurasi interface GigabitEthernet0/0 di router gateway

Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#interface GigabitEthernet0/0
Router(config-if)#ip add
Router(config-if)#ip address 10.1.1.1 255.255.255.0
Router(config-if)#no sh

Router(config-if)#
%LINK-5-CHANGED: Interface GigabitEthernet0/0, changed state to up

%LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0, changed state to up

[2] Konfigurasi DHCP pool

Router(config)#ip dhcp excluded-address 10.1.1.2 10.1.1.5
Router(config)#ip dhcp pool POOL-GW
Router(dhcp-config)#network 10.1.1.0 255.255.255.0
Router(dhcp-config)#default-router 10.1.1.1
Router(dhcp-config)#dns-server 10.1.1.88
Router(dhcp-config)#
Router(dhcp-config)#end
Router#
%SYS-5-CONFIG_I: Configured from console by console

Router#wr
Building configuration...
dhcp exclude          : ip yang tidak di share kepada host-client
ip dhcp pool POOL-GW  : nama DHCP di share kepada host-client
network               : ip yang akan di share kepada host-client
default-router        : gateway
dns-server            : DNS

[3] Cek IP konfigurasi di Laptop0

[4] Cek IP konfigurasi di Laptop1 dan lakukan ping ke Laptop0

Cheers
Andito Yugo Wicaksono

 

 

Point-to-Point Protocol (PPP)

[1] Melakukan Konfigurasi di Router Selatan

!
interface GigabitEthernet0/0
 ip address 10.20.10.1 255.255.255.0
 duplex auto
 speed auto
!
interface GigabitEthernet0/1
 no ip address
 duplex auto
 speed auto
 shutdown
!
interface GigabitEthernet0/2
 no ip address
 duplex auto
 speed auto
 shutdown
!
interface Serial0/0/0
 ip address 172.17.1.1 255.255.255.0
 encapsulation frame-relay
 frame-relay map ip 172.17.1.2 170 broadcast
 clock rate 2000000
!
interface Serial0/0/1
 no ip address
 clock rate 2000000
 shutdown
!
router eigrp 10
 network 10.0.0.0
 network 172.17.0.0
!

 

[2] Melakukan konfigurasi di Router Utara

!
interface GigabitEthernet0/0
 ip address 10.20.20.1 255.255.255.0
 duplex auto
 speed auto
!
interface GigabitEthernet0/1
 no ip address
 duplex auto
 speed auto
 shutdown
!
interface GigabitEthernet0/2
 no ip address
 duplex auto
 speed auto
 shutdown
!
interface Serial0/0/0
 ip address 172.17.1.2 255.255.255.0
 encapsulation frame-relay
 frame-relay map ip 172.17.1.1 171 broadcast
 clock rate 2000000
!
interface Serial0/0/1
 no ip address
 clock rate 2000000
 shutdown
!
router eigrp 10
 network 10.0.0.0
 network 172.17.0.0
!

 

[3] IP Segmentasi di dua Cabang

PC Cabang Selatan : 10.20.10.10/24 gw 10.20.10.1
PC Cabang Utara   : 10.20.20.10/24 gw 10.20.20.1

PC Cabang Selatan

PC Cabang Utara

 

[4] Melakukan konfigurasi di frame relay yang ada di Cloud-PT

Serial0 : Menambahkan DLCI Frame Relay yang ada di router

Serial1 : Menambahkan DLCI Frame Relay yang ada di router

Frame Relay : Menambahkan From Port –> To Port di Frame Relay

[5] Cek ping dari PC Cabang Selatan ke PC Cabang Utara

Cheers.
Andito Yugo Wicaksono

Segmentasi VLAN menggunakan router

Topology sederhana untuk menghubungkan VLAN yang berbeda dengan menggunakan 1 router dan 3 switch.

[1] Konfigurasi Router

interface GigabitEthernet0/0
 no ip address
 duplex auto
 speed auto
!
interface GigabitEthernet0/0.20
 encapsulation dot1Q 20
 ip address 10.0.20.1 255.255.255.0
!
interface GigabitEthernet0/0.60
 encapsulation dot1Q 60
 ip address 10.0.60.1 255.255.255.0
!
interface GigabitEthernet0/0.90
 encapsulation dot1Q 90
 ip address 10.0.90.1 255.255.255.0
!
interface GigabitEthernet0/1
 no ip address
 duplex auto
 speed auto
 shutdown
!
interface GigabitEthernet0/2
 no ip address
 duplex auto
 speed auto
 shutdown

# Setelah konfigurasi selesai lakukan no shutdown
Router(config)#interface GigabitEthernet0/0
Router(config-if)#no shutdown

[2] Konfigurasi switch lantai1
Tambahkan konfigurasi VLAN di masing – masing switch
VLAN : 20
VLAN : 60
VLAN : 90

!
interface FastEthernet0/1
 switchport mode trunk
!
interface FastEthernet0/2
 switchport access vlan 60
!
interface FastEthernet0/3
 switchport access vlan 90
!
interface FastEthernet0/10
 switchport mode trunk
!

# Konfigurasi VLAN
VLAN Name Status Ports
---- -------------------------------- --------- -------------------------------
1 default active Fa0/4, Fa0/5, Fa0/6, Fa0/7
 Fa0/8, Fa0/9, Fa0/11, Fa0/12
 Fa0/13, Fa0/14, Fa0/15, Fa0/16
 Fa0/17, Fa0/18, Fa0/19, Fa0/20
 Fa0/21, Fa0/22, Fa0/23, Fa0/24
 Gig0/1, Gig0/2
20 server active 
60 manager active Fa0/2
90 staff active Fa0/3
1002 fddi-default active 
1003 token-ring-default active 
1004 fddinet-default active 
1005 trnet-default active

[3] Konfigurasi switch lantai2

!
interface FastEthernet0/1
 switchport mode trunk
!
interface FastEthernet0/2
 switchport access vlan 60
!
interface FastEthernet0/3
 switchport access vlan 90
!
interface FastEthernet0/4
 switchport mode trunk
!

# Konfigurasi VLAN
VLAN Name Status Ports
---- -------------------------------- --------- -------------------------------
1 default active Fa0/5, Fa0/6, Fa0/7, Fa0/8
 Fa0/9, Fa0/10, Fa0/11, Fa0/12
 Fa0/13, Fa0/14, Fa0/15, Fa0/16
 Fa0/17, Fa0/18, Fa0/19, Fa0/20
 Fa0/21, Fa0/22, Fa0/23, Fa0/24
 Gig0/1, Gig0/2
20 server active 
60 staff active Fa0/2
90 manager active Fa0/3
1002 fddi-default active 
1003 token-ring-default active 
1004 fddinet-default active 
1005 trnet-default active

[3] Konfigurasi switch lantai3

!
interface FastEthernet0/1
 switchport mode trunk
!
interface FastEthernet0/2
 switchport access vlan 20
!

# Konfigurasi VLAN
VLAN Name Status Ports
---- -------------------------------- --------- -------------------------------
1 default active Fa0/3, Fa0/4, Fa0/5, Fa0/6
 Fa0/7, Fa0/8, Fa0/9, Fa0/10
 Fa0/11, Fa0/12, Fa0/13, Fa0/14
 Fa0/15, Fa0/16, Fa0/17, Fa0/18
 Fa0/19, Fa0/20, Fa0/21, Fa0/22
 Fa0/23, Fa0/24, Gig0/1, Gig0/2
20 server active Fa0/2
60 staff active 
90 manager active 
1002 fddi-default active 
1003 token-ring-default active 
1004 fddinet-default active 
1005 trnet-default active

[4] Segmentasi IP per Lantai

Lantai 1 :
PC 1 : 10.0.60.10/24 gw 10.0.60.1
PC 2 : 10.0.90.10/24 gw 10.0.90.1

Lantai 2 :
PC 1 : 10.0.60.20/24 gw 10.0.60.1
PC 2 : 10.0.90.20/24 gw 10.0.90.1
Lantai 3 :
Server : 10.0.20.10/24 gw 10.0.20.

 

 

Konfigurasi VLAN di Switch Cisco

Untuk pembahasan konfigurasi VLAN ini, saya akan menggunakan topology yang cukup sederhana sebagai contoh. Topology di atas terdiri dari satu Switch yang mempunyai 4 Interface FastEthernet dan mempunyai 3 vlan yang berbeda.

Sebagai contoh pembagian acces vlan menjadi VLAN 10, VLAN 20, dan VLAN 30 yang di bagi untuk 4 PC dimana 2 PC akan menggunakan segmentasi VLAN 30.

Untuk menambahkan konfigurasi VLAN pada switch bisa menggunakan command seperti di bawah ini :

lantai-2(config)#vlan 10
lantai-2(config-vlan)#name operator
lantai-2(config-vlan)#exit
lantai-2(config)#vlan 20
lantai-2(config-vlan)#name office
lantai-2(config-vlan)#exit
lantai-2(config)#vlan 30
lantai-2(config-vlan)#name telecommunication
lantai-2(config-vlan)#exit

 

Konfigurasi Interface FastEthernet

!
interface FastEthernet0/1
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/2
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/3
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/4
switchport access vlan 30
switchport mode access
!

 

Setelah selesai lalu cek vlan brief

lantai-2#sh vlan brief
VLAN Name Status Ports
---- -------------------------------- --------- -------------------------------
1 default active Fa0/5, Fa0/6, Fa0/7, Fa0/8
Fa0/9, Fa0/10, Fa0/11, Fa0/12
Fa0/13, Fa0/14, Fa0/15, Fa0/16
Fa0/17, Fa0/18, Fa0/19, Fa0/20
Fa0/21, Fa0/22, Fa0/23, Fa0/24
10 operator active Fa0/1
20 office active Fa0/2
30 telecommunication active Fa0/3, Fa0/4
1002 fddi-default active
1003 token-ring-default active
1004 fddinet-default active
1005 trnet-default active

 

Berikan IP VLAN ke masing – masing PC

PC 1 : 10.0.10.10/24
PC 2 : 10.0.20.10/24
PC 3 : 10.0.30.10/24
PC 4 : 10.0.30.30/24

 

Lakukan cek ping antara PC 3 ke PC 4 yang merupakan satu segmentasi

Untuk ping dari PC 3 ke PC 1 tidak dapat melakukan ping dikarenakan mempunyai segmentasi VLAN yang berbeda

Cheers.
Andito Yugo Wicaksono

Konfigurasi dan troubleshoot RIP version 2

Berikut gambar topology yang digunakan untuk RIPv2
selection_045

1. Konfigurasi untuk Router 1 (R1)
Building configuration...
Current configuration : 1039 bytes
!
version 15.1
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname Router
!
!
ip cef
no ipv6 cef
!
!
!
!
license udi pid CISCO1941/K9 sn FTX15249NF9
!
!
spanning-tree mode pvst
!
!
interface Loopback150
ip address 10.20.150.1 255.255.255.224
!
interface Loopback151
ip address 10.20.151.1 255.255.255.192
!
interface GigabitEthernet0/0
ip address 172.1.20.1 255.255.255.0
duplex auto
speed auto
!
interface GigabitEthernet0/1
no ip address
duplex auto
speed auto
shutdown
!
interface Serial0/0/0
ip address 180.24.0.1 255.255.255.252
!
interface Serial0/0/1
no ip address
clock rate 2000000
shutdown
!
interface Vlan1
no ip address
shutdown
!
router rip
version 2
passive-interface Loopback150
passive-interface Loopback151
network 10.0.0.0
network 172.1.0.0
network 180.24.0.0
no auto-summary
!
ip classless
!
ip flow-export version 9
!
!
line con 0
!
line aux 0
!
line vty 0 4
login
!
!
!
end

2. Konfigurasi untuk Router 2 (R2)
Building configuration...
Current configuration : 848 bytes
!
version 15.1
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname Router
!
!
ip cef
no ipv6 cef
!
!
license udi pid CISCO1941/K9 sn FTX1524XCGF
!
!
!
spanning-tree mode pvst
!
!
interface GigabitEthernet0/0
ip address 180.24.2.2 255.255.255.248
duplex auto
speed auto
!
interface GigabitEthernet0/1
no ip address
duplex auto
speed auto
shutdown
!
interface Serial0/0/0
ip address 180.24.0.2 255.255.255.252
clock rate 2000000
!
interface Serial0/0/1
ip address 180.24.1.1 255.255.255.248
clock rate 2000000
!
interface Vlan1
no ip address
shutdown
!
router rip
version 2
network 180.24.0.0
no auto-summary
!
ip classless
!
ip flow-export version 9
!
!
line con 0
!
line aux 0
!
line vty 0 4
login
!
!
!
end

3. Konfigurasi untuk Router 3 (R3)
Building configuration...
Current configuration : 1053 bytes
!
version 15.1
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname Router
!
!
!
ip cef
no ipv6 cef
!
!
license udi pid CISCO1941/K9 sn FTX1524SV61
!
!
!
spanning-tree mode pvst
!
!
interface Loopback150
ip address 10.40.150.1 255.255.255.248
!
interface Loopback151
ip address 10.40.151.1 255.255.255.128
!
interface GigabitEthernet0/0
ip address 180.24.2.3 255.255.255.248
duplex auto
speed auto
!
interface GigabitEthernet0/1
ip address 172.1.40.1 255.255.255.0
duplex auto
speed auto
!
interface Serial0/0/0
ip address 180.24.1.3 255.255.255.248
!
interface Serial0/0/1
no ip address
clock rate 2000000
shutdown
!
interface Vlan1
no ip address
shutdown
!
router rip
version 2
passive-interface Loopback150
passive-interface Loopback151
network 10.0.0.0
network 172.1.0.0
network 180.24.0.0
no auto-summary
!
ip classless
!
ip flow-export version 9
!
!
line con 0
!
line aux 0
!
line vty 0 4
login
!
!
!
end

Konfigurasi IPv4 Static

Static routing adalah perangkat router yang memiliki tabel routing statik dan di konfigurasi secara manual.
Di bawah ini konfigurasi IPv4 Static menggunakan cisco-packet-tracer :
Selection_006Di bawah ini adalah addresing table untuk konfigurasi topology di atas.

Device Interface IPv4 Address Subnet Mask Default Gateway
LT1 G0/0 172.31.1.1 255.255.255.128
S0/0/0 172.31.1.194 255.255.255.252
LT2 G0/0 172.31.0.1 255.255.255.0
S0/0/0 172.31.1.193 255.255.255.252
S0/0/1 172.31.1.197 255.255.255.252
LT3 G0/0 172.31.1.129 255.255.255.192
S0/0/1 172.31.1.198 255.255.255.252
PC1 Fa 172.31.1.100 255.255.255.128 172.31.1.1
PC2 Fa 172.31.0.100 255.255.255.0 172.31.0.1
PC3 Fa 172.31.1.190 255.255.255.192 172.31.1.129

 

1. Router LT1
Konfigurasi untuk router LT1

Building configuration...

Current configuration : 1016 bytes
!
version 12.2
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname LT1
!
!
!
!
!
!
!
!
no ip cef
no ipv6 cef
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
interface FastEthernet0/0
no ip address
duplex auto
speed auto
shutdown
!
interface FastEthernet1/0
no ip address
duplex auto
speed auto
shutdown
!
interface Serial2/0
ip address 172.31.1.194 255.255.255.252
clock rate 2000000
!
interface Serial3/0
no ip address
clock rate 2000000
shutdown
!
interface FastEthernet4/0
no ip address
shutdown
!
interface FastEthernet5/0
no ip address
shutdown
!
interface GigabitEthernet6/0
ip address 172.31.1.1 255.255.255.128
duplex auto
speed auto
!
interface GigabitEthernet7/0
no ip address
duplex auto
speed auto
shutdown
!
ip classless
ip route 172.31.0.0 255.255.255.0 172.31.1.192
ip route 172.31.1.128 255.255.255.192 172.31.1.192
!
ip flow-export version 9
!
!
!
!
!
!
!
line con 0
!
line aux 0
!
line vty 0 4
login
!
!
!
end

 

 2. LT2
Konfigurasi untuk router LT2

Building configuration...

Current configuration : 992 bytes
!
version 12.2
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname LT2
!
!
!
!
!
!
!
!
no ip cef
no ipv6 cef
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
interface FastEthernet0/0
no ip address
duplex auto
speed auto
shutdown
!
interface FastEthernet1/0
no ip address
duplex auto
speed auto
shutdown
!
interface Serial2/0
ip address 172.31.1.193 255.255.255.252
!
interface Serial3/0
ip address 172.31.1.197 255.255.255.252
!
interface FastEthernet4/0
no ip address
shutdown
!
interface FastEthernet5/0
no ip address
shutdown
!
interface GigabitEthernet6/0
ip address 172.31.0.1 255.255.255.0
duplex auto
speed auto
!
interface GigabitEthernet7/0
no ip address
duplex auto
speed auto
shutdown
!
ip classless
ip route 172.31.1.0 255.255.255.128 172.31.1.192
ip route 172.31.1.128 255.255.255.192 172.31.1.196
!
ip flow-export version 9
!
!
!
!
!
!
!
line con 0
!
line aux 0
!
line vty 0 4
login
!
!
!
end

 

3. LT3
Konfigurasi untuk router LT3

Building configuration...

Current configuration : 1016 bytes
!
version 12.2
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname LT3
!
!
!
!
!
!
!
!
no ip cef
no ipv6 cef
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
interface FastEthernet0/0
no ip address
duplex auto
speed auto
shutdown
!
interface FastEthernet1/0
no ip address
duplex auto
speed auto
shutdown
!
interface Serial2/0
ip address 172.31.1.198 255.255.255.252
clock rate 2000000
!
interface Serial3/0
no ip address
clock rate 2000000
shutdown
!
interface FastEthernet4/0
no ip address
shutdown
!
interface FastEthernet5/0
no ip address
shutdown
!
interface GigabitEthernet6/0
ip address 172.31.1.129 255.255.255.192
duplex auto
speed auto
!
interface GigabitEthernet7/0
no ip address
duplex auto
speed auto
shutdown
!
ip classless
ip route 172.31.1.0 255.255.255.128 172.31.1.196
ip route 172.31.0.0 255.255.255.0 172.31.1.196
!
ip flow-export version 9
!
!
!
!
!
!
!
line con 0
!
line aux 0
!
line vty 0 4
login
!
!
!
end

 

Konfigurasi Clock “Jam” di Cisco Secure Access Control System

— Untuk mengatur jam di dalam system ACS bisa menggunakan 2 cara, yaitu dengan ntp server atau secara manual. Untuk konfigurasi system clock dengan manual dengan command seperti ini : clock { set } [ month day hh:min:ss yyyy ].

Di bawah ini adalah Deskripsi Syntax nya :
set : Sets the system clock.
month : Current month of the year by name. Up to three alphabetic characters. For example, Jan for January.
day : Current day (by date) of the month. Value = 0 to 31. Up to two numbers.
hh:mm:ss : Current time in hours (24-hour format), minutes, and seconds.

Contoh untuk konfigurasi nya :
acs/admin# clock set Jan 7 15:17:00 2016
Clock was modified. You must restart ACS.
Do you want to restart ACS now? (yes/no) yes
Stopping ACS ……………..
Starting ACS ………………….
acs/admin#

Untuk melihat jam yang sudah di konfig
acs/admin# show clock
Thu Jan 7 15:17:00 UTC 2016
acs/admin#

Melihat timezone
acs/admin# show timezone
UTC
acs/admin#

Melihat timezone
acs/admin# show timezones
PST8PDT
Hongkong
Etc/GMT-7
Etc/GMT-12
Etc/GMT-4
Etc/GMT-13
Etc/GMT-11
Etc/GMT-1
Etc/GMT+5
Etc/GMT-14
Etc/GMT+11
Etc/GMT+6
Etc/Zulu
Etc/GMT+7
Etc/Universal
Etc/GMT-2
Etc/GMT+10
Etc/GMT-8
Etc/GMT+8
Etc/GMT+1
Etc/GMT0
Etc/GMT+9
Etc/GMT+3
Etc/GMT-3
Etc/GMT
Etc/GMT-5
Etc/GMT-0
Etc/GMT-6
Etc/GMT+4
Etc/GMT-9
Etc/GMT+12
–More– (Press Enter or Spacebar)

Mengubah timezone
acs/admin(config)# clock timezone EST
Time zone was modified. You must restart ACS.
Do you want to restart ACS now? (yes/no)
Stopping ACS ……………..
Starting ACS ………………….

acs/admin(config)# exit
acs/admin# show timezone
EST
acs/admin#

— Untuk ntp server konfigurasinya sebagai berikut :
ntp server { ip-address | hostname } [ ip-address | hostname ]
ip-address | hostname : IP address or hostname of the server providing the clock synchronization. Arguments are limited to 255 alphanumeric characters.

acs/admin(config)# ntp server 10.1.187.2
NTP Server was modified. You must restart ACS.
Do you want to restart ACS now? (yes/no) yes
Stopping ACS ………………….
Starting ACS ………………….

To verify that ACS processes are running, use the
‘show application status acs’ command.
acs/admin(config)#