Sign In
Upload
Manuals
Brands
Cisco Manuals
Network Router
7609-S
Cisco 7609-S Manuals
Manuals and User Guides for Cisco 7609-S. We have
5
Cisco 7609-S manuals available for free PDF download: Configuration Manual, Installation Manual, User Manual
Cisco 7609-S Configuration Manual (1011 pages)
IOS Software Configuration Guide
Brand:
Cisco
| Category:
Network Router
| Size: 12.17 MB
Table of Contents
Table of Contents
3
Related Documentation
32
Obtaining Documentation and Submitting a Service Request
34
Product Overview
35
Supported Hardware and Software
35
User Interfaces
35
Configuring Embedded Ciscoview Support
36
Installing and Configuring Embedded Ciscoview
36
Understanding Embedded Ciscoview
36
Displaying Embedded Ciscoview Information
37
Software Features Supported in Hardware by the Pfc and Dfc
37
Command-Line Interfaces
41
Accessing the Cli
42
Accessing the Cli through Telnet
42
Accessing the Cli through the Eia/Tia-232 Console Interface
42
Performing Command Line Processing
43
Performing History Substitution
44
Cisco Ios Command Modes
44
Displaying a List of Cisco Ios Commands and Syntax
45
Securing the Cli
46
Rom-Monitor Command-Line Interface
47
Configuring the Router for the First Time
49
Configuring the Router
50
Default Configuration
50
Using the Setup Facility or the Setup Command
50
Configuring the Global Parameters
51
Cisco IOS Configuration Fundamentals Configuration Command Reference, Release 12.2, at
55
Http://Www.cisco.com/En/Us/Docs/Ios/Fundamentals/Command/Reference/Cf_Book.html
55
This URL
55
Configuring the Router
55
Configuring Interfaces
56
Checking the Running Configuration before Saving
58
Using Configuration Mode
58
Reviewing the Configuration
59
Saving the Running Configuration Settings
59
Configuring a Default Gateway
60
Configuring a Static Route
60
Configuring a BOOTP Server
62
Protecting Access to Privileged EXEC Commands
63
Setting or Changing a Static Enable Password
63
Using the Enable Password and Enable Secret Commands
63
Setting or Changing a Line Password
64
Setting TACACS+ Password Protection for Privileged EXEC Mode
64
Configuring Multiple Privilege Levels
65
Encrypting Passwords
65
Recovering a Lost Enable Password
65
Recovering a Lost Enable Password
67
Modifying the Supervisor Engine Startup Configuration
68
Understanding the Supervisor Engine Boot Configuration
68
Configuring the Software Configuration Register
69
Modifying the Supervisor Engine Startup Configuration
71
Specifying the Startup System Image
72
Understanding Flash Memory
72
CONFIG_FILE Environment Variable
73
Controlling Environment Variables
74
Documents Listed on this Page
74
Configuring a Supervisor Engine 720
75
Using the Bootflash or Bootdisk on a Supervisor Engine 720
76
Using the Slots on a Supervisor Engine 720
76
Configuring Supervisor Engine 720 Ports
76
Configuring and Monitoring the Switch Fabric Functionality
77
Understanding How the Switch Fabric Functionality Works
77
Configuring the Switch Fabric Functionality
78
Monitoring the Switch Fabric Functionality
78
Http://Www.cisco.com/En/Us/Products/Hw/Routers/Ps368/Tsd_Products_Support_Series_Home.html
81
Configuring a Supervisor Engine 32
83
Flash Memory on a Supervisor Engine
83
Supervisor Engine 32 Ports
84
Configuring the Supervisor Engine 2 and the Switch Fabric Module
85
Using the Slots on a Supervisor Engine
85
Understanding How the Switch Fabric Module Works
86
Forwarding Decisions for Layer 3-Switched Traffic
86
Switch Fabric Module Overview
86
Switch Fabric Module Slots
86
Switch Fabric Redundancy
86
Switching Modes
87
Configuring the Switch Fabric Module
87
Configuring Fabric-Required Mode
88
Configuring the Switching Mode
88
Configuring an LCD Message
89
Monitoring the Switch Fabric Module
89
Displaying Fabric Channel Switching Modes
91
Displaying the Module Information
91
Displaying the Switch Fabric Module Redundancy Status
91
Displaying Fabric Errors
92
Displaying the Fabric Status
92
Displaying the Fabric Utilization
92
Configuring NSF with SSO Supervisor Engine Redundancy
96
Understanding NSF with SSO Supervisor Engine Redundancy
96
NSF with SSO Supervisor Engine Redundancy Overview
96
SSO Operation
96
Cisco Express Forwarding
97
NSF Operation
97
Multicast MLS NSF with SSO
98
Routing Protocols
98
NSF Benefits and Restrictions
102
Supervisor Engine Configuration Synchronization
103
Supervisor Engine Redundancy Guidelines and Restrictions
103
Hardware Configuration Guidelines and Restrictions
104
Redundancy Configuration Guidelines and Restrictions
104
Configuration Mode Restrictions
105
NSF Configuration Tasks
105
Configuring Multicast MLS NSF with SSO
106
Configuring SSO
106
Configuring CEF NSF
107
Verifying CEF NSF
107
Verifying Multicast NSF with SSO
107
Configuring BGP NSF
108
Verifying BGP NSF
108
Configuring OSPF NSF
109
Verifying OSPF NSF
109
Configuring IS-IS NSF
110
Verifying IS-IS NSF
111
Configuring EIGRP NSF
113
Verifying EIGRP NSF
113
Synchronizing the Supervisor Engine Configurations
114
Copying Files to the Redundant Supervisor Engine
114
Configuring RPR and RPR+ Supervisor Engine Redundancy
115
Understanding RPR and RPR
116
RPR Operation
116
Supervisor Engine Redundancy Overview
116
RPR+ Operation
117
Supervisor Engine Configuration Synchronization
117
Supervisor Engine Redundancy Guidelines and Restrictions
118
Redundancy Guidelines and Restrictions
118
Hardware Configuration Guidelines and Restrictions
119
RPR+ Guidelines and Restrictions
119
Configuration Mode Restrictions
120
Configuring Supervisor Engine Redundancy
120
Configuring Redundancy
120
Displaying the Redundancy States
121
Synchronizing the Supervisor Engine Configurations
121
Performing a Fast Software Upgrade
122
Copying Files to an MSFC
123
Configuring Interfaces
126
Understanding Interface Configuration
126
Using the Interface Command
126
Configuring a Range of Interfaces
128
Defining and Using Interface-Range Macros
130
Configuring Optional Interface Features
130
Configuring Ethernet Interface Speed and Duplex Mode
131
Configuring Jumbo Frame Support
134
Configuring IEEE 802.3X Flow Control
137
Configuring the Port Debounce Timer
138
Adding a Description for an Interface
140
Understanding Online Insertion and Removal
140
Monitoring and Maintaining Interfaces
141
Clearing Counters on an Interface
141
Monitoring Interface Status
141
Resetting an Interface
142
Shutting down and Restarting an Interface
142
Checking the Cable Status Using the TDR
143
Configuring LAN Ports for Layer 2 Switching
145
Understanding How Layer 2 Switching Works
145
Understanding Layer 2 Ethernet Switching
146
Trunking Overview
147
Understanding VLAN Trunks
147
Layer 2 LAN Port Modes
148
Default Layer 2 LAN Interface Configuration
149
Layer 2 LAN Interface Configuration Guidelines and Restrictions
149
Configuring LAN Interfaces for Layer 2 Switching
150
Configuring a LAN Port for Layer 2 Switching
151
Configuring a Layer 2 Switching Port as a Trunk
152
Configuring a LAN Interface as a Layer 2 Access Port
158
Configuring a Custom IEEE 802.1Q Ethertype Field Value
159
Configuring Flex Links
161
Understanding Flex Links
161
Configuring Flex Links
162
Flex Links Configuration Guidelines and Restrictions
162
Flex Links Default Configuration
162
Configuring Flex Links
163
Monitoring Flex Links
164
Configuring Etherchannels
165
Understanding How Etherchannels Work
165
Etherchannel Feature Overview
166
Understanding How Etherchannels Are Configured
166
Understanding Load Balancing
169
Understanding Port Channel Interfaces
169
Etherchannel Feature Configuration Guidelines and Restrictions
169
Configuring Etherchannels
171
Configuring Port Channel Logical Interfaces for Layer 3 Etherchannels
171
Configuring Channel Groups
172
Configuring the Lacp System Priority and System ID
174
Configuring Etherchannel Load Balancing
175
Configuring the Etherchannel Min-Links Feature
176
Configuring VTP
177
Understanding How VTP Works
177
Understanding the VTP Domain
178
Understanding VTP Modes
178
Understanding VTP Advertisements
179
Understanding VTP Version 2
179
Understanding VTP Pruning
180
VTP Default Configuration
181
VTP Configuration Guidelines and Restrictions
181
Configuring VTP
182
Configuring the VTP Mode
182
Configuring VTP Global Parameters
182
Displaying VTP Statistics
182
Enabling Vtp Pruning
183
Configuring Vlans
189
Understanding How Vlans Work
189
Vlan Overview
190
Vlan Ranges
190
Configurable Vlan Parameters
191
Understanding Token Ring Vlans
191
Vlan Default Configuration
194
Vlan Configuration Guidelines and Restrictions
196
Vlan Configuration Options
197
Creating or Modifying an Ethernet Vlan
198
Assigning a Layer 2 Lan Interface to a Vlan
200
Configuring the Internal Vlan Allocation Policy
200
Configuring Vlan Translation
201
Mapping 802.1Q Vlans to Isl Vlans
204
Saving Vlan Information
205
Configuring Private Vlans
207
Understanding How Private Vlans Work
207
Private Vlan Domains
208
Primary, Isolated, and Community Vlans
209
Private Vlan Ports
209
Ip Addressing Scheme with Private Vlans
210
Private Vlan Port Isolation
210
Private Vlan Interaction with Other Features
211
Private Vlans Across Multiple Routers
211
Private Vlan Configuration Guidelines and Restrictions
212
Secondary and Primary Vlan Configuration
213
Limitations with Other Features
215
Private Vlan Port Configuration
215
Configuring a Vlan as a Private Vlan
217
Associating Secondary Vlans with a Primary Vlan
218
Mapping Secondary Vlans to the Layer 3 Vlan Interface of a Primary Vlan
219
Configuring a Layer 2 Interface as a Private Vlan Host Port
220
Configuring a Layer 2 Interface as a Private Vlan Promiscuous Port
221
Monitoring Private Vlans
223
Configuring Cisco Ip Phone Support
225
Understanding Cisco Ip Phone Support
225
Cisco Ip Phone Connections
226
Cisco Ip Phone Voice Traffic
226
Cisco Ip Phone Data Traffic
227
Cisco Ip Phone Power Configurations
227
Other Cisco Ip Phone Features
228
Default Cisco Ip Phone Support Configuration
229
Configuring Voice Traffic Support
230
Configuring Data Traffic Support
231
Configuring Inline Power Support
232
Configuring Ieee 802.1Q Tunneling
235
Understanding How 802.1Q Tunneling Works
235
Q Tunneling Configuration Guidelines and Restrictions
237
Configuring 802.1Q Tunneling
240
Configuring 802.1Q Tunnel Ports
240
Configuring the Router to Tag Native Vlan Traffic
240
Configuring Layer 2 Protocol Tunneling
243
Understanding How Layer 2 Protocol Tunneling Works
243
Configuring Support for Layer 2 Protocol Tunneling
244
Configuring Standard-Compliant Ieee Mst
247
Understanding Mst
247
Mst Overview
248
Ist, Cist, and Cst
249
Hop Count
252
Standard-Compliant Mst Implementation
253
Understanding Rstp
255
Interoperability with Ieee 802.1D-1998 Stp
255
Port Roles and the Active Topology
256
Rapid Convergence
257
Synchronization of Port Roles
258
Bridge Protocol Data Unit Format and Processing
259
Processing Inferior Bpdu Information
260
Processing Superior Bpdu Information
260
Topology Changes
261
Configuring Mst
261
Default Mst Configuration
262
Mst Configuration Guidelines and Restrictions
262
Specifying the Mst Region Configuration and Enabling Mst
263
Configuring the Root Bridge
265
Configuring a Secondary Root Bridge
266
Configuring Port Priority
267
Configuring Path Cost
268
Configuring the Switch Priority
269
Configuring the Hello Time
270
Configuring the Forwarding-Delay Time
271
Configuring the Transmit Hold Count
271
Configuring the Maximum-Aging Time
272
Configuring the Maximum-Hop Count
272
Specifying the Link Type to Ensure Rapid Transitions
272
Designating the Neighbor Type
273
Restarting the Protocol Migration Process
274
Displaying the Mst Configuration and Status
274
Configuring Stp and Prestandard Ieee 802.1S Mst
275
Understanding How Stp Works
276
Stp Overview
276
Understanding the Bridge ID
276
Election of the Root Bridge
278
Understanding Bridge Protocol Data Units
278
Creating the Spanning Tree Topology
279
Stp Protocol Timers
279
Stp Port States
280
Blocking State
282
Listening State
283
Learning State
284
Forwarding State
285
Disabled State
286
Stp and Ieee 802.1Q Trunks
286
Rstp Port Roles
287
Understanding How Ieee 802.1W Rstp Works
287
Ieee 802.1W Rstp Overview
287
Rstp Port States
288
Understanding How Prestandard Ieee 802.1S Mst Works
288
Ieee 802.1S Mst Overview
289
Mst-To-Pvst Interoperability
290
Common Spanning Tree
292
Mst Configuration Parameters
292
Mst Instances
292
Boundary Ports
293
Mst Regions
293
Message Age and Hop Count
294
Default Stp Configuration
295
Stp and Mst Configuration Guidelines and Restrictions
295
Configuring Stp
296
Enabling Stp
296
Enabling the Extended System ID
298
Configuring Stp Port Priority
301
Configuring Stp Port Cost
302
Configuring the Bridge Priority of a Vlan
304
Configuring the Forward-Delay Time for a Vlan
306
Configuring the Maximum Aging Time for a Vlan
306
Enabling Rapid-Pvst
307
Configuring Prestandard Ieee 802.1S Mst
307
Enabling Mst
308
Displaying Mst Configurations
309
Configuring Mst Instance Parameters
313
Configuring Mst Instance Port Parameters
314
Restarting Protocol Migration
314
Configuring Optional Stp Features
317
Understanding How Portfast Works
318
Understanding How Bpdu Guard Works
318
Understanding How Portfast Bpdu Filtering Works
318
Understanding How Uplinkfast Works
319
Understanding How Backbonefast Works
320
Understanding How Etherchannel Guard Works
322
Understanding How Root Guard Works
323
Understanding How Loop Guard Works
323
Enabling Portfast
324
Enabling Portfast Bpdu Filtering
326
Enabling Bpdu Guard
328
Enabling Uplinkfast
328
Enabling Backbonefast
329
Enabling Etherchannel Guard
330
Enabling Root Guard
330
Enabling Loop Guard
331
Configuring Layer 3 Interfaces
333
Layer 3 Interface Configuration Guidelines and Restrictions
334
Configuring Subinterfaces on Layer 3 Interfaces
334
Configuring Ipv4 Routing and Addresses
336
Configuring Ipx Routing and Network Numbers
340
Configuring Appletalk Routing, Cable Ranges, and Zones
341
Configuring Other Protocols on Layer 3 Interfaces
342
Supported Hardware
344
Understanding Ude
344
Understanding Udlr
345
Configuring Ude
345
Configuring Udlr
348
Pfc3Bxl and Pfc3B Mode Mpls Label Switching
351
Understanding Mpls
352
Understanding Pfc3Bxl and Pfc3B Mode Mpls Label Switching
352
Supported Cisco Ios Features
355
Supported Hardware Features
355
Mpls Guidelines and Restrictions
357
Pfc3Bxl and Pfc3B Mode Mpls Supported Commands
357
Configuring Mpls
358
Mpls Configuration Examples
358
Mpls Per-Label Load Balancing
358
Pfc3Bxl or Pfc3B Mode Vpn Switching
360
Pfc3Bxl or Pfc3B Mode Vpn Switching Operation
360
Configuring Mpls Vpn
361
Mpls Vpn Guidelines and Restrictions
361
Pfc3Bxl or Pfc3B Mode Mpls Vpn Supported Commands
361
Mpls Vpn Sample Configuration
362
Any Transport over Mpls
363
Atom Load Balancing
364
Eompls Guidelines and Restrictions
364
Understanding Eompls
364
Configuring Eompls
366
Configuring Ipv4 Multicast Vpn Support
375
Understanding How Mvpn Works
375
Multicast Distribution Trees
376
Multicast Routing and Forwarding and Multicast Domains
376
Mvpn Overview
376
Multicast Tunnel Interfaces
379
Hardware-Assisted Ipv4 Multicast
380
Multicast Distributed Switching Support
380
Pe Router Routing Table Support for Mvpn
380
Mvpn Configuration Guidelines and Restrictions
381
Configuring Mvpn
382
Forcing Ingress Multicast Replication Mode (Optional)
382
Configuring a Multicast Vpn Routing and Forwarding Instance
383
Sample Configuration
387
Configuring Multicast Vrf Routing
389
Configuring Interfaces for Multicast Routing to Support Mvpn
394
Sample Configurations for Mvpn
396
Mvpn Configuration with Default Mdts Only
396
Mvpn Configuration with Default and Data Mdts
398
Configuring Ip Unicast Layer 3 Switching
403
Understanding How Layer 3 Switching Works
404
Understanding Hardware Layer 3 Switching
404
Understanding Layer 3-Switched Packet Rewrite
404
Default Hardware Layer 3 Switching Configuration
406
Configuration Guidelines and Restrictions
406
Configuring Hardware Layer 3 Switching
407
Displaying Hardware Layer 3 Switching Statistics
408
Layer 3 Switching
409
Features that Support Ipv6 Multicast
410
Ipv6 Multicast Guidelines and Restrictions
410
New or Changed Ipv6 Multicast Commands
411
Configuring Ipv6 Multicast Layer 3 Switching
411
Using Show Commands to Verify Ipv6 Multicast Layer 3 Switching
411
Verifying Mfib Clients
412
Displaying the Switching Capability
413
Verifying the (*,G) Forwarding Capability
413
Verifying the Current Replication Mode
413
Verifying the Subnet Entry Support Status
413
Displaying Subnet Entries
414
Displaying the Ipv6 Multicast Summary
414
Displaying the Replication Mode Auto Detection Status
414
Displaying the Replication Mode Capabilities
414
Displaying the Fib Hardware Bridging and Drop Counts
415
Displaying the Netflow Hardware Forwarding Count
415
Displaying the Shared and Well-Known Hardware Adjacency Counters
416
Advertisement
Cisco 7609-S Configuration Manual (742 pages)
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide Using the CLI
Brand:
Cisco
| Category:
Network Router
| Size: 7.89 MB
Table of Contents
Table of Contents
3
About this Guide
27
Document Conventions
27
Related Documentation
28
Obtaining Documentation and Submitting a Service Request
29
C H a P T E R 1 Introduction to the Firewall Services Module
38
CHAPTER 1 Introduction to the Firewall Services Module1-1
38
New Features
38
Security Policy Overview
39
Permitting or Denying Traffic with Access Lists
40
Applying NAT
40
Protecting from IP Fragments
40
Using AAA for through Traffic
40
Applying Internet Filtering
40
Applying Application Inspection
41
Applying Connection Limits
41
How the Firewall Services Module Works with the Switch
41
Using the MSFC
42
Firewall Mode Overview
43
Stateful Inspection Overview
44
Security Context Overview
45
CHAPTER 2 Configuring the Switch for the Firewall Services Module2-1
47
Switch Overview
47
C H a P T E R 2 Configuring the Switch for the Firewall Services Module
48
Verifying the Module Installation
48
Assigning Vlans to the Firewall Services Module
48
VLAN Guidelines
49
Assigning Vlans to the FWSM
49
Adding Switched Virtual Interfaces to the MSFC
50
SVI Overview
51
Configuring Svis
53
Customizing the FWSM Internal Interface
54
Configuring the Switch for Failover
55
Assigning Vlans to the Secondary Firewall Services Module
55
Adding a Trunk between a Primary Switch and Secondary Switch
55
Ensuring Compatibility with Transparent Firewall Mode
55
Enabling Autostate Messaging for Rapid Link Failure Detection
55
Managing the Firewall Services Module Boot Partitions
56
Flash Memory Overview
56
Setting the Default Boot Partition
56
Resetting the FWSM or Booting from a Specific Partition
57
Chapter 3 Connecting to the Firewall Services Module and Managing the Configuration
59
Connecting to the Firewall Services Module
59
Logging in to the FWSM
59
Logging out of the FWSM
60
Managing the Configuration
61
Saving Configuration Changes
61
Saving Configuration Changes in Multiple Context Mode
61
Saving Configuration Changes in Single Context Mode
61
Copying the Startup Configuration to the Running Configuration
63
Viewing the Configuration
63
Clearing and Removing Configuration Settings
63
Creating Text Configuration Files Offline
64
Security Context Overview
65
CHAPTER 4 Configuring Security Contexts4-1
66
Security Context Overview
66
C H a P T E R 4 Configuring Security Contexts
66
Common Uses for Security Contexts
66
Context Configuration Files
66
Context Configurations
66
System Configuration
66
Admin Context Configuration
67
Unsupported Features
66
How the FWSM Classifies Packets
67
Valid Classifier Criteria
67
Invalid Classifier Criteria
68
Classification Examples
69
Sharing Interfaces between Contexts
71
NAT and Origination of Traffic
72
Sharing an Inside Interface
72
Sharing an Outside Interface
72
Management Access to Security Contexts
73
System Administrator Access
73
Context Administrator Access
74
Enabling or Disabling Multiple Context Mode
74
Backing up the Single Mode Configuration
74
Enabling Multiple Context Mode
74
Restoring Single Context Mode
75
Managing Memory for Rules
75
About Memory Partitions
76
Default Rule Allocation
76
Setting the Number of Memory Partitions
77
Changing the Memory Partition Size
78
Reallocating Rules between Features for a Specific Memory Partition
83
Configuring Resource Management
85
Classes and Class Members Overview
86
Resource Limits
86
Default Class
87
Class Members
88
Configuring a Class
88
Configuring a Security Context
91
Changing between Contexts and the System Execution Space
95
Managing Security Contexts
96
Removing a Security Context
96
Changing the Admin Context
97
Changing the Security Context URL
97
Reloading a Security Context
98
Reloading by Clearing the Configuration
98
Reloading by Removing and Readding the Context
98
Monitoring Security Contexts
99
Viewing Context Information
99
Viewing Resource Allocation
100
Viewing Resource Usage
103
Monitoring SYN Attacks in Contexts
104
Chapter 5 Configuring the Firewall Mode
107
Routed Mode Overview
107
IP Routing Support
107
How Data Moves through the FWSM in Routed Firewall Mode
108
An Inside User Visits a Web Server
108
An Outside User Visits a Web Server on the DMZ
109
An Inside User Visits a Web Server on the DMZ
110
An Outside User Attempts to Access an Inside Host
111
A DMZ User Attempts to Access an Inside Host
112
Transparent Mode Overview
113
Transparent Firewall Network
113
Bridge Groups
113
Management Interface
114
Allowing Layer 3 Traffic
114
Allowed MAC Addresses
114
Passing Traffic Not Allowed in Routed Mode
114
MAC Address Vs. Route Lookups
115
Using the Transparent Firewall in Your Network
115
Transparent Firewall Guidelines
116
Unsupported Features in Transparent Mode
117
How Data Moves through the Transparent Firewall
118
An Inside User Visits a Web Server
119
An Inside User Visits a Web Server Using NAT
120
An Outside User Visits a Web Server on the Inside Network
121
An Outside User Attempts to Access an Inside Host
122
Setting Transparent or Routed Firewall Mode
123
Chapter 6 Configuring Interface Parameters
125
Security Level Overview
125
Configuring Interfaces for Routed Firewall Mode
126
Guidelines and Limitations
126
Configuring an Interface
127
Configuring Interfaces for Transparent Firewall Mode
128
Information about Interfaces in Transparent Mode
128
Information about Bridge Groups
128
Information about Device Management
128
Guidelines and Limitations
129
Configuring Transparent Firewall Interfaces for through Traffic
130
Assigning an IP Address to a Bridge Group
130
Adding a Management Interface
131
Allowing Communication between Interfaces on the same Security Level
134
Configuring Inter-Interface Communication
134
Configuring Intra-Interface Communication
135
Turning off and Turning on Interfaces
136
Changing the Passwords
137
Changing the Login Password
137
Chapter 7 Configuring Basic Setting
138
Changing the Enable Password
138
Changing the Maintenance Software Passwords
138
Setting the Hostname
139
Setting the Domain Name
140
Setting the Prompt
140
Configuring a Login Banner
141
CHAPTER 8 Configuring IP Routing and DHCP Services
143
How Routing Behaves Within FWSM
143
Egress Interface Selection Process
143
Next Hop Selection Process
144
Configuring Static and Default Routes
144
C H a P T E R 8 Configuring IP Routing and DHCP Services
145
Configuring a Static Route
145
Configuring a Default Route
146
Monitoring a Static or Default Route
147
Defining a Route Map
147
Configuring BGP Stub Routing
148
BGP Stub Limitations
149
Configuring BGP Stub Routing
149
Monitoring BGP Stub Routing
150
Restarting the BGP Stub Routing Process
151
Configuring OSPF
151
OSPF Overview
151
Enabling OSPF
152
Redistributing Routes between OSPF Processes
153
Configuring OSPF Interface Parameters
154
Configuring OSPF Area Parameters
156
Configuring OSPF NSSA
157
Configuring a Point-To-Point, Non-Broadcast OSPF Neighbor
158
Configuring Route Summarization between OSPF Areas
159
Configuring Route Summarization When Redistributing Routes into OSPF
159
Generating a Default Route
160
Configuring Route Calculation Timers
160
Logging Neighbors Going up or down
161
Displaying OSPF Update Packet Pacing
161
Monitoring OSPF
162
Restarting the OSPF Process
163
Configuring RIP
163
RIP Overview
163
Enabling RIP
163
Configuring EIGRP
164
EIGRP Routing Overview
164
Enabling and Configuring EIGRP Routing
165
Enabling and Configuring EIGRP Stub Routing
166
Enabling EIGRP Authentication
167
Defining an EIGRP Neighbor
168
Redistributing Routes into EIGRP
168
Configuring the EIGRP Hello Interval and Hold Time
169
Disabling Automatic Route Summarization
169
Configuring Summary Aggregate Addresses
170
Disabling EIGRP Split Horizon
170
Changing the Interface Delay Value
171
Monitoring EIGRP
171
Disabling Neighbor Change and Warning Message Logging
172
Configuring Asymmetric Routing Support
172
Adding Interfaces to ASR Groups
173
Asymmetric Routing Support Example
173
Configuring Route Health Injection
174
Route Health Injection Overview
174
RHI Guidelines
175
Enabling RHI
175
Configuring DHCP
177
Configuring a DHCP Server
177
Enabling the DHCP Server
177
Configuring DHCP Options
179
Using Cisco IP Phones with a DHCP Server
180
Configuring DHCP Relay Services
181
Configuring the DHCP Relay Agent
181
DHCP Relay Overview
181
Preserving DHCP Option 82
183
Verifying the DHCP Relay Configuration
183
CHAPTER 9 Configuring Multicast Routing9-1
185
Multicast Routing Overview
185
C H a P T E R 9 Configuring Multicast Routing
186
Enabling Multicast Routing
186
Configuring IGMP Features
186
Disabling IGMP on an Interface
187
Configuring Group Membership
187
Configuring a Statically Joined Group
187
Controlling Access to Multicast Groups
188
Limiting the Number of IGMP States on an Interface
188
Modifying the Query Interval and Query Timeout
188
Changing the Query Response Time
189
Changing the IGMP Version
189
Configuring Stub Multicast Routing
189
Configuring a Static Multicast Route
190
Configuring PIM Features
190
Disabling PIM on an Interface
190
Configuring a Static Rendezvous Point Address
191
Configuring the Designated Router Priority
191
Filtering PIM Register Messages
191
Configuring PIM Message Intervals
192
For more Information about Multicast Routing
192
CHAPTER 10 Configuring Ipv610-1
193
Ipv6-Enabled Commands
193
Configuring Ipv6 on an Interface
194
Configuring a Dual IP Stack on an Interface
196
Configuring Ipv6 Duplicate Address Detection
196
Configuring Ipv6 Default and Static Routes
197
Configuring Ipv6 Access Lists
197
Configuring Ipv6 Neighbor Discovery
198
Configuring Neighbor Solicitation Messages
198
Configuring the Neighbor Reachable Time
199
Configuring the Neighbor Solicitation Message Interval
199
Configuring Router Advertisement Messages
200
Configuring the Ipv6 Prefix
201
Configuring the Router Advertisement Transmission Interval
201
Configuring the Router Lifetime Value
201
Suppressing Router Advertisement Messages
202
Configuring a Static Ipv6 Neighbor
202
Verifying the Ipv6 Configuration
202
Viewing Ipv6 Interface Settings
202
Viewing Ipv6 Routes
203
CHAPTER 11 Configuring AAA Servers and the Local Database11-1
205
AAA Overview
205
About Accounting
206
About Authentication
206
About Authorization
206
C H a P T E R 11 Configuring AAA Servers and the Local Database
206
AAA Server and Local Database Support
207
Summary of Support
207
RADIUS Server Support
208
Attribute Support
208
Authentication Methods
208
RADIUS Authorization Functions
208
TACACS+ Server Support
208
SDI Server Support
209
SDI Primary and Replica Servers
209
SDI Version Support
209
Two-Step Authentication Process
209
NT Server Support
209
Kerberos Server Support
210
LDAP Server Support
210
Local Database Support
210
Fallback Support
210
User Profiles
210
Configuring the Local Database
211
Identifying AAA Server Groups and Servers
213
CHAPTER 12 Configuring Certificates12-1
217
Public Key Cryptography
217
About Public Key Cryptography
217
C H a P T E R 12 Configuring Certificates
218
Certificate Scalability
218
About Key Pairs
218
About Trustpoints
219
About Revocation Checking
219
Certificate Configuration
219
Preparing for Certificates
220
Generating Key Pairs
220
Removing Key Pairs
221
Establishing AAA Authentication
221
Verifying Configurations for Specified Settings
222
Exporting and Importing Keypairs and Certificates
223
Exporting a Keypair and Certificate
223
Importing a Keypair and Certificate
223
Linking Certificates to a Trustpoint
225
Configuration Example: Cut-Through-Proxy Authentication
225
CHAPTER 13 Identifying Traffic with Access Lists13-1
227
Access List Overview
227
Access List Types
228
Access Control Entry Order
228
C H a P T E R 13 Identifying Traffic with Access Lists
229
Access List Implicit Deny
229
IP Addresses Used for Access Lists When You Use NAT
229
Access List Commitment
231
Maximum Number of Aces
232
Adding an Extended Access List
232
Extended Access List Overview
232
Allowing Broadcast and Multicast Traffic through the Transparent Firewall
233
Adding an Extended ACE
233
Adding an Ethertype Access List
235
Supported Ethertypes
235
Apply Access Lists in both Directions
235
Implicit Deny at the End of an Access List Does Not Affect IP or ARP Traffic
235
Using Extended and Ethertype Access Lists on the same Interface
236
Allowing MPLS
236
Adding an Ethertype ACE
236
Adding a Standard Access List
237
Simplifying Access Lists with Object Grouping
237
Adding Object Groups
238
Adding a Protocol Object Group
238
Adding a Network Object Group
239
Adding a Service Object Group
240
Adding an ICMP Type Object Group
240
Nesting Object Groups
241
Using Object Groups with an Access List
242
Displaying Object Groups
243
Removing Object Groups
243
Adding Remarks to Access Lists
244
Access List Group Optimization
244
How Access List Group Optimization Works
244
Configuring Access List Group Optimization
246
Scheduling Extended Access List Activation
250
Adding a Time Range
250
Applying the Time Range to an ACE
251
Logging Access List Activity
251
Access List Logging Overview
251
Configuring Logging for an ACE
252
Managing Deny Flows
253
Understanding Failover
255
Chapter 14 Configuring Failover
256
Failover System Requirements
256
Software Requirements
256
License Requirements
256
Failover and State Links
256
Failover Link
256
State Link
257
Intra- and Inter-Chassis Module Placement
257
Intra-Chassis Failover
257
Inter-Chassis Failover
258
Transparent Firewall Requirements
261
Active/Standby and Active/Active Failover
262
Active/Standby Failover
262
Active/Active Failover
266
Determining Which Type of Failover to Use
271
Regular and Stateful Failover
271
Regular Failover
272
Stateful Failover
272
Failover Health Monitoring
273
Unit Health Monitoring
273
Interface Monitoring
273
Rapid Link Failure Detection
274
Configuring Failover
274
Failover Configuration Limitations
275
Using Active/Standby Failover
275
Configuring Active/Standby Failover
275
Prerequisites
275
Configuring Optional Active/Standby Failover Settings
278
Using Active/Active Failover
280
Configuring Active/Active Failover
280
Prerequisites
280
Configuring Optional Active/Active Failover Settings
283
Configuring Failover Communication Authentication/Encryption
285
Verifying the Failover Configuration
285
Viewing Failover Status
285
Testing the Failover Functionality
293
Viewing Monitored Interfaces
293
Viewing the Failover Configuration
293
Controlling and Monitoring Failover
294
Forcing Failover
294
Disabling Failover
295
Disabling Configuration Synchronization
295
Restoring a Failed Unit or Failover Group
295
Monitoring Failover
296
Debug Messages
296
Failover System Log Messages
296
Snmp
296
Cisco 7609-S Installation Manual (324 pages)
7600 Series
Brand:
Cisco
| Category:
Network Router
| Size: 11.91 MB
Table of Contents
Table of Contents
3
Preface
9
Document Revision History
9
Audience
11
Organization
11
Appendix A Technical Specification
11
A P P E N D I X B Connector and Cable Specifications
11
Chapter 3 Installing the Cisco 7600 Serie Router
11
Conventions
12
Obtaining Documentation
15
Related Documentation
15
Cisco.com
16
Documentation CD-ROM
16
Documentation Feedback
16
Ordering Documentation
16
Cisco.com
17
Obtaining Technical Assistance
17
Technical Assistance Center
17
Obtaining Additional Publications and Information
18
Product Overview
21
Chapter 1 Product Overview
22
Cisco 7603 Router
23
Cisco 7603-S Router
24
Cisco 7604 Router
25
Cisco 7604 Router
26
Cisco 7606 Router
27
Cisco 7606 Router
28
Cisco 7606-S Router
31
Cisco 7609 Router
32
Cisco 7609 Router
33
Cisco 7609-S Router
34
Cisco 7613 Router
35
Bandwidth and Port Density
36
System Features
36
Bandwidth and Port Density
37
Cisco 7603 Router
37
Cisco 7603-S Router
37
Redundancy
37
System Features
37
Cisco 7604 Router
38
Component Hot Swapping
38
Cisco 7600 Series Router Components
39
Cisco 7606 Router
39
Cisco 7606-S Router
39
Cisco 7609 Router
39
Fan Assembly
39
Cisco 7609-S Router
42
Power Supplies
43
Cisco 7613 Router
43
Cisco 7603-S Router Power Supplies
44
Cisco 7609-S Router Power Supplies
50
Load Sharing
51
Power Supply Cooling
51
Environmental Monitoring of the Power Supply
52
Pem
52
Power Supply Leds
52
Chapter 2 Preparing for Installation
57
This Publication Describes the Following Cisco 7600 Series Routers:
57
Safety
58
Supported Line Cards on 7600 Chassis
58
Site Requirements
60
Environmental Requirements
60
Preventing Electrostatic Discharge Damage
60
Power Requirements
76
Power Connection Guidelines
77
AC-Powered Systems
77
Power Requirements
77
Ac Power Cord Illustrations
81
DC-Powered Systems
89
Site Planning Checklist
90
Advertisement
Cisco 7609-S Installation Manual (120 pages)
Installation Guide
Brand:
Cisco
| Category:
Network Router
| Size: 2.26 MB
Table of Contents
Table of Contents
3
Preface
7
Audience
7
Organization
7
Conventions
8
Appendix A Technical Specification
8
A P P E N D I X B Connector and Cable Specifications
8
Chapter 2 Preparing for Installation
8
C H a P T E R 3 Installing the Cisco 7609 Internet Router
8
Chapter 4 Troubleshooting
8
Related Documentation
13
Obtaining Documentation
13
World Wide Web
13
Documentation CD-ROM
14
Ordering Documentation
14
Documentation Feedback
14
Obtaining Technical Assistance
15
Cisco.com
15
Technical Assistance Center
16
Product Overview
19
Warning # 1017
20
Cisco 7609 Internet Router
22
System Features
24
Bandwidth and Port Density
24
Redundancy
25
Component Hot Swapping
26
Cisco 7600 Internet Router Components
26
Fan Assembly
26
Power Supplies
27
Load Sharing
29
Preparing for Installation
33
Safety
33
Site Requirements
34
Environmental Requirements
34
Power Requirements
40
Power Connection Guidelines
40
AC-Powered Systems
41
DC-Powered Systems
43
Site Preparation Checklist
43
Installing the Cisco 7609 Internet Router
45
Unpacking the Cisco 7609 Internet Router
46
Installing the Rack-Mount Kit
47
Rack-Mounting Guidelines
47
Required Tools
48
Installing the Shelf and Crossbar Brackets
48
Installing the L Brackets and Cable Guides
50
Installing the Cisco 7609 Chassis in the Rack
52
Installing the Stabilizer Kit
54
System Ground Connection
56
Required Tools and Equipment
56
Connecting the System Ground
58
Installing the Power Supplies in the Cisco 7609 Chassis
58
Attaching the Interface Cables
59
Connecting the Supervisor Engine Console Port
59
Connecting the Supervisor Engine Uplink Ports
62
Connector Specifications
63
Connecting to the Interface Ports
63
Verifying Cisco 7609 Chassis Installation
65
Cisco 7609-S User Manual (22 pages)
with Supervisor SUP720-3B
Brand:
Cisco
| Category:
Network Router
| Size: 0.45 MB
Table of Contents
Table of Contents
2
1 Introduction
3
Purpose
3
Module Validation Level
3
References
3
Terminology
4
Document Organization
4
2 Cisco 7606-S and 7609-S Routers with Supervisor Sup720-3B
5
Module
6
Roles and Services
8
Authentication
9
Services
9
User Services
9
Crypto Officer Services
10
Unauthenticated Services
11
Physical Security
11
Module Opacity
11
Tamper Evidence
13
Cryptographic Algorithms
17
Approved Cryptographic Algorithms
17
Non-FIPS Approved Algorithms Allowed in FIPS Mode
18
Non-Approved Cryptographic Algorithms
18
Cryptographic Key Management
18
Self -Tests
20
Self-Tests Performed by the IOS Image
20
3 Secure Operation
21
System Initialization and Configuration
21
Protocols
22
Remote Access
22
Advertisement
Related Products
Cisco 7609-2SUP720XL-2PS
Cisco 7609
Cisco 7609S-RSP720C-R
Cisco 7606-S323B-8G-P
Cisco 7606S-RSP720C-R
Cisco 7604
Cisco 7606-S
Cisco 7600 Series
Cisco Cisco 760 Series
Cisco 7600-SIP-400 - SPA Interface Processor 400
Cisco Categories
Switch
IP Phone
Network Router
Wireless Access Point
Network Hardware
More Cisco Manuals
Login
Sign In
OR
Sign in with Facebook
Sign in with Google
Upload manual
Upload from disk
Upload from URL