chapter 6: network layer -...
TRANSCRIPT
© 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential Presentation_ID 1
Chapter 6: Network Layer
Introduction to Networks
Presentation_ID 2 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Bab 6: Tujuan
Siswa akan mampu untuk:
! Menjelaskan cara protokol network layer dan dukungan layanan komunikasi data lintas jaringan.
! Menjelaskan cara router melakukan sambungan end-to-end pada jaringan bisnis kecil sampai menengah.
! Menentukan alat yang tepat untuk menentukan jalur traffic pada jaringan bisnis kecil sampai menengah.
! Mengkonfigurasi router dengan pengaturan dasar.
Presentation_ID 3 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
BAB 6 6.1 Network Layer Protokol 6.2 Routing 6.3 Routers 6.4 Konfigurasi Router Cisco
6.5 Rangkuman
Presentation_ID 4 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Lapisan Jaringan
Network Layer
Presentation_ID 5 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Network Layer Protokol Komunikasi di Network Layer
Presentation_ID 6 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Komunikasi di Network layer
Network Layer Proses perpindahan End to End
! Pengalamatan dan Perangkat
! Enkapsulasi
! Routing
! De-enkapsulasi
Presentation_ID 7 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Komunikasi di Network Layer
Network Layer Protokol Network Layer Protokol Pada Umumnya
! Internet Protocol version 4 (IPv4)
! Internet Protocol version 6 (IPv6)
Network Layer Protokol Sebelumnya
! Novell Internetwork Packet Exchange (IPX)
! AppleTalk
! Connectionless Network Service (CLNS/DECNet)
Presentation_ID 8 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Ciri Khas Protokol IP Ciri Khas IP
Presentation_ID 9 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Ciri Khas Protokol IP
IP – Connectionless (Tanpa Sambungan)
Presentation_ID 10 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Ciri Khas Protokol IP
IP – Best Effort Delivery
Presentation_ID 11 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Ciri Khas Protokol IP
IP – Media Independent
Presentation_ID 12 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Paket IPv4
Meng-enkapsulasi IP
Presentation_ID 13 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Paket IPv4
Paket Header IPv4 Versi, Differentiated Services (DS), Time-to-Live (TTL), Protokol, Alamat IP Sumber, Alamat IP Tujuan
Version IP Header Length
Differentiated Services Total Length
DSCP ECN
Identification Flag Fragment Offset
Time To Live Protocol Header Checksum
Source IP Address
Destination IP Address
Options (optional) Padding
Byte 1 Byte 2 Byte 3 Byte 4
Presentation_ID 14 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Paket IPv4
Cakupan Header IPv4 Internet Header Length (IHL), Panjang Total, Header Checksum, Identifikasi, Flags, Cetakan Fragmen
Version IP Header Length
Differentiated Services Total Length
DSCP ECN
Identification Flag Fragment Offset
Time To Live Protocol Header Checksum
Source IP Address
Destination IP Address
Options (optional) Padding
Byte 1 Byte 2 Byte 3 Byte 4
Presentation_ID 15 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Paket IPv4
Contoh Header IPv4
Presentation_ID 16 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Komunikasi di Network Layer Kekurangan-kekurangan IPv4 ! Kehabisan IP Address
! Berkembangnya routing tabel internet
! Kekurangan sambungan end-to-end
Presentation_ID 17 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Komunikasi di Network Layer Pengenalan IPv6 ! Penambahan rentang alamat
! Penambahan packet handling
! Tidak memerlukan NAT
! Keamanan terintegrasi
! 4 billion IPv4 addresses 4,000,000,000
! 340 undecillion IPv6 addresses 340,000,000,000,000,000,000,000,000,000,000,000,000
Presentation_ID 18 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Paket IPv6
Enkapsulasi IPv6
Presentation_ID 19 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Paket IPv6
Paket Header IPv6
Version Traffic Class Flow Label
Payload Length Next Header Hop Limit
Source IP Address
Destination IP Address
Byte 1 Byte 2 Byte 3 Byte 4
Presentation_ID 20 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
IPv6 Packet
Contoh IPv6 Header
Presentation_ID 21 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Routing Routing Table Host
Presentation_ID 22 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Routing Table Host Paket Penerusan Keputusan Host
Presentation_ID 23 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Routing Table Host Default Gateway Host harus mengurus routing tabel-nya sendiri, areanya sendiri, untuk memastikan bahwa paket Network Layer diarahkan pada jaringan tujuan yang tepat. Tabel lokal dari host meliputi:
! Koneksi Langsung
! Local network route
! Local default route
R
Presentation_ID 24 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Routing Table Host Routing Table Host IPv4
Presentation_ID 25 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Routing Table Host Contoh Routing Table Host IPv4
Presentation_ID 26 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Routing Table Host Contoh Daftar Penjaluran Host IPv6
Presentation_ID 27 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Routing Table Host Keputusan Melewatkan Paket Router
Presentation_ID 28 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Routing Table Host Router Table IPv4
R1#show ip route Codes: L - local, C - connected, S - static, R - RIP, M - mobile, B - BGP D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2 E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2, ia - IS-IS inter area * - candidate default, U - per-user static route, o - ODR P - periodic downloaded static route
Gateway of last resort is not set
10.0.0.0/8 is variably subnetted, 2 subnets, 2 masks D 10.1.1.0/24 [90/2170112] via 209.165.200.226, 00:00:05, Serial0/0/0 D 10.1.2.0/24 [90/2170112] via 209.165.200.226, 00:00:05, Serial0/0/0 192.168.10.0/24 is variably subnetted, 2 subnets, 3 masks C 192.168.10.0/24 is directly connected, GigabitEthernet0/0 L 192.168.10.1/32 is directly connected, GigabitEthernet0/0 192.168.11.0/24 is variably subnetted, 2 subnets, 3 masks C 192.168.11.0/24 is directly connected, GigabitEthernet0/1 L 192.168.11.1/32 is directly connected, GigabitEthernet0/1 209.165.200.0/24 is variably subnetted, 2 subnets, 3 masks C 209.165.200.224/30 is directly connected, Serial0/0/0 L 209.165.200.225/32 is directly connected, Serial0/0/0 R1#
192.168.10.0/24
R2
192.168.11.0/24
10.1.1.0/24
10.1.2.0/24
209.165.200.224 /30 .226
.10
.10
.10
.10
.1
.1 .1 G0/1
.225 S0/0/0
G0/0 .1
R1 PC1
PC2
Presentation_ID 29 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Routing Table Host Catatan Routing Table Directly Connected
C 192.168.10.0/24 is directly connected, GigabitEthernet0/0 L 192.168.10.1/32 is directly connected, GigabitEthernet0/0
A B C
A Menunjukkan bagaimana jaringan diinterpretasikan oleh Router.
B Menunjukkan jaringan tujuan dan bagaimana caranya terhubung.
C Menunjukkan interface dari router yang terhubung dengan jaringan tujuan.
192.168.10.0/24
R2
192.168.11.0/24
10.1.1.0/24
10.1.2.0/24
209.165.200.224 /30 .226
.10
.10
.10
.10
.1
.1
64.100.0.1
.1 G0/1
.225 S0/0/0
G0/0 .1
R1 PC1
PC2
Presentation_ID 30 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Routing Table Host Catatan Routing Table Jaringan yang Jauh
D 10.1.1.0/24 [90/2170112] via 209.165.200.226, 00:00:05, Serial0/0/0
A Menunjukkan bagaimana jaringan diinterpretasikan oleh Router.
B Menunjukkan jaringan tujuan.
C Menunjukkan jarak administratif (trustworthiness) dari jalur sumber.
D Menunjukkan metric untuk menjangkau jaringan jarak jauh.
E Menunjukkan next hop IP address untuk menjangkau jaringan jarak jauh.
F Menunjukkan durasi sejak jaringan ditemukan.
G Menunjukkan outgoing interface dari router untuk menjangkau jaringan tujuan.
192.168.10.0/24
R2
192.168.11.0/24
10.1.1.0/24
10.1.2.0/24
209.165.200.224 /30 .226
.10
.10
.10
.10
.1
.1
64.100.0.1
.1 G0/1
.225 S0/0/0
G0/0 .1
R1 PC1
PC2
Presentation_ID 31 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Routing Table Host Next-Hop Address
192.168.10.0/24
R2
192.168.11.0/24
10.1.1.0/24
10.1.2.0/24
209.165.200.224 /30 .226
.10
.10
.10
.10
.1
.1
64.100.0.1
.1 G0/1
.225 S0/0/0
G0/0 .1
R1 PC1
PC2
R1#show ip route Codes: L - local, C - connected, S - static, R - RIP, M - mobile, B - BGP D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2 E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2, ia - IS-IS inter area * - candidate default, U - per-user static route, o - ODR P - periodic downloaded static route
Gateway of last resort is not set
10.0.0.0/8 is variably subnetted, 2 subnets, 2 masks D 10.1.1.0/24 [90/2170112] via 209.165.200.226, 00:00:05, Serial0/0/0 D 10.1.2.0/24 [90/2170112] via 209.165.200.226, 00:00:05, Serial0/0/0 192.168.10.0/24 is variably subnetted, 2 subnets, 3 masks C 192.168.10.0/24 is directly connected, GigabitEthernet0/0 L 192.168.10.1/32 is directly connected, GigabitEthernet0/0 192.168.11.0/24 is variably subnetted, 2 subnets, 3 masks C 192.168.11.0/24 is directly connected, GigabitEthernet0/1 L 192.168.11.1/32 is directly connected, GigabitEthernet0/1 209.165.200.0/24 is variably subnetted, 2 subnets, 3 masks C 209.165.200.224/30 is directly connected, Serial0/0/0 L 209.165.200.225/32 is directly connected, Serial0/0/0 R1#
Presentation_ID 32 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Router Anatomi Router
Presentation_ID 33 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Anatomi Router Router Adalah Komputer
Presentation_ID 34 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Anatomi Router CPU dan OS Router
Presentation_ID 35 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Anatomi Router
Memori Router
Memory Volatile / Non-Volatile Stores
RAM Volatile
• IOS yang berjalan • File konfigurasi yang berjalan • IP Routing dan table ARP • Paket Penyangga (buffer)
ROM Non-Volatile • Perintah bootup • Diagnosa dasar software • IOS terbatas
NVRAM Non-Volatile • File Konfigurasi startup
Flash Non-Volatile • IOS • File sistem lainnya
Presentation_ID 36 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Anatomy of a Router Isi di dalam sebuah Router
Presentation_ID 37 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Anatomi Router Bagian Belakang Router
Two 4 GB flash card slots
Double-wide eHWIC slots eHWIC 0 AUX port
LAN interfaces
USB Ports
Console USB Type B
Console RJ45
Presentation_ID 38 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Anatomi Router Koneksi ke Router
WAN Interface
AUX port
LAN interfaces
Console USB Type B
Console RJ45
Presentation_ID 39 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Anatomi Router Interface LAN dan WAN
Serial interfaces
LAN interfaces
Presentation_ID 40 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Router Boot-up Cisco IOS
Presentation_ID 41 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Router Boot-up File Bootset
Presentation_ID 42 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Router Boot-up
Proses Bootup Router
System Bootstrap, Version 15.0(1r)M15, RELEASE SOFTWARE (fc1) Technical Support: http://www.cisco.com/techsupport
<output omitted>
1. Melakukan POST dan menjalankan program bootstrap
2. Mencari dan menjalankan software Cisco IOS
3. Mencari dan menjalankan file konfigurasi startup atau ke mode setup
Presentation_ID 43 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Router Boot-up
Tampilan Show Version Router# show version Cisco IOS Software, C1900 Software (C1900-UNIVERSALK9-M), Version 15.2(4)M1, RELEASE SOFTWARE (fc1) Technical Support: http://www.cisco.com/techsupport Copyright (c) 1986-2012 by Cisco Systems, Inc. Compiled Thu 26-Jul-12 19:34 by prod_rel_team
ROM: System Bootstrap, Version 15.0(1r)M15, RELEASE SOFTWARE (fc1)
Router uptime is 10 hours, 9 minutes System returned to ROM by power-on System image file is "flash0:c1900-universalk9-mz.SPA.152-4.M1.bin" Last reload type: Normal Reload Last reload reason: power-on
<Output omitted>
Cisco CISCO1941/K9 (revision 1.0) with 446464K/77824K bytes of memory. Processor board ID FTX1636848Z 2 Gigabit Ethernet interfaces 2 Serial(sync/async) interfaces 1 terminal line DRAM configuration is 64 bits wide with parity disabled. 255K bytes of non-volatile configuration memory. 250880K bytes of ATA System CompactFlash 0 (Read/Write)
<Output omitted>
Technology Package License Information for Module:'c1900'
----------------------------------------------------------------- Technology Technology-package Technology-package Current Type Next reboot ------------------------------------------------------------------ ipbase ipbasek9 Permanent ipbasek9 security None None None data None None None
Configuration register is 0x2142 (will be 0x2102 at next reload)
Router#
Presentation_ID 44 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Network Layer
Konfigurasi Router Cisco
Presentation_ID 45 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Mengatur Pengaturan Inisialisasi
Langkah-langkah Konfigurasi Router
Router> enable Router# configure terminal Enter configuration commands, one per line. End with CNTL/Z. Router(config)# hostname R1 R1(config)#
192.168.10.0/24
R2
192.168.11.0/24
10.1.1.0/24
10.1.2.0/24
209.165.200.224 /30 .226
.10
.10
.10
.10
.1
.1 .1 G0/1
.225 S0/0/0
G0/0 .1
R1 PC1
PC2
Router> en Router# conf t Enter configuration commands, one per line. End with CNTL/Z. Router(config)# ho R1 R2(config)#
OR
R1(config)# enable secret class R1(config)# R1(config)# line console 0 R1(config-line)# password cisco R1(config-line)# login R1(config-line)# exit R1(config)# R1(config)# line vty 0 4 R1(config-line)# password cisco R1(config-line)# login R1(config-line)# exit R1(config)# R1(config)# service password-encryption R1(config)#
R1(config)# banner motd # Enter TEXT message. End with the character '#'. *********************************************** WARNING: Unauthorized access is prohibited! *********************************************** #
R1(config)#
R1# copy running-config startup-config Destination filename [startup-config]? Building configuration... [OK] R1#
Presentation_ID 46 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Pengaturan Interface
Konfigurasi Interface LAN 192.168.10.0/24
R2
192.168.11.0/24
10.1.1.0/24
10.1.2.0/24
209.165.200.224 /30 .226
.10
.10
.10
.10
.1
.1 .1 G0/1
.225 S0/0/0
G0/0 .1
R1 PC1
PC2
R1# conf t Enter configuration commands, one per line. End with CNTL/Z. R1(config)# R1(config)# interface gigabitethernet 0/0 R1(config-if)# ip address 192.168.10.1 255.255.255.0 R1(config-if)# description Link to LAN-10 R1(config-if)# no shutdown %LINK-5-CHANGED: Interface GigabitEthernet0/0, changed state to up %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0, changed state to up R1(config-if)# exit R1(config)# R1(config)# int g0/1 R1(config-if)# ip add 192.168.11.1 255.255.255.0 R1(config-if)# des Link to LAN-11 R1(config-if)# no shut %LINK-5-CHANGED: Interface GigabitEthernet0/1, changed state to up %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/1, changed state to up R1(config-if)# exit R1(config)#
Presentation_ID 47 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Pengaturan Interface
Memverifikasi Konfigurasi Interface 192.168.10.0/24
R2
192.168.11.0/24
10.1.1.0/24
10.1.2.0/24
209.165.200.224 /30 .226
.10
.10
.10
.10
.1
.1 .1 G0/1
.225 S0/0/0
G0/0 .1
R1 PC1
PC2
R1# show ip interface brief Interface IP-Address OK? Method Status Protocol
GigabitEthernet0/0 192.168.10.1 YES manual up up GigabitEthernet0/1 192.168.11.1 YES manual up up Serial0/0/0 209.165.200.225 YES manual up up Serial0/0/1 unassigned YES NVRAM administratively down down Vlan1 unassigned YES NVRAM administratively down down R1# R1# ping 209.165.200.226
Type escape sequence to abort. Sending 5, 100-byte ICMP Echos to 209.165.200.226, timeout is 2 seconds: !!!!! Success rate is 100 percent (5/5), round-trip min/avg/max = 1/2/9 ms
R1#
Presentation_ID 48 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Mengkonfigurasi Router Cisco
Mengkonfigurasi Default Gateway
Presentation_ID 49 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Mengkonfigurasi Default Gateway
Default Gateway pada Host
192.168.10.0/24
192.168.11.0/24
G0/1 .1
.1 G0/0
R1
.10 PC1
.10 PC2
.10 PC4
.10 PC3
192.168.10.0/24
192.168.11.0/24
G0/1 .1
.1 G0/0
R1
.10 PC1
.11 PC2
.11 PC4
.10 PC3
Presentation_ID 50 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Mengkonfigurasi Default Gateway
Default Gateway pada Switch
192.168.11.0/24 .1
G0/1 .1 G0/0 R1
192.168.10.0/24 .10 PC1
.11 PC2
S1#show running-config Building configuration... ! <output omitted> service password-encryption ! hostname S1 ! Interface Vlan1 ip address 192.168.10.50 ! ip default-gateway 192.168.10.1 <output omitted>
S1 S2 .50
Jika default gateway tidak dikonfigurasi pada S1, respon paket dari S1 tidak akan bisa menjangkau
administrator pada 192.168.11.10. Administrator tidak akan bisa mengelola perangkat secara jarak jauh.
Presentation_ID 51 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Lapisan Jaringan
Rangkuman Pada bab ini, Anda telah mempelajari: ! Network Layer, atau OSI Layer 3, yang menyediakan layanan
untuk mengizinkan end devices dapt bertukar-data melalui jaringan.
! Network Layer menggunakan empat proses dasar: pengalamatan IP, enkapsulasi, routing, dan re-enkapsulasi.
! Umumnya internet menggunakan IPv4, menjadikan network layer protocol menjadi protokol terbesar yang digunakan.
! IPv4 menyediakan IP Header dan payload.
! Simplified header IPv6 menawarkan beberapa keuntungan dibanding IPv4, termasuk efisiensi routing yang lebih baik, penyederhanaan header extension, dan kemampuan untuk per-flow processing.
Presentation_ID 52 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Lapisan Jaringan
Rangkuman Pada bab ini, Anda telah mempelajari:
! Sebagai penambahan hierarchial addressing, network layer juga bertanggung jawab dalam routing.
! Host membutuhkan local routing table untuk memastikan bahwa paket (data) diarahkan tepat ke jaringan tujuan.
! Local default route adalah jalur menuju default gateway.
! Default gateway adalah alamat IP interface router yang tehubung dengan jaringan lokal.
! Saat router semisal default-gateway menerima paket, ia memeriksa alamat IP tujuan untuk menentukan jaringan tujuan.
Presentation_ID 53 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Network Layer
Rangkuman Pada bab ini, Anda telah mempelajari:
! Routing table milik router menyimpan informasi tentang directly-connected routes dan remote routes ke IP jaringan. Jika router memiliki catatan dari jaringan tujuan pada routing table-nya, router akan meneruskan paketnya. Jika tidak, router akan meneruskan ke jalur default-nya (jika sudah diatur), atau ia akan membuang paket tersebut.
! Catatan routing table bisa diatur secara manual pada tiap router melalui routing statis (static routing) atau router akan mendapatkan informasi routing secara dinamis dengan sesamanya menggunakan routing protocol.
! Agar router dapat dijangkau, interface router harus diatur terlebih dahulu (diberi IP Address).
Presentation_ID 54 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential
Translate by:
! Burhanuddin Yusuf ([email protected]) &
! Melwin Syafrizal ([email protected])