Index

Symbols

? command, 94-95

:: (double colon), 531

Numbers

2-way state (OSPF), 453-454, 457

2.4-GHz band, 626

5-GHz band, 626

10BASE-T, 37, 42-45

10GBASE-T, 37

100BASE-T, 37, 42-45

802.11, 628-629

BSS, 614-616

DS, 616-618

ESS, 618

IBSS, 619

WLAN, 614

802.1D STP, 228, 232

802.1Q, 182

802.1w RSTP, 228-232

802.1x, EAP integration, 658

1000BASE-LX, 37

1000BASE-T, UTP cabling pinouts, 45-46

A

AAA (Authentication, Authorization, and Accounting) servers, 136

abbreviating IPv6 addresses, 531-532

ABR (Area Border Routers), 460-461

access

CLI, 87-94, 128-139, 355-356

protected credentials, 659

WPA, 662-663

WPA2, 662-663

WPA3, 662-663

access interfaces, 185

access points. See AP

access switches, 241

ad hoc wireless networks. See IBSS

addresses

BIA, 52

broadcast addresses, 50-52

calculating hosts and subnets in networks, 313-315

classless versus classful addressing, 312-313

Ethernet addresses, 50-52

exhaustion, 525

experimental, 290

first usable, 293-294

group addresses, 51

host addresses, 293

IPv4 addresses. See individual entry

IPv6 addresses. See individual entry

LAN addresses, 52

last usable, 293-294

loopback address, 295

MAC addresses, 50-52, 111-114, 117-124, 218

multicast addresses, 50-52, 290

NAT, 277

network broadcast addresses, 293-295

network numbers, 293-295

NIC addresses, 52

prefix part, 309-311

private addresses, 542

public addresses, 542

range of subnet addresses, finding, 331

sender MAC, 661

subnet addresses, 272, 283, 324-327, 334-338

unicast addresses, 50-52, 290, 322

universal addresses, 51

adjacencies (OSPF neighbors), troubleshooting, 510-516

adjacent-layer interaction, 21-22

adjacent neighbors, 457

administrative distance, 382-383, 448-449, 594-595

administrative mode, trunking, 191

administratively shutdown interfaces, 217

AES (Advanced Encryption Standard), 661

aging MAC address tables, 121-122

algorithms

AES, 661

CSMA/CD, 55

Dijkstra SPF, 451

IGP routing protocol algorithm, 445

key mixing, 661

RC4 cipher, 657

SPF, 457-459

STA, 216

alternate ports, 229-232

anycast addresses (IPv6), 574-576

AP (Access Points), 35, 614, 629

authentication, 654

autonomous, 634-635, 638

Bridge mode, 647

BSSID, 615

cloud-based AP architectures, 636-637

ESS, 618

fake, 654

Flex+Bridge mode, 647

FlexConnect mode, 647

IBSS, 619

LAP, 638-640

Local mode, 647

management interface, 674

Monitor mode, 647

multiple SSID, supporting, 617

noninfrastructure modes, 620-622

passing through, 615

roaming, 618

Rogue Detector mode, 647

SE Connect mode, 647

Sniffer mode, 647

SSID, 615

VLAN, 668

WLAN, 668-669

application layer (TCP/IP), 19-20

architectures

autonomous, 634-635, 638

centralized, 642-643

cloud-based

AP, 636-637

WLC deployments, 643

networking, 16

split-MAC, 638-642

area design (OSPF), 459-462

ARIN (American Registry for Internet Numbers), 445

ARP (Address Resolution Protocol), 72, 77, 378-379

AS (Authentication Servers), 658

AS (Autonomous Systems), 444-445

ASN (AS Numbers), 445

assigning

IPv6 addresses to hosts, 550

IPv6 subnets to internetwork topology, 549

subnets to different locations, 285

authentication. See also security

AP, 654

AS, 658

clients, 653

EAP, 657-658

EAP-FAST, 659

EAP-TLS, 660

external authentication servers, 135-136

LEAP, 659

open authentication, 656

PEAP, 659

web (WebAuth), 657

WEP, 657

WLAN, 682

WLC, 642

WPA, 662-663

WPA2, 662-663

WPA3, 662-663

authenticators, 658

auto-cost reference-bandwidth command, 493, 496

auto-mdix, 45

autonegotiation, 158-162

autonomous AP (Access Points), 634-635, 638

autonomous architectures, 634-635, 638

autonomous systems. See AS

auxiliary ports (routers), 362

B

backbone areas, 460-461

backbone routers, 461

backup ports, 230, 233

bandwidth

frequencies, 626-627

reference, 492

router serial interfaces, 361

bandwidth command, 492, 496

Basic Service Areas. See BSA

Basic Service Sets. See BSS

BDR (Backup DR), 456-457, 504-506

Bellman-Ford protocols. See distance vector protocols

Berners-Lee, Tim, 20

BGP (Border Gateway Protocol), 445

BIA (Burned-In Addresses), 52

BID (Bridge ID)

STP, 218-219

system ID extensions, 243-244

bidirectional communication, 613

binary/hexadecimal conversion chart (IPv6), 531

binary masks, 304-308

binary subnet analysis, 326

binary practice problems, 328-329

Boolean math, 331

finding

range of addresses, 331

subnet ID, 327

shortcut for binary process, 330

blocking state, interfaces, 215-217

blueprint (networking), 16

Boolean AND, 331

Boolean math, 331

Boolean OR, 331

borrowing host bits to create subnet bits, 280-281

BPDU (Bridge Protocol Data Units), 218, 225

BPDU Guard, 236

BPDU tunneling, 247

bridge ID. See BID

Bridge mode (AP), 647

bridges. See switches

bridging tables. See MAC address tables

broadcast addresses, 50-52, 325-327

broadcast network type (OSPF), 500-506

broadcast storms, 213-215

BSA (Basic Service Areas), 614

BSS (Basic Service Sets), 614-618, 629

AP, 614

associations, 615

BSSID, 615

DS, 616-618

IBSS, 619

stations, 615

traffic flows, 615

burned-in MAC addresses, 218

C

CA (Certificate Authorities), 659

cables

CLI, cabling console connections, 88-90

enterprise networks, 351

Ethernet, 35

fiber-optic cabling, 38, 46-49

IP telephony, 197

leased-line cabling, 62-63

physical console connections, 88-90

pinouts

rollover pinouts, 89

straight-through cable pinout, 42-45

UTP, 37-46, 49

caches (ARP), 77

CAM (Content-Addressable Memory) tables. See MAC address tables

candidate default routes, 384

CAPWAP (Control and Provisioning of Wireless Access Points) tunneling protocol, 639-640

carrier sense multiple access with collision detection (CSMA/CD), 55

CCMP (Counter/CBC-MAC Protocol), 661

cells. See BSA

centralized architectures, 642-643

centralized controllers

dynamic interfaces, creating, 678

RADIUS servers, configuration, 676

WLAN security, 682

certificate authorities. See CA

CFN (Cisco Feature Navigator), 404

channel-group command, 248-249, 259

EtherChannels, 416

Layer 3 EtherChannels, troubleshooting, 413

channel-group number mode on command, 411

channels, 627

dynamic assignment, 642

nonoverlapping, 628

CIDR (Classless Interdomain Routing), subnet masks, 305

circuits. See leased-line WAN

Cisco Binary Game, 306

Cisco Catalyst switches, 86

Cisco integrated services routers, 352

cladding (fiber-optic cable), 47

Class A networks, 290-295, 312

Class B networks, 290-293, 312

Class C networks, 290-295, 312

Class D networks, 290

Class E networks, 290

classful IP addresses, 312-313

classful IP networks, 289, 296-297

address formats, 291-292

before subnetting, 279-280

calculating hosts per network, 293

classes in, 290-291

default masks, 292

network ID, 293-295

number of, 291

octet values, 290

size of, 291

subnet masks, 302

unusual addresses, 295

classful networks, 276-279

classful routing protocols, 447-448

classless addressing, 312-313

classless routing protocols, 447-448

clear ip arp [ip-address] command, 378, 391

clear ip ospf process command, 481, 497

clear mac address-table dynamic command, 122, 125

CLI (Command-Line Interface)

accessing, 87-94

cabling console connections, 88-90

Cisco Catalyst switches, 86

command edit and recall, 95

common command prompts, 98

configuration files, 99-102

configuration mode, 96-97

configuration submodes and contexts, 97-99

help, 94-95

overview, 84-86

privileged EXEC mode, 91-93

router CLI, 355-356

security, 128-139

user EXEC mode, 91-93

clients

authentication, 653, 656-660

load balancing, 642

roaming, 642

Telnet clients, 91

WLAN, 684

CLN (Cisco Learning Network), 306

clock rates, router serial interfaces, 361

cloud-based architectures, 636-637, 643

collisions, 167

commands

?, 94-95

auto-cost reference-bandwidth, 496

bandwidth, 496

channel-group, 248-249, 259, 413, 416

channel-group number mode on, 411

clear ip arp [ip-address], 378, 391

clear ip ospf process, 481, 497

clear mac address-table dynamic, 122, 125

com?, 94

command, 495

command ?, 94

command parm?, 94

command parm<Tab>, 94

command parm1 ?, 94

configure terminal, 97, 101, 104, 132, 189, 355

copy, 356

copy running-config startup-config. 102-104

copy startup-config running-config, 104

crypto key, 137

crypto key generate rsa, 137-139, 148

debug, 96

default-information originate, 489, 496

default-information originate always, 490

delete vlan.dat, 117

description, 153, 170, 363

disable, 104

duplex, 152-154, 165, 170, 355, 363

enable, 91, 104, 130

enable password, 131

enable secret, 131, 148

enable secret love, 94

encapsulation, 397-398

encapsulation dot1q, 415

encapsulation dot1q vlan_id, 397

encapsulation dot1q vlan-id, 401

end, 104, 355

erase nvram, 104

erase startup-config, 104, 117

exec-timeout, 145, 148

exit, 98, 101-103, 355

history size, 145, 148

hostname, 99-103, 117, 138, 148

hostname Fred, 97

how interfaces status, 156

interface, 97, 103, 169, 185, 198, 356, 363, 391, 415

interface ethernet, 357

interface fastethernet, 357

interface gigabitethernet, 357

interface loopback, 470, 481, 496

interface port-channel, 416

interface port-channel number, 411

interface range, 154, 169, 187

interface type number.subint, 397

interface vlan, 148, 415

interface vlan 1, 142

interface vlan vlan_id, 403

ip -6 neighbor show, 600

ip address, 142, 148, 360, 363, 381, 391-392, 397-398, 470

ip address address mask, 397, 403, 411

ip address dhcp, 148

ip default-gateway, 142, 148

ip domain-name, 139

ip mtu, 515

ip name-server, 142, 148

ip ospf, 495

ip ospf cost, 492, 496

ip ospf dead-interval, 517

ip ospf hello-interval, 517

ip ospf process-id, 511

ip ospf process-id area area-id, 483-485

ip route, 367, 376, 380-385, 391

ip routing, 391, 402-404, 415

ip ssh version 2, 139

ipv6 address, 557, 560, 564-568, 576-578, 583

ipv6 address dhcp, 578

ipv6 address eui-64, 563

ipv6 address link-local, 568

ipv6 enable, 568-569, 576-578

ipv6 route, 586-597, 604

ipv6 unicast-routing, 558, 578

line aux 0, 362

line con 0, 130-131

line console 0, 97-98, 103, 147, 356

line vty, 132, 147

logging console, 145, 148

logging synchronous, 145, 148

login, 94, 103, 130-132, 147

login local, 147

mac-address, 564

maximum-paths, 494-496

name, 185, 207

ndp -an, 600

netsh interface ipv6 show neighbors, 600

network, 473-475, 480-486, 511

no debug all, 104

no description, 157, 170

no duplex, 157, 170

no ip address, 412

no ip domain-lookup, 146

no logging console, 145, 148

no passive-interface, 487, 496

no password, 134

no shutdown, 142, 155-157, 170, 207, 253, 356, 363, 399, 403-405

[no] shutdown vlan number, 201

no speed, 157, 170

no switchport, 408, 411-415

passive-interface, 487, 496, 517

passive-interface default, 488

password, 97, 103, 130-132, 147

password faith, 94

ping, 78, 419-429, 587

port-channel load-balance method, 254

quit, 104

reload, 91-92, 102-104, 117, 402-404

router-id, 470, 496

router ospf, 470, 495

router ospf 1, 472, 480

router ospf process-id, 480, 510

sdm prefer, 402-404

sdm prefer lanbase-routing, 402, 415

show, 95, 166, 361, 480, 508

show crypto key mypubkey rsa, 149

show dhcp lease, 143-144, 149

show etherchannel, 248, 259, 416

show etherchannel 1 summary, 250

show etherchannel summary, 413

show history, 145, 149

show interfaces, 119-120, 156, 162-164, 167-170, 357-358, 361, 364, 376, 408, 416, 515-517, 583

show interfaces description, 162, 170

show interfaces interface-id trunk, 203-205

show interfaces status, 118, 125, 153, 162-165, 408, 412

show interfaces switchport, 192-199, 202-203, 208

show interfaces trunk, 193-194, 199-205, 208, 401

show interfaces type number switchport, 199

show interfaces type number trunk, 200

show interfaces vlan, 143-144, 149, 416

show ip arp, 391

show ip default-gateway, 144, 149

show ip interface brief, 357-361, 364, 406

show ip ospf, 481, 496, 510-511, 517

show ip ospf database, 450, 462, 475, 497

show ip ospf interface, 486-488, 496, 503-505, 510-513, 517

show ip ospf interface [brief], 479-480, 511

show ip ospf interface brief, 488, 491, 496, 503, 505, 508-510, 514, 517

show ip ospf interface G0/0, 505

show ip ospf neighbor, 452-453, 457, 475, 480, 497, 502, 505, 508-517

show ip ospf neighbor interface brief, 513

show ip protocols, 479, 485, 496, 517

show ip route, 324, 356, 367, 376-391, 400-402, 408, 416, 449, 475-478, 497, 585

show ip route address, 388

show ip route [connected], 398

show ip route EXEC, 404

show ip route ospf, 387, 497

show ip route static, 380, 490

show ip ssh, 139, 149

show ipv6 interface, 558-559, 567, 570-573, 579

show ipv6 interface brief, 558-560, 567, 575, 579

show ipv6 route, 566, 579, 585-590, 605

show ipv6 route connected, 560, 586

show ipv6 route local, 585-586

show ipv6 route static, 587-590, 593, 595

show mac address-table, 120, 125, 356

show mac address-table aging-time, 122, 125

show mac address-table count, 122, 125

show mac address-table dynamic, 96, 117, 123-125, 170

show mac address-table dynamic address, 125

show mac address-table dynamic interface, 120-121, 125

show mac address-table dynamic vlan, 125

show mac address-table static, 170

show mac address-table vlan, 121

show protocols, 361, 364

show running-config, 93, 101, 104, 132-133, 143, 149, 155, 158, 170, 398, 479, 488, 511, 584

show running-config | interface, 170

show spanning-tree, 249, 259

show spanning-tree vlan, 259

show spanning-tree vlan vlan-id, 204

show ssh, 139, 149

show startup-config, 101, 104, 158

show vlan, 201, 208

show vlan brief, 186-189, 202

show vlan id, 187

show vlans, 398-401, 416

show vtp status, 190, 208

shutdown, 143, 155, 170, 207, 253, 356, 359, 363, 399-401, 405

shutdown command, 163

spanning-tree, 259

spanning-tree mode, 242-243, 259

spanning-tree vlan, 244

spanning-tree vlan x root primary, 244-245

spanning-tree vlan x root secondary, 244-245

speed, 98-99, 152-154, 165, 170, 355, 363

switchport, 408, 415

switchport access vlan, 185-189, 198-199, 207

switchport mode, 191, 207

switchport mode access, 185, 188, 198-199

switchport mode dynamic auto, 202

switchport mode dynamic desirable, 193

switchport mode trunk, 191, 203, 396

switchport nonegotiate, 195, 203, 207

switchport trunk allowed vlan, 204, 207

switchport trunk encapsulation, 191, 207

switchport trunk native vlan, 207

switchport trunk native vlan vlan-id, 205

switchport voice vlan, 198-199, 207

switchport voice vlan vlan-id, 200

terminal history size, 145, 149

test etherchannel load-balance EXEC, 255

traceroute, 428-432, 587

transport input, 138, 148, 356

transport input all, 139

transport input none, 139

transport input ssh, 139

transport input telnet ssh, 139

undebug all, 104

username, 134

username secret, 134, 147

vlan, 185, 198, 207

vlan number, 201

vtp mode, 207

vtp mode off, 190

vtp mode transparent, 190

write erase, 104

communication

bidirectional, 613

passing through, 615

unidirectional, 613

configuration BPDU. See Hello BPDU

configuration changes (STP topology, influencing), 223

configuration files, 99-102

configuration mode (CLI), 96-97

configure terminal command, 97, 101, 104, 132, 189, 355

connected routes, 366, 376-378, 583-585

connectors

pins, 40

RJ-45, 41

console connections, cabling, 88-90

console passwords, 129

console ports, 672

context-setting commands, 97

control plane (cloud-based AP architectures), 637

controllers

centralized, 676-678, 682

dynamic interfaces, 674-675

interfaces, 673, 681

management interfaces, 674

ports, 672-673

redundancy management, 674

service port interfaces, 674

virtual interfaces, 674

VLANs, mapping, 673

WLAN controller configuration, 685

WLC, 639-642

convergence, 216, 443

converting subnet mask formats, 305-309

copy command, 356

copy running-config startup-config command, 102-104

copy startup-config running-config command, 104

cores (fiber-optic cable), 47

costs (metrics)

EIGRP, 446

IGP, 446-447

OSPF, 491-493

ports, 247

IEEE default, 223

STP, 221

RIPv2, 446-447

CRC (Cyclic Redundancy Checks), 167-168

crossover cable pinouts, 44-45

crosstalk, 40

crypto key command, 137

crypto key generate rsa command, 137-139, 148

CSMA/CD (Carrier Sense Multiple Access with Collision Detection), 55, 167

CUCM (Cisco Unified Communication Manager), 196

cycles, waves, 625

D

DAD (Duplicate Address Detection), 598, 602

data

decryption, 655

encapsulation

OSI terminology, 30

TCP/IP terminology, 27-28

integrity, 656

privacy, 655

privacy/integrity methods, 660-661

data centers, 108

data link layer

Ethernet, 38-39, 49-50

TCP/IP, 25-26

data-link protocols, leased-line WAN, 63-64

data paths, autonomous wireless networks, 635

data plane (cloud-based AP architectures), 637

Data VLAN (Virtual Local Area Networks), 197-199

DDN (Dotted-Decimal Notation), 24, 305-309

de-encapsulating IP packets, 373-374

Dead Interval timers, 455

dead timers, troubleshooting, 512-513

debug command, 96

decimal masks. See DDN

decimal subnet analysis, 331

difficult masks, 334-338

easy masks, 332

finding

subnet broadcast addresses, 336-338

subnet IDs, 334-336

predictability in interesting octets, 333-334

reference table: DDN mask values and binary equivalent, 338-339

decrypting data, 655

default gateways, 70, 370-372

default-information originate always command, 490

default-information originate command, 489, 496

default OSPF routes, 489-491

default routers, 70, 370-372

default routes, 379, 383-384

default VLAN (Virtual Local Area Networks), 186

delete vlan.dat command, 117

description command, 153, 170, 363

designated ports. See DP

DHCP (Dynamic Host Configuration Protocol), 143, 286

diagrams (networking), 15, 26

difficult subnet masks, 334-338

digital certificates, split-MAC architectures, 640

Dijkstra SPF algorithm, 451

directed broadcast addresses, 283

disable command, 104

disabling

autonegotiation, 160

DTP, 203

ports, 230

switch interfaces, 155-156

VLAN, troubleshooting, 201-202

WLAN, 680

discarding state (RSTP), 229-230

discovering

duplicate addresses, 602

neighbor link addresses, 598-600

routers, 600-601

distance vector protocols, 446

distributed architectures, 634-638

distribution switches, 241

distribution system ports, 672-673

distribution systems. See DS

DNS (Domain Name Systems), 76-77

documentation, subnet plans, 267

double colon (::), 531

DP (Designated Ports), 217, 222-223, 230

DR (Designated Routers)

BDR, 456-457

elections, configuration with broadcast network type (OSPF), 504-506

DRAM (Dynamic Random-Access Memory), 99

DROthers routers, 457

DS (Distribution Systems), 616-618

DTP (Dynamic Trunking Protocol), 203

dual stacks, 529, 556

duplex command, 152-154, 165, 170, 355, 363

duplexes

configuration on switch interfaces, 152-154

mismatches, 161

troubleshooting, 161-166

Duplicate Address Detection. See DAD

dynamic auto trunking, 191

dynamic desirable trunking, 191

dynamic EtherChannels, configuration, 250-251

Dynamic Host Configuration Protocol (DHCP), 143, 286

dynamic interfaces, 674-675, 678

dynamic IP address configuration, DHCP, 143

dynamic ranges per subnet, choosing, 286-287

dynamic unicast address configuration (IPv6), 564

E

E-Line, 66

EAP (Extensible Authentication Protocol), 657-660

EAP-FAST (EAP Flexible Authentication by Secure Tunneling), 659

EAP-TLS (EAP Transport Layer Security), 660

easy subnet masks, 332

echo requests/replies (ICMP), 78, 419

edge ports, 233

EGP (Exterior Gateway Protocol), 444

EIGRP (Enhanced Interior Gateway Routing Protocol), 446

EIGRPv6 (EIGRP for IPv6), 529

electric waves, traveling, 624

embedded WLC deployments, 644

enable command, 91, 104, 130

enable mode, 91-93

enable passwords, 130-131

enable secret command, 131, 148

enable secret love command, 94

encapsulation

IPv4, 70

OSI terminology, 30

TCP/IP terminology, 27-28

encapsulation command, 397-398

encapsulation dot1q command, 415

encapsulation dot1q vlan_id command, 397, 401

encoding schemes, 39

encryption (data), 655

end command, 104, 355

end-user perspectives on networking, 14-15

enterprise LAN (Local Area Networks), 36-37

enterprise mode (WPA), 663

enterprise networks, 15, 268, 350-352

enterprise routers, 350-353

EoMPLS (Ethernet over MPLS), 66

erase nvram command, 104

erase startup-config command, 104, 117

erasing switch configuration files, 102

errors

detection, FCS field, 53

TCP error recovery rates, 21

ESS (Extended Service Sets), 618

EtherChannel, 234, 407

configuration, 247-257

dynamic EtherChannels, 250-251

Layer 3 EtherChannels, 392, 410-414

load distribution, 253-257

manual Layer 2 EtherChannels, 248-250

troubleshooting, 251-253

Ethernet, 26

addresses, 52

cables, 35

E-Line, 66

emulation, 66-68

EoMPLS, 66

GBIC, 42

IPv6 static routes over Ethernet links, 591

LAN. See also subnets

enterprise LAN, 36-37

enterprise networks, 350

Ethernet addressing, 50-52

Ethernet data link protocols, 38-50

Ethernet frames, 38

Ethernet physical layer standards, 37

Ethernet ports, 40

Ethernet Type field, 52

FCS field, 53

full-duplex logic, 53-56

half-duplex logic, 54-56

overview, 32-34

SOHO LAN, 35

switches, 35, 106-124, 152-162

troubleshooting, 162-168

UTP cables, 37-46, 49

VLAN, 179-205

links, 40

OSPF

Ethernet links, 456-457

Ethernet WAN, 506-508

point-to-point, 56

shared media, 56

switches, fiber-optic cables, 48

WAN

enterprise networks, 350

EoMPLS, 66

Ethernet emulation, 66-68

overview, 65-66

point-to-point network type (OSPF), 506-508

Ethernet Alliance web page, 38

EtherType, 52

EUI-64 (extended unique identifier), 560-564

EXEC modes

privileged EXEC mode, 91-93

simple password configuration, 130-133

user EXEC mode, 91-93

exec-timeout command, 145, 148

exit command, 98, 101-103, 355

expanding IPv6 addresses, 532

experimental addresses, 290

extended ping command, 423-426

extended traceroute command, 431-432

external authentication servers, 135-136

F

failed interfaces, 217

fake AP, 654

Fast Ethernet, 37

FCS (Frame Check Sequence) field, 53

fiber-optic cables, 37-38, 46-49

finding

IPv6 prefixes, 533-536

MAC address table entries, 120-121

mismatched Hello/dead timers, 512

range of subnet addresses, 331

routers best routes, 451

subnet broadcast addresses, 327, 336-338

subnet ID, 327, 334-336

first octet values, classes by, 290

first usable IP addresses, deriving, 293-294

flash memory, 100

Flex+Bridge mode (APs), 647

FlexConnect mode (APs), 647

floating static routes, 381-383, 593-595

flooding, 114, 450

Forward delay timers (STP), 225

forward secrecy, 663

forward-versus-filter decisions, 113

forwarding, 115

data. See routes/routing

IP packets, 68-75, 374-375

known unicast frames, 110-113

forwarding state, interfaces, 215-217

frames, 26-28, 38

broadcast storms, 213-215

CRC, 167

flooding, 114

giants, 167

IP routing, 373-376

looping frames, 213-215

multiple frame transmissions, 214-215

packet output errors, 167

runts, 167

unknown unicast frames, 114

frequencies, 613, 625-627

full addresses (IPv6), 530

full duplex logic, 53-56

full VLAN configuration example, 186-188

fully adjacent neighbors, 457, 502

G

G0/0 status code, 359

G0/1 status code, 359

gateways (default), 370-372

GBIC (Gigabit Ethernet Interface Converter), 42

GCMP (Galois/Counter Mode Protocol), 661

Get IEEE 802 program, 228

GET requests (HTTP), 20

GHz (Gigahertz), 625

giants, 167

Gigabit Ethernet, 37

global routing prefix (IPv6), 543-544

global unicast addresses, 542-550

global unicast next-hop addresses, 589

group addresses, 51

groupings (IP address), 70

GTC (Generic Token Cards), 660

H

half-duplex logic, 54-56

HDLC (High-Level Data Link Control), 63-64

headers

Ethernet header fields, 50

HDLC, 63

HTTP, 20

IP headers, 73

Hello BPDU, 218, 225

Hello Interval timers, 455

Hello messages, 219, 452

Hello timers, 225, 512-513

hexadecimal/binary conversion chart (IPv6), 531

history buffer commands, 144-145

history size command, 145, 148

hopping (VLAN), 205

host addresses, calculating number per network, 293

host bits, 272

host forwarding logic (IPv4), 69

host part (of IP addresses), 292, 302, 311

host routes, 378-379

IPv4 routing process, 370

static host routes, 381

hostname command, 97-103, 117, 138, 148

hostnames, 76, 427-428

hosts, 68

analyzing subnet needs, 269-271

assigning addresses to, 550

calculating, 313-315

host bits, 272

IP settings, 24, 140-142

NDP, 598-603

subnets, 268-271

HTTP (Hypertext Transfer Protocol), 19-20

hubs

autonegotiation, 161-162

LAN hubs, 54-56

Hypertext Transfer Protocol (HTTP), 19-20

Hz (Hertz), 625

I

IANA (Internet Assigned Numbers Authority), 445, 540

IBSS (Independent Basic Service Sets), 619. See also BSS

ICANN (Internet Corporation for Assigned Names and Numbers), 540

ICMP (Internet Control Message Protocol), 78, 419

ICMPv6 (Internet Control Message Protocol version 6), 526

ID (identification)

ID numbers, WLAN, 680

interface ID, 547

subnet ID, 272, 283, 324, 327, 330, 334-336, 548

system ID extensions, 245-246

VLAN ID, 180

IEEE (Institute of Electrical and Electronic Engineers), 18

802.1D Spanning-Tree states, 227

802.1D standard, 228

802.1w amendment, 228

802.1x, EAP integration, 658

default port costs, 223

Get IEEE 802 program, 228

IGP (Interior Gateway Protocol), 444-448

IGRP (Interior Gateway Routing Protocol), 446

inferior Hello messages, 219

infrastructure mode, 614

input errors, 166-167

integrated services routers (Cisco), 352

interarea routes, 461

interesting octets, predictability in, 333-334

interface command, 97, 103, 169, 185, 198, 356, 363, 391, 415

interface ethernet command, 357

interface fastethernet command, 357

interface gigabitethernet command, 357

interface ID, 547

interface loopback command, 470, 481, 496

interface port-channel command, 416

interface port-channel number command, 411

interface range command, 154, 169, 187

interface type number.subint command, 397

interface vlan command, 148, 415

interface vlan 1 command, 142

interface vlan vlan_id command, 403

interfaces, 87

administratively shutdown, 217

blocking state, 215

controllers, 673, 681

dynamic interfaces, 674-675, 678

EtherChannels, adding, 251-253

failed interfaces, 217

forwarding state, 215

Layer 1 problems, 166-168

learning state, 227

listening state, 227

management interfaces, 674

OSPF

metrics, 493

passive interfaces, 487-488

OSPFv2 configuration, 483-486

physical interface configuration, 251-253

ports, compared, 671

routed interfaces, Layer 3 (multilayer) switches, 407-409

routers, 356-357

bandwidth, 361

clock rates, 361

IP addresses, 360-361

status codes, 358-359

service port interfaces, 674

speed and duplex issues, 163-166

states, 216-217, 227

status codes, 162-163, 358-359

subcommands, 97

subinterfaces, 396-397

SVI, 392, 401-406

switch interface configuration, 152-162

troubleshooting, 162-168

virtual interfaces, 674

VLAN interfaces, 402

WLC interfaces, 673-675

working interfaces, 217

interference, simultaneous transmissions, 613

internal routers, 461

Internet Protocol. See IP

internetworks, 72, 268

intra-area routes, 461

intrusion protection, WLC, 642

IOS configuration, 96-102

IP (Internet Protocol), 22. See also IPv4; IPv6

addresses

management, 635

ping command, 427-428

subnets, 283-284

forwarding

IP packets, 374-375

longest prefix matches, 386-389

IGP metrics, 446-447

routing, 366

ARP tables, 378-379

de-encapsulating IP packets, 373-374

encapsulating IP packets in new frames, 375

example of, 371-376

frames, 373-376

host forwarding of IP packets to default routers (gateways), 372

IP forwarding, 374-375, 386-389

IPv4 routing process, 369-371

troubleshooting, 419-434

routing tables, 70-72, 388-389

telephony, 196-200

ip -6 neighbor show command, 600

ip address address mask command, 397, 403, 411

ip address command, 142, 148, 360, 363, 381, 391-392, 398

IP addresses on loopback interfaces, 470

subinterfaces, 397

ip address dhcp command, 148

ip address subcommand, 376

ip_address parameter, network command, 473

ip default-gateway command, 142, 148

ip domain-name command, 139

ip mtu command, 515

ip name-server command, 142, 148

ip ospf command, 495

ip ospf cost command, 492, 496

ip ospf dead-interval command, 517

ip ospf hello-interval command, 517

ip ospf process-id area area-id command, 483-485

ip ospf process-id command, 511

ip route command, 367, 376, 379-385, 391, 402-404, 415

ip ssh version 2 command, 139

IPv4 (Internet Protocol Version 4). See also IP

address exhaustion, 525

ARP, 72, 77

calculating hosts and subnets in network, 313-315

classes in, 290-291

classful IP networks, 289-297

classless versus classful addressing, 312-313

configuration on switch, 142-143

DNS, 76-77

dynamic IP address configuration with DHCP, 143

headers, 73

hosts, 24, 140-142

networks, 70-73, 293-295

overview, 22-23, 68

private addresses, 542

public addresses, 542

router support

auxiliary ports, 362

CLI access, 355-356

interfaces, 356-361

routing, 24-25, 369-371

logic, 68-72

protocols, 74-75

subnets, 70, 73, 264-267, 322-339

hosts, 268-271

multiple subnet sizes, 274

number of hosts, 271

number of subnets, 270

one-size subnets, 273

single-size subnets, 273

size of, 272-274

subnet addresses, 272

subnet ID, 272

subnet masks, 272, 275, 279-283, 302-312, 315

subnet numbers, 272

switch settings, 140-142

testing connectivity, 78

troubleshooting tools

ping command, 419-429

SSH, 432-434

Telnet, 432-434

traceroute command, 428-432

unusual addresses within classes, 295

verifying on switch, 143-144

VLSM, 275

IPv6 (Internet Protocol Version 6). See also IP

abbreviating addresses, 531-532

address configuration summary, 576

assigning subnets to internetwork topology, 549

dual-stack strategies, 556

dynamic unicast address configuration, 564

expanding addresses, 532

global routing prefix, 543-544

global unicast addresses, 542-550

hexadecimal/binary conversion chart, 531

history of, 524-525

interface ID, 547

link-local addresses, 566-569

loopback addresses, 574

multicast addresses, 569-576

NDP, 573-574, 598-603

overview, 524

prefix length, 533-536

protocols, 526-527

representing full IPv6 addresses, 530

routing, 527-530, 583-598

static unicast address configuration, 557-564

subnets, 543

global unicast addresses, 545-549

router anycast addresses, 549

unique local addresses, 551-552

unicast addresses, 556

unique local addresses, 542, 551-553

unknown addresses, 574

ipv6 address command, 557, 560, 564-568, 576-578, 583

ipv6 address dhcp command, 578

ipv6 address eui-64 command, 563

ipv6 address link-local command, 568

ipv6 enable command, 568-569, 576-578

ipv6 route command, 586-597, 604

ipv6 unicast-routing command, 558, 578

IS-IS (Integrated Intermediate System to Intermediate System), 446

ISL (Inter-Switch Link), 182

ISO (International Organization for Standardization), 17

IV (Initialization Vectors), 661

J - K

keys

forward secrecy, 663

mixing algorithm, 661

PKIs, 660

shared-key security, 657

TKIP, 660-661

WEP, 657

kHz (kilohertz), 625

kilohertz (kHz), 625

known unicast frames, forwarding, 110-113

L

LACP (Link Aggregation Control Protocol), 250

LAG (link aggregation group), 673

LAN (Local-Area Networks). See also subnets

addresses, 52

definition of, 179

DP on each segment, choosing, 222-223

enterprise LAN, 36-37

Ethernet LAN, 32-46, 49-56

enterprise networks, 350

LAN switching, 106-124

switch interface configuration, 152-162

troubleshooting, 162-168

hubs, 54-56, 161-162

LAN switching, 106-124

neighbors, testing, 425-426

redundancy, 210, 214

STP security exposures, 236

switching, 35

analyzing, 116

flooding, 114

interface configuration, 152-162

MAC address table, 113-114, 117-124

overview, 106-109

STP, 114-115

summary, 115-116

switch forwarding and filtering decisions, 110-113

switch interfaces, 118-120, 152-162

switching logic, 109-110

verifying, 116

VLAN

AP, 668

configuration, 185-195, 198-199

Data VLAN, 197-199

default VLAN, 186

disabled VLAN, 201-202

IP telephony, 196-200

native VLAN, 183, 205

overview, 179-180

routing, 183-184

supported VLAN list on trunks, 203-205

tagging, 181-182

troubleshooting, 201-205

trunking, 180-182, 189-195

undefined VLAN, 201-202

VLAN ID, 180

Voice VLAN, 197-199

VTP, 189-190

WLAN, 32

802.11 WLAN, 614

advanced settings, 684-685

AP, 668-669

BSS, 614-616

client session timeouts, 684

configuration, 675-678, 681-685

controller configuration, 685

creating, 679-681

creating too many, 676

defined, 675

displaying list of, 679

DS, 616-618

ESS, 618

IBSS, 619

limiting, 676

management access, 685

mesh networks, 622

outdoor bridges, 621-622

QoS, 683-684

repeaters, 620-621

security, 681-684

topologies, 614-622

WGBs, 621

WLCs, 669-675

LAP (Lightweight Access Points), 639-642

last usable IP addresses, deriving, 293-294

late collisions, 167

Layer 1 problems, troubleshooting, 166-168

Layer 2 switches, 141, 183

Layer 3 EtherChannel, 392

Layer 3 (multilayer) switches, 141, 184

routed ports, 406-414

SVI, 401-406

LEAP (Lightweight EAP), 659

learning state, interfaces, 227

leased-line WAN (Wide Area Networks), 61-65

lightweight AP (Access Points), 638

line aux 0 command, 362

line con 0 command, 130-131

line console 0 command, 97-98, 103, 147, 356

line vty command, 132, 147

link-local addresses (IPv6), 566-569

link-local next-hop address, 589-590

link-state protocols, 446

list of subnets

building, 283-284

IPv6 subnets, 548-549

listening state, interfaces, 227

load balancing

clients, 642

OSPF, 494

load distribution, EtherChannel, 253-257

Local mode (AP), 647

local routes, 378, 583-586

local scope multicast addresses, 569-573

logging console command, 145, 148

logging synchronous command, 145, 148

logical networks, user segregation, 676

login command, 94, 103, 130-132, 147

login local command, 147

loopback address, 295, 574

looping frames, 213-215

loops, avoiding with STP, 114-115

LSA (Link-State Advertisements), 449, 454

flooding, 450

LSDB relationship, 450

network LSA, 464

OSPF, 454-456, 459-464

router LSAs, 463

LSDB (Link-State Database)

area design, 461-462

best routes, finding, 451

LSA relationship, 450

OSPF/LSDB neighbor exchanges, 454-456

LSU (Link-State Update) packets, 454

LWAPP (Lightweight Access Point Protocol), 639

M

MAC address tables, 111

aging, 121-122

clearing, 122

finding entries in, 120-121

instability, 214-215

multiple switches, 123-124

overview, 113-114

showing, 117-118

mac-address command, 564

MAC addresses, 50-52

burned-in, 218

sender MAC addresses, 661

source MAC addresses, 113

split-MAC architectures, 638-642

macrobending, 163

magic number, 334

magnetic waves, traveling, 624

man-in-the-middle attacks, 654

management access (WLAN), allowing, 685

management interfaces (controllers), 674

management IP addresses, autonomous AP, 635

manual Layer 2 EtherChannels, 248-250

mapping VLAN, 673

MaxAge timer (STP), 225

maximum-paths command, 494-496

memory, 99-100

Meraki, 636-637

mesh networks, 622

messages

Hello, 219

Hello BPDU, 218, 225

inferior Hello, 219

integrity, 656, 660-661

OSPF Hello, 452

privacy, 655, 660-661

RSTP, 232

sending, 623-624

superior Hello, 219

metrics (costs)

EIGRP, 446

IGP, 446-447

OSPF, 491-493

ports, 247

IEEE default, 223

STP, 221

RIPv2, 446-447

MHz (Megahertz), 625

MIC (Message Integrity Checks), 656, 660-661

Mobility Express WLC deployments, 645

models, networking

OSI, 17, 28-30

TCP/IP, 16-29

modified EUI-64 (Extended Unique Identifier-64), 560-564

Monitor mode (AP), 647

MP BGP-4 (Multiprotocol BGP version 4), 529

MSCHAPv2 (Microsoft Challenge Authentication Protocol version 2), 660

MSTP (Multiple Spanning Tree Protocol), 242-243

MTU (Maximum Transmission Units), 50, 515

multiarea OSPF (Open Shortest Path First), 482

multicast addresses, 50-52, 290, 569-576

multilayer switches, 141, 184, 401-414

multimode fiber-optic cables, 47-49

N

NA (Neighbor Advertisement), 599

name command, 185, 207

NAT (Network Address Translation), 277, 542

native VLAN (Virtual Local-Area Networks), 183, 205, 398

NDP (Neighbor Discovery Protocol), 526, 573-574, 598-603

ndp -an command, 600

neighbors

adjacent neighbors, 457

fully adjacent neighbors, 457, 502

link addresses, discovering, 598-600

NA, 599

NS, 599

OSPF, 451

broadcast network type, 502-506

LSA exchanges, 454-456

LSDB exchanges, 454-456

requirements, 508-510

RID, 452

states, 453, 457

troubleshooting adjacencies, 510-516

testing, 425-426

netsh interface ipv6 show neighbors command, 600

network command, 473-475, 480-486, 495, 511

network ID. See network numbers

network layer, 22-25

ARP, 77

DNS, 76-77

protocols, identifying with Ethernet Type field, 52

routing

LAN/WAN, 70-72

logic, 68-70

testing connectivity, 78

network numbers, 293-295

network types (OSPF)

broadcast, 500-506

point-to-point, 500-501, 506-508

troubleshooting mismatched network types, 515-516

networks

architectures, 16

blueprint, 16

broadcast addresses, 293-295

classful IP networks, 289-297

classful networks, 276-278

definition of, 268

diagrams, 15, 26

end-user perspectives, 14-15

enterprise networks, 15, 268, 350-352

internetworks, 268

IP networks, 70-73, 292, 302, 312

logical networks, user segregation, 676

LSA, 464

masks, 376

mesh, 622

NAT, 277

networking model overview, 16

OSI, 17, 28-30

overview, 12-14

private IP networks, 277-278

public IP networks, 276-278

routes, 379

SOHO networks, 15

subnets versus, 324

TCP/IP, 16-29

VLAN switches, 140

WAN, 60

Ethernet WAN, 65-68

leased-line WAN, 61-65

wireless networks, 628-629, 662-663

next-hop IPv6 addresses, 589-590

NIC addresses, 52

NIM (Network Interface Modules), 352

no debug all command, 104

no description command, 157, 170

no duplex command, 157, 170

no ip address command, Layer 3 EtherChannels, 412

no ip domain-lookup command, 146

no logging console command, 145, 148

no network network-id area area-id subcommands, 483

no passive-interface command, 487, 496

no password command, 134

no shutdown command, 142, 155-157, 170, 207, 253, 356, 363, 399, 403-405

[no] shutdown vlan number command, 201

no speed command, 157, 170

no switchport command, 408, 411-415

nonoverlapping channels, 628

nonworking states, troubleshooting, 162-163

NS (Neighbor Solicitation), 599

numbers

DDN, 24

magic number, 334

SEQ, 21

subnet numbers, 272, 283, 324, 327, 334-336

NVRAM (nonvolatile RAM), 100

O

one-size subnets, 273-274

open authentication, 656

operational view of subnetting, 267-268

optical transmitters (fiber-optic cable), 47

OSI (Open Systems Interconnection), 17, 28-30

OSPF (Open Shortest Path First), 450

2-way state, 453-454, 457

area design, 459-462

backbone areas, 460

broadcast network type, 500-506

calculating best routes with SPF, 457-459

configuration, 472, 479-481

default routes, 489-491

Dijkstra SPF algorithm, 451

DR, 456-457

Ethernet links, 456-457

Hello/dead timers, 512-513

Hello messages, 452

interfaces, 493

load balancing, 494

LSAs, 450, 459-464

metrics, 446-447, 491-493

mismatched network types, 515-516

MTU mismatched settings, 515

multiarea OSPF, 482

neighbors, 451

broadcast network type, 502-506

LSA exchanges, 454-456

LSDB exchanges, 454-456

requirements, 508-510

RIDs, 452

states, 453, 457

troubleshooting adjacencies, 510-516

passive interfaces, 487-488

point-to-point network type, 500-501, 506-508

process-id, 472

processes, shutting down, 513-514

RID, 480-481, 511

verifying

configuration, 479-480

operation, 475-478

OSPFv2 (OSPF version 2), 440, 463

interface configuration, 483-486

load balancing, 494

metrics, 493

single-area configuration, 470-475

OSPFv3 (OSPF version 3), 526, 529

outdoor bridges, 621-622

outgoing interfaces, IPv6 static routes with, 587-588

P

PAC (Protected Access Credentials), 659

packets, 28

data packets, routing VLAN, 184

IP packets

de-encapsulating, 373-374

encapsulating in new frames, 375

forwarding, 68-75, 374-375

hot forwarding to default routers (gateways), 372

output errors, 167

PAgP (Port Aggregation Protocol), 250

passing through (communications), 615

passive-interface command, 487, 496, 517

passive-interface default command, 488

password command, 97, 103, 130-132, 147

password faith command, 94

passwords

CLI, 93-94, 130-135

console passwords, 129

enable passwords, 130

shared passwords, 130

Telnet passwords, 129

path selection, 69, 442

PBX (Private Branch Exchange), 196

PDU (Protocol Data Units), 30

PEAP (Protected EAP), 659

permanent keywords, 385

personal mode (WPA), 663

physical console connections, 88-90

physical interfaces, configuration, 251-253

physical layer (TCP/IP), 25-26

ping command, 78, 419-429, 587

pinouts (cables)

10BASE-T, 42-45

100BASE-T, 42-45

1000BASE-T, 45-46

rollover pinouts, 89

pins (connectors), 40

PKIs (Public Key Infrastructures), 660

point-to-multipoint outdoor bridges, 622

point-to-point (Ethernet), 56

point-to-point edge ports, 233

point-to-point lines. See leased-line WAN

point-to-point network type (OSPF), 500-501, 506-508

point-to-point outdoor bridges, 622

point-to-point ports, 233

policies, WLAN client exclusion, 684

Port Aggregation Protocol. See PAgP

port-channel load-balance method command, 254

PortChannels. See EtherChannel

PortFast, 235

ports, 87

802.1w RSTP roles, 230

alternate, 229-232

backup, 230

blocking, choosing, 212

console ports, 672

controllers, 672-673

costs, 247

IEEE default, 223

STP, 221

disabled ports, 230

distribution system ports, 672-673

DP, 217, 222-223, 230

Ethernet ports, 40

interfaces, compared, 671

redundancy ports, 672

RJ-45, 40

routed ports, VLAN routing, 406-414

router auxiliary ports, 362

RP, 217, 220, 230

RSTP

backup, 233

roles, 230

service ports, 672-674

states, 232

switch ports, 110

switch roots, choosing, 220-221

USB ports, 89

WLC ports, 672-673

postal service forwarding, 22

predictability in interesting octet, 333-334

prefixes

IP addresses, 292, 302

defined, 309-310

dividing into network and subnet parts, 312

host part and, 311

length of, 533-536

masks, 305-309

routing, 378

primary root switches, 247

priority, switches, 245-246

privacy

CCMP, 661

data, 655

GCMP, 661

TKIP, 660-661

private addresses (IPv4), 542

private branch exchange. See PBX

private IP networks, 277-278

private lines. See leased-line WAN

privileged EXEC mode, 91-93

problem isolation, traceroute command, 429-431

process-ids (OSPF), 472

proprietary routing protocols, 446

protected access credentials. See PAC

protocols

BGP, 445

BPDU, 218, 225

CAPWAP, 639

CCMP, 661

definition of, 16

distance vector, 446

DTP, 203

EAP, 657-658

EAP-FAST, 659

EAP-TLS, 660

GCMP, 661

IGRP, 446

LACP, 250

LEAP, 659

link-state, 446

LWAPP, 639

MSTP, 242-243

NDP, 573-574

OSPF, 450

2-way state, 453-454, 457

area design, 459-462

backbone areas, 460

broadcast network type, 500-506

calculating best routes with SPF, 457-459

configuration, 472, 479-481

default routes, 489-491

Dijkstra SPF algorithm, 451

DR, 456-457

Ethernet links, 456-457

Hello/dead timers, 512-513

Hello messages, 452

interfaces, 493

load balancing, 494

LSAs, 450, 459-464

metrics, 446-447, 491-493

mismatched network types, 515-516

MTU mismatched settings, 515

multiarea OSPF, 482

neighbors, 451-457, 502-516

passive interfaces, 487-488

point-to-point network type, 500-501, 506-508

process-id, 472

processes, shutting down, 513-514

RID, 480-481, 511

verifying operation, 475-478

OSPFv2, 440, 463

interface configuration, 483-486

load balancing, 494

metrics, 493

single-area configuration, 470-475

OSPFv3, 526, 529

PAgP, 250

PEAP, 659

PVST+, 242-243

RIP, 446

routable protocols, 442

routed protocols, 442

routing protocols, 376-378, 442-449

RPVST+, 242-243, 246

RSTP, 228, 242-243

alternate ports, 230-232

backup port role, 233

BID, 218

BPDU, 218, 225

configurable priority values, 244

configuration, 240

discarding state, 229

forwarding or blocking criteria, 216-217

LAN segment DP, 222-223

link types, 233

looping frames, preventing, 213

multiple spanning tree support, 246

need for, 213-215

ports, 212, 230-233

processes, 232

purpose of, 215-217

root switches, 218, 247

STA, 216

standards, 228

steady-state operation, 225

STP, compared, 229-230

switches, 219-221, 247

topology influences, 223-225

STA, 216

STP, 114-115

802.1D standard, 228

BID, 218-219, 243-244

BPDU, 218, 225

configurable priority values, 244

configuration, 240, 243-244

convergence, 216

EtherChannels, 234, 247-251

Forward delay timer, 225

forwarding or blocking criteria, 216-217

Hello timer, 225

interface states, changing, 227

LAN redundancy, 210, 214

LAN segment DP, 222-223

looping frames, 213

MaxAge timer, 225

modes, 242

multiple STP, 241

need for, 213-215

PortFast, 235

ports, 212, 221, 232

purpose of, 215-217

roles, 227

root switches, 218-219

RSTP, 229-230

security, 236

STA, 216

standards, 242

states, 227

steady-state operation, 225

switch reactions to changes, 226-227

switch RP, 220-221

system ID extensions, 243-244

timers, 226-227

topology influences, 223-225

TCP, 20-21

TCP/IP

application layer, 19-20

compared to OSI, 29

data encapsulation terminology, 27-28

data-link layer, 25-26

history of, 16-17

HTTP, 19-20

IPv4, 22-25, 68-78, 140-144

network layer, 22-25, 68-72, 76-78

overview, 18

physical layer, 25-26

RFC, 18

transport layer, 20-22

TKIP, 660-661

public addresses (IPv4), 542

public IP networks, 276-278

Public Key Infrastructures. See PKIs

PVST+ (Per VLAN Spanning Tree), 242-243

Q - R

QoS (Quality of Service), WLAN, 683-684

quit command, 104

RA (Router Advertisement), 600

radio frequencies. See RF

radios, selecting WLAN, 680

RADIUS servers

configuration, 676

WLAN authentication, 682

RAM (Random Access Memory), 99

ranges for global unicast addresses, 544-545

RC4 cipher algorithm, 657

receivers, communication, 613

redundancy

LAN, 210, 214

management, 674

ports, 672

reference bandwidth, defined, 492

registered private IP networks, 277-278

registered public IP networks, 276-278

reload command, 91-92, 102-104, 117, 402-404

remote subnets, 375

repeaters, 620-621

replies

ARP replies, 77

HTTP, 20

ICMP echo replies, 78

requests

ARP requests, 77

ICMP echo requests, 78

reserved multicast addresses, 569-571

resident subnets, 322

reverse routes, testing, 423-425

RF (Radio Frequencies), 613, 626, 642

RID (Router ID)

defined, 470

OSPF, 511

neighbors, 452

RID configuration, 480-481

troubleshooting, 511

RIP (Routing Information Protocol), 446

RIPng (RIP next generation), 529

RIPv2 (Routing Information Protocol version 2), 446-447

RIR (Regional Internet Registries), 524

RJ-45 connectors, 41

RJ-45 ports, 40

roaming

AP, 618

clients, 642

ROAS (Router-On-A-Stick), 392, 396-401

Rogue Detector mode (AP), 647

roles

alternate ports, 230-232

ports, 230, 233

RSTP port, 230

STP, 227

rollover pinouts (cables), 89

ROM (Read-Only Memory), 100

root bridge ID, 218

root costs, switches, 216

root ports. See RP

root switches, 217

electing, 218-219

RSTP root switches, 247

timer values, 218

routable protocols, 442

route redistribution, 448

routed ports, VLAN routing, 406

EtherChannels, 410-414

routed interfaces, 407-409

routed protocols, 442

router-id command, 470, 496

router ospf command, 470, 495

router ospf 1 command, 472, 480

router ospf process-id command, 480, 510

routers/routing, 35

ABR, 460-461

ARP tables, 378-379

auxiliary ports, 362

backbone, 461

best routes, finding, 451

candidate default routes, 384

Cisco integrated services routers, 352

classful versus classless, 313

CLI, 355-356

connected routes, 366, 376-378

default routers, 70, 370-372

default routes, 379, 383-384

discovering with NDP, 600-601

DR, 456-457

DROthers, 457

dynamic unicast address configuration, 564

enterprise routers, 350-353

floating static routes, 381-383

flooding, 450

host routes, 378-379

logic, 370

static host routes, 381

installation, 350-354

interfaces, 356-361

internal routers, 461

IP routing, 366, 369

ARP tables, 378-379

de-encapsulating IP packets, 373-374

encapsulating IP packets in new frames, 375

example of, 371-376

forwarding, 374-375, 386-389

host forwarding of IP packets to default routers (gateways), 372

IPv4 routing, 24-25, 68-75, 355-362, 369-371, 527

IPv6 routing, 527-530, 558, 583-598

processing incoming frames, 373

tables, 388-389

transmitting frames, 376

troubleshooting, 419-434

link-local address configuration, 566-569

local routes, 378

logic

host routing, 370

IPv4 routing, 371

LSA, 463

network masks, 378

network routes, 379

OSPF interface costs, 493

overview, 348

path selection, 69

prefixes, 378

protocol codes, 378

protocols, 376

administrative distance, 448-449

algorithms, 445

AS, 444

classful versus classless, 313

classless/classful, 447-448

convergence, 443

defined, 442

distance vector, 446

EGP, 444

EIGRP, 446

functions, 443

IGP, 444-448

link-state, 446

OSPF, 446-447, 450-464, 475-482, 487-491

path selections, 442

proprietary, 446

RIPv2, 446-447

route redistribution, 448

remote subnets, 375

reverse routes, testing, 423-425

ROAS

configuration, 396-398

subinterfaces, 399-401

troubleshooting, 400-401

verifying, 398-400

SOHO routers, 354

static unicast address configuration, 557-564

static routes, 367, 376

configuration, 379-384

default routes, 379

floating static routes, 381-383

host routes, 379-381

static default routes, 383-384

static network routes, 379

troubleshooting, 385-386

subnet router anycast addresses, 576

VLAN routing, 183-184, 395

Layer 3 (multilayer) switch routed ports, 406-414

Layer 3 (multilayer) switch SVI, 401-406

ROAS, 396-401

WAN, 64-65

RP (Root Ports), 217, 220-221, 230

RPVST+ (Rapid Per VLAN Spanning Tree+), 242-243, 246

RS (Router Solicitation), 600

RSTP (Rapid Spanning Tree Protocol), 228, 242-243

alternate ports, 230-232

backup port role, 233

BID, 218

blocking criteria, 216-217

BPDU, 218, 225

configurable priority values, 244

configuration, 240

discarding state, 229

forwarding criteria, 216-217

LAN segment DP, 222-223

link types, 233

looping frames, preventing, 213

multiple spanning tree support, 246

need for, 213-215

ports, 233

blocking, 212

roles, 230

states, 232

processes, 232

purpose of, 215-217

root switches, 218, 247

STA, 216

standards, 228

steady-state operation, 225

STP, compared, 229-230

switches

electing, 219

priority, 247

RP, choosing, 220-221

topology influences, 223-225

running-config file, 100

runts, 167

S

S0/0/0 status code, 359

same-layer interaction, 21-22

scopes of multicast addresses, 571-572

sdm prefer command, 402-404

sdm prefer lanbase-routing command, 402, 415

SE Connect mode (APs), 647

secondary root switches, 247

Secure Shell. See SSH

security. See also authentication

attacks, 654

CLI, 93-94, 128-139

data integrity, 656

data privacy, 655

decryption, 655

encryption, 655

fake AP, 654

forward secrecy, 663

intrusion protection, 642

MIC, 656

privacy/integrity methods, 660-661

shared-key, 657

STP, 236

transmissions reaching unintended recipients, 652

WLAN, 681-684

WLC authentication, 642

WPA, 662-663

WPA2, 662-663

WPA3, 662-663

self-healing coverage, 642

sender MAC addresses, 661

SEQ (Sequence Numbers), 21

sequence counters (TKIP), 661

sequence numbers (SEQ), 21

serial lines. See leased-line WAN

Serial WAN (Wide Area Networks), 350

servers

AAA servers, 136

AS, 658

external authentication servers, 135-136

RADIUS, 676, 682

Telnet servers, 91

service ports, 672-674

service set identifiers. See SSID

session timeouts (WLAN), 684

SFP (Small Form Pluggable), 42, 48

SFP+ (Small Form Pluggable Plus), 42, 48

shared-key security, 657

shared media (Ethernet), 56

shared passwords, 130

shared ports, 234

shorter VLAN configuration example, 189

Shortest Path First algorithm. See SPF algorithm

show arp command, 391

show command, 95, 166, 361, 480, 508

show crypto key mypubkey rsa command, 149

show dhcp lease command, 143-144, 149

show etherchannel 1 summary command, 250

show etherchannel command, 248, 259, 416

show etherchannel summary command, 413

show history command, 145, 149

show interfaces command, 119-120, 156, 162-164, 167-170, 357-358, 361, 364, 376, 408, 416, 515-517, 583

show interfaces description command, 162, 170

show interfaces interface-id trunk command, 203-205

show interfaces status command, 118, 125, 153, 156, 162-165

Layer 3 EtherChannels, 412

routed ports, 408

show interfaces switchport command, 192-195, 199, 202-203, 208

show interfaces trunk command, 193-194, 199-200, 203-205, 208, 401

show interfaces type number switchport command, 199

show interfaces type number trunk command, 200

show interfaces vlan command, 143-144, 149, 416

show ip arp command, 391

show ip default-gateway command, 144, 149

show ip interface brief command, 357-361, 364, 406

show ip ospf command, 481

defined, 496, 517

duplicate OSPF RID, 511

OSPF neighbors, troubleshooting, 510

show ip ospf database command, 450, 462, 475, 497

show ip ospf interface brief command, 479-480, 488, 491, 503-505, 508, 511, 514

defined, 496, 517

OSPF neighbors, troubleshooting, 510

show ip ospf interface command, 488, 503-505, 513

defined, 496, 517

Hello/dead timer mismatches, 512

OSPF neighbors, troubleshooting, 510

OSPFv2 interface configuration, 486

show ip ospf interface G0/0 command, 505

show ip ospf neighbor command, 452-453, 457, 475, 480, 497, 502, 505, 508-511, 513-517

show ip ospf neighbor interface brief command, 513

show ip protocols command

defined, 496, 517

OSPFv2 interface configuration, 485

show ip route address command, 388

show ip route command, 324, 356, 367, 376, 378-391, 400-402, 408, 475-478, 585

administrative distance, 449

defined, 497

routing tables, displaying, 416

show ip route [connected] command, 398

show ip route EXEC command, 404

show ip route ospf command, 387, 497

show ip route static command, 380, 490

show ip ssh command, 139, 149

show ipv6 interface brief command, 558-560, 567, 575, 579

show ipv6 interface command, 558-559, 567, 570-573, 579

show ipv6 route command, 566, 579, 585-590, 605

show ipv6 route connected command, 560, 586

show ipv6 route local command, 585-586

show ipv6 route static command, 587-590, 593-595

show mac address-table aging-time command, 122, 125

show mac address-table command, 120, 125, 356

show mac address-table count command, 122, 125

show mac address-table dynamic address command, 125

show mac address-table dynamic command, 96, 117, 123-125, 170

show mac address-table dynamic interface command, 120-121, 125

show mac address-table dynamic vlan command, 125

show mac address-table static command, 170

show mac address-table vlan command, 121

show protocols command, 361, 364

show running-config | interface command, 170

show running-config command, 93, 101, 104, 132-133, 143, 149, 155, 158, 170, 398, 479, 488, 511, 584

show spanning-tree command, 249, 259

show spanning-tree vlan command, 259

show spanning-tree vlan vlan-id command, 204

show ssh command, 139, 149

show startup-config command, 101, 104, 158

show vlan brief command, 186-189, 202

show vlan command, 201, 208, 398-401, 416

show vlan id command, 187

show vtp status command, 190, 208

shutdown command, 143, 155, 163, 170, 207, 253, 356, 359, 363, 399-401, 405

signals

sending messages, 623

waves, 623-627

single-area OSPF, 459

single-area OSPFv2, 470-475

single-mode fiber-optic cables, 47-49

single-size subnets, 273-274

SLAAC (Stateless Address Auto Configuration), 560, 598, 601

slash masks, 305

small office/home office (SOHO) LANs, 35

small office/home office (SOHO) networks, 15

SNA (Systems Network Architecture), 16

Sniffer mode (APs), 647

software configuration

common command prompts, 98

configuration files, 99-102

configuration mode, 96-97

configuration submodes and contexts, 97-99

SOHO (Small Offices/Home Offices)

LAN, 35

networks, 15

routers, 354

solicited-node multicast addresses, 573-574

source MAC addresses, 113

spanning-tree algorithm. See STA

spanning-tree commands, 259

spanning-tree mode command, 242-243, 259

Spanning Tree Protocol. See STP

spanning-tree vlan command, 244

spanning-tree vlan x root primary command, 244-245

spanning-tree vlan x root secondary command, 244-245

speed, switch interface configurations, 152-154

speed command, 98-99, 152-154, 165, 170, 355, 363

SPF (Shortest Path First) algorithm

Dijkstra SPF, 451

OSPF best routes, calculating, 457-459

split-MAC architectures, 638-643

SSH (Secure Shell), 91, 136-139, 432-434

SSID (Service Set Identifiers), 615

broadcasting, 681

multiple on one AP, supporting, 617

STA (spanning-tree algorithm), 216

startup-config file, 100

state change reactions (STP topology), 224-225

Stateless Address Auto Configuration. See SLAAC

states

discarding, 230

interfaces, 215-217, 227

ports, 232

STP, 227

static default routes (IPv6), 592-593

static host routes (IPv6), 593

static ranges per subnet, choosing, 286-287

static routes, 367, 376

configuration, 379-384

default routes, 379

floating static routes, 381-383, 593-595

global unicast next-hop address, 589

host routes, 379-381

link-local next-hop address, 589-590

outgoing interface, 587-588

over Ethernet links, 591

overview, 586

static default routes, 383-384, 592-593

static host routes, 593

static network routes, 379

troubleshooting, 385-386, 595-598

static unicast address configuration (IPv6)

configuration full 128-bit address, 557-558

enabling IPv6 routing, 558

generating unique interface ID with modified EUI-64, 560-564

verifying, 558-560

status codes

routers, 358-359

troubleshooting, 162-163

STP (Spanning Tree Protocol), 114-115, 210, 243

802.1D standard, 228

BID, 218-219, 243-244

blocking criteria, 212, 216-217

BPDU, 218, 225

configurable priority values, 244

configuration, 240, 243-244

convergence, 216

EtherChannels, 234, 247-251

Forward delay timer, 225

forwarding criteria, 216-217

Hello timer, 225

interface states, changing, 227

LAN

redundancy, 210, 214

segment DPs, choosing, 222-223

looping frames, preventing, 213

MaxAge timer, 225

modes, 242

multiple STP, 241

need for, 213-215

PortFast, 235

ports

blocking criteria, 212, 216-217

cost, 221

states, 232

purpose of, 215-217

roles, 227

root switches, electing, 218-219

RSTP, compared, 229-230

security, 236

STA, 216

standards, 242

states, 227

steady-state operation, 225

switch reactions to changes, 226-227

switch RP, choosing, 220-221

system ID extensions, 243-244

timers, 226-227

topology influences, 223-225

straight-through cable pinouts, 42-45

subcommands, 97

auto-cost reference-bandwidth, 493

bandwidth, 492

ip address, 376

no network network-id area area-id, 483

switchport trunk allowed vlan, 204

subdivided networks. See subnets

subinterfaces, 396-401

subnet masks, 272, 302. See also subnets

classful IP networks before subnetting, 279-280

converting between formats, 305-309

difficult masks, 334-338

easy masks, 332

formats for, 304-305

hosts

borrowing bits to create subnet bits, 280-281

calculating in network, 313-315

choosing bits, 281

mask formats, 282-283

prefix part, 309-312

sample design, 282

VLSM, 275

subnet numbers, 272, 283, 334-336

subnets, 543. See also subnet masks

addresses, 272, 283, 324, 327, 334-336

analyzing

subnet needs, 269, 271

with decimal math, 332, 339

assigning to different locations, 285

binary math, 326

Boolean math, 331

finding range of addresses, 331

finding subnet IDs, 327

practice problems, 328-329

shortcut for binary process, 330

Boolean math, 331

broadcasts, 272, 283, 325-327, 336-338

building list of, 283-284

calculating, 313-315

decimal math, 331

difficult masks, 334-338

easy masks, 332

finding subnet broadcast addresses, 336-338

predictability in interesting octet, 333-334

reference table: DDN mask values and binary equivalent, 339

definition of, 267, 322

design choices, 276-284

design views, 267-268

dynamic ranges, choosing, 286-287

examples of

networks with four subnets, 322-323

simple example, 267

hosts, 268-271

ID, 272, 283, 324, 330

finding with binary math, 327

finding with decimal math, 334-336

IPv4, 548

IPv6, 548

IP addresses, 283-284, 302, 312

IPv4, 70, 73, 545

IPv6

assigning to internetwork topology, 549

interface ID, 547

listing, 548-549

with global unicast addresses, 545-549

with unique local addresses, 551-552

multiple subnet sizes, 274

networks versus, 324

number of hosts, 271

number of subnets, 270

one-size subnets, 273

operational view, 267-268

overview, 266

plan documents, 267

planning implementations, 284-287

range of usable addresses, 325

remote subnets, 375

resident subnets, 322

router anycast addresses, 549, 576

simple example, 267

single-size subnets, 273

size of, 272-274

static ranges, choosing, 286-287

subnet numbers, 272, 283, 324, 327, 334-336

VLSM, 275

superior Hello messages, 219

supplicants, 658

SVI (Switched Virtual Interfaces), 392, 401-406

switch ports, 110

switches

access switches, 241

alternate ports, 229

auto-mdix, 45

backup ports, 230

BID, 218, 243-244

BPDU, 218, 225

Cisco Catalyst switches, 86

configuration files, 99-102

DHCP, 143

distribution switches, 241

EtherChannels, 234

Ethernet switches, 48

filtering decisions, 110-113

forwarding decisions, 110-113

history buffer commands, 144-145

interfaces, 87, 110, 118-120

autonegotiation, 158-162

description, 152-154

duplex, 152-154, 163-166

enabling/disabling interfaces, 155-156

Layer 1 problems, 166-168

multiple interfaces, 154-155

overview, 152

removing configuration, 157-158

speed, 152-154, 163-166

status codes, 162-163

troubleshooting, 162-168

IPv4, 140-144

LAN segment DP, choosing, 222-223

LAN switches, 35

analyzing, 116

flooding, 114

interface configuration, 152-162

MAC address table, 113-114, 117-124

overview, 106-109

STP, 114-115

summary, 115-116

switch forwarding and filtering decisions, 110-113

switch interfaces, 118-120, 152-162

switching logic, 109-110

verifying, 116

Layer 2 switches, 141, 183

Layer 3 (multilayer) switches, 141, 184, 401-414

links, 233

MAC address tables, 111, 214-215

management

DHCP, 143

history buffer commands, 144-145

IPv4, 140-144

overview, 126

security, 128-139

multilayer switches, 184

PortFast, 235

ports, 87, 230-233

priority, 245-246

root costs, 216

root switches, 217-219, 247

RP, choosing, 220-221

RSTP switch priority, 247

security, 128-139

STP

reacting to changes, 226-227

topology influences, 223-225

system ID extensions, 245-246

unknown unicast frames, 114

VLAN configuration, 140

voice switches, 196

switching tables. See MAC address tables

switchport access vlan command, 185-189, 198-199, 207

switchport command

Layer 3 switches, 415

routed ports, 408

switchport mode access command, 185, 188, 198-199

switchport mode command, 191, 207

switchport mode dynamic auto command, 202

switchport mode dynamic desirable command, 193

switchport mode trunk command, 191, 203, 396

switchport nonegotiate command, 195, 203, 207

switchport trunk allowed vlan command, 204, 207

switchport trunk encapsulation command, 191, 207

switchport trunk native vlan command, 207

switchport trunk native vlan vlan-id command, 205

switchport voice vlan command, 198-199, 207

switchport voice vlan vlan-id command, 200

system ID extensions, 243-246

T

T1. See leased-line WAN

tables

ARP tables, 77, 378-379

IP routing tables, 70-72, 388-389

MAC address tables, 111-124, 214-215

tagging (VLAN), 181-182

TCP (Transmission Control Protocol), 20-21

TCP/IP (Transmission Control Protocol/Internet Protocol)

application layer, 19-20

data encapsulation terminology, 27-28

data-link layer, 25-26

history of, 16-17

HTTP, 19-20

IPv4, 22-25, 68-78, 140-144

network layer, 22-25

ARP, 77

DNS, 76-77

routing, 68-72

testing connectivity, 78

OSI, compared, 29

overview, 18

physical layer, 25-26

RFC, 18

transport layer, 20-22

Telnet, 90-91, 129, 432-434

terminal history size command, 145, 149

test etherchannel load-balance EXEC command, 255

testing

IPv4 connectivity, 78

LAN neighbors, 425-426

reverse routes, 423-425

WAN neighbors, 427

three-area OSPF (Open Shortest Path First), 460

time stamps, 661

timers

Hello/dead mismatches, troubleshooting, 512-513

Hello messages, 455

STP, 226-227

TKIP (Temporal Key Integrity Protocol), 660-661

topologies

AP noninfrastructure modes, 620-622

STP, 223-225

WLAN, 614-622

traceroute command, 428-432, 587

traffic flows, BSS, 615

trailer fields (Ethernet), 50

transmissions

bidirectional communication, 613

interference, 613

unidirectional communication, 613

unintended recipients, 652

transmitters, communication, 613

transmitting

frames, IP routing, 376

optimizing transmit power, 642

transport input all command, 139

transport input command, 138, 148, 356

transport input none command, 139

transport input ssh command, 139

transport input telnet ssh command, 139

transport layer (TCP/IP), 20-22

troubleshooting

EtherChannels, 251-253

Ethernet LAN, 166-168

Hello/dead timers, 512-513

interfaces, 162-168

IP routing

ping command, 419-429

SSH, 432-434

Telnet, 432-434

traceroute command, 428-432

Layer 3 EtherChannels, 413-414

Layer 3 (multilayer) switch SVI, 404-406

native VLAN, 205

neighbor adjacencies, 510-516

OSPF

mismatched MTU settings, 515

mismatched network types, 515-516

neighbor adjacencies, 510-516

shutting down processes, 513-514

ping command, 419-429, 587

RID, 511

ROAS, 400-401

SSH, 432-434

static IPv6 routes, 595-598

static routes, 385-386

Telnet, 432-434

traceroute command, 428-432, 587

VLAN, 201-205

trunking

802.1Q, 182

administrative mode, 191

configuration, 191-195

dynamic auto mode, 191

dynamic desirable mode, 191

ISL, 182

overview, 180-181

type of, 191

VLAN

mismatched native VLAN, 205

mismatched trunking operational states, 202-203

supported VLAN list on trunks, 203-205

tagging, 181-182

VTP, 189-190

TTL (Time To Live), 429

TTL Exceeded (Time-to-Live Exceeded), 429-431

tunneling, CAPWAP, 639-640

two-switch topology, 123-124

U

UDP (User Datagram Protocol), 20

unabbreviated addresses (IPv6), 530

undebug all command, 104

undefined VLAN, troubleshooting, 201-202

unicast addresses, 50-52, 290, 322, 540, 556-564

unidirectional communication, 613

unified architectures. See centralized architectures

unique local addresses, 542, 551-553

universal addresses, 51

unknown addresses (IPv6), 574

unknown unicast frames, 114

URI (Universal Resource Identifiers), 20

URL (Uniform Resource Locators), 20

USB ports, 89

User Datagram Protocol (UDP), 20

user EXEC mode, 91-93

user mode

external authentication servers, 135-136

passwords, 130-135

usernames, 133-135, 147

users, segregating into logical networks, 676

UTP (Unshielded Twisted-Pair) cables, 37

cabling pinouts, 42-49

overview, 39-40

UTP Ethernet links, 40-41

uWGB (Universal Workgroup Bridges), 621

V

verifying

Data VLAN, 198-199

EtherChannel configuration before adding interfaces, 251-253

Ethernet switching, 116

IPv4 on switch, 143-144

Layer 3 (multilayer) switch SVI, 403-404

OSPF

configuration, 479-480

operation, 475-478

OSPFv2 interface configuration, 485-486

ROAS, 398-400

static unicast address configuration, 558-560

Voice VLAN, 198-199

virtual interfaces (controllers), 674

VLAN (Virtual Local Area Networks)

AP, 635, 668

configuration, 185-195, 198-199

Data VLAN, 197-199

default VLAN, 186

disabled VLAN, troubleshooting, 201-202

dynamic interface ID, 678

hopping, 205

ID, 180

interfaces, 402

IP telephony, 196-200

LAN trunking, 182

mapping, 673

native VLAN, 183, 205, 398

overview, 179-180

PVST+, 242-243

routing, 183-184, 395-414

split-MAC architecture, 640

supported VLAN list on trunks, 203-205

switches, 140

tagging, 181-182

troubleshooting

disabled VLAN, 201-202

supported VLAN list on trunks, 203-205

trunking, 202-205

undefined VLAN, 201-202

trunking, 180-182, 189-195

VLAN ID, 180

Voice VLAN, 197-199

vlan command, 185, 198, 207

vlan number command, 201

VLSM (Variable Length Subnet Masks), 275

voice switches, 196

VTP (VLAN Trunking Protocol), 189-190

vtp mode command, 207

vtp mode off command, 190

vtp mode transparent command, 190

W - X - Y - Z

WAN (Wide Area Networks), 32, 60

Ethernet WAN, 65-68

enterprise networks, 350

point-to-point network type (OSPF), 506-508

leased-line WAN, 61-65

neighbors, testing, 427

Serial WAN, enterprise networks, 350

waves

continuous pattern, 623

cycles, 625

electric/magnetic, 624

electromagnetic, 624

frequency, 625-627

propagation with idealistic antenna, 624

WebAuth (Web Authentication), 657

WEP (Wired Equivalent Privacy), 657

WGB (Workgroup Bridges), 621

wildcard masks, 473-475

wired LAN. See Ethernet, LAN

wired networks, 612-613

wireless band frequencies, 627

wireless LAN, 32

wireless networks

802.11 standard, 628-629

waves, 625

wired networks, compared, 612-613

WPA, 662-663

WPA2, 662-663

WPA3, 662-663

WLAN (Wireless Local Area Networks)

802.11 WLAN, 614

advanced settings, 684-685

AP, 668-669

BSS, 614-616

client session timeouts, 684

configuration, 675

advanced settings, 684-685

controller configuration, 685

dynamic interfaces, 678

QoS, 683-684

RADIUS servers, 676

security, 681-682

creating, 679-681

defined, 675

DS, 616-618

dynamic interfaces, creating, 678

ESS, 618

IBSS, 619

limiting, 676

listings of, displaying, 679

management access, allowing, 685

mesh networks, 622

outdoor bridges, 621-622

QoS, 683-684

RADIUS server, configuration, 676

repeaters, 620-621

security, 681-684

too many, creating, 676

topologies, 614-622

user segregation into logical networks, 676

WGB, 621

WLC, 669-675

WLC (Wireless LAN Controllers)

activities, 642

centralized, 642-643

cloud-based architectures, 643

dynamic interfaces, 674-675

embedded deployments, 644

interfaces, 673-675

LAP, 639-640

management interfaces, 674

Mobility Express WLC deployments, 645

ports, 672-673

redundancy management, 674

service port interfaces, 674

virtual interfaces, 674

WLAN, 669-675

working interfaces, defined, 217

WPA (Wi-Fi Protected Access), 662-663

WPA2 (Wi-Fi Protected Access version 2), 662-663

WPA3 (Wi-Fi Protected Access version 3), 662-663

write erase command, 104

..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
3.145.12.1