Lub zeem muag ntawm kev qhib lub chaw ua haujlwm thib ob ntawm sab nraud ntawm lub nroog
Kev xaiv khoom siv
Kuv yuav tsis delve rau hauv kev xaiv ntawm tus neeg muag khoom, vim qhov no yog qhov teeb meem uas ua rau muaj kev tsis sib haum xeeb ntawm lub hnub nyoog; peb yuav tsom mus rau qhov tseeb tias lub hom phiaj tau txiav txim siab rau, nws yog Cisco.
Lub hauv paus ntawm lub network yog router (router). Nws yog ib qho tseem ceeb los ntsuas peb cov kev xav tau, raws li peb tab tom npaj yuav nthuav dav lub network yav tom ntej. Kev yuav ib lub router nrog qhov tshwj tseg rau qhov no yuav txuag cov neeg siv khoom thaum lub sijhawm nthuav dav, txawm tias nws yuav kim dua me ntsis ntawm thawj theem. Cisco rau cov lag luam me me muaj cov Rvxxx series, uas suav nrog cov routers rau cov chaw ua haujlwm hauv tsev (RV1xx, feem ntau nrog lub built-in Wi-Fi module), uas yog tsim los txuas ntau lub chaw ua haujlwm thiab chaw cia khoom network. Tab sis peb tsis txaus siab rau lawv, vim tias lawv muaj peev xwm txwv VPN ntau dua thiab tsis tshua muaj bandwidth. Peb kuj tsis txaus siab rau lub built-in wireless module, vim nws yuav tsum tau muab tso rau hauv ib chav tsev technical nyob rau hauv ib lub khib; Wi-Fi yuav raug teeb tsa siv AP (Access Points). Peb qhov kev xaiv yuav poob rau ntawm RV320, uas yog tus qauv junior ntawm cov laus series. Peb tsis xav tau ntau qhov chaw nres nkoj hauv qhov hloov pauv, vim tias peb yuav muaj qhov hloov pauv sib txawv txhawm rau muab cov chaw nres nkoj txaus. Lub ntsiab kom zoo dua ntawm lub router yog nws txoj kev ncaj ncees siab. VPN neeg rau zaub mov (75 Mbits), daim ntawv tso cai rau 10 VPN tunnels, muaj peev xwm nce qhov Site-2-site VPN qhov. Kuj tseem ceeb yog qhov muaj qhov chaw nres nkoj WAN thib ob los muab kev sib txuas hauv Is Taws Nem thaub qab.
Lub router yuav tsum yog hloov (switch). Qhov tseem ceeb tshaj plaws ntawm kev hloov pauv yog cov haujlwm uas nws muaj. Tab sis ua ntej, cia peb suav cov chaw nres nkoj. Hauv peb qhov xwm txheej, peb npaj yuav txuas mus rau qhov hloov pauv: 17 PCs, 2 APs (Wi-Fi access point), 8 IP koob yees duab, 1 NAS, 3 network printers. Siv tus lej lej, peb tau txais tus lej 31, suav nrog tus lej ntawm cov khoom siv pib txuas nrog lub network, ntxiv 2 rau qhov no. uplink (peb npaj yuav nthuav dav lub network) thiab yuav nres ntawm 48 chaw nres nkoj. Tam sim no hais txog kev ua haujlwm: peb qhov hloov pauv yuav tsum muaj peev xwm VLANs, zoo dua tag nrho 4096, yuav tsis mob SFP mine, txij li thaum nws yuav muaj peev xwm mus txuas ib tug mus rau lwm qhov kawg ntawm lub tsev siv optics, nws yuav tsum muaj peev xwm ua hauj lwm nyob rau hauv ib tug kaw lub voj voog, uas ua rau nws muaj peev xwm rau peb khaws cov kev sib txuas (STP-Spanning Tree Protocol), kuj cov AP thiab cov koob yees duab yuav tsum powered ntawm twisted khub, yog li nws yog tsim nyog los muaj POE (koj tuaj yeem nyeem ntxiv txog cov txheej txheem hauv wiki, cov npe yog clickable). nyuaj dhau L3 Peb tsis xav tau kev ua haujlwm, yog li peb qhov kev xaiv yuav yog Cisco SG250-50P, vim nws muaj kev ua haujlwm txaus rau peb thiab tib lub sijhawm tsis suav nrog cov haujlwm tsis tu ncua. Peb yuav tham txog Wi-Fi hauv tsab xov xwm tom ntej, vim qhov no yog lub ntsiab lus dav dav. Peb yuav nyob ntawm qhov kev xaiv ntawm AR. Peb tsis xaiv NAS thiab cov koob yees duab, peb xav tias lwm tus neeg ua qhov no, tab sis peb tsuas yog nyiam hauv lub network.
Kev npaj
Ua ntej, cia peb txiav txim siab seb peb xav tau dab tsi virtual networks (koj tuaj yeem nyeem VLANs dab tsi hauv Wikipedia). Yog li, peb muaj ntau qhov kev sib tham hauv lub network:
Client workstations (PCs)
Server (NAS)
Video keb soj ntsuam
Guest devices (WiFi)
Tsis tas li ntawd, raws li cov cai ntawm tus cwj pwm zoo, peb yuav txav lub cuab yeej tswj kev sib txuas mus rau hauv VLAN cais. Koj tuaj yeem suav VLANs hauv ib qho kev txiav txim, Kuv yuav xaiv qhov no:
VLAN10 Management (MGMT)
VLAN50 Server's
VLAN100 LAN + WiFi
VLAN150 Tus Neeg Qhua Wi-Fi (V-WiFi)
VLAN200 CAM
Tom ntej no, peb yuav kos ib qho kev npaj IP thiab siv daim npog qhov ncauj 24 ntsis thiab subnet 192.168.x.x. Cia peb pib.
Lub pas dej ua ke tshwj xeeb yuav muaj chaw nyob uas yuav raug teeb tsa zoo li qub (lub tshuab luam ntawv, servers, kev tswj hwm kev sib txuas, thiab lwm yam, rau cov neeg siv khoom. DHCP yuav muab qhov chaw nyob dynamic).
Yog li peb kwv yees tus IP, muaj ob peb lub ntsiab lus uas kuv xav tau them rau:
Tsis muaj qhov taw tes rau kev teeb tsa DHCP hauv kev tswj hwm lub network, ib yam li hauv chav neeg rau zaub mov, vim tias txhua qhov chaw nyob tau muab manually thaum teeb tsa cov khoom siv. Qee tus neeg tawm hauv lub pas dej me me DHCP thaum txuas cov cuab yeej tshiab, rau nws qhov kev teeb tsa thawj zaug, tab sis kuv tau siv rau nws thiab kuv qhia koj kom teeb tsa cov khoom siv tsis yog ntawm tus neeg siv khoom qhov chaw, tab sis ntawm koj lub rooj, yog li kuv tsis ua. ua pas dej ua ke no.
Qee lub koob yees duab qauv yuav xav tau qhov chaw nyob zoo li qub, tab sis peb xav tias cov koob yees duab tau txais nws tau txais.
Nyob rau hauv lub zos network, peb tawm hauv lub pas dej ua ke rau cov tshuab luam ntawv, txij li thaum lub network luam ntawv kev pab cuam tsis ua hauj lwm tshwj xeeb kev ntseeg siab nrog dynamic chaw nyob.
Configuring lub router
Zoo, thaum kawg cia peb mus rau qhov teeb tsa. Peb muab cov hlua khi thiab txuas mus rau ib qho ntawm plaub qhov chaw nres nkoj LAN ntawm lub router. Los ntawm lub neej ntawd, DHCP server tau qhib rau ntawm lub router thiab muaj nyob ntawm qhov chaw nyob 192.168.1.1. Koj tuaj yeem tshawb xyuas qhov no siv ipconfig console utility, nyob rau hauv cov zis uas peb router yuav yog lub rooj vag qub. Cia peb kuaj:
Hauv qhov browser, mus rau qhov chaw nyob no, paub meej tias qhov kev sib txuas tsis ruaj ntseg thiab nkag mus nrog tus ID nkag mus / lo lus zais cisco / cisco. Tam sim ntawd hloov tus password mus rau ib qho kev ruaj ntseg. Thiab ua ntej ntawm tag nrho cov, mus rau Setup tab, Network seem, ntawm no peb muab lub npe thiab sau npe rau lub router.
Tam sim no cia peb ntxiv VLANs rau peb lub router. Mus rau Chaw Tswj Kev Tswj / VLAN Kev Koom Tes. Peb yuav tau txais tos los ntawm VLAN-ok kos npe, teeb tsa los ntawm lub neej ntawd
Peb tsis xav tau lawv, peb yuav rho tawm tag nrho tsuas yog thawj tus, vim nws yog lub neej ntawd thiab tsis tuaj yeem muab tshem tawm, thiab peb mam li ntxiv cov VLANs uas peb npaj. Tsis txhob hnov ββββqab kos lub thawv rau saum. Peb tseem yuav tso cai rau kev tswj xyuas cov cuab yeej nkaus xwb los ntawm kev tswj hwm network, thiab tso cai rau kev sib txuas ntawm cov tes hauj lwm txhua qhov chaw tshwj tsis yog cov qhua network. Peb mam li teeb tsa cov chaw nres nkoj me ntsis tom qab.
Tam sim no cia peb teeb tsa DHCP server raws li peb lub rooj. Txhawm rau ua qhov no, mus rau DHCP / DHCP Teeb.
Rau cov tes hauj lwm uas DHCP yuav ua tsis taus, peb yuav teeb tsa lub rooj vag chaw nyob, uas yuav yog thawj zaug hauv subnet (thiab daim npog qhov ncauj raws li).
Hauv kev tes hauj lwm nrog DHCP, txhua yam yooj yim heev, peb kuj teeb tsa lub rooj vag chaw nyob, thiab sau npe cov pas dej thiab DNS hauv qab no:
Nrog rau qhov no peb tau cuam tshuam nrog DHCP, tam sim no cov neeg siv khoom txuas nrog lub network hauv zos yuav tau txais qhov chaw nyob. Tam sim no cia peb teeb tsa cov chaw nres nkoj (cov chaw nres nkoj tau teeb tsa raws li tus qauv 802.1q, qhov txuas yog clickable, koj tuaj yeem paub koj tus kheej nrog nws). Txij li nws tau xav tias txhua tus neeg siv khoom yuav txuas nrog los ntawm kev tswj cov hloov pauv ntawm qhov tsis muaj npe (ib haiv neeg) VLAN, txhua qhov chaw nres nkoj yuav yog MGMT, qhov no txhais tau tias txhua yam khoom siv txuas nrog qhov chaw nres nkoj no yuav poob rau hauv lub network (ntau cov ntsiab lus ntawm no). Cia peb rov qab mus rau Chaw Tswj Xyuas Chaw Tswj / VLAN Kev Koom Tes thiab teeb tsa qhov no. Peb tawm VLAN1 Tsis suav nrog txhua qhov chaw nres nkoj, peb tsis xav tau.
Tam sim no ntawm peb daim npav network peb yuav tsum teeb tsa qhov chaw nyob zoo li qub los ntawm kev tswj hwm subnet, txij li peb tau xaus rau hauv lub subnet tom qab peb nyem "txuag", tab sis tsis muaj DHCP server ntawm no. Mus rau lub network adapter chaw thiab teeb tsa qhov chaw nyob. Tom qab ntawd, lub router yuav muaj nyob ntawm 192.168.10.1
Cia peb teeb tsa peb qhov kev sib txuas hauv Is Taws Nem. Cia peb xav tias peb tau txais qhov chaw nyob zoo li qub los ntawm tus kws kho mob. Mus rau Teeb / Network, kos WAN1 hauv qab, nyem Kho. Xaiv tus IP Static thiab teeb tsa koj qhov chaw nyob.
Thiab qhov kawg rau hnub no yog teeb tsa kev nkag mus rau thaj chaw deb. Txhawm rau ua qhov no, mus rau Firewall / General thiab kos lub thawv tswj chaw taws teeb, teeb tsa qhov chaw nres nkoj yog tias tsim nyog
Qhov ntawd yog txhua yam rau hnub no. Raws li qhov tshwm sim ntawm tsab xov xwm, peb muaj ib qho yooj yim configured router uas peb tuaj yeem nkag tau hauv Internet. Qhov ntev ntawm tsab xov xwm no ntev dua li qhov kuv xav tau, yog li hauv ntu tom ntej peb yuav ua tiav teeb tsa lub router, txhim kho VPN, teeb tsa lub firewall thiab nkag mus, thiab tseem teeb tsa qhov hloov pauv thiab peb yuav tuaj yeem tso peb lub chaw ua haujlwm. . Kuv vam tias tsab xov xwm no tsawg kawg yog ib qho tseem ceeb thiab qhia rau koj. Kuv tabtom sau thawj zaug, Kuv yuav zoo siab heev tau txais kev thuam thiab cov lus nug, Kuv yuav sim teb txhua tus thiab coj koj cov lus rau hauv tus account. Tsis tas li ntawd, raws li kuv tau sau thaum pib, koj xav txog dab tsi ntxiv yuav tshwm sim hauv chaw ua haujlwm thiab lwm yam uas peb yuav teeb tsa tau txais tos.