Configure Switch Nortel 8600
Upcoming SlideShare
Loading in...5
×
 

Like this? Share it with your network

Share

Configure Switch Nortel 8600

on

  • 851 views

configure passport 8600 nortel By Eli KEndel

configure passport 8600 nortel By Eli KEndel

Statistics

Views

Total Views
851
Views on SlideShare
851
Embed Views
0

Actions

Likes
0
Downloads
9
Comments
0

0 Embeds 0

No embeds

Accessibility

Categories

Upload Details

Uploaded via as Microsoft Word

Usage Rights

© All Rights Reserved

Report content

Flagged as inappropriate Flag as inappropriate
Flag as inappropriate

Select your reason for flagging this presentation as inappropriate.

Cancel
  • Full Name Full Name Comment goes here.
    Are you sure you want to
    Your message goes here
    Processing…
Post Comment
Edit your comment

Configure Switch Nortel 8600 Document Transcript

  • 1. ٨٦٠٠ ‫הגדרת מתג‬ ‫נכתב על ידי אלי קנדל‬ How to Upgare 8600 to new image !!!!!!!!!!!!!! ! copy 192.168.168.170:p80a4032.img /pcmcia/p80a4032.img copy 192.168.168.170:p80b4032.img /pcmcia/p80b4032.img copy 192.168.168.170:p80j4032.dld /pcmcia/p80j4032.dld ! dld recognese the new card such 8648GTR--- ! copy /flash/config.cfg /pcmcia/config.cfg copy /flash/boot.cfg /pcmcia/boot.cfg copy /flash/engboot /pcmcia/engboot ! format-flash ! after we format the flash we can see the the flash is new 40M ! now we copy the image and boot and config file to the flash ! copy /pcmcia/p80a4032.img /flash/p80a4032.img copy /pcmcia/p80b4032.img /flash/p80b4032.img copy /pcmcia/p80j4032.dld /flash/p80j4032.dld ! copy /pcmcia/config.cfg /flash/config.cfg copy /pcmcia/boot.cfg /flash/boot.cfg copy /pcmcia/engboot /flash/engboot ! config bootconfig choice primary image-file /flash/p80a4032.img config bootconfig choice sec image-file /pcmcia/p80a4032.img ! save boot boot /flash/p80b4032.img ! .HW WARNING For maximum performance, Nortel recommends placing R modules in Slots 2-4 or 7-9 only Insertion of an 8630GBR or 8683XLR into Slot 1 or 10 will yield limited performance with existing Chassis .Hardware . Please refer to 4.0 Release Notes for additional details ! ! .NOTE: 40MB flash is on board, but ONLY 16MB is configured If you prefer to use 40MB, please BACKUP files from .flash to PCMCIA card/tftp server and format flash ! ################################################################
  • 2. OSPF ‫הגדרת‬ !!!!!!!!!! Ospf !!!!!!!!!!!!! ! ip ospf admin-state enable ip ospf router-id 1.1.1.1 ip ospf as-boundary-router enable ip ospf enable ip ospf area 1.1.1.1 create ip ospf area 2.2.2.2 create ip ospf area 2.2.2.2 range 10.210.0.0/255.255.0.0 create advertise-mode summarize lsa-type summary-link advertise-metric 2 ip ospf interface 10.88.1.1 area 1.1.1.1 ip ospf neighbor 10.210.27.2 create 1 – ATM LINE ip ospf neighbor 10.210.28.2 create 1 – ATM LINE ! ip ospf redistribute static create ip ospf redistribute static enable ! vlan 2 ip ospf interface-type passive vlan 2 ip ospf enable vlan 2 ip ospf metric 1 vlan 2 ip ospf priority 100 ! config ethernet 3/8 ip ospf enable config ethernet 3/8 ip ospf metric 1 ! ip ecmp enable ip ecmp-max-path 4 ! ################################################################ MLT ‫הגדרת‬ mlt 1 create mlt 1 add ports 1/8,2/8 "mlt 1 name "MLT-To-MLT mlt 1 perform-tagging enable ! vlan 1 add-mlt 1 ! ################################################################ MLT – IST ‫הגדרת‬ mlt 1 create mlt 1 add ports 2/1,3/1 "mlt 1 name "TO-MLT mlt 1 perform-tagging enable mlt 1 ist create ip 10.58.20.1 vlan-id 200 mlt 1 ist enable ! vlan 12 add-mlt 1 ! ################################################################
  • 3. Spanning tree ‫הגדרת‬ stg 1 add ports 2/1,3/1 stg 1 priority 510 ! ethernet 2/4 stg 1 faststart enable ethernet 2/4 stg 1 stp disable ! ################################################################ DHCP Relay ‫הגדרת‬ vlan 20 ip dhcp-relay enable ! ip dhcp-relay create-fwd-path agent 10.1.30.5 server 10.1.30.6 mode bootp_dhcp state enable ip dhcp-relay create-fwd-path agent 10.1.30.5 server 10.1.30.13 mode bootp_dhcp state enable ! ################################################################ port mirror ‫הגדרת‬ diag mirror-by-port 1 create in-port 2/5 out-port 4/33 diag mirror-by-port 1 mode both ! ################################################################ NTP ‫הגדרת‬ ntp enable true ntp server create 10.0.0.11 ntp server create 10.0.0.12 ! ################################################################ Radius server ‫הגדרת‬ radius server create 10.57.4.61 secret xxx port 1645 timeout 5 acct-port 1813 radius server create 10.57.4.62 secret xxx port 1645 timeout 5 acct-port 1813 radius enable true ! ################################################################ VRRP ‫הגדרת‬ vlan 5 ip vrrp 5 address 10.57.xx.1 vlan 5 ip vrrp 5 backup-master enable vlan 5 ip vrrp 5 priority 200 vlan 5 ip vrrp 5 enable ! VRRP Active Active ‫הגדרת‬ vlan 11 ip vrrp 11 address 10.57.xx.1 vlan 11 ip vrrp 11 backup-master enable vlan 11 ip vrrp 11 enable ! ################################################################
  • 4. Mac-Security ‫הגדרת‬ config eth 9/45 autolearn ena autolearn-mode continuous max-mac-count 30 violation-logging ena activation ena ! ################################################################ Broadcast + Multicast ‫ עבור‬rate-limit ‫הגדרת‬ config ethernet 2/8 rate-limit multicast 6000 enable config ethernet 2/8 rate-limit broadcast 6000 enable ! cp-limit ‫הגדרת‬ ethernet 4/47 cp-limit enable multicast-limit 2000 broadcast-limit 2000 ! cp-limit ‫ וסגירת‬rate-limit ‫הגדרת‬ ethernet 7/34 cp-limit disable multicast-limit 15000 broadcast-limit 10000 ! ################################################################ Static-Route ‫הגדרת‬ ip static-route create 10.5.xx.0/255.255.255.0 next-hop 10.xx.1.15 cost 1 ip static-route create 10.57.xx.0/255.255.255.0 next-hop 10.xx.2.150 cost 1 preference 16 ! ################################################################ VLAN ‫ כולל שיקוף‬ATM ‫הגדרת‬ ATM CONFIGURATION # # atm 1/1 state enable atm 1/1 framing-mode sdh atm 1/1 clock-source loop-timed "atm 1/1 name "TO-8600-DRP-ATM-605-manrab-83157 "atm 1/1 pvc create 0.1 name "10.57.4.0 atm 1/1 pvc f5-oam 0.1 disable "atm 1/1 pvc create 0.2 name "10.57.65.0 atm 1/1 pvc f5-oam 0.2 disable "atm 1/1 pvc create 0.3 name "10.57.66.0 atm 1/1 pvc f5-oam 0.3 disable "atm 1/1 pvc create 0.4 name "10.57.64.0 atm 1/1 pvc f5-oam 0.4 disable ""atm 1/1 pvc create 0.5 name "10.57.72.0 atm 1/1 pvc f5-oam 0.5 disable ""atm 1/1 pvc create 0.6 name "10.57.74.0 atm 1/1 pvc f5-oam 0.6 disable ""atm 1/1 pvc create 0.8 name "10.57.75.0 atm 1/1 pvc f5-oam 0.8 disable ""atm 1/1 pvc create 0.9 name "10.57.76.0 atm 1/1 pvc f5-oam 0.9 disable "atm 1/1 pvc create 0.10 name "10.57.5.0 atm 1/1 pvc f5-oam 0.10 disable
  • 5. "atm 1/1 pvc create 0.11 name "10.57.77 atm 1/1 pvc f5-oam 0.11 disable "atm 1/1 pvc create 0.12 name "10.57.7.0 atm 1/1 pvc f5-oam 0.12 disable "atm 1/1 pvc create 0.13 name "10.57.9.0 atm 1/1 pvc f5-oam 0.13 disable "atm 1/1 pvc create 0.14 name "10.57.40.0 atm 1/1 pvc f5-oam 0.14 disable "atm 1/1 pvc create 0.16 name "10.57.6.0 atm 1/1 pvc f5-oam 0.16 disable atm 1/1 pvc 1483 bridged create 4 0.10 atm 1/1 pvc 1483 bridged create 14 0.1 atm 1/1 pvc 1483 bridged create 17 0.13 atm 1/1 pvc 1483 bridged create 21 0.12 atm 1/1 pvc 1483 bridged create 22 0.16 atm 1/1 pvc 1483 bridged create 32 0.14 atm 1/1 pvc 1483 bridged create 33 0.2 atm 1/1 pvc 1483 bridged create 34 0.3 atm 1/1 pvc 1483 bridged create 35 0.4 atm 1/1 pvc 1483 bridged create 37 0.5 atm 1/1 pvc 1483 bridged create 38 0.6 atm 1/1 pvc 1483 bridged create 39 0.8 atm 1/1 pvc 1483 bridged create 40 0.9 atm 1/1 pvc 1483 bridged create 41 0.11 atm 1/2 state enable atm 1/3 state enable atm 1/4 state enable atm 1/4 framing-mode sdh atm 1/4 clock-source loop-timed ! RIP CONFIGURATION # # ip rip interface 100.1.xx.2 send-mode rip2 ip rip interface 10.210.xx.1 send-mode rip2 ip rip interface 10.210.xx.1 send-mode rip2 ! ################################################################ ‫ לאפשרות להתחברות למכונה‬access-policy ‫הגדרת‬ sys access-policy enable true sys access-policy policy 2 create "sys access-policy policy 2 name "net_10.53.xx.0 sys access-policy policy 2 network 10.53.xx.0/255.255.255.0 sys access-policy policy 2 service snmpv3 enable sys access-policy policy 2 service telnet enable sys access-policy policy 2 service tftp enable sys access-policy policy 2 service ftp enable ! ################################################################ Syslog ‫הגדרת‬ sys syslog host 1 create sys syslog host 1 address 10.xx.xx.207
  • 6. sys syslog host 1 facility local5 sys syslog host 1 host enable sys syslog host 1 severity info warning error fatal ! ################################################################ TAGGING ‫הגדרת‬ ethernet 2/3 perform-tagging enable ethernet 2/5 perform-tagging enable ! mlt 1 create mlt 1 add ports 2/1,3/1 "mlt 1 name "TO-MLT mlt 1 perform-tagging enable ! ################################################################ ‫הגדרות גלובליות על גבי פורט‬ "ethernet 7/28 name "F.W-xxx ethernet 7/29 auto-negotiate disable ethernet 7/29 speed 100 ethernet 7/29 duplex full ! ################################################################ ‫ חדש‬Vlan ‫הגדרת‬ vlan 27 create byport 1 name "10.57.xx" color 27 vlan 27 add-mlt 1 vlan 27 ports remove 1/1-1/4,2/2-2/6,2/8,3/2-3/3,3/5,3/8,4/1-4/48,7/2-7/8 member portmember vlan 27 ports add 2/1,2/7,3/1,3/4,3/6-3/7,7/1 member portmember vlan 27 ip create 10.57.20.252/255.255.255.0 mac_offset 20 vlan 27 ip ospf interface-type passive vlan 27 ip ospf enable vlan 27 ip vrrp 27 address 10.57.xx.1 vlan 27 ip vrrp 27 backup-master enable vlan 27 ip vrrp 27 priority 200 vlan 27 ip vrrp 27 enable ! ################################################################ Debug Command !!!!!!!!!! Trace Cli Command !!!!!!!! ! config cli more false ! trace clear trace screen off trace level 9 3 trace level 14 3 trace level 15 3 ! off info !
  • 7. trace clear trace screen off trace level 15 3 ( run the trace for 30 seconds ) trace level 15 0 trace off ( trace info ( capture output of command #### To check that trace is not on ###### sh trace level Total module trace level set = 0 ###################################### : VRRP -‫להלן העדכון של מצבי ה‬ :Transition Cause None - 1 Higher priority advertisement received – 2 Shutdown received - 3 VRRP Address and Physical Address match – 4 Master Down interval – 5 Preemption – 6 critical IP failed - 7 user config - 8 Sync from Primary - 9 iPInterfaceDown - 10 lowerPioAdvReceived - 11 higherSrcIPEqualPrioAdvReceived - 12 LowerSrcIPEqualPrioAdvReceived - 13 startVR - 14 other - 15 :Type (none (1 (masterToBackup (2 (backupToMaster (3
  • 8. (initializeToMaster (4 (masterToInitialize (5 (initializeToBackup (6 (backupToInitialize (7 ! ################################################################ ‫שמירת קונפיגורציה‬ save config save bootconfig copy config.cfg /pcmcia/config.cfg copy boot.cfg /pcmcia/boot.cfg copy boot.cfg 10.53.xx.101:boot.cfg copy config.cfg 10.53.xx.101:config.cfg
  • 9. ٨٦٠٠ ‫ארכיטקטורה של מתג‬ IOM Interface Interface Interface MAC MAC MAC BFM Rapt Rapt Rapt OctaPID ARU OctaPID ARU OctaPID ARU Address Address Address Table Table Table TAPMUX IO Module Sidney James Sidney Duffy James 10-1999 64Gbps Duffy 10-1999 64G Shared Memory 64Gbps Shared Memory FAD FAD FAD FAD FAD FAD FAD FAD TAPMUX TAPMUX SWIP SWIP OctaPID OctaPID Switch Switch Fabric Fabric PowerPC PowerPC 266MHz 128Mb 128Mb 266MHz DRAM DRAM