S
sau:
Trang i
1
I. 1
II. 1
III. 6
Phn 2: THIT B 10
I. 10
1. Router: 10
II. 11
III. 16
IV. 19
V. 20
VII. ACL): 24
32
I. 32
II. Tn công bng t chi dch v DoS (Denial of Service): 32
III. 33
IV. Cách phòng chng tng quát: 38
V. Các công c t 40
44
I. 44
II. Demo: 45
51
52
Trang ii
Trang
1
2
5
6
7
10
22
26
27
nh lung d liu 28
t ví d ca mt outbound ACL 29
a ACL 31
34
34
35
37
38
Trang 1
I.
1:
II.
Trang 2
2:
.
Trang 3
-
-
ng
TELNET
-
ph
Trang 4
-
t protocol -
-
ARP (Address Resolution Protocol| -
(Reverse Address Resolution Protocol -
Trang 5
k Interface Layer):
Card m
(00-18-37-03-C0-F4)
+ ATM (Asynchronous Transfer Mode), +
Ethernet, + Token Ring, + FDDI (Fiber Distributed Data Interface), + Frame Relay
3:
Trang 6
III.
4:
Trang 7
5: Topology Internet
UDP -
1. T
2. T
3. K
Trang 8
LISTEN:
SYN-SENT:
SYN-RECEIVED:
connection acknowledgment
ESTABLISHED:
server)
TIME-WAIT:
RFC 793
TIME-
3-
way handshake
1.
sequence number X.
2. -ACK, trong gói tin này,
acknowledgment number sequence
number Y
3. uá trình
sequence number
acknowledgment number
UDP:
Trang 9
(Initial Sequence Number -
3
Trang 10
I. :
1. Router:
6: Router
.
Trang 11
2. Switch layer 3:
a
nhu c
20
-specific integrated
-
work services.
Ethernet và cáp quang.
II.
Trang 12
Router:
.
Remote
Access
Low-end
router
Fix configuration router Remote
Modular
router
Multi
protocol
router
Multiport
serial router
Router/hub
Cisco 2509
Cisco 7xx
Cisco 2501
Cisco 2520
Cisco 2505
Cisco 2524
Cisco 2510
Cisco 8xx
Cisco 2502
Cisco 2521
Cisco 2506
Cisco 2525
Cisco 2511
Cisco 100x
Cisco 2503
Cisco 2522
Cisco 2507
Cisco 160x
Cisco 2512
Cisco 2504
Cisco 2523
Cisco 2508
Cisco 17xx
AS5xxx
Cisco 2513
Cisco 2516
Cisco 26xx
Cisco 500-
CS
Cisco 2514
Cisco 2518
Cisco 36xx
Cisco 2515
Cisco 4xxx
Cisco 7xxx
Trang 13
Router cho các ISP các
1. Dòng Branch Office:
ngày ( Cisco 3900, 3800, 2900, 2800, 1900, 1800 Series Integrated Services Routers Và
series 800).
2. Dòng Cloud Computer:
, Gateway VPN, Redirection control and traffic,
Services Router 1000V Series.
3. Dòng Connected Grid:
-
Trang 14
Control and Data Acquisition) công
Dòng này có 2 series chính: Cisco 2000, 1000 Series Connected Grid Routers
4. Dòng Data Center Interconnect Platforms:
Services Gateway và Intergrated Session Border Control. Dòng này có các series 7600, 7200
Series Routers Carrier Routing System, ASR 1000 Series Aggregation Services Routers
5. Mobile Internet Routers
Service Advertisement Framework (SAF).
Routers. MVR 2900, 1900 Mobile Wireless Routers.
6. Service Provider Core Routers: Dòng này có series Carrier Routing System.
7. Service Provider Egde Routers
Dòng này có các series 12000, 10000, 7600, 7500, 7300, 7200;
ASR 9000, 1000, 903, 901 Series Aggregation Services Routers; XR 12000 Series Router.
8. Small Business Routers
Trang 15
Dòng này c
Cisco 2900, 1900 Series Intergrated Services Routers
Cisco 800 Series Routers
Cisco Small Business RV Series Routers
Cisco Small Business SRP500 Series Services Ready Platforms
9. WAN Aggregation and Internet Edge Routers
; ASR 1000 Series Aggregation
Services Routers; ASR 1000 Series Route Processor (RP1)
Cisco ISR Web Security with Cisco ScanSafe.
Cisco IOS Firewall
Intrusion Prevention System (IPS)
IPSec VPN và SSL VPN, VPN Internal Service Module (VPN ISM)
Cisco IOS Content Filtering.
Switch layer 3:
Catalyst 4500, 3750, 3750-E, 3560,3560-C, 3560-E, 3550, 4900 Series
Catalyst 2960, 2960-S Static routing
Nexus 5000, 3000 Series Switches
Cisco Small Business Stackable Managed Switches: Static Switching
Trang 16
Small Business 500 Series Stackable Managed Switches: Layer 3 Routing
Small Business 300 Series Stackable Managed Switches: Static layer 3 routing
Cisco ME 3400E Series Ethernet Access Switches
III. :
Protocol).
Remote S
Trang 17
-site-
-
thành công,
Trang 18
IOS version 12.2S):
-
-
-
-
-
-
-
-
29/8/2010, khi RIPE NCC (Reseaux IP Europeens Network Coordination Centre - Trung
way Protocol -
Trang 19
vi
-4G, RSP-
IV. :
Router:
cho Cisco. C
Trang 20
-spoofing)
cho
S.
Switch layer 3:
-
N
V. :
Trang 21
Trang 22
7: