Cisco Configuration Trainer
15:08:09
Security Features
Fitur keamanan pada perangkat Cisco
Security Features
Pelajari fitur keamanan pada perangkat Cisco.
Port Security
Switch(config)# interface fastethernet 0/1
Switch(config-if)# switchport mode access
Switch(config-if)# switchport port-security
Switch(config-if)# switchport port-security maximum 2
Switch(config-if)# switchport port-security violation restrict
Switch(config-if)# switchport port-security mac-address sticky
SSH Configuration
Router(config)# hostname R1
Router(config)# ip domain-name example.com
Router(config)# crypto key generate rsa modulus 2048
Router(config)# username admin secret AdminPass123
Router(config)# line vty 0 4
Router(config-line)# transport input ssh
Router(config-line)# login local
Disable Unused Services
Router(config)# no ip http server
Router(config)# no ip http secure-server
Router(config)# no cdp run
Router(config)# no ip source-route
Router(config)# no service finger
Router(config)# no ip bootp server
Verifikasi Keamanan
Router# show port-security
Router# show ssh
Router# show running-config | include no service
Latihan Praktikum
- Konfigurasi port security pada switch
- Implementasikan SSH untuk remote access
- Nonaktifkan layanan yang tidak perlu
- Verifikasi konfigurasi keamanan
Cisco CLI Simulator
Cisco IOS Simulator v15.2
> Cisco IOS Software, C1900 Software (C1900-UNIVERSALK9-M), Version 15.2(4)M1
> Technical Support: http://www.cisco.com/techsupport
> Copyright (c) 1986-2012 by Cisco Systems, Inc.
> Compiled Thu 26-Jul-12 11:46 by prod_rel_team
>
> Router> Type 'help' for available commands
Router>
Sebelumnya
Selanjutnya