Security Features

Fitur keamanan pada perangkat Cisco

Security Features

Pelajari fitur keamanan pada perangkat Cisco.

Port Security

Switch(config)# interface fastethernet 0/1
Switch(config-if)# switchport mode access
Switch(config-if)# switchport port-security
Switch(config-if)# switchport port-security maximum 2
Switch(config-if)# switchport port-security violation restrict
Switch(config-if)# switchport port-security mac-address sticky

SSH Configuration

Router(config)# hostname R1
Router(config)# ip domain-name example.com
Router(config)# crypto key generate rsa modulus 2048
Router(config)# username admin secret AdminPass123
Router(config)# line vty 0 4
Router(config-line)# transport input ssh
Router(config-line)# login local

Disable Unused Services

Router(config)# no ip http server
Router(config)# no ip http secure-server
Router(config)# no cdp run
Router(config)# no ip source-route
Router(config)# no service finger
Router(config)# no ip bootp server

Verifikasi Keamanan

Router# show port-security
Router# show ssh
Router# show running-config | include no service

Latihan Praktikum

  1. Konfigurasi port security pada switch
  2. Implementasikan SSH untuk remote access
  3. Nonaktifkan layanan yang tidak perlu
  4. Verifikasi konfigurasi keamanan

Cisco CLI Simulator

Cisco IOS Simulator v15.2
> Cisco IOS Software, C1900 Software (C1900-UNIVERSALK9-M), Version 15.2(4)M1
> Technical Support: http://www.cisco.com/techsupport
> Copyright (c) 1986-2012 by Cisco Systems, Inc.
> Compiled Thu 26-Jul-12 11:46 by prod_rel_team
>
> Router> Type 'help' for available commands
Router>

Sebelumnya Selanjutnya