csltraining mikrotik class 2

40
ISP Setup using MikroTik Class - II IP/ARP, Proxy ARP, MAC Bindings, DHCP Server, DHCP Client , NTP , User Management M Abdullah Al Naser B.Sc in CSE CCNA, RHCE, RHCSA, MTCNA

Upload: rohan-singh

Post on 19-Feb-2018

229 views

Category:

Documents


0 download

TRANSCRIPT

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 1/40

ISP Setup using MikroTik

Class - II

IP/ARP, Proxy ARP, MAC Bindings, DHCP Server,DHCP Client, NTP, User Management

M Abdullah Al Naser B.Sc in CSE

CCNA, RHCE, RHCSA, MTCNA

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 2/40

ARP

2

Even though IP packets are addressed using IPaddresses, hardware addresses must be used toactually transport data from one host toanother. Address Resolution Protocol is used to

map OSI level 3 IP addresses to OSI level 2 MACaddresses. Router has a table of currently usedARP entries. Normally the table is builtdynamically, but to increase network security, it

can be partially or completely built statically bymeans of adding static entries.

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 3/40

ARP Process

3Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 4/40

ARP Properties

4Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 5/40

Verify ARP

5

Note: Maximum number of ARP entries are 8192.

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 6/40

ARP Mode

6

● Enabled

● Disabled

● Reply-Only

● Proxy ARP

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 7/40

ARP Mode

7Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 8/40

ARP Mode

8

● EnabledThis mode is enabled by default on all

interfaces. ARPs will be discovered

automatically and new dynamic entries willbe added to ARP table.

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 9/40

ARP Mode

9

● DisabledIf ARP feature is turned off on the interface, i.e.,

arp=disabled is used, ARP requests from clients are

not answered by the router. Therefore, static arp

entry should be added to the clients as well. For

example, the router's IP and MAC addresses

should be added to the Windows workstations

using the arp command:

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 10/40

ARP Mode

10

Reply OnlyIf arp property is set to reply-only on the

interface, then router only replies to ARP

requests. Neighbour MAC addresses will beresolved using /ip arp statically, but there

will be no need to add the router's MAC

address to other hosts' ARP tables like in

case if arp is disabled.

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 11/40

11

ARP Mode

Proxy-ARP

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 12/40

Static MAC Address

12Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 13/40

Static MAC Address

13Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 14/40

14

DHCP Server

●The Dynamic Host Confirmation Protocol

(DHCP) service enables devices on a network to

obtain IP addresses and other information from

a DHCP server. This service automates the

assignment of IP addresses, subnet masks,gateway and other IP networking parameters.

● In order for the DHCP server to work, IP pools

must also be configured (do not include theDHCP server's own IP address into the pool

range) and the DHCP networks.

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 15/40

15

DHCP Server

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 16/40

16

DHCP Server

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 17/40

17

DHCP Server

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 18/40

18

DHCP Server

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 19/40

19

DHCP Server

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 20/40

20

DHCP Server

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 21/40

21

Verify DHCP Lease

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 22/40

22

Static DHCP Lease

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 23/40

23

Static DHCP Lease

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 24/40

24

Customize IP Pool

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 25/40

25

Add IP Pool

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 26/40

26

Add IP Pool

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 27/40

27

Verify Used IP from Pool

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 28/40

28

DHCP Client

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 29/40

29

DHCP Client

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 30/40

30

Time and Date

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 31/40

31

Change Time and Date

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 32/40

32

NTP Client

Why NTP?

● To get correct time on router.

● To get time for routers has no internalmemory to save clock time.

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 33/40

33

NTP Client

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 34/40

34

User and Group

● MikroTik’s default username is admin with no

password.

● There are three different groups with different

permission level. The groups are:

1. Full2. Read

3. Write

Username, password and Group can be added,

removed or changed as per requirements

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 35/40

35

User and Group (Change Password)

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 36/40

36

User and Group (Change Password)

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 37/40

37

User and Group (Add New User)

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 38/40

38

User and Group (Add New User)

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 39/40

39

User and Group (Verify Group)

Prepared by- M Abdullah Al Naser ([email protected])

7/23/2019 CSLtraining MikroTik Class 2

http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 40/40

Thank you very much

40