Configures global password encryption in a
running configuration. Any passwords that were
not previously encrypted will be encrypted. In
addition, any passwords that are created in the
future, will be encrypted in the running
configuration.
service password-encryption
The content addressable memory table, is
used to record a endpoint mac addresses
and it’
s corresponding switch port location
CAM table
Advanced Encryption Standard (AES) is used
by both Wi-Fi Protected Access 2 (WPA2) and
WPA3 to provide encryption
Wireless Encryption
Every LEAF must be connected to every SPINE
Cisco ACI architecture
Application layer protocols that use TCP
FTP
HTTP
HTTPS
SSH
IEEE 802.3ad standard that provides link
aggregation groups (LAGs) to bundle
multiple interfaces into one logical interface
Link Aggregation Control Protocol (LACP)
Authentication, Authorization, and Accounting (AAA)
Authentication – the process of verifying a
user’s identity
Authorization – the process of verifying the
level of access configured for a user
Accounting – the process of recording the
use of resource
Multiple virtual machines (VMs) can be running
simultaneously on a single host computer. A VM
is an isolated environment running a separate
operating system (OS) while sharing hardware
resources with a host machine
‘
s OS
Virtual Machines (VM)
Broadcast Addresses
L3 Broadcast IP Address - 255.255.255.255
L2 Broadcast Mac Address - FF-FF-FF-FF-FF-FF
VTP Default Mode
By default VTP is in server mode, which is an
operational mode that enables you to manage
VLANs on the local switch’
s database and use
the information in the database to synchronize
with other switches
How to set a VLAN as untagged on a trunk port
In Cisco speak the Native VLAN is referring to the
one VLAN that will be passed untagged on a trunk
port. The command shown below is used to define
the untagged (native) VLAN.
interface #
switchport trunk native vlan #
Show CDP Neighbor Output
Device ID
Local connected interface
Remote connected interface
Product and model information
Cisco proprietary FHRP
Router/L3 Switch with the highest priority
is referred to as the active router
Hot Standby Router Protocol (HSRP)
OSPF and Serial Interfaces
By default both PPP and HDLC interfaces are
set as the OSPF point-to-point network type
Wireless QoS Levels *Worst to Best
Bronze
Silver *Default
Gold
Platinum
SSH Requirements
Image that supports K9 (crypto)
Hostname and domain-name
Crypto key generated
Cisco Meraki Devices
Deployed via a cloud based solution
Require an internet connection
Automatically register to your cloud account
with serial number association
EIGRP Administrative Distances
Internal learned routes - 90
External learned routes - 170
Summary routes - 5
OSPF and default-information originate
Will not advertise to any other routers
without a default route in the routing table.
If the
“
always
” keyword is added, it will
advertise a default route even if there is no
default route in the routing table.
Configuration Management tools that use Ruby
Chef
Puppet
Wireless 2.4GHZ Non-Overlapping Channels
1
6
11
Used to differentiate the virtual MAC
addresses of the various HSRP groups
Defined by a special virtual MAC address
format where xx is the group
-Version 1: 0000.0007.ACxx
-Version 2: 0000.0C9F.Fxxx
HSRP Group Number
File transfer protocol
Uses UDP and port 69
TFTP
Processed sequentially from the first entry
in the list to the last entry
Apply extended ACL near source
Apply standard ACL near destination
Access-Lists (ACL)