Routing with Windows Server 2003 Chapter 9. Objectives for this Chapter Manage Routing And Remote Access routing interfaces Manage packet filters Manage.

Slides:



Advertisements
Similar presentations
RIP V1 W.lilakiatsakun.
Advertisements

IST 201 Chapter 9. TCP/IP Model Application Transport Internet Network Access.
1 Chapter 2: Networking Protocol Design Designs That Include TCP/IP Essential TCP/IP Design Concepts TCP/IP Data Protection TCP/IP Optimization.
Ch. 1 – Scaling IP Addresses NAT/PAT and DHCP CCNA 4 version 3.0.
11 TROUBLESHOOTING Chapter 12. Chapter 12: TROUBLESHOOTING2 OVERVIEW  Determine whether a network communications problem is related to TCP/IP.  Understand.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 4 Installing and Configuring the Dynamic Host Configuration Protocol.
Module 5: Configuring Access for Remote Clients and Networks.
1 Objectives Configure Network Access Services in Windows Server 2008 RADIUS 1.
1 Configuring Virtual Private Networks for Remote Clients and Networks.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 11: Planning Network Access.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 5: Planning, Configuring, And Troubleshooting DHCP.
MCDST : Supporting Users and Troubleshooting a Microsoft Windows XP Operating System Chapter 14: Troubleshooting Remote Connections.
Hands-On Microsoft Windows Server 2003 Administration Chapter 11 Administering Remote Access Services.
Chapter 8 Administering TCP/IP.
Subnetting.
70-270, MCSE/MCSA Guide to Installing and Managing Microsoft Windows XP Professional and Windows Server 2003 Chapter Twelve Implementing Terminal.
MCITP Guide to Microsoft Windows Server 2008 Server Administration (Exam #70-646) Chapter 10 Configuring Remote Access.
© N. Ganesan, All rights reserved. Chapter IP Routing.
Installing and Maintaining ISA Server. Planning an ISA Server Deployment Understand the current network infrastructure Review company security policies.
Virtual Private Network (VPN) © N. Ganesan, Ph.D..
Overview of Routing and Remote Access Service (RRAS) When RRAS was implemented in Microsoft Windows NT 4.0, it added support for a number of features.
Module 6: NAT As a Solution for Internet Connectivity.
1 Semester 2 Module 6 Routing and Routing Protocols YuDa college of business James Chen
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 10: Remote Access.
VPN Scenarios © N. Ganesan, Ph.D.. Chapter Objectives.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 9 Network Policy and Access Services in Windows Server 2008.
Windows Server 2008 Chapter 9 Last Update
Lesson 3 Introduction to Networking Concepts Lesson 3.
11 NETWORK PROTOCOLS AND SERVICES Chapter 10. Chapter 10: Network Protocols and Services2 NETWORK PROTOCOLS AND SERVICES  Identify how computers on TCP/IP.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Addressing the Network – IPv4 Network Fundamentals – Chapter 6.
Module 3: Planning and Troubleshooting Routing and Switching.
Configuring Routing and Remote Access(RRAS) and Wireless Networking
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Network Addressing Networking for Home and Small Businesses – Chapter 5.
Module 8: Configuring Virtual Private Network Access for Remote Clients and Networks.
12-Sep-15 Virtual Private Network. Why the need To transmit files securely without disclosing sensitive information to others in the Internet.
NetworkProtocols. Objectives Identify characteristics of TCP/IP, IPX/SPX, NetBIOS, and AppleTalk Understand position of network protocols in OSI Model.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 12: Routing.
Objectives Configure routing in Windows Server 2008 Configure Network Address Translation 1.
Implementing ISA Server Publishing. Introduction What Are Web Publishing Rules? ISA Server uses Web publishing rules to make Web sites on protected networks.
11.59 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 11: Introducing WINS, DNS,
1 Understanding the TCP/IP Protocol Suite Industry standard Enables enterprise networking and connectivity.
Objectives Configure routing in Windows Server 2008 Configure Routing and Remote Access Services in Windows Server 2008 Network Address Translation 1.
1 Chapter Overview Using the New Connection Wizard to configure network and Internet connections Using the New Connection Wizard to configure outbound.
1 Chapter Overview Routing Principles Building Routing Tables.
Module 12: Routing Fundamentals. Routing Overview Configuring Routing and Remote Access as a Router Quality of Service.
1 Chapter 12: VPN Connectivity in Remote Access Designs Designs That Include VPN Remote Access Essential VPN Remote Access Design Concepts Data Protection.
Module 11: Remote Access Fundamentals
VIRTUAL PRIVATE NETWORK By: Tammy Be Khoa Kieu Stephen Tran Michael Tse.
Hands-On Microsoft Windows Server Introduction to Remote Access Routing and Remote Access Services (RRAS) –Enable routing and remote access through.
Page 1 TCP/IP Networking and Remote Access Lecture 9 Hassan Shuja 11/23/2004.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 4 Installing and Configuring the Dynamic Host Configuration Protocol.
Microsoft Windows Server 2003 TCP/IP Protocols and Services Technical Reference Slide: 1 Lesson 7 Internet Protocol (IP) Routing.
Institute of Technology Sligo - Dept of Computing Sem 2 Chapter 12 Routing Protocols.
USING ROUTING & REMOTE ACCESS.  When you have only 2 network sites, then only 1 topology is available in which you install a router on each site & connect.
1 Installing and Maintaining ISA Server Planning an ISA Server Deployment Understand the current network infrastructure. Review company security.
Routing and Routing Protocols
1 Week #5 Routing and NAT Network Overview Configuring Routing Configuring Network Address Translation Troubleshooting Routing and Remote Access.
Network Infrastructure Microsoft Windows 2003 Network Infrastructure MCSE Study Guide for Exam
NetTech Solutions Common Connectivity Problems Lesson Eight.
Using Routing and Remote Access Chapter Five. Exam Objectives in this Chapter:  Plan a routing strategy Identify routing protocols to use in a specified.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 4: Planning and Configuring Routing and Switching.
+ Routing Concepts 1 st semester Objectives  Describe the primary functions and features of a router.  Explain how routers use information.
11 ROUTING IP Chapter 3. Chapter 3: ROUTING IP2 CHAPTER INTRODUCTION  Understand the function of a router.  Understand the structure of a routing table.
Configure and Security Remote Acess. Chapter 8 Advance Computer Network Lecture Sorn Pisey
KAPLAN SCHOOL OF INFORMATION SYSTEMS AND TECHNOLOGY IT375 Window Enterprise Administration Course Name – IT Introduction to Network Security Instructor.
Sem 2 v2 Chapter 12: Routing. Routers can be configured to use one or more IP routing protocols. Two of these IP routing protocols are RIP and IGRP. After.
Configuring and Troubleshooting Routing and Remote Access
Chapter 4: Routing Concepts
Chapter 9 Objectives Understand TCP/IP Protocol.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 4: Planning and Configuring Routing and Switching.
Presentation transcript:

Routing with Windows Server 2003 Chapter 9

Objectives for this Chapter Manage Routing And Remote Access routing interfaces Manage packet filters Manage TCP/IP routing –Manage routing protocols –Manage routing tables –Manage routing ports Troubleshoot demand-dial routing Troubleshoot connectivity to the Internet Verify that the DHCP relay agent is working correctly

In This Chapter Configuring Windows Server 2003 for LAN Routing Configuring Demand-Dial Routing Configuring NAT Configuring and Managing Routing Protocols Configuring Packet Filters

To Complete the Exercises: On page 9-2

Configuring Windows Server 2003 for LAN Routing Routing is the process of transferring data across an internetwork from one local area network (LAN) to another. (Layer 3) A bridge connects network segments and shares traffic as necessary according to hardware addresses, a router receives and forwards traffic along appropriate pathways according to software addresses. (Layer 2)

Note Windows Server 2003 also supports AppleTalk routing. However, whereas Internetwork Packet Exchange (IPX) routing is supported in Microsoft Windows 2000, computers running Windows Server 2003 cannot function as IPX routers

RRAS Routing And Remote Access service is installed by Windows Server 2003 Setup in a disabled state.

Remote Access Service Remote access enables remote or mobile workers who use dial-up communication links to access corporate networks as if they were directly connected. Two different types of remote access connectivity: 1. Dial-up networking. 2. Virtual private networking.

Routing and Remote Access Features 1. Network address translation (NAT), 2. Layer Two Tunneling Protocol (L2TP), 3. Internet Authentication Service (IAS), and 4. Remote Access Policies (RAP).

Router Discovery 031 Router discovery provides an improved method of configuring and detecting default gateways. Router discovery is made up of two types of packets: 1. Router solicitations. 2. Router advertisements.

Network Address Translator NAT is a standard defined in RFC A NAT is a router that translates IP addresses of an intranet or home LAN to valid Internet addresses. A NAT allows Internet connectivity for a private network with private addresses through a single Internet IP address.

Multicast Routing Windows 2003 Server implements a limited form of multicast routing using a multicast proxy. This proxy can be used to extend multicast support beyond a true multicast router.

Layer Two Tunneling Protocol L2TP can be thought of as the next version of Point-to-Point Tunneling Protocol (PPTP). It works much like PPTP but is now a combined development effort with Cisco. L2TP combines Cisco's Layer 2 Forwarding (L2F) and PPTP technologies (created by Microsoft, Ascend, 3Com, U.S. Robotics, and ECI-Telematics).

Internet Authentication Service IAS is a Remote Authentication Dial-In User Service (RADIUS) server. RADIUS is a network protocol that enables remote authentication, authorization, and accounting of users who are connecting to a network access server (NAS). A network access server such as Windows Routing and Remote Access can be a RADIUS client or RADIUS server.

Remote Access Policies In Windows 2003, remote access connections are granted based on the dial-in properties of a user object and remote access policies. RAPs are a set of conditions and connection parameters that allow network administrators more flexibility in granting remote access permissions and usage.

Remote Access Policies RAPs are stored on the local computer and are shared between Windows 2003 Routing and Remote Access and Windows 2003 IAS. RAP is configured from the Internet Authentication Service Manager or from the Routing and Remote Access Manager.

Using the Routing And Remote Access Console

To Configure: Right-Click on the server and select configure and enable routing and remote access

To Configure: You can enable any of the following combinations of services: You can enable any of the following combinations of services:

To Configure: Custom Configurations

To Configure: When selected, the wizard will finish

To Configure: You can now start the services

To Configure: RRAS is ready to configure

Adding Interfaces A network interface is a software component that connects to a physical device such as a modem or a network card. Note: –Remember that a demand-dial interface does not necessarily refer to a dial-up connection. It can also refer to a VPN or PPPoE connection over a dedicated line.

Configuring Routing And Remote Access Service Properties There are Five tabs –General –Security –IP –PPP –Logging

Configuring Routing And Remote Access Service Properties There are Five tabs –General –Security –IP –PPP –Logging

Configuring Routing And Remote Access Service Properties There are Five tabs –General –Security –IP –PPP –Logging

Configuring Routing And Remote Access Service Properties There are Five tabs –General –Security –IP –PPP –Logging

Configuring Routing And Remote Access Service Properties There are Five tabs –General –Security –IP –PPP –Logging

Managing General IP Routing Properties There are Three Tabs for the General Properties: Logging Preference Levels Multicast Scopes

Managing General IP Routing Properties There are Three Tabs for the General Properties: Logging Preference Levels Multicast Scopes

Managing General IP Routing Properties There are Three Tabs for the General Properties: Logging Preference Levels Multicast Scopes

Working with Routing Tables Routers read the destination addresses of received packets and then route those packets according to directions provided by routing tables. Right-Click Static Routes and select Show IP Routing Table

Routing Table Three types of routes exist: –Host route A route to a specific destination host –Network route Provides a route to a specific destination network. –Default route This route is used to forward all packets whose destination address does not match any address listed in the routing table.

What Does It Mean? Network Destination –Entries that the router compares to the destination address of every received IP packet. Netmask –Determines which part of the IP packet’s destination address is compared to the entries in the Network Destination column. Gateway –The gateway value determines the next address or hop for which that packet is destined. Interface –Which local network interface is used to forward the packet to the next hop. Metric –The cost of using a route

Static and Dynamic Routing Addresses can occur in eight types: –The default address, –The loopback address, –The default gateway address, –The Locally configured addresses, –The Local subnet addresses, –The Local subnet broadcast addresses, –The Limited broadcast address, and –The Multicast addresses for each adapter.

Exploring LAN Routing Scenarios Simple Routing Scenario Multiple-Router Scenario

Simple Routing Scenario

Network ANetwork B Router

Multiple-Router Scenario Network A Network C Router 1 Router 2 Network B

Understanding Static Routes

Adding Static Routes route add destination mask netmask gateway metric route add mask route add –p mask This statement make the route Persistent. Use the Route Delete command to delete a route that you have added

Advantages of Static Routing –Static routing is advantageous in small networks for which configuring a few static routes is simpler than configuring a dynamic routing protocol. –Static routes are less resource-intensive than are dynamic routing protocols. –Static routes provide support for unnumbered connections:

Disadvantages of Static Routing –The main disadvantage of static routing is that it is a feasible means of maintaining only small routed networks. –The lack of fault tolerance

Practice: Enabling and Configuring Routing And Remote Access –Exercise: Running the Routing And Remote Access Server Setup Wizard Page 9-26

Configuring Demand-Dial Routing A demand-dial interface is a router interface that will be brought up on demand based on network traffic. The demand-dial link is only initiated if the routing table shows that this interface is needed to reach the IP destination address. The routing table does not provide any discretion on who or what protocol can bring up the demand-dial link. It is simply based on where the traffic needs to go.

Configuring Demand-Dial Interfaces You cannot configure demand-dial interface if you do not have an external connection. Once you have enabled demand-dial routing, you can launch the Demand-Dial Interface

Four commands unique to the demand-dial interface Set Credentials Unreachability Reason Set IP Demand-Dial Filters Dial-Out Hours

Deploying a Demand-Dial Router- to-Router Configuration Several features required to configure: –Connection Endpoint Addressing. –Differentiating Between Remote Access Clients and Routers. –Configuring Both Ends of the Connection. –Configuring Static Routes.

Troubleshooting Demand-Dial Routing Pages 37 – 39

Practice: Configuring Demand-Dial Routing –Exercise 1: Installing Internet Information Services on Computer2 –Exercise 2: Configuring Routing And Remote Access for Demand-Dial Routing Page 9-39 –Exercise 3: Testing the Configuration Page 9-42

Configuring NAT NAT is a service built into a router that modifies the header information in IP datagrams before sending them on to their destinations.

Difference Between NAT and ICS The main difference between NAT and ICS is configurability. ICS is preconfigured and automatically sets the internal address of the computer hosting the shared connection to Note the Table “Comparison of Translated Connections Features” on page 9-47

Exam Tip When assigning IP addresses, ICS does not check for conflicts with static addresses already owned by computers on the network. For this reason, you should not deploy ICS on a network whose essential servers are pre-configured with static addresses near the beginning of the /24 range. Note: –Also that if essential servers are preconfigured with static addresses in a different logical address space (such as /24), deploying ICS might render those essential servers inaccessible. Consequently, if in a scenario on the exam, any essential network services stop functioning after ICS is installed, look for an option to replace ICS with NAT.

Practice: Installing and Configuring NAT However you need two network interface cards to configure NAT.

Exam Tip For the exam, you need to know that the functionality provided by the Services And Ports tab and illustrated in Figure 9-28 is known as configuring special ports. To configure a special port means to map an internal service (such as a Web, Telnet, or FTP server) to the external interface of the NAT computer. This feature allows external requests for internal services to be forwarded to the proper computer.

Configuring and Managing Routing Protocols Routing protocols provide communication between routers. Two Types: –Distance Vector RIP –Link State OSPF Also the multicast routing protocol –IGMP Router And Proxy, and –DHCP Relay Agent.

Exam Tip You need to be familiar with these RIP security features for the exam

Configuring RIP RIP is a dynamic routing protocol that helps routers determine the best path through which to send given data. Routes to destinations are chosen according to lowest cost.

Exam Tip You need to be familiar with these RIP security features for the exam.

OSPF Overview OSPF is designed for exchanging routing information within a large or very large internetwork. The biggest advantage of OSPF is that it is efficient; OSPF requires little network overhead even in very large internetworks. The biggest disadvantage of OSPF is its complexity;

Understanding DHCP Relay Agent DHCP Relay Agent is a routing protocol that allows client computers to obtain an address from a DHCP server on a remote subnet.

Exam Tip Expect to see a topology question about DHCP Relay Agent and RFC 1542– compliant routers on the exam.

Configuring Packet Filters When Basic Firewall is enabled on an external interface in the Routing And Remote Access console, that interface blocks all unsolicited traffic from entering your network. –Packet filters are rules defined for a particular interface that allow or restrict traffic by source address, destination address, direction, or protocol type.

Exam Tip Watch for questions in which all packet filters are defined correctly, but whose filter action is improperly configured.

Exam Tip For the exam, know both the protocols numbers and ports required for PPTP and L2TP/IPSec.

Summary Case Scenario Exercise –Page 9-74 Troubleshooting Lab –Page 9-77 Exam Highlights –Key Points –Key Terms Page 9-78