network essentials chapter 3

49
Network Essentials FUNDAMENTALS AND TCP/IP– CHAPTER 3

Upload: raghu-nath

Post on 09-Aug-2015

43 views

Category:

Education


5 download

TRANSCRIPT

Page 1: Network essentials  chapter 3

Network EssentialsFUNDAMENTALS AND TCP/IP– CHAPTER 3

Page 2: Network essentials  chapter 3

A network is a collection of systems and devices exchanging data over some form of media.

A host is defined as any device that holds a logical address on your network.

Hosts can be workstations, servers, printers, connection devices, or routers.

Page 3: Network essentials  chapter 3

Modern networks are charged with delivering our phone calls and, soon, our television and

entertainment options. Data—no matter what its form—is transmitted in the form of bits.

A single bit is a 1 or a 0 (based on the binary number system of two digits versus the typically

used decimal numbering system based on the digits 0–9).

Page 4: Network essentials  chapter 3

A protocol is simply an agreed upon set of rules for a particular network function.

Bandwidth is generally considered to be the total amount of data (in bits) you can theoretically

transmit within a given time period (typically one second).

Bandwidth is expressed in bits or bytes per second in digital networking.

Page 5: Network essentials  chapter 3

Network Topologies The topology can refer to how the network actually looks

Physical Topologies:

The physical topology of the network refers to how the network actually looks from a

bird’s-eye view—the physical cabling layout of the network itself.

Page 6: Network essentials  chapter 3

A bus topology consists of all devices connecting to a single wire—a coaxial cable.

A physical bus looks like a straight line—a stick—with connections to hosts coming off

in a “T” shape.

In a ring topology, all devices are connected to each other in the shape of a circle—the first

device feeds into the second device, which in turn feeds into the third, and so on and so on until

the loop plugs back into the first device

Page 7: Network essentials  chapter 3

Star topologies can also include extended star, where the central device extends links to other

hubs and switches.

A token passing, or ring, topology works in a more organized, almost friendly format. In a

token passing logical topology, systems can only transmit information when they hold a special

data packet, known as a token. The token is passed from one device to the next, in a prescribed,

circular path. Each device receives the token and examines it. If it holds a message for the

device, it will open and process it.

Page 8: Network essentials  chapter 3

Network Categories Networks are typically of two types: LANs and WANs.

LANs :

A LAN (local area network) can be defined as a network that serves users within a small geographic footprint.

WANs:

A WAN(wide area network ) is nothing more than the network connecting a collection of LANs across a wide geographic area—perhaps a state, nation, or even the whole world! Aside from the distance variable, another defining characteristic of WANs is the concept of a leased line.

Page 9: Network essentials  chapter 3

The OSI Reference Model 11 CERTIFICATION OBJECTIVE 1.02 The OSI Reference Model

One word bandied about quite a bit in regards to the OSI model is encapsulation.

Encapsulation is the process of adding a header and a trailer to a piece of data. While each stage

of communication (layer of the model) adds a header to the data, only one layer always adds a

trailer. Some texts define encapsulation as occurring in all layers of the model; however, it

technically only occurs at one—the Data Link layer.

Page 10: Network essentials  chapter 3

The Layers The OSI Reference Model splits the communications process into seven distinct modular layers,

with each layer accomplishing a specific function independently of all other layers. The layers do

rely on layers above and below to provide something to work with, but they don’t necessarily

care what they receive to work with.

Page 11: Network essentials  chapter 3

The OSI REFERENCE MODEL SERIESAPPLICATION LAYER(7)

PRESENTATION LAYER(6)

SESSION LAYER(5)

TRANSPORT LAYER(4)

NETWORK LAYER(3)

DATALINK LAYER(2)

PHYSICAL LAYER(1)

Page 12: Network essentials  chapter 3

LAYER DEVICES FOUND IN THE LAYER PROTOCOLS AND STANDARDS WORKING

Application Firewall,Gateway and IDS SMTP,POP3,DNS,DHCP,FTP,HTTP,TFTP,SNMP

Presentation N/A JPG,JPEG,TIFF,GIF,MIME

Session N/A NFS,ASP,SQL,RPC

Transport Firewall TCP,UDP, SPX

Network Router IP,IPX, Appletalk

Data link layer Bridge and Switch Ethernet,ATM,PPP,Frame Relay

Physical Transceiver,Repeater, and Hub RJ45,ST/SC

Page 13: Network essentials  chapter 3

The Data Layers (Application,Presentation, and Session)

Seven layers of the OSI model:-

The data layers would be the top three layers of the model.

At the top of the stack, we find layer 7—the Application layer

The Application layer holds the protocols that allow programs to access and make use of a

Network.

Page 14: Network essentials  chapter 3

For example, Microsoft Outlook—a common e-mail program—can work just fine without a

network. You can open, edit, create, and delete e-mails offline just as well as you can online.

However, if you wish to use the network to send and receive e-mail, you need an Application

layer protocol to do this. In this example, the Application layer protocol would be SMTP.

Page 15: Network essentials  chapter 3

Continuing the e-mail analogy, imagine you are sending an e-mail from a Microsoft Outlook

application to a computer running the Thunderbird e-mail application. You may have bold,

italics, and any number of font settings within your e-mail. Additionally, you may attach a picture

file (jpg) for the recipient to enjoy. Thunderbird might treat bold, italics, and font settings

differently than does Outlook, and SMTP is only capable of sending ASCIIcode (a combination of

bits representing an alphanumeric character, commonly referred to as, simply, text).

Page 16: Network essentials  chapter 3

Enter layer 6—the Presentation layer. The Presentation layer is responsible for formatting and

code conversion between systems. This layer accepts the data from the Application layer and

ensures it is placed in a format the end station can understand. In this case, the e-mail is in text

mode, and another protocol, like MIME, translates the jpg into ASCII for transit. Once received at

the far end, the recipient’s Presentation layer will perform the reverse, handing the data back to

the Application layer protocol. Encryption is another function of the Presentation layer

Page 17: Network essentials  chapter 3

Layer 5—the Session layer:—is perhaps the most enigmatic and troublesome of the entire

stack. This layer doesn’t necessarily do anything to the data at all. Instead, its function is to

work in the background, ensuring the communications process between two systems runs

smoothly.

The Delivery Layers:-

Page 18: Network essentials  chapter 3

Transport layer:

Transport the data from receiver to sender.

The three main functions:

1. Segmentation.

2. The reliable delivery

3. Flow control

Page 19: Network essentials  chapter 3

Segmentation is simply taking a small piece of the bits making up the data as a whole.

A small header is put in front of these bits. Inside the header is all sorts of information,

including:

The Network layer is responsible for logical addressing and routing.

Page 20: Network essentials  chapter 3

Receiving a segment from the Transport layer, the Network layer adds a header that includes a

source and destination logical (network) address. This address is read by layer-3 devices

(routers) and best path determinations are made to deliver the segment to its final destination

Page 21: Network essentials  chapter 3

Network Components Physical Layer Devices:

Physical layer devices do nothing more than physically connect wiring together to complete a path, or change the connection from one type to another.

Examples of physical layer devices include transceivers, repeaters, and hubs.

Transceivers connect one media type to another, such as a fiber connection to a copper one.

Repeaters are used to extend the range of a given media—whatever they take in one port,

they regenerate and repeat out the other. Hubs are nothing more than multiport

repeaters. Comparatively, where a repeater takes bits in one port to relay to another,

hubs have several ports they accept and relay bits on.

Page 22: Network essentials  chapter 3

Data Link Layer Devices Layer-2 devices include bridges and switches. Switches and bridges split (or

segment) collision domains, decrease network traffic problems, and increase effective

available bandwidth to hosts. However, keep in mind they are incapable of moving

traffic outside your LAN.

Page 23: Network essentials  chapter 3

Network Layer Devices Network layer devices play a unique role in your network design. These devices read the

Logical network addresses on your data and make decisions about which route to

send the data. This sounds very much like the switches and bridges discussed earlier,

but keep in mind the layer-3 device not only knows which port to send the data out,

but also the best route through outside networks to its final destination. Continuing

the analogy from earlier, if the street address on your letter is akin to the physical

address of your hosts, the logical address used by layer-3 devices is equivalent to the

ZIP code.

Page 24: Network essentials  chapter 3

Other Devices Networks can also include a variety of other devices, such as firewalls, gateways,

and proxies. A firewall is a device that typically works at layers 3 and 4, and is

used to filter network traffic based upon rules the administrator configures on

the device. Generally placed between your network and the Internet, firewalls

work on an implicit deny principle—if you do not explicitly allow the traffic, it is

blocked.

Page 25: Network essentials  chapter 3

Gateways work at all layers and are generally used to connect networks and applications of

different types together. A proxy is a system that provides a specific service to a host. For

example, a web proxy will make requests to the Internet for web content on behalf of a host.

This increases security and performance since web traffic coming from your network appears

from only one system, and hosts can access cached pages on the proxy instead of going out to

find them. Generally speaking, these devices are usually placed between your network and the

Internet in a special network called a DMZ

Page 26: Network essentials  chapter 3

TCP/IP TCP/IP eventually became accepted as the worldwide standard for communication due to its

open architecture and, eventually, public input on its inner working.

Comparing Models:

TCP/IP divides networking functions into distinct layers. However, TCP/IP does so with only four

layers: Application, Transport, Internet, and Network Access. All the functionality of the OSI

model also occurs within the TCP/IP model; however, the layers do not line up exactly.

Page 27: Network essentials  chapter 3

OSI TO TCP/IP COMPARISIONOSI MODEL TCP/IP MODEL

APPLICATION LAYER APPLICATION

PRESENTATION LAYER APPLICATION

SESSION LAYER APPLICATION

TRANSPORT LAYER TRANSPORT

NETWORK LAYER INTERNET

DATA LINK LAYER NETWORK ACCESS

PHYSICAL LAYER NETWORK ACCESS

Page 28: Network essentials  chapter 3

DNS The Domain Name Service (DNS) may well be the most widely and universally

used protocol within the Application layer. Its use is so ubiquitous within Internet

communications, it’s even used by other protocols! Therefore, it is absolutely

essential you understand the purpose of DNS and how it functions.

Page 29: Network essentials  chapter 3

Caching is a process used to limit the number of queries that have to go all the way to the root.

Your computer has a DNS cache, and every name server and resolver along the way caches their

results. This means systems can sometimes get the answer to a query very quickly, especially if

others on their network have queried for the same record.

Page 30: Network essentials  chapter 3

DHCP Another well-known and oft-used Application layer protocol is Dynamic Host Configuration

Protocol (DHCP). The main function of DHCP is to automatically assign IP addresses from a given

pool of addresses to clients within a specific network segment. The pool of addresses a DHCP

server uses is known as a scope. Servers and routers are generally configured as DHCP servers

within a network.

Page 31: Network essentials  chapter 3

OTHER PROTOCOLS File Transfer Protocols

File Transfer Protocol (FTP) and Trivial File Transfer Protocol (TFTP) are both found in the TCP/IP

Application layer, and they both perform the same function—they transfer files from one system

to another. The manner in which they perform these functions differs, as well as where you

would traditionally see them in play. FTP is as much a service as it is a protocol, and is comprised

of a server, an authentication method, and the protocol itself. The FTP server is simply a

machine that has installed and enabled the FTP service.

Page 32: Network essentials  chapter 3

TFTP has traditionally been used to transfer Cisco IOS and configuration files between Cisco

devices and a TFTP server on the network. Its small footprint, lack of extensive overhead, and

general ease of use make it an easy choice. FTP provides many more features, such as the ability

to list the fi les within the directory, and is a better choice for end users.

Page 33: Network essentials  chapter 3

E-mail Protocols The protocols in play to move e-mail through networks are Simple Mail Transfer Protocol (SMTP)

and Post Office Protocol version 3 (POP3).

IMAP4 (Internet Message Access Protocol) is another protocol that may be used to pull an e-

mail message from a server. IMAP has a more sophisticated authentication structure than POP3,

but is not as commonly used in modern networks.

Page 34: Network essentials  chapter 3

A URL is made up of three major components: the protocol used, the name of the server (or

host) holding the resource, and the name of the page. The protocol comes first, before the //.

The domain name listed, such as Cisco.com, comes next and is the host holding the resource.

Anything listed after the last “/” is the name of a specific resource (page) on the host.

Page 35: Network essentials  chapter 3

Hyper Text Transport Protocol over SSL (HTTPS) uses much the same process,

but adds security and encryption to the process. Secure Sockets Layer (SSL) is an

encryption process that secures the communication between the client and the

server hosting the site. An exchange of certificates ensures the client can safely

exchange data without worrying about third-party interception. HTTPS is very

common in online banking, shopping, and secured data sharing implementations.

Both HTTP and HTTPS are connection-oriented protocols

Page 36: Network essentials  chapter 3

Transport Layer Functions and Protocols

The TCP/IP Transport layer performs the same functions as its namesake layer in the OSI model:

segmentation, reliable end-to-end delivery of data, and flow control. Transport layer protocols

include Transport Control Protocol (TCP) and User Datagram Protocol (UDP).

Page 37: Network essentials  chapter 3

TCP TCP is a connection-oriented reliable transport protocol used by applications that

require error correction in delivery. On the good side, TCP provides the reliability

services that applications may not have built into them.

Page 38: Network essentials  chapter 3

Every TCP communication process begins with a session establishment process known as the three-

way handshake. In the first phase, the requesting system sends a synchronization request segment,

known as a SYN. The SYN segment is a simple request to open a communications channel, and

includes the SYN flag set, a sequence number, and port numbers (covered later in this chapter). When

the server receives this request, it formulates and sends a synchronization/acknowledgment

segment, known as a SYN/ACK. This segment includes the SYN and ACK flags set, an acknowledgment

of the requestor’s sequence number, and a separate sequence number. Finally, in the third step, the

requesting system sends an acknowledgment segment, known as an ACK. This segment includes the

ACK flag set, a copy of the acknowledgment of the original sequence number, and an

acknowledgment of the server’s own sequence number

Page 39: Network essentials  chapter 3

Be sure to review and understand the three major functions accomplished within TCP. You will

definitely be asked questions testing your knowledge on the order transfer of data, requiring

you to predict sequence numbers from a given scenario. Pay close attention to the sequence

number itself, as well as the agreed-upon size.

Page 40: Network essentials  chapter 3

UDP Unlike TCP, UDP is a connectionless protocol, meaning it does not require acknowledgments and

does not provide for error correction. A much simpler protocol with a smaller header, UDP

simply transmits segments as quickly as possible, without regard to the recipient. UDP has the

advantage of being much faster than TCP, but it does not provide many of the services that TCP’s

larger header allows for. If UDP is used as a transport protocol, reliability becomes a

function of the applications themselves.

Page 41: Network essentials  chapter 3

UDP is a good choice in a couple of scenarios. If the data transfer is one (or just a

few) packets, then the overhead of TCP is unnecessary. Both DNS and DHCP are good

examples. In another good UDP scenario, the applications themselves must be capable

of tolerating lost packets, or have some means by which to ask for retransmissions. For

example, streaming video and Voice over IP (VoIP) can both tolerate a packet or two

lost along the way, as long as the stream doesn’t get too choppy.

Page 42: Network essentials  chapter 3

Port Numbers and Multiplexing

Regardless of the transport protocol in use, there must be a method in place to let the recipient

Transport layer know which application protocol the transmitted segments should be passed to.

For example, imagine a server simultaneously hosting a web site and running an FTP service. A

TCP connection sequence occurs and a client connects to the server, sending a request for data.

How does the server know which application protocol—HTTP or FTP—is to handle the request?

Additionally, consider how confusing things could get if the same address asked for both services

in different streams. Port numbers are used to identify which protocol is to answer a

request and provide for multiplexing multiple requests from a single source

Page 43: Network essentials  chapter 3

Port Number Application Protocol

20FTP (Data)

21FTP (Control)

22SSH

23Telnet

25SMTP

53DNS67,68DHCP

69TFTP

80HTTP

110POP3

161SNMP

443HTTPS (SSL)

Page 44: Network essentials  chapter 3

Routed protocols can be routed across networks (or subnets). Routing protocols are used to

exchange information between routers to determine best path availability. You might also see a

reference to “non-routable” protocols on the exam. Non-routable protocols cannot,

obviously, be moved from one subnet to another. An example is NetBEUI.

Page 45: Network essentials  chapter 3

IP AND ICMP

ping is a command-line tool used to test basic network connectivity. It sends an echo request to

a distant host, and if the host receives the message, it responds with an echo reply.

ping is usually used to systematically test network connectivity between two devices.

The IP address 127.0.0.1 (also known as localhost) is used to test the TCP/IP binding on the local

network card. Next, ping the default gateway for the system.

Page 46: Network essentials  chapter 3

The responses to a ping display differently in a Cisco device, with a single character indicating

the message type. An exclamation point (!) indicates a good response. Other responses include a

dot (.) for timed out, and a capital “U” for destination unreachable. Also, be sure to

remember to ping from local to remote in troubleshooting scenarios

Page 47: Network essentials  chapter 3

A final tool associated with ICMP is traceroute . The traceroute command displays all the IP

addresses of all routers along the path to the final destination, which obviously provides a much

more granular and meaningful snapshot in any troubleshooting scenario. The traceroute

command on Cisco devices displays the IP address of the next hop device along the path.

Page 48: Network essentials  chapter 3

Network Access Layer Protocols

The Network Access layer of TCP/IP encompasses all the functionality of both the Data Link and

Physical layers of the OSI Reference Model. Encapsulation, framing, media access, and physical

addressing, as well as all the physical standards associated with cabling, connectors, and encoding, all

occur here. Each Network Access layer protocol defines a specific frame type in which to encapsulate

a packet for delivery within the network segment. In other words, the packet must be delivered

somewhere locally first, before it can make its way out of the network. If all devices on the media use

the same Network Access protocol and standard, the frame type is understood and the frame is

delivered to the appropriate device. The Network Access layer encompasses a wide variety of

protocols and standards, including SLIP, PPP, and Ethernet

Page 49: Network essentials  chapter 3

Each network segment uses a specifi c Network Access layer standard. As the packet moves from

one network segment to the next, the frame is stripped off by the router and a new frame is

built for transmission on the next segment. For example, an Ethernet segment may pass

over a PPP or SLIP network on the way to its destination