Hello and welcome back to I see. And you want interconnecting Cisco networking devices. Part one This episode 233 s s h configuring a remote interface from management. Last video went over how to security switch with use names in a few different types of passwords.
This absurd Arima covered how to set up the switch for atonement. Sshh! In setting up that man it management interface and how to grab it and how to set the interface to grab it. I p from D h c p.
So we're gonna go over enabling SS agent tell meant we're gonna set up that management interface so we can use a cessation telling that we're gonna choose an I p or let d a C p choose an I p for us.
So a quick pre assessment here, what's you answers? Need to be set for a s S H key to be generated. So which two items in the configuration have to be set
for the key to be generated a few seconds.
All right. It is the domain name and host named only two parts Shuki.
All right, so we're gonna go ahead and set up, tell not here first. And those are the two commands that Oregon be very useful for. You wanna ramp the party session?
And if your mother from last episode I've gone ahead and remove the passwords from the VT y lines and the consul lines
just for good housekeeping here. So I'm gonna go into coffee. Tea
We're going to transport transports
and will do till nuts.
It's very simple. Remember, you were because we're on the fee t One line is we're gonna be using that local
user name and password database because reason log in local.
so we're gonna go ahead and move on to setting up. Sshh. It's fairly simple again. There's just a few extra commands,
otherwise, basically the same thing.
So again, I'm gonna bring up buddy,
if you want to give you a few seconds to go ahead and just copied his commands down real quick,
Okay, I'm gonna bring buddy
s go into configure terminal
and we want to do is we're just gonna add this onto it. So transport inputs
now, one thing we can also do, Which is the same exact thing is the transports and quits.
same thing. It'll have telnet and s s age. Either one is acceptable that both do the same thing.
All right, so if we go back here, we're going to figure terminal.
And remember, the two things we gotta set is the host name.
So we'll just go back. We'll just state s w one.
And then the next wanting you to do is the i P. Domain
It will do cyber very labs dot com.
So from there, we're actually gonna start working into generating that crypto key.
So the commands we're gonna need his crib too.
And then from there, we're gonna do the R S. A.
And you could you could include the module ISS level here, but I'm just going to enter. So the default will be 5 12 by orbits. Um, you need a minimum of 7 60 eight's for sshh version, too. So we're gonna go ahead and go. 10 24 is a good, solid number.
All right, so I just took a few seconds here.
C version 1.99 has been enabled on and
useful commands here.
A new show i p s s h
it shows what command. We have a bit of r r c ki,
but I'm actually gonna do is set it to only use version too.
So we're gonna come T i p s s h
we're gonna go to version
So now we're in version two.
No one you can do is show.
So they had no connections currently running. I'll show you a little bit. What the When we have a couple of the essays connections in the next video
or ah, little later on here once we configure that remote interface.
So for now, I'm gonna go ahead and close at a party.
Are So now we're gonna go ahead and set up a static I p address for the room. Remote management in her face.
Um, so we're actually gonna sign a p to an S V I, which is a switch virtual interface.
So about a fault. All porcelain v land one. Realistically, you want to change this? If you're in any sort of production network,
But for now, we're keeping a V Lane one, and we're going to use that V Aliant interface
to assign our I P address for management. So on later, two switches each V land. What actually need a management interface? So let's say you threw a couple of your devices on villian six
than they couldn't connect to the land. One
management interface. They would actually get sent to the router and on a router and bring it back. It would
ran to the switch interview. And one,
um, that's where you need to set up the default gateway on the switch.
we'll talk a little about layers with three switches that works a little bit differently with that, but it's not on the sub net. If the V lines not on the same. Suddenly it's gonna send the request of the local router the default gateway first.
So you go ahead and bring up the party session. We'll set up our I P address, and you can actually start SS aging into it and tell netting
so it's going to bring it up here.
So do a configure terminal.
We'll go into interface view in one
and Let's just set the i P address
to one night to succeed. I was gonna pick one that I know is out of scope of my router to 10. And then you need to add your subnet mask
and hopefully remember, this is a
and it uses 24 bits of subjects
we'll run a no. Shut down on this now.
well, go ahead and just set the default. Gateway is well right now.
So the default gateway
to succeed a lot of people just give me 1.10 that one. Um
you know something along the lines of that You, you you you can see off.
You're normal, like window settings. Because right now I'm going to go ahead and hook up the
router to my switch again.
Right now, it's disconnected. It's the home network is kind of on. So thing
good again. We need we do not need to set a sub. Not for this.
So just ends right there.
Now, this is gonna end.
So I'm actually gonna do is I'm gonna accident this party session and I'm gonna bring up a cessation will go through that
initial accepting the RS a key. You'll kind of see You'll get that warning. So I'm gonna go ahead and exit out of this.
All right? Some of the ransom money session. So I s s H here
when I to 16 to 81 that
But I said it is actually. Give me a second. Gonna plug in a router to switch here.
It was already put. Did. Okay, so when you open,
Okay. So I'm gonna bring this. This is what the
fingerprint looks like. Here. You'll see the security warning.
you go ahead. Yes. And then we get the log in, as remember,
truants. Cyber. Very. And now we're in.
And so we're getting no password, sir, because we didn't ever set an actual enable password.
Let's go ahead and do that. I'm gonna exit out of this and bring up the consul connection again here.
All right, So gets council connection.
So if you're going to configure terminal, see if you guys can remember this one.
What do you think it is?
Remember we want one of your secret, not password,
because thesis pret iss and the five crashed.
And we'll just sit this one out, Nimda
exit. And I'm gonna ring of the SS age connection.
All right, so I got this again.
Okay, We're gonna is Trent.
Cyberia is the password and enable
Well, do you, Nimda?
So let me get this going here,
So let's do we already say here she'll run.
So he said our secret password. We have our usual name here.
We have the S H version set
and here we go. We got the i P address for veal in one.
We had to default. Gateway set.
We have our V t y lines using log and local.
All right, Now, if we do a
show, I show S s H here.
Now we have the session going here
because we're currently has this age version too.
So one thing we can also do, we can If we're not using DCP, we might want to use a wanna set our d n a server.
So how we do that is by p
And I'm gonna go ahead and set the one that I currently have on my network.
And now what? You can check your default gateway show. I p
Sorry, I don't know why that wasn't out of completing, but if you do a show I p d felt *** away. It will bring up the currently set default gateway.
All right, I'm gonna bring down Putty.
An hour's gonna set the
dynamic I P address. We're gonna use d h e p from the what was mine now my main router in my d c p server.
We're going to use ah, really usable geese from there to set our management i p address. So it's going to bring plenty back up.
Let's go into configure t.
Remember, we go into interface villain. One girl had to shut it down,
shot a short for shutdown.
So good note. Um, make sure if you shut down that interface, you have a concert connection.
Make sure you have that kind of connection available, So go ahead and going can't fi. We're going to interface with the land one, so it should be shut down currently.
So we will go ahead and go to you. Want to go into I p address D h C P
and I'm Go ahead. Enter.
We'll do a no shut on it
but still respect up.
So we do a show i p interface brief.
Actually, we can see right in there.
There we go. So it does show it in here and that it's been assigned by the h E p 2115 with that static menace in that host name. Where if you do a show I p interface brief, we have 1 91 681.1 15
mess. It is D h e p.
So I kind of want actually show you guys what this looks like. So we see here, we're in a up a up status.
I could do a show interface. Villain one.
All right, So let's go ahead and show the interface down.
when we're through counsel this time so it won't kick us out
my particles down a show i p interface brief.
So now we see the status is administratively down
the same thing. If we go into a show and
Well, see, that's the same thing here.
The land is administratively down. That's what is OK. V line is shut down. So I figured
interface feeling at one?
no. Turn it back on. We'll see the stash messages
configured by trends where it stands up and up.
so to see the DCP releases here
showed you sheet lease.
You can modify it with, uh, interfaces if you want, or you can do this real quick.
So if we see we have a temp I p address wanted to wonder. 15 for view. And one.
This is the server default gateway, in my case as well.
Uh, least time renewal. So you have a bit of information here?
one thing You have to know this Well, if we do a show run, you won't see an actual i p address in the running config
for view. 1,000,000 won.
So here's what you see.
You won't have an actual because it could change depending on the d A. C p, sir. Right.
So just see that selling matter dynamically said,
All right, let's go into the post assessment. If both a username and password is set on switch and online passwords set.
Which will the interface use?
See if you remember this from the last episode
and over he got this. It is. Remember, it's a bargain or lugging locals. The logging lease that password
log in local is going to use that database that use named Pass for database.
The last episode of this lesson. We're gonna go over some very useful lab commands.
And as always, if you guys have questions, need some help? Feel free to shoot me messages always thank you for washing this episode and look forward to seeing the next one to give it.