Remember Me
forgot your password?

Ccna, Ccent, Ccnp Tutorial on Routers and Routing


Routers are the critical part of all the networks and can be both security aid and security vulnerability. A router basically has more network interfaces through which network traffic is forwarded. Or it might be blocked. The router decides when to forward packets between the networks based on internal routing table.

The routing table can also be static. That means where each route is explicitly defined or dynamic where the router learns new routes by the use the routing protocols.

A router also supports access control lists that specify which packets to allow or blocked. Every packet going through a router will be checked against the ACL to see if the packet is allowed to be forwarded. Lots of current routers offer security capabilities along with their routing functionality. Segmenting the network using routers limits the amount of the data flowing through segments. It also applies to broadcast traffic.

Routers also allow technicians to explicitly deny a few packets the ability to be forwarded between segments. Using just the internal security features of some,

routers can prevent users through internal network from using the Telnet to access external systems. Telnet are always a security risk as the passwords and all communications are transmitted in cleartext. Because of this, it's best not to create Telnet sessions between the internal network and an external network. Without a firewall, the rule can be put in place within the router to drop packets attempting to connect to port 23 on any external systems. After all of this is done by properly con- figuring the ACLs for the router. Spoofed packets are packets that contain the IP address in the header that are not the actual IP address of the

originating the computer. Routers combat this by giving the technicians the ability to drop packets which are coming through the interface from the wrong subnet. . If the packet comes in from the router's external interface by using an IP address from the network on the router's internal interface, the router can be instructed to drop the packet and not forward it. There are two types of access lists available to filter traffic on Cisco routers. One of them is a standard access list. It allows technicians to filter traffic from specific addresses or subnet ranges. Cisco also provides extended access lists, which allow technicians to filter based on a variety of criteria. This access list allows technicians to use source addresses, destination addresses, and specific network services as the basis of filtering rules.

Rate this Article: 0 / 5 stars - 0 vote(s)
Print Email Re-Publish

Add new Comment



Captcha

  • Latest E-Learning Articles
  • More from M. Aslam

Programs for CompTIA Training In Detail

By: Jason Kendall | 07/01/2010
Computer training for CompTIA A+ covers four specialised areas - you'll need exam certification in 2 different areas to be considered competent in A+. Because of this, many training establishments only offer two of the four in the syllabus. Our opinion is this is selling you short - of course you can gain accreditation, but experience of all four will give you greater confidence in industry, where you'll need a more comprehensive understanding. This is why you need education in all four areas.

Failing to Spell-Out

By: Daniel Kreimer | 06/01/2010
Failure to Spell-Out Exercises in Numbered Steps Writing good exercises is an art. When you have a clear image of an exercise, it is easy to feel that the elements are self-explanatory, and that actually labeling them Step 1, Step 2, etc. would be redundant. But it is not redundant, it is a necessity.

Computer Career Training And Study Courses - UK Revealed

By: Jason Kendall | 06/01/2010
Congratulations! By reading this we guess you must be considering re-training to work in a different industry - that means you've already taken one more step than the majority. Less of us than you'd think are content with our jobs, but no action is ever taken. You could be a member of the few who take responsibility for their future.

Examsoon 000-331 Training Tools

By: Adela1987 | 06/01/2010
At Examsoon Certified IBM 000-331 training study guide we provide you with Practice Questions and Answers, Practice Testing Software, 000-331 Study Guide, Preparation Labs and Audio Learnings. Examsoon Certified IBM 000-331 exam Training Tools are detailed and provide you with a real time environment.

Examsoon 000-331 Training Tools

By: Adela1987 | 06/01/2010
At Examsoon Certified IBM 000-331 training study guide we provide you with Practice Questions and Answers, Practice Testing Software, 000-331 Study Guide, Preparation Labs and Audio Learnings. Examsoon Certified IBM 000-331 exam Training Tools are detailed and provide you with a real time environment.

Examsoon 000-995 PDF

By: Adela1987 | 06/01/2010
Examsoon 000-995 Learning exam includes offical answers and detailed explanations, Examsoon 000-995 Exam Certification exam helps you test yourself in a real time environment of IBM 000-995 Certification exam.and help you pass the IBM 000-995 exam in the first time!

Examsoon 000-287 questions and answers

By: Adela1987 | 06/01/2010
At Examsoon we are committed to you ongoing success. Our braindumps are constantly being updated and compared to industry standards.

Examsoon IBM 000-858 Study Guide

By: Adela1987 | 06/01/2010
Examsoon ’s IBM 000-858 Study Guide provide comprehensive coverage of IBM 000-858 Exam Objectives while keeping it all still simple enough for you to understand it easily. Our IBM 000-858 Study Guide is prepared keeping in mind a beginner and don’t use complex wordings or terms. It is easy to pass your IBM 000-858 Exam in your first attempt using our IBM 000-858 Study Guide.

CCENT Tutorial - Introduction to OSI 7 Layer Model

By: M. Aslam | 07/11/2009 | Networks
The 7 Layer OSI model is hierarchical, and the same benefits and advantages can implement to any layered model. The most-valuable purpose of all such patterns, especially the OSI model, is to let different vendors’ networks to interoperate.

Free CCNA Tutorial

By: M. Aslam | 04/11/2009 | Networks
Free CCNA Tutorial on EIGRP and RTP. EIGRP uses a proprietary protocol called Reliable Transport Protocol (RTP) to deal the communication of substances between EIGRP-speaking routers.

Free Ccna Wirless Tutorial

By: M. Aslam | 10/01/2009 | Hardware
Free Cisco CCNA Wireless tutorial on Wireless Technology

Windows Vista Ultimate Edition Features

By: M. Aslam | 17/12/2008 | Software
Windows Ultimate is unique in that it not only features all the features of the other Windows editions, but also includes downloadable Windows Ultimate Extras.

What’s New in Windows Vista?

By: M. Aslam | 17/12/2008 | Software
There’s more. Behind the scenes, Windows Vista is a vastly improved operating system. It’s more secure. It’s less prone to critical failures and file corruption.

Microsoft Windows Vista Features of Different Versions

By: M. Aslam | 17/12/2008 | Software
The company released a number of different Windows Vista editions, each aimed at a different market segment. Windows Vista Starter, which is only available in emerging markets, is a barebones operating system for the simplest computers.

Introducing Microsoft Operating Systems Includes Windows Vista, Xp, 2000, Nt, 3.1 and Dos

By: M. Aslam | 17/12/2008 | Software
Basic Information about Microsoft operating systems includes Microsoft Windows Vista, XP, 2000, Windows NT.

Submit Your Articles Free: Signup
Article Categories




Use of this web site constitutes acceptance of the Terms Of Use and Privacy Policy | User published content is licensed under a Creative Commons License.
Copyright © 2005-2008 Free Articles by ArticlesBase.com, All rights reserved. (0.39, 1, w2)