Using MikroTik With GNS3 - RFC

1y ago
6 Views
2 Downloads
2.10 MB
41 Pages
Last View : 1m ago
Last Download : 3m ago
Upload by : Ronan Orellana
Transcription

www.rickfreyconsulting.com903-245-1557Using MikroTik withGNS3PR E SENTED B Y:R I C K F R E Y , MIK R OTIK T R A I NE R

www.rickfreyconsulting.com903-245-1557Background Rick Frey 20 years in IT & Communication Industries 10 years in the US Navy Designed and implemented a wide array of networks all of the world Introduced to the MikroTik product line in 2008 Areas of Focus: Wireless services integration ISP Solutions Certifications Certified –MTCNA, MTCRE, MTCTCE, MTCWE, MTCT24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557IP ArchiTechs Managed Services The first Carrier-Grade 24/7/365 MikroTik TAC (Technical Assistance Center) Three tiers of engineering support Monthly and on-demand pricing available 1-855-MIKRO-TIK or www.iparchitechs.com Air MPLS - Private Nationwide 4G LTE MPLS backbone Partnership with Verizon Wireless - available anywhere in the Verizon service area Not Internet facing – privately routed over our MPLS infrastructure Point-to-Point or Point-to-MultiPoint Proactive Monitoring / Ticketing / Change Control / IPAM Carrier-Grade Network Engineering / Design in large (10,000 nodes) environments24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Objectives Introduce GNS3 Introduce Virtual Box Explain how use MikroTik with GNS324/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557GNS3 Graphical Network Simulator Combines other open source platforms to visually and cohesivelysimulate network environments Dynamips – Cisco IOS emulator VirtualBox – Runs RouterOS and other x86 software Qemu – Machine Emulator to run Cisco ASA, PIX, and IPS24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Why Use GNS3 Training – Almost as realistic as building a mock network with realequipment Most cost effective tool for teaching networking available Network Validation – Allows you test network designs and changesbefore they are applied to a production network Reduces downtime Increases ROI Network Design Collaboration24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557GNS3 First released in Sept of 2007 as V0.3 Current stable version is GNS3 V0.8.7 Beta Version is GNS3 V1.0 Beta 224/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557First Look at GNS324/7/365 MikroTik TAC Nationwide Private 4G LTE MPLSProactive Network MonitoringDesign / Engineering /MikroTik Training Network MonitoringDesign &EngineeringQuality of Service FirewallsOperationsConsulting

www.rickfreyconsulting.com903-245-1557Virtual BoxGNS3 uses Virtual Box to run MikroTik’s RouterOS and other x86compatible software24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Intro to Using Virtual Box Currently owned by Oracle Virtualization Software Can run any x86, Intel64,AMD64 Software24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Intro to Using Virtual Box24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Installing RouterOS to Virtual Box Start by Selecting Machine - New Follow the Wizard Default Settings will beadequate for most people24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Installing RouterOS to Virtual Box Give your VM the same nameyou will want it to have in GNS3 You can also change the namelatter24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Installing RouterOS to Virtual Box Default Memory size is 512MB The recommended “Green” &“Red” portions are based uponthe amount of memoryinstalled on the physicalmachine24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Installing RouterOS to Virtual Box Select virtual hard drive now24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Installing RouterOS to Virtual Box VDI – VB’s Native format The correct choice 99% of the time VMDK – Used by products likeVM Ware VHD – Used by MicrosoftProducts HDD – Used by Parallels QED – Used by Qemu QCOW – Used by Qemu24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Installing RouterOS to Virtual Box Dynamically Allocated – Savesspace on your physical machineand is the best choice for mostcases Fixed Size – X size HD on theVM will X Size space used onthe physical machine24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Installing RouterOS to Virtual Box Set HD limit to somethingreasonable24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Installing RouterOS to Virtual BoxNew VM24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Installing RouterOS to Virtual Box Select the ISO for RotuerOS Installation will identical tousing a CD on an x86 machine24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Installing RouterOS to Virtual Box Selected Desired Packages Press “I” to install24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Installing RouterOS to Virtual Box Remove the installation mediaby selecting Devices - CD/DVDDevices & Un-checking the ISO Reboot the VM24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Accessing the Virtual Router for the 1 st Time Stop the VM Right Click and chose Settings Select Network Change “Attached to” toBridged Adapter This will Bridge the VM’sadapter to your physicaladapter – Allows Internetaccess, Winbox, and Webfig24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Notes about Licensing The best time to apply the apply the license would immediately afterinstallation For training and evaluation purposes, MikroTik offer a 24 Hr License This allows for full functionality for 24 hours of use (not from 8am Mon to 8amTue) You can build up complicated virtual networks using the Demo License24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Stop! Take a Snapshot! Snapshot save everything inthere current state Save Earlier. Save Often24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Configuring GNS31 Edit - Prefrences3 VirtualBox Guest2 Virtual Box2nd VM ListRefresh 1st24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Configuring GNS324/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Configuring GNS324/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557The Nuts & Bolts of Networking the VMs VB has limit of 8 network interfaces (GNS3 may reserve one) In VB, only 4 NICs can be configured in the Network Settings The other 4 can only be configured from the command line (GNS3handles this for you mostly) VB has limited support for “Jumbo Frames” ( 1500 bytes) Have a plan ahead of time for which NICs will need to accessresources outside of GNS3 such as the Internet, other vendors' VMs,or real network resources24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557VB NIC Networking Modes24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557VB NIC Networking Modes Not attached – Not needed when using GNS3 NAT – Deceptive Should not be used due to high limitations such as ICMP failure,no support for GRE, unreliable UDP broadcasts, etc. NAT Network – Similar to a home router, same limitations Bridged – Works well and is probably the best choice for connecting outside theVM environments Internal Networking – Creates a sudo interface, should be avoided Host Only – Creates a private network between the host any VMs with thatinterface – Very Useful Generic – Used in the background by GNS3, should not be selected by user24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Reserving the 1 st NIC Inside GNS324/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Reserving the 1 st NIC Inside GNS324/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Reserving the 1 st NIC Inside GNS3PROSCO N S Reserving the 1st NIC allows youto easily manage the settingsfor NIC 1 in VB Without it, the NICs stay in thevirtual environment The use of PuTTY or similar toolcan still be used as long asLayer 3 connectivity exsists Ether1 in ROS Ether1 in GNS3 Good choice for Gateways Without it, you can console intothe VM natively from GNS3 Ether1 in ROS Ether”0” inGNS3 Not as favorable for all othernodes24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Reserving the 1 st NIC Inside GNS31stNIC ReservedNot ReservedNot Reserved24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Using Host Only Adapters Only necessary if you want to have Layer 3 access to nodes whichare not bridged onto a real network Not needed if you are comfortable with the CLI Can be used to access the virtual router with Winbox, PuTTy, orWebfig Configured in VB Can be used to put to two or more NICs on the same broadcastdomain Can be a little time consuming to setup24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Using Host Only Adapters24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Using Host Only Adapters Configures a Virtual EthernetAdapter on the host PCFile - Prefrences If its disabled on the PC, it willnot show up in VB again If everything seems right, butits still not working, reboot thePC24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Limitations of GNS3 Can only virtualize wired connections Limited and weak support of switching It only performs well on hardware designed for VMs Limited support VM environments are not 100% identical to the real environment Focus on the network methodology, don’t expect it to be 100% perfect Take the time to understand why there is a difference24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

www.rickfreyconsulting.com903-245-1557Conclusion GNS3 can compliment most network environments and providevaluable insight before a network change GNS3 can be the single best platform for training Portable Scalable Can be shared with others Lots of resources available for becoming proficient with both GNS3 &VirtulBox24/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

/7/365 MikroTik ork4G gMonitoringQualityDesignof Service/ EngineeringFirewalls/ Operations

Consulting MikroTik Training Network Monitoring Design &Engineering Quality of Service Firewalls. Reserving the 1st NIC Inside GNS3 24/7/365 MikroTikTAC Nationwide Private 4G LTE MPLS Proactive Network Monitoring Design / Engineering / Operations www.rickfreyconsulting.com 903-245-1557 .

Related Documents:

Creating your First GNS3 Simulation, takes you through some important background concepts that will help you get the most out of GNS3, even if you have used GNS3 before, and culminates with a Cisco router simulated network. Chapter 3, Enhancing GNS3, will explore some of the more advanced features of GNS3, the place to come for help with

RFC 3665 - Basic call flow examples RFC 3666 - SIP/PSTN call flows RFC 3264 - Offer/Answer model with SDP RFC 3725 - Third party call control best practices RFC 3515 - The REFER method RFC 3204 - MIME media types for QSIG/ISUP RFC 2976 - INFO method RFC 3891 - Replaces header

sample network topology. GNS3 also allows emulated devices to access external network using NAT or Bridged connection. For large scale simulation, GNS3 offers a separate compute platform, typically virtualized, called GNS3 VM. While simulating a network GNS3 UI offload the devices to GNS3 VM via either QEMU virtualization or Docker containers.

Media Convertor AT-MC103XL-20 3 Mikrotik S-3553LC20D SFP 20km BiDir (pair) 4 Mikrotik S 31DLC10D SFP 10km 3 Mikrotik S 2332LC10D SFP 10km BiDir (pair) 3 Mikrotik SFP 3m direct attach cable 2 Mikrotik S-31DLC20D 2 D-Link DGE-528T 5 Dell Memory Upgrade - 32GB - 4Rx4 DDR

RFC 1213: MIB II parts that apply to FortiSwitch 100 units. RFC 1354: IP Forwarding Table MIB. RFC 1493: Bridge MIB. RFC 1573: SNMP MIB II. . RFC 2674: Definitions of Managed Objects for Bridges with Traffic Classes, Multicast Filtering . and Virtual LAN extensions. RFC 2787: Definitions of Managed Objects for the Virtual Router Redundancy .

5 Secure Sockets Layer (SSL) versus Transport Layer Security (TLS) I SSLv3: old (RFC 6101, 1996) and deprecated (RFC 7568, 2015). Do not use it! I TLS 1.0 (RFC 2246, 1999), 1.1 (RFC 4346, 2006), 1.2 (RFC 5246, 2008). I Changes: I New versions are generally xing weaknesses due to new attacks. I TLS 1.0 (RFC 3546, 2003)

25 July 2010 Document Lifecycle Tutorial 8 IETF IAB IRTF Community at Large IESG IAB IRSG ISE Nevil Brownlee rfc-ise@rfc-editor.org RFC Production Center TRSE Glenn Kowack rse@rfc-editor.org RSAG Editorial Board RFC Publisher IANA Stream Producers Adapted from RFC 5620, Fi

Automotive battery: module components Casing: Metal casing provides mechanical support to the cells and holds them under slight compression for best performance Clamping frame: Steel clamping frames secure the modules to the battery case Temperature sensors: Sensors in the modules monitor the cell temperatures to allow the battery management system to control cooling and power delivery within .