Solved

Switch Questions!

Posted on 2009-06-27
3
338 Views
Last Modified: 2012-05-07
I have some questions about a switch setup at one of our clients. (Studying for CCNA)
Partial running config is below.

Questions:
What is "no aaa new-model"?

What is "system mtu routing 1500"? (It is passing VLAN information, does his have to be set to prevent baby giants? )

"IP routing" Does this indicate a layer 3 switch?

What's the crypto pki trustpoint setup?

Thanks!
username admin privilege 15 password 0 ******
no aaa new-model
system mtu routing 1500
ip subnet-zero
ip routing
!
!
!
crypto pki trustpoint TP-self-signed-206236160
 enrollment selfsigned
 subject-name cn=IOS-Self-Signed-Certificate-206236160
 revocation-check none
 rsakeypair TP-self-signed-206236160
!
!
crypto pki certificate chain TP-self-signed-206236160
 certificate self-signed 01

Open in new window

0
Comment
Question by:wolf2008
3 Comments
 
LVL 16

Accepted Solution

by:
2PiFL earned 250 total points
ID: 24729396

no aaa new-model - disables AAA authentication.

system mtu routing 1500 - this limits the mtu size to 1500, so yes, it can be used to prevent baby giants.

"IP routing"- Yes.  This command enables IP (layer 3) routing.

What's the crypto pki trustpoint setup? - A trustpoint is a certificate authority who you trust implicitly.  A trustpoint certificate is a self-signed certificate.  The idea is, that by trusting a given self-signed certificate, your PKI system will automatically trust any other certificates signed with that trusted certificate.  This command establishes the trustpoint.
0
 
LVL 12

Assisted Solution

by:atrevido
atrevido earned 250 total points
ID: 24737505
Depending on the switch model/manufacturer, ip routing may be limited to a certain # of routes and may have additional features like learning the vlans configured on the switch and adding them to the route table automagically.
This information however, has nothing to do with your CCNA :-)
 
0
 
LVL 1

Author Comment

by:wolf2008
ID: 24738668
Thank-god... CCNP track?
0

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Cisco switch SVI 17 101
esx multi vlans 3 91
Windows NLB support on Cisco Nexus 9000 1 67
creating SVI on layer 3 switch 1 28
The worst thing when starting a new job is when the previous Network Administrator left behind no documentation. How do you get into the devices? If you've been in this situation or just accidently mistyped your password, this article will hopefully…
I eventually solved a perplexing problem setting up telnet for a new switch.  I installed a new Cisco WS-03560X-24P switch connected to an existing Cisco 4506 running a WS-X4013-10GE Sup II-Plus. After configuring vlans and trunking,  I could no…
A short tutorial showing how to set up an email signature in Outlook on the Web (previously known as OWA). For free email signatures designs, visit https://www.mail-signatures.com/articles/signature-templates/?sts=6651 If you want to manage em…

830 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question