Cisco 2960 Switch Configuration (PID: WS-C2960-24TC-L):
Changing Switch Hostname:
Switch(config)#hostname DST-SW
Configuring Passwords:
DST-SW(config)#enable secret sysadminDST-SW(config)#enable secret sysadmin
DST-SW(config)#line con 0DST-SW(config-line)#password sysadminDST-SW(config-line)#login
DST-SW(config)#line vty 0 4DST-SW(config-line)#password sysadminDST-SW(config-line)#login
DST-SW(config)#service password-encryption
DST-SW(config)#banner motd$ -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- UNAUTHORIZED ACCESS IS PROHIBITED -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- $
DST-SW(config)#interface vlan 1DST-SW(config-if)#ip address 192.168.101.2 255.255.255.0DST-SW(config-if)#shutdown
DST-SW(config)#ip default-gateway 192.168.101.1
DST-SW#copy running-config startup-configDestination filename [startup-config]?Building configuration… [OK]
OrDST-SW#wrBuilding configuration… [OK]
DST-SW(config)#no ip domain-lookupDST-SW(config)#line vty 0 4DST-SW(config-line)#history size 15DST-SW(config-line)# exec-timeout 10 30DST-SW(config-line)#logging synchronous
DST-SW(config)#ip domain-name example.com
DST-SW(config)#username admin secrat cisco
DST-SW(config)#crypto key generate rsa How many bits in the modulus [512]: 1024
DST-SW(config)#ip ssh version 2
DST-SW(config)#line vty 0 4DST-SW(config-line)#login localDST-SW(config-line)#transport input telnet ssh
DST-SW(config)#interface fastEthernet 0/1DST-SW(config-if)#description ***To-Core RTR***DST-SW(config-if)#speed 100 (options: 10, 100, auto)DST-SW(config)#interface range fastEthernet 0/5 – 10DST-SW(config-if-range)#duplex full (options: half, full, auto)
DST-SW#show version
DST-SW#show running-config
DST-SW#show startup-config
DST-SW#show history
DST-SW#show ip interface brief
DST-SW#show interface vlan 1
DST-SW#show interfaces description
DST-SW#show interfaces status
DST-SW#show crypto key mypubkey rsa
DST-SW#show dhcp lease
DST-SW(config-if)#switchport mode access
DST-SW(config-if)#switchport port-security
DST-SW(config-if)#switchport port-security maximum 1
DST-SW(config-if)#switchport port-security violation shutdown (options: shutdown, protect, restrict)
DST-SW(config-if)#switchport port-security mac-address 68b5.9965.1195 (options: H.H.H, sticky)
DST-SW#show mac-address-table
DST-SW#show port-security
DST-SW#show port-security interface fa0/5
DST-SW(config)#vlan 10DST-SW(config-vlan)#name ***To-IT-Users***
DST-SW(config)#interface fastEthernet 0/5DST-SW(config-if)#switchport mode accessDST-SW(config-if)#switchport access vlan 10
DST-SW(config)#interface fastEthernet 0/5DST-SW(config-if)#switchport access vlan 10DST-SW(config-if)#switchport voice vlan 12
DST-SW(config)#interface fastEthernet 0/1DST-SW(config-if)#switchport mode trunk (options: access, trunk, dynamic auto, dynamic desirable) DST-SW(config-if)#switchport trunk allowed
DST-SW(config-if)#shutdown
DST-SW(config-if)#nonegotiate (or hardcode the port as an access port)DST-SW(config-if)#switchport mode access
DST-SW(config-if)#switchport access vlan 222
DST-SW(config)#spanning-tree vlan 1 root primaryDST-SW(config)#spanning-tree vlan 1 root secondaryDST-SW(config)#spanning-tree [vlan 1] priority 8192
DST-SW(config)#spanning-tree mode rapid-pvst (options: mst, pvst, rapid-pvst)
DST-SW(config-if)#spanning-tree portfastDST-SW(config-if)#spanning-tree bpduguard enable
DST-SW(config-if)#spanning-tree [vlan 1] cost 25
DST-SW(config-if)#channel-group 1 mode on (options: auto, desirable, on)
DST-SW#show spanning-tree
DST-SW#show spanning-tree interface fa0/2
DST-SW#show spanning-tree vlan 1
DST-SW#show spanning-tree [vlan1] root
DST-SW#show spanning-tree [vlan1] bridge
DST-SW#show etherchannel 1
DST-SW#debug spanning-tree events
DST-SW(config)#cdp run
DST-SW(config-if)#no cdp enable
DST-SWSW1#show cdp
DST-SW#show cdp interface fa0/2
DST-SW#show cdp neighbors
DST-SW#show cdp neighbors detail
DST-SW#show cdp entry *
DST-SW#show cdp entry DST-SW2