1. 1.Mengecek koneksitas ke host lain
- 10 . 17 . 0 . 254
- 10 . 10 . 1 . 1
- 202 . 9 . 69 . 9
- 10 . 17 . 0 . 1
- 10 . 17 . 4 . 2
[User@linux/]#ping[ip_host lain]
Tulis dan jelaslan output di atas
PING
10.17.0.24 (10.17.0.254) 56(84) bytes of data.
64
bytes from 10.17.0.254: icmp_req=1 ttl=255 time=0.584 ms
64
bytes from 10.17.0.254: icmp_req=2 ttl=255 time=0.564ms
64
bytes from 10.17.0.254: icmp_req=3 ttl=255 time=0.568ms
64
bytes from 10.17.0.254: icmp_req=4 ttl=255 time=0.565ms
64
bytes from 10.17.0.254: icmp_req=5 ttl=255 time=0.564ms
64
bytes from 10.17.0.254: icmp_req=6 ttl=255 time=0.555ms
64
bytes from 10.17.0.254: icmp_req=7 ttl=255 time=0.554ms
64
bytes from 10.17.0.254: icmp_req=8 ttl=255 time=0.551ms
64
bytes from 10.17.0.254: icmp_req=9 ttl=255 time=0.533ms
64
bytes from 10.17.0.254: icmp_req=10 ttl=255 time=0.565ms
64
bytes from 10.17.0.254: icmp_req=11 ttl=255 time=0.566ms
64
bytes from 10.17.0.254: icmp_req=12 ttl=255 time=2.35ms
64
bytes from 10.17.0.254: icmp_req=13 ttl=255 time=0.566ms
64
bytes from 10.17.0.254: icmp_req=14 ttl=255 time=0.943ms
PING
10.10.1.1 (10.10.1.1) 56(84) bytes of data.
64
bytes from 10.10.1.1: icmp_req=1 ttl=62 time=0.584 ms
64
bytes from 10.10.1.1: icmp_req=2 ttl=62 time=0.291 ms
64
bytes from 10.10.1.1: icmp_req=3 ttl=62 time=0.325 ms
64
bytes from 10.10.1.1: icmp_req=4 ttl=62 time=0.270 ms
64
bytes from 10.10.1.1: icmp_req=5 ttl=62 time=0.314 ms
64
bytes from 10.10.1.1: icmp_req=6 ttl=62 time=0.318 ms
64
bytes from 10.10.1.1: icmp_req=7 ttl=62 time=0.300 ms
64
bytes from 10.10.1.1: icmp_req=8 ttl=62 time=0.285 ms
64
bytes from 10.10.1.1: icmp_req=9 ttl=62 time=0.279 ms
64
bytes from 10.10.1.1: icmp_req=10 ttl=62 time=0.307 ms
PING
202.9.69.9 (202.9.69.9) 56(84) bytes of data.
64
bytes from 202.9.69.9: icmp_req=1 ttl=62 time=0.359 ms
64
bytes from 202.9.69.9: icmp_req=2 ttl=62 time=0.307 ms
64
bytes from 202.9.69.9: icmp_req=3 ttl=62 time=0.313 ms
64
bytes from 202.9.69.9: icmp_req=4 ttl=62 time=0.310 ms
64
bytes from 202.9.69.9: icmp_req=5 ttl=62 time=0.291 ms
64
bytes from 202.9.69.9: icmp_req=6 ttl=62 time=0.318 ms
64
bytes from 202.9.69.9: icmp_req=7 ttl=62 time=0.364 ms
64
bytes from 202.9.69.9: icmp_req=8 ttl=62 time=0.307 ms
64
bytes from 202.9.69.9: icmp_req=9 ttl=62 time=0.310 ms
64
bytes from 202.9.69.9: icmp_req=10 ttl=62 time=0.290 ms
PING
10.17.0.1 (10.17.0.1) 56(84) bytes of data.
64
bytes from 10.17.0.1: icmp_req=1 Destination Host Unreachable
64
bytes from 10.17.0.1: icmp_req=2 Destination Host Unreachable
64 bytes
from 10.17.0.1: icmp_req=3 Destination Host Unreachable
64
bytes from 10.17.0.1: icmp_req=4 Destination Host Unreachable
64
bytes from 10.17.0.1: icmp_req=5 Destination Host Unreachable
64
bytes from 10.17.0.1: icmp_req=6 Destination Host Unreachable
PING
10.17.4.2 (10.17.4.2) 56(84) bytes of data.
^C
---
10.17.4.2 ping statistic ---
11
packets transmitted, 0 received, 100% packet loss, time 10000ms
PING
10.17.0.194 (10.17.194) 56(84) bytes of data.
64
bytes from 10.17.0.194: icmp_req=1 ttl=64 time=0.084 ms
64
bytes from 10.17.0.194: icmp_req=2 ttl=64 time=0.036 ms
64
bytes from 10.17.0.194: icmp_req=3 ttl=64 time=0.037 ms
64
bytes from 10.17.0.194: icmp_req=4 ttl=64 time=0.032 ms
64
bytes from 10.17.0.194: icmp_req=5 ttl=64 time=0.030 ms
64
bytes from 10.17.0.194: icmp_req=6 ttl=64 time=0.034 ms
64
bytes from 10.17.0.194: icmp_req=7 ttl=64 time=0.033 ms
64
bytes from 10.17.0.194: icmp_req=8 ttl=64 time=0.042 ms
64
bytes from 10.17.0.194: icmp_req=9 ttl=64 time=0.048 ms
^C
---
10.17.0.194 ping statistic ---
9
packets transmitted, 9 received, 0% packet loss, time 8011 ms
rtt
min/avg/max/mdev = 0.30/0.037/0.048/0.009 ms
PING
10.17.0.195 (10.17.195) 56(84) bytes of data.
64
bytes from 10.17.0.195: icmp_req=1 ttl=64 time=4.19 ms
64
bytes from 10.17.0.195: icmp_req=2 ttl=64 time=0.132 ms
64
bytes from 10.17.0.195: icmp_req=3 ttl=64 time=0.122 ms
64
bytes from 10.17.0.195: icmp_req=4 ttl=64 time=0.119 ms
64
bytes from 10.17.0.195: icmp_req=5 ttl=64 time=0.119 ms
64
bytes from 10.17.0.195: icmp_req=6 ttl=64 time=0.128 ms
64
bytes from 10.17.0.195: icmp_req=7 ttl=64 time=0.134 ms
64
bytes from 10.17.0.195: icmp_req=8 ttl=64 time=0.127 ms
64
bytes from 10.17.0.195: icmp_req=9 ttl=64 time=0.122 ms
64
bytes from 10.17.0.195: icmp_req=10 ttl=64 time=0.128 ms
^C
---
10.17.0.195 ping statistic ---
10
packets transmitted, 10 received, 0%
packet loss, time 9013 ms
rtt
min/avg/max/mdev = 0.119/0.533/4.199/1.222 ms
ANALISA:
Perintah
ping dilakukan untuk mengecek konektivitas ke host lain apakah konektivitas
tersebut berhasil atau tidak. Bila berhasil akan muncul "64 bytes
from 10.17.0.254: icmp_req=1 ttl=255 time=4.22 ms" bila
konektivitas nya tidak berhasil maka akan ada tulisan "host
unreachable". Pada bagian bawah setelah proses ping host, ada
beberapa pemberitahuan. packets transmitted menjelaskan tentang
jumlah paket transmiter nya, receive menjelaskan tentang banyaknya
konektivitas yang berhasil, dan packet loss menjelaskan banyaknya
konektivitas yang tidak berhasil.
2.
2.Menganalisa rute paket host dan tujuan
Amat rute paket ke host seperti nomor 1
Perintah :
[user @linux/]#traceroute [jost tujuan]
Hasilnya adalah:
Traceroute
to 10.10.1.1 (10.10.1.1), 30 hops max, 60 bytes packets
1
10.10.0.254
(10.17.0.254) 0.75 ms 0.926 ms 1.147
ms
2
10.2.6.1 (10.2.6.1) 0.552ms
0.57ms 0.575 ms
3
10.10.1.1
(10.10.10.1) 0.310ms 0.334ms 0.335ms
Traceroute
to 10.17.0.254 (10.17.0.254), 30 hops max, 60 byte packets
1.10.17.0.254
(10.17.0.254) 2.864 ms * *
Traceroute
to 10.17.0.1(10.17.0.1), 30 hops max, 60 byte packets
1
ubuntu,
local (10.17.0.194) 3001.631 ms !H 3001
626ms !H 3001 616 ms
!H
Traceroute
to 10.17.4.2 (10.17.4.2), 30 hops max, 60 byte packets
1
10.17.0.254
(10.17.0.254) 3.266ms 3.448ms
3.660ms
2
***
3
***
4
***
5
***
6
***
7
***
8
***
9
***
10
***
11
***
12
***
13
***
14
***
15
***
16
***
17
***
18
***
19
***
20
***
21
***
22
***
23
***
24
***
25
***
26
***
27
***
28
***
29
***
30
***
Traceroute
to 202.9.69.9 (202.9.69.9), 30 hops max, 60 byte packets
1
10.17.0.254
(1-.17.0.254) 1.058ms 1.239ms
1.448ms
2
10.2.7.1
(10.2.6.1(10.2.6.1) 0.563ms 0.558ms
3
***
4
***
5
***
6
***
7
***
8
***
9
***
10
***
11
***
12
***
13
***
14
***
15
***
16
***
17
***
18
***
19
***
20
***
21
***
22
***
23
***
24
***
25
***
26
***
27
***
28
***
29
***
30
***
Traceroute
to 10.17.0.194 (10.17.0.194), 30 hops max, 60 byte packets
1
ubuntu.local
(10.17.0.194) 0.055 ms 0.008ms 0.007ms
ANALISA:
Pada soal diatas kita melakukan perintah
traceroute, yang dapat dijelaskan sebagai berikut:
Traceroute (Tracert) adalah
perintah untuk menunjukkan rute yang dilewati paket untuk mencapai tujuan. Ini
dilakukan dengan mengirim pesan Internet Control Massage Protokokl (ICMP) Echo
Request Ke tujuan dengan nilai Time to Live yang semakin meningkat. Rute yang
ditampilkan adalah daftar interface router (yang paling dekat dengan host) yang
terdapat pada jalur antara host dan tujuan.
3.
3.menganalisa servis yang membuka port komputer
lokal
amatilah port berapa saja yang terbuka
komputer anda dengan perintah netstat
[user@linux~]#netstat---listening |more
Tulis dan jelaskan perintah di atas!
Hasilnya adalah:
Active Internet connection (w/o servers)
Proto Recv-Q Send-Q Local Address Foreign Address State
Active UNIX domain sockets (w/o servers)
Proto RefCnt Flags Type State I-Node Path
Unix 2 [] DGRAM 6944 @/org/kernel/udev/udevd
Unix 6 [] DGRAM 1022 /dev/log
Unix 2 [] DGRAM 9536
Unix 3 [] STREAM CONNECTED 9533
/var/run/samba/winbindd_privuleged/pipe
Unix 3 [] STREAM CONNECTED 9033
Unix 2 [] DGRAM 9355
Unix 3 [] STREAM CONNECTED 8973
/var/run/samba/winbindd_privuleged/pipe
Unix 3 [] STREAM CONNECTED 9354
Unix 3 [] STREAM CONNECTED 8926
Unix 3 [] STREAM CONNECTED 8925
Unix 3 [] STREAM CONNECTED 9269
/var/run/samba/winbindd_privuleged/pipe
Unix 3 [] STREAM CONNECTED 9268
Unix 3 [] STREAM CONNECTED 9266
Unix 3 [] STREAM CONNECTED 9265
Unix 3 [] STREAM CONNECTED 9263
/var/run/samba/winbindd_privuleged/pipe
Unix 3 [] STREAM CONNECTED 8092
Unix 3 [] STREAM CONNECTED 8091
Unix 2 [] DGRAM 7966
Unix 3 [] STREAM CONNECTED 8426 @/com/ubuntu/upstart
Unix 3 [] STREAM CONNECTED 8425
Unix 2 [] DGRAM 7210
Unix 3 [] STREAM CONNECTED 7192
/var/run/sbus/system_bus_socket
Unix 3 [] STREAM CONNECTED 7091
Unix 3 [] STREAM CONNECTED 7086
Unix 3 [] STREAM CONNECTED 7085
Unix 2 [] DGRAM 7082
Unix 3 [] STREAM CONNECTED 7192
/var/run/dbus/system_bus_socket
Unix 3 [] STREAM CONNECTED 7091
Unix 3 [] STREAM CONNECTED 7086
Unix 3 [] STREAM CONNECTED 7085
Unix 2 [] DGRAM 7082
Unix 3 [] STREAM CONNECTED 7174
/var/run/dbus/system_bus_socket
Unix 3 [] STREAM CONNECTED 7173
Unix 3 [] STREAM CONNECTED 7058
Unix 3 [] STREAM CONNECTED 7057
Unix 2 [] DGRAM 6977
Unix 2 [] DGRAM 6976
Unix 3 [] STREAM CONNECTED 6930
@/com/ubuntu/upstart
Unix 3 [] STREAM CONNECTED 6927
ANALISA:
Netstat kependekan dari Network Statistik, adalah sebuah
tool yang berfungsi untuk menampilkan informasi lalu lintas transfer data dalam
sebuah jaringan komputer. Baik itu transfer data yang keluar masuk di dalam
jaringan maupun informasi routing table dan informasi interface jaringan bisa
di tampilkan menggunakan command netstat ini.
Jadi bila kita ketikan perintah "netstat
–listening|more" maka kita akan bisa melihat dan memantau jaringan
mana saja yang terhubung, dari hasil diatas kita bisa melihat ada beberapa
jaringan yang terhubung dan tidak terhubung.
4.
4.menganalisa servis yang membuka port di local
dengan network mapper.
Amati port berapa saja yang terbuka pada computer Anda dengan network
mapper
[user@linux~]#sudonmap localhost
Tulis dan jelaskan output perintah di atas
Hasilnya adalah:
Nmap scan report for localhost
(127.0.0.1)
Host is up (0.000012s latency).
Not shown: 993 closed ports
PORT STATE SERVICE
22/tcp open ssh
53/tcp open domain
80/tcp open http
139/tcp open netbios-ssn
445/tcp open Microsoft-ds
631/tcp open ipp
3306/tcp open mysql
Nmap done: 1 IP address (1 host
up) scanned in 0.15 seconds
ANALISA:
Nmap (network Mapper)adalah sebuah aplikasi atau
tool yg berfungsi melihat port yang terbuka pada aplikasi dan juga bisa untuk
ip scanner, jadi kita bisa melihat ip yang sedang berjalan.
5.
5.menganalisa IP asal, IP tujuan, port asal,
port tujuan dalam sebuah sesi koneksi
menganalisa
paket dari computer local
·
lakukan SSH ke computer servers
[user@linux/]#sch[ip_server]
·
amati ip asal,ip tujuan,port asal,port tujuan
yang anda gunakan pada sesi koneksi tersebut
[user@linux/]#netstat
|grep ESTABLISHED
Hasilnya
adalah:
root@polsri:/home/polsri# netstat | grep ESTABLISHED
tcp
0
0 10.17.0.195:58233
202.9.69:ssh ESTABLISHED
6.
6.Menganalisa IP
asal, IP tujuan,port tujuan dalam sebuah koneksi.
root@polsri:/home/polsri# tcpdump
tcpdump: verbose output suppressed, use –v or –vv for
full protocol decode
listening on eth1, link-type EN10MB (Ethernet),
capture size 65535 bytes
14:28:31.737247 STP 802.1w, Rapid STP, Flags [Learn, Forward, Agreement],
bridge -1d 8000.00:18:6e:8c:66:e0.8006, length 47
14:28:31.972766 IP 169.254.150.106.netbios-ns> 169.254.255.255.netbios-
ns: NBT
UDP PACKET(137): QUERY; REQUEST; BROADCAST
^C
2 packets Captured
2 packets received by filter
0 packets dropped by kernel
14:28:31.737247 STP 802.1w, Rapid STP, Flags [Learn, Forward, Agreement],
bridge -1d 8000.00:18:6e:8c:66:e0.8006, length 47
14:28:31.972766 IP 169.254.150.106.netbios-ns> 169.254.255.255.netbios-
ns: NBT
UDP PACKET(137): QUERY; REQUEST; BROADCAST
^C
2 packets Captured
2 packets received by filter
0 packets dropped by kernel


0 komentar:
Posting Komentar