1、机房巡检内容及设备检查标准XX部 主讲人:XX,FAQ,3,系统整体架构以下内容作为基本IT系统信息被首先调查记录,供分析参考使用。 IT系统架构拓扑图网络设备配置-设备型号, IOS版本, 模块型号和数量,用途存储系统配置-设备型号, IO带宽, Cache容量,磁盘数量,接入模式,存储容量,LUN配置,所属应用主机系统配置-设备型号,CPU 配置(类型,主频,数量),内存容量,网卡配置(数量,速率),内置硬盘配置(数量,容量,Raid),所属应用数据库软件-产品名称,版本号,所属应用中间件软件-产品名称,版本号,JDK版本,所属应用应用系统-产品名称,版本号,架构平台,系统架构类型,机房环
2、境,以上的条件可以现场观察和询问用户完成。,网络设备,防火墙,IPS,IDS,VPN,存储系统,主机系统1,主机系统2,主机系统3,应用系统-1,应用系统-2,备份与恢复系统,对照巡检计划的安排,对主机系统进行硬件、操作系统进行功能及性能检查。注意:系统中所使用的每台主机都要单独列表检查。,主机部分,巡检对象:XX系统XX服务器(HOSTNAME)巡检目的:检查XX系统XX服务器的状态巡检平台:XX系统主机,超级用户前提条件:线路通畅,范例:,对照巡检计划的安排,对网络设备进行硬件、操作系统进行功能及性能巡检。注意:系统中所使用的每台网络设备都要单独列表巡检。,网络部分,巡检对象:XX系统网络
3、设备(NAME)巡检目的:XX系统网络设备的系统状态巡检平台:XX系统网络设备,超级用户前提条件:线路通畅,范例:,路由器的管理方式,带外管理通过带外对路由器进行管理(PC 与路由器直接相连)带内管理通过Telnet 对路由器进行远程管理通过Web 对路由器进行远程管理通过SNMP 工作站对路由器进行远程管理,RJ45-DB9转换器反转线缆,DB9-RJ45线缆,Console口(RJ45),AUX口(连接拨号网络 ),Console口(RJ45),Console口及配置线缆,带外管理配置,连线利用配置线将主机的COM口和路由器或交换机的console口相连打开超级终端从开始-程序-附件-通讯
4、-超级终端打开超级终端程序配置超级终端为连接命名选择合适的COM口配置正确的参数,TELNET管理,在主机DOS命令行下输入: telnet ip address(路由器管理IP),TELNET管理续,输入telnet密码和特权密码即可进入到路由器的配置界面,基于WEB的管理,在web页面中输入路由器的管理IP可以进入路由器的web管理页面,基于SNMP协议的管理,总体的信息收集 show tech查看ios版本等信息show version查看logshow log查看设备的时钟show clock查看接口状态show ip int bri查看设备路由情况show ip route查看ios
5、软件包show flash (或show bootflash /show disk0),Cisco系统的一些巡检常用命令列表:,Router#show processes cpuCPU utilization for five seconds: 1%/0%; one minute: 2%; five minutes: 1% PID Runtime(ms) Invoked uSecs 5Sec 1Min 5Min TTY Process 1 0 1 0 0.00% 0.00% 0.00% 0 Chunk Manager 2 0 19 0 0.00% 0.00% 0.00% 0 Load Mete
6、r 3 4328 151 28662 0.87% 2.34% 1.14% 0 Exec 4 0 1 0 0.00% 0.00% 0.00% 0 EDDRI_MAIN 5 32 15 2133 0.15% 0.02% 0.00% 0 Check heaps 6 0 1 0 0.00% 0.00% 0.00% 0 Pool Manager 7 0 2 0 0.00% 0.00% 0.00% 0 Timers 8 0 2 0 0.00% 0.00% 0.00% 0 Serial Backgroun 9 0 2 0 0.00% 0.00% 0.00% 0 ATM Idle Timer 10 0 2 0
7、 0.00% 0.00% 0.00% 0 ATM AutoVC Perio 11 4 2 2000 0.00% 0.00% 0.00% 0 ATM VC Auto Crea 12 0 2 0 0.00% 0.00% 0.00% 0 AAA high-capacit 13 36 148 243 0.00% 0.01% 0.00% 0 EnvMon 14 0 1 0 0.00% 0.00% 0.00% 0 OIR Handler 15 0 3 0 0.00% 0.00% 0.00% 0 IPC Dynamic Cach 16 0 1 0 0.00% 0.00% 0.00% 0 IPC Zone M
8、anager 17 4 149 26 0.00% 0.00% 0.00% 0 IPC Periodic Tim 18 0 149 0 0.00% 0.00% 0.00% 0 IPC Deferred Por 19 0 1 0 0.00% 0.00% 0.00% 0 IPC Seat Manager 20 56 15 3733 0.00% 0.00% 0.00% 0 ARP Input 21 0 8 0 0.00% 0.00% 0.00% 0 HC Counter Timer,show processes cpu /查看当前CPU资源使用的情况,Router#show processes mem
9、oryTotal: 25963296, Used: 9722148, Free: 16241148 PID TTY Allocated Freed Holding Getbufs Retbufs Process 0 0 268816 56216 7117992 0 0 *Init* 0 0 692 75968 692 0 0 *Sched* 0 0 15862728 4588556 105816 180128 0 *Dead* 1 0 0 0 6852 0 0 Chunk Manager 2 0 188 188 3852 0 0 Load Meter 3 0 819176 764812 808
10、16 0 0 Exec 4 0 65580 0 90432 0 0 EDDRI_MAIN 5 0 0 0 6852 0 0 Check heaps 6 0 0 0 6852 0 0 Pool Manager 7 0 188 188 6852 0 0 Timers 8 0 188 188 6852 0 0 Serial Backgroun 9 0 188 188 6852 0 0 ATM Idle Timer 10 0 188 188 9852 0 0 ATM AutoVC Perio 11 0 188 188 6852 0 0 ATM VC Auto Crea 12 0 188 188 685
11、2 0 0 AAA high-capacit 13 0 0 0 6852 0 0 EnvMon 14 0 0 0 9852 0 0 OIR Handler 15 0 0 0 6852 0 0 IPC Dynamic Cach 16 0 0 0 6852 0 0 IPC Zone Manager 17 0 0 0 6852 0 0 IPC Periodic Tim 18 0 0 0 6852 0 0 IPC Deferred Por,show processes mem /查看当前内存资源使用的情况,Router#show version Cisco Internetwork Operating
12、 System Software IOS (tm) 7200 Software (C7200-JS-M), Version 12.3(20), RELEASE SOFTWARE (fc2)Technical Support: http:/ (c) 1986-2006 by cisco Systems, Inc.Compiled Tue 08-Aug-06 18:43 by kesnyderImage text-base: 0x60008AF4, data-base: 0x6207E000ROM: ROMMON Emulation MicrocodeBOOTLDR: 7200 Software
13、(C7200-JS-M), Version 12.3(20), RELEASE SOFTWARE (fc2)Router uptime is 6 minutesSystem returned to ROM by unknown reload cause - suspect boot_dataBOOT_COUNT 0x0, BOOT_COUNT 0, BOOTDATA 19System image file is tftp:/255.255.255.255/unknowncisco 7206VXR (NPE400) processor (revision A) with 81920K/16384
14、K bytes of memory.Processor board ID 4294967295R7000 CPU at 150MHz, Implementation 39, Rev 2.1, 256KB L2 Cache6 slot VXR midplane, Version 2.1,show version /查看当前设备软件版本,show ip route /查看IPv4路由表,RCMS# show ip routeCodes: C - connected, S - static, R - RIP O - OSPF, IA - OSPF inter area N1 - OSPF NSSA
15、external type 1, N2 - OSPF NSSA external type 2 E1 - OSPF external type 1, E2 - OSPF external type 2 * - candidate defaultGateway of last resort is 61.154.28.193 to network 0.0.0.0S* 0.0.0.0/0 1/0 via 61.154.28.193C 61.154.28.192/26 is directly connected, FastEthernet 1/0C 61.154.28.207/32 is local
16、host. C 192.168.0.0/24 is directly connected, FastEthernet 1/1C 192.168.0.1/32 is local host.,show log /查看保存在设备内存中的日志信息,S2150G#show logSyslog logging: Enabled Console logging: Enabled(debugging)Monitor logging: DisabledBuffer logging: Enabled(debugging)Server logging severity: debuggingFile logging:
17、 Disabled Logging history:2007-12-04 16:34:10 5-WARMSTART:System warmstart2007-12-04 16:34:11 5-LINKUPDOWN:Fa0/1 changed state to up 2007-12-04 16:34:11 5-LINKUPDOWN:VL1 changed state to up 2007-12-09 15:41:58 5-CONFIG:Configured from outband2007-12-09 15:42:06 5-CONFIG:Configured from outband2007-1
18、2-09 15:44:53 5-CONFIG:Configured from outband2007-12-09 15:48:32 5-LINKUPDOWN:Fa0/8 changed state to up 2007-12-09 15:48:33 5-LINKUPDOWN:Fa0/12 changed state to up 2007-12-09 15:48:33 5-LINKUPDOWN:Fa0/8 changed state to down 2007-12-09 15:48:33 5-LINKUPDOWN:Fa0/12 changed state to down 2007-12-09 1
19、5:50:19 5-LINKUPDOWN:Fa0/8 changed state to up -More-,show interface count /查看接口的流量统计信息,S2150G#show interfaces countInterface : Fa0/15 minute input rate : 6872 bits/sec, 12 packets/sec5 minute output rate : 832 bits/sec, 1 packets/secInOctets : 5828954InUcastPkts : 5264InMulticastPkts : 3689InBroadc
20、astPkts : 70565OutOctets : 4866613OutUcastPkts : 4657OutMulticastPkts : 149OutBroadcastPkts : 68886Undersize packets : 0Oversize packets : 0collisions : 0Fragments : 0Jabbers : 0CRC alignment errors : 0AlignmentErrors : 0FCSErrors : 0dropped packet events (due to lack of resources): 0packets receive
21、d of length (in octets): 64:142204, 65-127: 6105, 128-255: 4370, 256-511: 242, 512-1023: 69, 1024-1518: 220,show interface state /查看接口工作的状态,S2150G# show interfaces status Interface Status vlan duplex speed type - - - - - -Fa0/1 up 1 Full 100 10/100BaseTX Fa0/2 down 1 Unknown Unknown 10/100BaseTX Fa0
22、/3 down 1 Unknown Unknown 10/100BaseTX Fa0/4 down 1 Unknown Unknown 10/100BaseTX Fa0/5 down 1 Unknown Unknown 10/100BaseTX Fa0/6 down 1 Unknown Unknown 10/100BaseTX Fa0/7 down 1 Unknown Unknown 10/100BaseTX Fa0/8 down 1 Unknown Unknown 10/100BaseTX Fa0/9 down 1 Unknown Unknown 10/100BaseTX Fa0/10 up 1 Full 100 10/100BaseTX,FAQ,3,对机房的基础设施配备应该按照标准实施,不符合标准的项目应该尽可能整改,添加应有设施。对UPS的维护应该定期进行检测,巡检其供电的有效时间,一旦发现电池老化应尽快更换。,机房环境,网络设备,防火墙,IPS,IDS,VPN,存储系统-1,存储系统-2,应用系统,Thanks,