Wednesday, October 14, 2009

ISCW Hotspot: EIGRP over GRE Tunnels

Topology:



Q1. What is the reason for the ping failure between the CiscoSims-HQ router and the 192.168.1 193 interface on the Branch2 router?

A. The default route is missing from the Branch2 router.
B. When running EIGRP over GRE tunnels, you must manually configure the neighbor address using the eigrp neighbor ipaddress command.
C. The tunnel numbers for the tunnel between the HQ router and the Branch2 router do not match.
D. The tunnel source is incorrect on the Branch2 router. It should be serial 2/0.
E. The AS number for the EIGRP process on Branch2 should be 1 and not 11.


Explanations:-

Branch2#sh run
HQ#sh run



- The default route of Branch2 is normal and points at the outbound GRE-channel can be used to deliver dynamic routing information and no special configuration is necessary for routing protocols. The exhibit shows that the tunnel source of Branch2 is serial2/0. So as to enable route delivery, the AS number of EIGRP must be the same in the whole EIGRP area. So we choose E.

Sunday, October 4, 2009

BCMSN Lab - Spanning Tree

Scenario:
Acme is a small export company that has an existing enterprise network comprised of 5 switches; CORE,DSW1,DSW2,ASW1 and ASW2. The topology diagram indicates their desired per-VLAN spanning tree mapping.


Previous configuration atempts have resulted in the following issues:

Sunday, September 27, 2009

BCMSN Hotspot: Spanning Tree

Scenario:
CiscoSims is an Internet game provider. The game service network had recently added an additional switch block with multiple VLANs configured. Unfortunately, system administrators neglected to document the spanning tree topology during configuration. For baseline purpose, you will be required to identify the spanning-tree topology for the switch block.


Friday, September 25, 2009

ISCW AAA server Tacacs Lab

Scenario:-
You are a network support specialist for CiscoSims, an IT training firm. They have just installed a new router(R1) in to their network. The router was successfully installed and is passing traffic. However, your manager is concerned about security and has tasked you with implementing access security for the new router R1.


ISCW PPPoE Lab sim

Scenario:-
CiscoSims is a small export company .This firm has an existing enterprise network that is made up exclusively of routers that are using EIGRP as the IGP. Its network is up and operating normally. As part of its network expansion, CiscoSims has decided to connect to the internet by a broadband cable ISP. Your task is to enable this connection by use of the information below.


Tuesday, September 22, 2009

BCMSN Hotspot HSRP

Scenario:-
Ferris PlastiCS,lnc. is a medium sized company, with enterprise network(access, distribution and core) switches that provide LAN connectivity from user PCs to corporate servers. The distribution switches are configured to use HSRP to provide a high availability solution as follows:

-DS1(Distribution Switch 1) is the primary device for VLAN 101, VLAN102 and VLAN 105.
-DS2(Distribution Switch 2) is the primary device for VLAN 103 and VLAN 104.
-A failure of GigabitEthernet1/0/1 on the primary device should block the primary device from being the active device, unless GigabitEthernet1/0/1 on the backup device has also failed.



Troubleshooting has Identified several issues.Currently all interfaces are up.Use the running configurations and the available show commands to investigate and respond to the following question.

Saturday, September 12, 2009

ISCW Hotspot : Site to site IPSEC VPN

Topology:


Q1. You work as a network engineer at CiscoSims. Which defined peer IP address and local subnet belong to Crete? (Choose two.)

A. peer address 192.168.55.159
B. peer address 192.168.77.120
C. peer address 192.168.167.85
D. subnet 10.5.15.0/24
E. subnet 10.8.28.0/24
F. subnet 10.5.33.0/24


Explanations:-
After login the SDM headquarters, VPN->site-to-site VPN, find the configuration in view of Crete branch, and we can see the status (UP), the interface S0/0/0, the IPSEC policy (SDM_CMAP 1), peer (192.168.55.159), Transform sets (ESP-3DES-SHA), ipsec policy (1602), etc. The further step is to find the option of ipsec policies from VPN components. We can see the detailed information of 102. The ACL only allows 10.10.10.0/24 to access all the IP services of 10.5.15.0/24.

ISCW Hotspot : IOS Firewall and ACL

Scenario:
CiscoSims Industry is a large worldwide sailing charter. The company has recently upgraded its Internet connectivity. As a recent addition to the network engineering team, your task is with documenting the active Firewall configurations on the CiscoSims router using the Cisco Router and Security Device Manager (SDM) utility.


Using the SDM output from Firewall and ACL Tasks under the Configure tab, answer the following questions:

Monday, August 24, 2009

BCMSN Lab - Radius Server

Question:
CiscoSims is a small shipping company that has an existing enterprise network comprised of 2 switches, DSWI and ASW1. The topology diagram indicates their layer 2 mapping. VLAN 20 is a new VLAN that will be used to provide the shipping personnel access to the server. For security reasons, It Is necessary to restrict access to VLAN 20 in the following manner:


BCMSN LAB - Port Fast

Question:
You work as a network engineer at CiscoSims. The CiscoSims's Chinese office is installing a temporary catalyst 3550 in an IDF to connect 24 additional users. To prevent network corruption, it is important to have the correct configuration prior to connecting to the production network. It will be necessary to ensure the switch does not participate in VTP but forwards VTP advertisements received on trunk ports. All interfaces should transition immediately to the forwarding state of Spanning-Tree due to errors that have been experienced on office computers. Also, configure the user ports (All FastEthernet ports) so that the ports are permanently non·trunking.


Sunday, August 23, 2009

BCMSN Lab - VTP and Vlans

Question:

You have just been hired by CiscoSims to help their main office expand. The main offices have enhanced their wiring closets with some layer 3 switches. The new distribution layer switch has been installed and a new access layer switch cabled next to it. Your task is as follow:

The information of the Question:

VTP Domain name: cisco
VlAN Ids : 20 31
IP Addresses : 172.16.71.1/24, 172.16.132.1/24


Saturday, August 22, 2009

BSCI - OSPF Sim

Scenario:
OSPF is configured on routers Amani and Lynaic. Amani's S0/0 interface and Lynaic's S0/1 interface are in Area 0. Lynaic's Loopback0 interface is in Area 2.


Your task is to configure the following:

1. Portland's S0/0 interface in Area 1
2. Amani's S0/1 interface in Area 1
3. Use the appropriate mask such that ONLY Portland's S0/0 and Amnani's S0/1 could be in Area 1.
4. Area 1 should not receive any external or inter-area routes (except the default route).

BSCI - ISIS EIGRP Redistribution Sim

Scenario:
Portland Enterprises recently completed merging with Lynaic Endeavors. The two Companies have been using separate routing protocols on their corporate networks, and an immediate solution is required for the two companies to begin sharing data. A boundary router, Amadiya has been established to perform mutual redistribution of route information between the two networks. Configure route redistribution from EIGRP into IS-IS and from IS-IS into EIGRP on the boundary router per the following requirements:


BSCI IPv6 OSPFv3 Virtual Link Lab Sim

Scenario:
Acme is a small export company that has an existing enterprise network that is running IPv6 OSPFv3. Currently OSPF is configured on all routers. However, R4's loopback address (FEC0:4:4) cannot be seen in R1's IPv6 routing table. You are tasked with identifying the cause of this fault and implementing the needed corrective actions that uses OSPF features and does no change the current area assignments. You will know that you have corrected the fault when R4's loopback address (FEC0:4:4) can ping from R1 to R4 loopback address.


Friday, August 21, 2009

BSCI EIGRP Stub Lab Sim

EIGRP stub Lab

By increasing the first distant office, JS manufactures has extended their business. They configured the remote office router (R3) from which they can reach all Corporate subnets. In order to raise network stableness and lower the memory usage and broadband utilization to R3, JS manufactures makes use of route summarization together with the EIGRP Stub Routing feature. Another network engineer is responsible for the implementing of this solution. However, in the process of configuring EIGRP stub routing connectivity with the remote network devices off of R3 has been missing.