SPNG2 WorkBook ALA
SPNG2 WorkBook ALA
Index
1
Lab 1 : Configure VLANs
Task :
Create VLAN 10 For sales , VLAN 20 for market , VLAN 30 for eng , VLAN 40 for
emp
Verify all vlan created correctly with names
Verify each vlan with id and name
Check all switch port related to which vlan
Assign switch port to particular vlan as diagram
E0/0 ---- vlan 10 ,E0/1 ------- vlan 20
E0/2 ---------- vlan 30 ,E0/3 --------- vlan 40
2
Verify switch ports if assigned correctly to their vlans
Verify vlans membership
Save your work
Solutions :
Create VLAN 10 For sales , VLAN 20 for market , VLAN 30 for eng ,
VLAN 40 for emp
Switch#configure terminal
Switch(config)#vlan 10
Switch(config-vlan)#name sales
Switch(config-vlan)#exit
Switch(config)#vlan 20
Switch(config-vlan)#name market
Switch(config-vlan)#exit
Switch(config)#vlan 30
Switch(config-vlan)#name eng
Switch(config-vlan)#exit
Switch(config)#vlan 40
Switch(config-vlan)#name emp
Switch(config-vlan)#exit
3
1 default active Et0/0, Et0/1, Et0/2, Et0/3
10 sales active
20 market active
30 eng active
40 emp active
1002 fddi-default act/unsup
1003 token-ring-default act/unsup
1004 fddinet-default act/unsup
1005 trnet-default act/unsup
4
Switch#show vlan brief
Switch(config-if)#exit
5
Switch(config-if)#exit
Switch(config-if)#exit
1 default active
6
Switch#show interfaces ethernet 0/0 switchport
Name: Et0/0
Switchport: Enabled
Name: Et0/1
Switchport: Enabled
Name: Et0/2
Switchport: Enabled
7
Operational Trunking Encapsulation: native
Name: Et0/3
Switchport: Enabled
Building configuration...
End of lab 1
8
Task:
Configure link between two switches as trunk
Verify trunk
Allow vlan 10, vlan20, vlan 30 to be exchange between switches through trunk
Verify allowed vlans on trunk
9
Solution :
Configure link between two switches as trunk
On switch 0
Switch(config)#int e1/1
Switch(config-if)#switchport trunk encapsulation dot1q
Switch(config-if)#switchport mod trunk
On switch 2 :
Switch(config)#interface ethernet 1/1
Switch(config-if)#switchport trunk encapsulation dot1q
Switch(config-if)#switchport mode trunk
Verify trunk
10
Switch#show interfaces ethernet 1/1 trunk
11
On both switches
Switch(config)#interface ethernet 1/1
Switch(config-if)#switchport trunk allowed vlan 10,20,30
Note : this command will allow these three vlans and ignore any allowed vlan before , in case if
we want to add another vlan we must use command : switchport trunk allowed vlan add vlan-
id or if we want to remove any vlan we use : switchport trunk allowed vlan remove vlan-id
12
Port Vlans allowed on trunk
Et1/1 10,20,30
13
On both switches
Switch#show vlan
On both switches
Switch(config)#interface ethernet 1/1
Switch(config-if)#switchport trunk native vlan 99
Note : if you configure onw switch with this command you will see error syslog message :
*Apr 12 14:35:28.510: %CDP-4-NATIVE_VLAN_MISMATCH: Native VLAN mismatch discovered
on Ethernet1/1 (1), with Switch Ethernet1/1 (99).
14
Because of native vlan mismatch between two switches
After you apply native vlan 99 on other switch you will not see this error syslog message and
every thing will be ok
On switch 2
Switch#sh int trunk
15
On both switches
Switch#wr
Building configuration...
Compressed configuration from 1160 bytes to 703 bytes[OK]
End of lab 2
on
16
Tasks :
Create sub interface for vlan 50 on router 1 and router 2
Assign ip add for sub interface on router 1 and router 2 as diagram
Start up sub interface on router1 and router 2
Check interface status on both routers
Configure trunk port between switch 2, switch1 and switch 3 with interfaces connected
together
Create vlan 100 on all switches
Verify vlan 100 is created on all switches
Configure QinQ in switch 2 on port face customer router R1 to tag customer vlan 50 into sp vlan
100
Verify QinQ is configured to correct port
Configure QinQ in switch 3 on port face customer router R2 to tag customer vlan 50 into sp vlan
100
Soluotion :
Create sub interface for vlan 50 on router 1 and router 2
Assign ip add for sub interface on router 1 and router 2 as diagram
17
Start up sub interface on router1 and router 2
On R1 :
Router(config)#interface ethernet 0/3
Router(config-if)#no shutdown
Router(config-if)#interface ethernet 0/3.1
Router(config-subif)#encapsulation dot1Q 50
On R2 :
18
Router#sh ip interface brief
Ethernet0/3.2 192.168.1.2 YES manual up up
On switch2 :
Switch(config)#interface ethernet 0/2
Switch(config-if)#switchport trunk encapsulation dot1q
Switch(config-if)#switchport mode trunk
On switch 1 :
Switch(config)#interface ethernet 0/2
Switch(config-if)#sw tru encap dot
Switch(config-if)#sw mod tru
Switch(config)#int e0/0
Switch(config-if)#sw tru encap dot
Switch(config-if)#sw mod trunk
On switch 3 :
Switch(config)#int e0/0
Switch(config-if)#sw tru encap dot
19
Switch(config-if)#sw mod tru
20
Switch(config-if)#switchport access vlan 100
Switch(config-if)#switchport mode dot1q-tunnel
21
Verify allowed vlan on switch 2 and switch 3
On switch 2 :
Switch#sh inter tru
On switch 3 :
Switch#sh int tru
22
Port Vlans in spanning tree forwarding state and not pruned
Et0/0 1,100
Verify spaning tree in all switches to be sure vlan 50 tagged into vlan
100
On all switches
Switch#sh spanning-tree vlan 50
23
Administrative Trunking Encapsulation: negotiate
Operational Trunking Encapsulation: native
Negotiation of Trunking: Off
Access Mode VLAN: 100 (VLAN0100)
Trunking Native Mode VLAN: 1 (default)
Administrative Native VLAN tagging: enabled
End of lab 3
24
Tasks:
Verify spanning tree operation on Switches
Verify interface costs on Switch
Verify Spanning Tree Recalculation after switch1 interface shut down
Configure PVRST+.
Verify spanning-tree PVRST+
Solution :
Verify spanning tree operation on Switches
Verify interface costs on Switch
Switch 1
Switch#sh spanning-tree
VLAN0001
Spanning tree enabled protocol rstp
25
Root ID Priority 32769
Address aabb.cc00.0100
This bridge is the root
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
Switch 2:
Switch#show spanning-tree
VLAN0001
Spanning tree enabled protocol rstp
Root ID Priority 32769
Address aabb.cc00.0100
Cost 100
Port 1 (Ethernet0/0)
26
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
Switch 3:
Switch#show spanning-tree
VLAN0001
Spanning tree enabled protocol rstp
Root ID Priority 32769
Address aabb.cc00.0100
Cost 100
Port 2 (Ethernet0/1)
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
27
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
Aging Time 300 sec
VLAN0001
Spanning tree enabled protocol rstp
Root ID Priority 32769
28
Address aabb.cc00.0200
This bridge is the root
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
On switch 3
Switch#show spanning-tree
VLAN0001
Spanning tree enabled protocol rstp
Root ID Priority 32769
Address aabb.cc00.0200
29
Cost 100
Port 3 (Ethernet0/2)
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
Configure PVRST+.
On all switches
Switch(config)#spanning-tree mode rapid-pvst
Switch#sh spanning-tree
Spanning tree enabled protocol rstp
30
End of lab 4
TASKS:
Configure vlan 10,11,12,13,14,15, on switch 3 and switch 2
Configure switch 3 stp MSTP with :
Name : ccna revision :1
Configure two instance belong mstp ccna
Instance 1 for odd vlan
Instance 2 foe even vlan
31
Configure mstp to be Root for instance 1
Solution :
Configure vlan 10,11,12,13,14,15, on switch 3 and switch 2
On both switch
Switch(config)#vlan 10,11,12,13,14,15
Switch(config-vlan)#ex
Switch(config)#vlan 10,11,12,13,14,15
Switch(config-vlan)#ex
32
Switch(config-mst)#revision 1
33
Switch(config-mst)#instance 1 vlan 11,13,15
Switch(config-mst)#instance 2 vlan 10,12,14
34
0 1-9,16-4094
1 11,13,15
2 10,12,14
End of lab 5
35
Tasks:
Solution
Switch(config-if)#spanning-tree portfast
Or
End of lab 6
36
Lab 7 : BPDU Filter
Tasks :
Configure bpdu filter on all end user interface on switch 1 and switch 2
Solution :
Configure bpdu filter on all end user interface on switch 1 and switch
2
On both switches
End of lab 7
37
Lab 8:BPDU Guard
Tasks:
Solution
Building configuration...
38
!
interface Ethernet0/0
end
End of lab 8
Lab 9 : configure REP
Switch#conf t
Switch(config)#interface fa0/1
Switch(config-if)#port-type nni
Switch(config-if)#rep segment 1
End of lab 9
39
Tasks :
Create sub interface for e0/0 on router as per diagram
Solution :
Create sub interface for e0/0 on router as per diagram
Router(config)#int e0/0
Router(config-if)#no sh
Router(config-if)#ex
40
Router(config)#int e0/0.5
Router(config-subif)#encapsulation dot1Q 5
Router(config-subif)#ex
Router(config)#int e0/0.6
Router(config-subif)#enca
Router(config-subif)#encapsulation d
Router(config-subif)#encapsulation dot1Q 6
Router(config-subif)#ex
Switch(config-vlan)#ex
41
Switch(config)#int ra e0/0-1
Switch(config-if-range)#ex
On switch 2
Switch(config)#int e0/1
Switch(config-if)#sw mod tr
Switch(config-if)#ex
On switch 2
Switch(config)#int e0/2
42
Save your work
On pc03&pc04
VPCS> save
. done
On sw1,sw2,router
Router#wr
Building configuration...
[OK]
End of lab 10
Tasks :
Configure ip address for pc02 and pc3 with /24 as diagaram
43
Create vlan 10,vlan 20 on switch
Solution :
pc03
VPCS> ip 192.168.20.20/24 192.168.20.1
Switch(config-vlan)#exit
Switch(config-if)#ex
44
Assign interface Ethernet 0/1 to vlan 20
Switch(config)#int e0/1
Switch(config-if)#ex
Switch(config)#int vlan 20
Switch#sh ip int br
End of lab 11
Ip address :192.168.1.200
Ip address :192.168.1.222
Solution :
46
Configure ip address for router (ios) for interface e0/1
Router(config)#int e0/1
Router(config-if)#no sh
Router(config-if)#ex
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#commit
Router(config-if)#standby 1 ip 192.168.1.200
Router(config-if)#standby 1 preempt
On IOS XR :
RP/0/0/CPU0:ios(config)#router hsrp
RP/0/0/CPU0:ios(config-hsrp)#interface g0/0/0/2
RP/0/0/CPU0:ios(config-hsrp-if)#hsrp 1 priority 95
RP/0/0/CPU0:ios(config-hsrp-if)#hsrp 1 preempt
RP/0/0/CPU0:ios(config-hsrp-if)#commit
47
Verify hsrp configuration on both routers
On ios router :
Router#sh standby br
On ios XR router:
RP/0/0/CPU0:ios#sh hsrp
IPv4 Groups:
Interface Grp Pri P State Active addr Standby addr Group addr
On ios XR router :
RP/0/0/CPU0:ios(config)#router hsrp
RP/0/0/CPU0:ios(config-hsrp-if)#hsrp 2 preem
48
RP/0/0/CPU0:ios(config-hsrp-if)#commit
On ios router:
Router(config)#int e0/1
Router(config-if)#standby 2 ip 192.168.1.222
Router(config-if)#standby 2 priority 95
Router(config-if)#standby 2 preempt
On ios router
Router#sh stand br
On ios XR router
RP/0/0/CPU0:ios#sh hsrp
IPv4 Groups:
Interface Grp Pri P State Active addr Standby addr Group addr
49
Gi0/0/0/2 2 105 P Active local 192.168.1.2 192.168.1.222
End lab 12
Tasks :
Configure ip address 192.168.1.2/24 to ethernet0/1 on ios router
IP address :192.168.1.220
50
Verify VRRP configuration on both routers
Solution :
Configure ip address 192.168.1.2/24 to ethernet0/1 on ios router
Router(config)#int e0/1
Router(config-if)#no sh
Router(config-if)#ex
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)# commit
Router(config)#int e0/1
Router(config-if)#vrrp 1 ip 192.168.1.200
RP/0/0/CPU0:ios(config)#router vrrp
RP/0/0/CPU0:ios(config-vrrp)#interface g0/0/0/2
RP/0/0/CPU0:ios(config-vrrp-if)#address-family ipv4
RP/0/0/CPU0:ios(config-vrrp-address-family)#vrrp 1
RP/0/0/CPU0:ios(config-vrrp-virtual-router)#address 192.168.1.200
RP/0/0/CPU0:ios(config-vrrp-virtual-router)#priority 95
RP/0/0/CPU0:ios(config-vrrp-virtual-router)#commit
XR :
RP/0/0/CPU0:ios#sh vrrp
51
Sat Apr 21 09:25:32.460 UTC
||
IOS :
Interface Grp Pri Time Own Pre State Master addr Group addr
IP address :192.168.1.220
Ios :
Router(config)#INT E0/1
Router(config-if)#vrrp 2 ip 192.168.1.220
Router(config-if)#vrrp 2 priority 90
Xr :
RP/0/0/CPU0:ios(config)#router vrrp
RP/0/0/CPU0:ios(config-vrrp)#int g0/0/0/2
RP/0/0/CPU0:ios(config-vrrp-if)#add ipv4
RP/0/0/CPU0:ios(config-vrrp-address-family)#vrrp 2
RP/0/0/CPU0:ios(config-vrrp-virtual-router)#add 192.168.1.220
RP/0/0/CPU0:ios(config-vrrp-virtual-router)#priority 110
RP/0/0/CPU0:ios(config-vrrp-virtual-router)#commit
52
Verify VRRP configuration on both routers
Ios :
Interface Grp Pri Time Own Pre State Master addr Group addr
Xr :
RP/0/0/CPU0:ios#sh vrrp
||
End lab 13
53
Lab 14 : GLBP
GLBP is not supported on the Cisco IOS XR routers
TASKS :
Configure ip address for both router R1/R2/R3
Configure GLBP on router R1/R2/R3
IP : 10.1.1.100 priority : R1 200 R2: 150 R3 : 50
Enable preempt
Verify GLBP on router R1
SOLUTION :
Configure ip address for both router R1/R2/R3
On router R1/R2/R3
Router(config)#int e1/0
Router(config-if)#no sh
54
Configure GLBP on both router R1/R2/R3
On router R1
Router(config)#int e1/0
Router(config-if)#glbp 1 ip 10.1.1.100
Router(config-if)#glbp 1 preempt
On router R2
Router(config)#int e1/0
Router(config-if)#glbp 1 ip 10.1.1.100
*Apr 24 05:07:41.459: %GLBP-6-FWDSTATECHANGE: Ethernet1/0 Grp 1 Fwd 1 state Listen -> Active
Router(config-if)#glbp 1 preempt
On router R3
Router(config)#int e1/0
Router(config-if)#glbp 1 ip 10.1.1.100
Router(config-if)#glbp 1 priority 50
Router(config-if)#glbp 1 preempt
*Apr 24 05:09:51.415: %GLBP-6-FWDSTATECHANGE: Ethernet1/0 Grp 1 Fwd 1 state Listen -> Active
55
Verify GLBP ON router R1
Router#sh glbp br
Interface Grp Fwd Pri State Address Active router Standby router
Router#sh glbp
Ethernet1/0 - Group 1
State is Active
Active is local
Standby is unknown
Group members:
56
There is 1 forwarder (1 active)
Forwarder 1
State is Active
Owner ID is ca01.29a8.001c
Redirection enabled
End lab 14
Lab 15: Configure OSPFv2
Tasks :
Configure ip address for interface shown
57
Solution :
Configure ip address for interface shown
R1:
Router(config)#int e0/0
Router(config-if)#no sh
Router(config-if)#ex
Router(config)#int e 0/1
Router(config-if)#no sh
Router(config-if)#ex
Xrv :
RP/0/0/CPU0:ios(config)#int g0/0/0/0
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#ex
RP/0/0/CPU0:ios(config)#int g0/0/0/1
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#commmit
XRv:
58
RP/0/0/CPU0:ios(config)#router ospf 1
RP/0/0/CPU0:ios(config-ospf)#router-id 200.200.200.200
R1 :
Router(config)#router ospf 1
Router(config-router)#router-id 100.100.100.100
Router(config)#router ospf 1
RP/0/0/CPU0:ios(config)#router ospf 1
RP/0/0/CPU0:ios(config-ospf)#area 0
RP/0/0/CPU0:ios(config-ospf-ar)#interface g0/0/0/0
RP/0/0/CPU0:ios(config-ospf-ar-if)#ex
RP/0/0/CPU0:ios(config-ospf-ar)#interface g0/0/0/1
RP/0/0/CPU0:ios(config-ospf-ar-if)#ex
RP/0/0/CPU0:ios(config-ospf-ar)#commit
Xrv :
RP/0/0/CPU0:ios#sh protocols
59
Routing Protocol OSPF 1
Distance: 110
Redistribution:
None
Area 0
GigabitEthernet0/0/0/0
GigabitEthernet0/0/0/1
R1 :
Router#sh ip ospf
R1 :
XRV :
60
Neighbor ID Pri State Dead Time Address Interface
R1:
Router#sh ip route
XRV :
RP/0/0/CPU0:ios#sh route
61
End lab 15
Lab 16: OSPF Load Balance
Tasks :
Enable ospf 1 on all routers and advertise all interface link to other routers
Solution :
R1 R2 Xrv3 Xrv4
R1(config)#int R2(config)#int RP/0/0/CPU0:ios(config)#int RP/0/0/CPU0:ios(config)#int
e1/0 e1/0 g0/0/0/0 g0/0/0/0
62
R1(config- R2(config- RP/0/0/CPU0:ios(config- RP/0/0/CPU0:ios(config-if)#ipv4
if)#ip add if)#ip add if)#ipv4 add 12.1.1.3/24 add 10.1.1.4/24
12.1.1.1 10.1.1.2 RP/0/0/CPU0:ios(config-if)#no RP/0/0/CPU0:ios(config-if)#no sh
255.255.255. 255.255.255. sh RP/0/0/CPU0:ios(config-if)#ex
0 0 RP/0/0/CPU0:ios(config-if)#ex RP/0/0/CPU0:ios(config)#int
R1(config- R2(config- RP/0/0/CPU0:ios(config)#int g0/0/0/1
if)#no sh if)#no sh g0/0/0/1 RP/0/0/CPU0:ios(config-if)#ipv4
R2(config- RP/0/0/CPU0:ios(config- add 13.1.1.4/24
R1(config)#int if)#ex if)#ipv4 add 13.1.1.3/24 RP/0/0/CPU0:ios(config-if)#no sh
e1/1 RP/0/0/CPU0:ios(config-if)#no RP/0/0/CPU0:ios(config-if)#ex
R1(config- R2(config)#int sh RP/0/0/CPU0:ios(config)#commit
if)#ip add e1/1 RP/0/0/CPU0:ios(config-if)#ex
11.1.1.1 R2(config- RP/0/0/CPU0:ios(config)#com
255.255.255. if)#ip add mit
0 11.1.1.2
R1(config- 255.255.255.
if)#no sh 0
R1(config)#int R2(config-
loo0 if)#no sh
R1(config- R2(config-
if)#ip add if)#ex
172.16.1.1
255.255.255.
0
Enable ospf 1 on all routers and advertise all interface link to other routers
63
R1(config- RP/0/0/CPU0:ios(config-ospf- RP/0/0/CPU0:ios(config-
router)#net ar-if)#ex ospf-ar)#commit
172.16.1.0 RP/0/0/CPU0:ios(config-ospf-
0.0.0.255 a 0 ar)#commit
Xrv3:
Xrv4
64
11.1.1.2 1 FULL/DR 00:00:39 10.1.1.2 GigabitEthernet0/0/0/0
RP/0/0/CPU0:ios(config)#router ospf 1
RP/0/0/CPU0:ios(config-ospf)#area 0
RP/0/0/CPU0:ios(config-ospf-ar)#interface g0/0/0/0
RP/0/0/CPU0:ios(config-ospf-ar-if)#cost 10
RP/0/0/CPU0:ios(config-ospf-ar-if)#ex
RP/0/0/CPU0:ios(config-ospf-ar)#int g0/0/0/1
RP/0/0/CPU0:ios(config-ospf-ar-if)#cost 10
RP/0/0/CPU0:ios(config-ospf-ar-if)#ex
RP/0/0/CPU0:ios(config-ospf-ar)#ex
RP/0/0/CPU0:ios(config-ospf)#maximum paths 2
RP/0/0/CPU0:ios(config-ospf)#commit
XRV 3
RP/0/0/CPU0:ios(config)#router ospf 1
65
RP/0/0/CPU0:ios(config-ospf)#area 0
RP/0/0/CPU0:ios(config-ospf-ar)#int g0/0/0/0
RP/0/0/CPU0:ios(config-ospf-ar-if)#cost 10
RP/0/0/CPU0:ios(config-ospf-ar-if)#int g0/0/0/1
RP/0/0/CPU0:ios(config-ospf-ar-if)#cost 10
RP/0/0/CPU0:ios(config-ospf-ar-if)#ex
RP/0/0/CPU0:ios(config-ospf-ar)#commit
R1:
R1(config)#int e1/0
R1(config-if)#int e1/1
R1(config-if)#ex
R2:
ip ospf cost 10
66
O 12.1.1.0/24 [110/20] via 13.1.1.3, 00:14:04, GigabitEthernet0/0/0/1
End lab 16
Lab 17 : ospfv3
TASKS :
Configure ipv6 address for all interfaces as shown in diagram
R: 2.2.2.2 xrv:1.1.1.1
Solution
R1:
Configure ipv6 address for all interfaces as shown in diagram
Router(config)#int e0/0
67
Router(config-if)#no sh
Router(config)#int lo0
Router(config-if)#no sh
Xrv :
RP/0/0/CPU0:ios(config)#int g0/0/0/0
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#ex
RP/0/0/CPU0:ios(config)#int lo0
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#ex
RP/0/0/CPU0:ios(config)#commit
Router(config)#router ospfv3 1
Router(config-router)#router-id 2.2.2.2
Router(config-router)#ex
Router(config)#int e0/0
Router(config-if)#int lo0
Xrv :
68
RP/0/0/CPU0:ios(config)#router ospfv3 1
RP/0/0/CPU0:ios(config-ospfv3)#router-id 1.1.1.1
RP/0/0/CPU0:ios(config-ospfv3)#area 0
RP/0/0/CPU0:ios(config-ospfv3-ar)#int lo0
RP/0/0/CPU0:ios(config-ospfv3-ar)#int g0/0/0/0
0RP/0/0/CPU0:ios(config)#commit
Xrv :
RP/0/0/CPU0:ios#sh ospfv3 neighbor
69
Xrv :
RP/0/0/CPU0:ios#show route ipv6 ospf
O 2001:db9:0:1::2/128
R:
Router#sh ipv6 route ospf
O 2001:DB7:0:1::1/128 [110/10]
End lab 17
Lab 18 : OSPFV3 Authentication
Tasks :
Enable OSPFv3 SHA-1 authentication between both routers
Verify authentication
Solution :
Xrv :
RP/0/0/CPU0:ios(config)#router ospfv3 1
RP/0/0/CPU0:ios(config-ospfv3)#area 0
RP/0/0/CPU0:ios(config-ospfv3-ar)#inter g0/0/0/0
70
RP/0/0/CPU0:ios(config-ospfv3-ar-if)#authentication ipsec spi 256 sha1
1234567891011121314151617181920212223242
R:
Router(config)#int e0/0
Verify authentication
R1:
Router#sh ipv6 ospf inter e0/0
Xrv :
RP/0/0/CPU0:ios#sh ospfv3 interface g0/0/0/0
End lab 18
71
Lab 19: ospfv2 Authentication
Tasks:
Configure ip address for both routers as shown
Configure ospf process 10 between both routers and advertise internal link between routers within area
0
solution:
Configure ip address for both routers as shown
R2
Router(config)#int e0/0
Router(config-if)#no sh
Xrv2 :
RP/0/0/CPU0:ios(config)#int g0/0/0/0
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#commit
72
Configure ospf process 10 between both routers and advertise
internal link between routers within area 0
R2:
Router(config)#router os 10
Xrv2:
RP/0/0/CPU0:ios(config)#router ospf 10
RP/0/0/CPU0:ios(config-ospf)#area 0
RP/0/0/CPU0:ios(config-ospf-ar)#int g0/0/0/0
Xrv2:
RP/0/0/CPU0:ios(config)#router ospf 10
RP/0/0/CPU0:ios(config-ospf)#area 0
RP/0/0/CPU0:ios(config-ospf-ar)#int g0/0/0/0
RP/0/0/CPU0:ios(config-ospf-ar-if)#authentication message-digest
73
RP/0/0/CPU0:ios(config-ospf-ar-if)#message-digest-key 1 md5 spng2
RP/0/0/CPU0:ios(config-ospf-ar-if)#commit
Xrv2:
RP/0/0/CPU0:ios#sh ospf neighbor
R2:
Router#sh ip osp nei
74
End lab 19
Lab 20: IS-IS configuration
Tasks:
Set ip address for all router interface as shown, please note router no will use for end of interface ip
75
Verify is is configuration on xrv1/R3
Verify is is neighbors
Solution :
Set ip address for all router interface as shown, please note router no will use for end of interface ip
R1 R2 R3 R4 XRV1 XRV2
R2(config) R3(config) R4(config) RP/0/0/CPU0:ios(conf RP/0/0/CPU0:ios(conf
R1(config) #int e0/2 #int e0/2 #int e0/2 ig)#int g0/0/0/0 ig)#int g0/0/0/0
#int e0/2 R2(config- R3(config- R4(config- RP/0/0/CPU0:ios(conf RP/0/0/CPU0:ios(conf
R1(config- if)#ip add if)#ip add if)#ip add ig-if)#ipv4 add ig-if)#ipv4 add
if)#ip add 24.0.0.2 13.0.0.3 24.0.0.4 42.0.0.2/24 31.0.0.1/24
13.0.0.1 255.255.25 255.255.25 255.255.25 RP/0/0/CPU0:ios(conf RP/0/0/CPU0:ios(conf
255.255.25 5.0 5.0 5.0 ig-if)#no sh ig-if)#no sh
5.0 R2(config- R3(config- R4(config- RP/0/0/CPU0:ios(conf RP/0/0/CPU0:ios(conf
R1(config- if)#no sh if)#no sh if)#no sh ig-if)#int g0/0/0/1 ig-if)#int g0/0/0/1
if)#no sh R3(config) R4(config) RP/0/0/CPU0:ios(conf RP/0/0/CPU0:ios(conf
#int e0/0 #int e0/0 ig-if)#ipv4 add ig-if)#ipv4 add
R3(config- R4(config- 21.0.0.2/24 21.0.0.1/24
if)#ip add if)#ip add RP/0/0/CPU0:ios(conf RP/0/0/CPU0:ios(conf
31.0.0.3 42.0.0.4 ig-if)#no sh ig-if)#no sh
255.255.25 255.255.25 RP/0/0/CPU0:ios(conf RP/0/0/CPU0:ios(conf
5.0 5.0 ig-if)#commit ig-if)#commit
R3(config- R4(config-
if)#no sh if)#no sh
R1 R1(config)#router isis
R1(config-router)#net 49.0022.11111.11111.1111.00
76
R1(config-router)#is-type level-1
R1(config)#int e0/2
R1(config-if)#ip router isis
R1(config)#int lo0
R1(config-if)#ip add 172.16.1.1 255.255.255.0
R1(config-if)#ip router isis
R2 R2(config)#router isis
R2(config-router)#net 49.0033.2222.2222.2222.00
R2(config-router)#is-type level-1
R2(config)#int e0/2
R21(config-if)#ip router isis
R2(config)#int lo0
R2(config-if)#ip add 192.168.1.1 255.255.255.0
R2(config-if)#ip router isis
R3 R3(config)#router isis
R3(config-router)#net 49.0022.3333.3333.3333.00
R3(config)#int e0/0
R3(config-if)#ip router isis
R3(config-if)#isis circuit-type level-2-only
R3(config-if)#int e0/2
R3(config-if)#ip router isis
R3(config-if)#isis circuit-type level-1
R4 R4(config)#router isis
R4(config-router)#net 49.0033.4444.4444.4444.00
R4(config)#int e0/0
R4(config-if)#ip router isis
R4(config-if)#isis circuit-type level-2-only
R4(config-if)#ex
R4(config)#int e0/2
R4(config-if)#ip router isis
R4(config-if)#isis circuit-type level-1
XRV1 RP/0/0/CPU0:ios(config)#router isis spng2
RP/0/0/CPU0:ios(config-isis)#net 49.0011.11111.11111.1111.00
RP/0/0/CPU0:ios(config-isis)#is-type level-2-only
RP/0/0/CPU0:ios(config-isis)#interface g0/0/0/0
RP/0/0/CPU0:ios(config-isis-if)#add ipv4 unicast
RP/0/0/CPU0:ios(config-isis-if-af)#ex
RP/0/0/CPU0:ios(config-isis-if)#interface g0/0/0/1
RP/0/0/CPU0:ios(config-isis-if)#add ipv4 unicast
XRV2 RP/0/0/CPU0:ios(config)#router isis spng2
RP/0/0/CPU0:ios(config-isis)#net 49.0011.2222.2222.2222.00
RP/0/0/CPU0:ios(config-isis)#is-type level-2-only
RP/0/0/CPU0:ios(config-isis)#int g0/0/0/0
RP/0/0/CPU0:ios(config-isis-if)#add ipv4 unicast
RP/0/0/CPU0:ios(config-isis-if-af)#int g0/0/0/0
RP/0/0/CPU0:ios(config-isis-if)#add ipv4 unicast
77
Enable wide metric on R1/R2
On both routers :
R2(config-router)#metric-style wide
is-type level-2-only
net 49.0011.1111.1111.1111.00
interface GigabitEthernet0/0/0/0
interface GigabitEthernet0/0/0/1
R3 :
R3#sh run
router isis
net 49.0022.3333.3333.3333.00
78
Verify is is neighbors
R1 R1#SH ISIS NEIghbors
79
42.0.0.0/24 is subnetted, 1 subnets
i L2 42.0.0.0 [115/30] via 31.0.0.1, 00:00:18, Ethernet0/0
172.16.0.0/24 is subnetted, 1 subnets
i L1 172.16.1.0 [115/20] via 13.0.0.1, 00:07:58, Ethernet0/2
i L2 192.168.1.0/24 [115/50] via 31.0.0.1, 00:00:18, Ethernet0/0
End lab 20
80
Lab 21: Configure IS-IS Load Balance
Tasks :
Configure ip address for all interfaces as per diagram
Enable isis on all routers use name :spng2 for xrv router
Check routing table for xrv4
Solution :
Configure ip address for all interfaces as per diagram
R1 R1(config)#int lo0
R1(config-if)#ip add 172.16.1.1 255.255.255.0
R1(config-if)#no sh
R1(config)#int e0/0
R1(config-if)#ip add 12.0.0.1 255.255.255.0
R1(config-if)#no sh
R1(config)#int e0/1
R1(config-if)#ip add 13.0.0.1 255.255.255.0
R1(config-if)#no sh
R2 R2(config)#int e0/0
81
R2(config-if)#ip add 12.0.0.2 255.255.255.0
R2(config-if)#no sh
R2(config)#int e0/1
R2(config-if)#ip add 24.0.0.2 255.255.255.0
R2(config-if)#no sh
XRV3 RP/0/0/CPU0:XRV3(config)#int g0/0/0/1
RP/0/0/CPU0:XRV3(config-if)#ipv4 add 13.0.0.3 255.255.255.0
RP/0/0/CPU0:XRV3(config-if)#no sh
RP/0/0/CPU0:XRV3(config-if)#ex
RP/0/0/CPU0:XRV3(config)#int g0/0/0/0
RP/0/0/CPU0:XRV3(config-if)#ipv4 add 34.0.0.3/24
RP/0/0/CPU0:XRV3(config-if)#no sh
RP/0/0/CPU0:XRV3(config-if)#commit
XRV4 RP/0/0/CPU0:XRV4(config)#int g0/0/0/0
RP/0/0/CPU0:XRV4(config-if)#ipv4 add 34.0.0.4/24
RP/0/0/CPU0:XRV4(config-if)#no sh
RP/0/0/CPU0:XRV4(config-if)#ex
RP/0/0/CPU0:XRV4(config)#int g0/0/0/1
RP/0/0/CPU0:XRV4(config-if)#ipv4 add 24.0.0.4/24
RP/0/0/CPU0:XRV4(config-if)#no sh
RP/0/0/CPU0:XRV4(config-if)#commit
Enable isis on all routers use name :spng2 for xrv router
R1 R1(config)#router isis
R1(config-router)#net 49.0001.1111.1111.1111.00
R1(config)#int lo0
R1(config-if)#ip router isis
R1(config-if)#ex
R1(config)#int ra e0/0-1
R1(config-if-range)#ip router isis
R1(config-if-range)#ex
R2 R2(config)#router isis
R2(config-router)#net 49.0001.2222.2222.2222.00
R2(config)#int ra e0/0-1
R2(config-if-range)#ip router isis
R2(config-if-range)#ex
XRV3 RP/0/0/CPU0:XRV3(config)#router isis spng2
RP/0/0/CPU0:XRV3(config-isis)#net 49.0001.3333.3333.3333.00
RP/0/0/CPU0:XRV3(config-isis)#interface g0/0/0/0
82
RP/0/0/CPU0:XRV3(config-isis-if)#add ipv4 unicast
RP/0/0/CPU0:XRV3(config-isis-if-af)#ex
RP/0/0/CPU0:XRV3(config-isis-if)#ex
RP/0/0/CPU0:XRV3(config-isis)#interface g0/0/0/1
RP/0/0/CPU0:XRV3(config-isis-if)#add ipv4 unicast
RP/0/0/CPU0:XRV3(config-isis-if-af)#ex
RP/0/0/CPU0:XRV3(config-isis-if)#ex
RP/0/0/CPU0:XRV3(config-isis)#commit
XRV4 RP/0/0/CPU0:XRV4(config)#router isis spng2
RP/0/0/CPU0:XRV4(config-isis)#net 49.0001.4444.4444.4444.00
RP/0/0/CPU0:XRV4(config-isis)#interface g0/0/0/0
RP/0/0/CPU0:XRV4(config-isis-if)#add ipv4 unicast
RP/0/0/CPU0:XRV4(config-isis-if-af)#ex
RP/0/0/CPU0:XRV4(config-isis-if)#ex
RP/0/0/CPU0:XRV4(config-isis)#interface g0/0/0/1
RP/0/0/CPU0:XRV4(config-isis-if)#add ipv4 unicast
RP/0/0/CPU0:XRV4(config-isis-if-af)#ex
RP/0/0/CPU0:XRV4(config-isis-if)#ex
RP/0/0/CPU0:XRV4(config-isis)#commit
RP/0/0/CPU0:XRV4#sh route
If you couldn’t see load balance you can do this command on xrv4 :
83
maximum-paths 2
interface GigabitEthernet0/0/0/0
metric 100
interface GigabitEthernet0/0/0/1
metric 100
End lab 21
Tasks :
Solution :
XRV4 :
84
RP/0/0/CPU0:XRV4(config-isis)#int g0/0/0/1
RP/0/0/CPU0:XRV4(config-isis-if)#commit
R2:
R2(config-keychain)#key 1
R2(config-keychain-key)#key
R2(config-keychain-key)#key-string cisco123
R2(config-keychain-key)#ex
R2(config)#int e0/1
R2(config-if)#ex
R2(config)#router isis
End lab 22
85
Lab 23: route redistribution
Tasks:
Redistribute isis route into ospf (R1 will learn network 172.16.1.1)
Solution
R1 R1(config)#int lo0
R1(config-if)#ip add 192.168.1.1 255.255.255.0
R1(config-if)#no sh
R1(config)#int e0/3
R1(config-if)#ip add 13.0.0.1 255.255.255.0
R1(config-if)#no sh
R2 R2(config)#int l0
R2(config-if)#ip add 172.16.1.1 255.255.255.0
R2(config-if)#no sh
R2(config)#int e0/3
R2(config-if)#ip add 23.0.0.2 255.255.255.0
R2(config-if)#no sh
R2(config-if)#ex
86
Xrv3 RP/0/0/CPU0:ios(config)#int g0/0/0/1
RP/0/0/CPU0:ios(config-if)#ipv4 add 13.0.0.3/24
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#ex
RP/0/0/CPU0:ios(config)#int g0/0/0/2
RP/0/0/CPU0:ios(config-if)#ipv4 add 23.0.0.3/24
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#commit
R1(config)#router os 1
RP/0/0/CPU0:ios(config)#router ospf 1
RP/0/0/CPU0:ios(config-ospf)#area 0
RP/0/0/CPU0:ios(config-ospf-ar)#interface g0/0/0/1
RP/0/0/CPU0:ios(config-ospf-ar-if)#commit
R2(config)#router isis
R2(config-router)#net 49.0000.2222.2222.2222.00
R2(config-router)#ex
R2(config)#int lo0
R2(config-if)#ex
R2(config)#int e0/3
87
R2(config-if)#ex
RP/0/0/CPU0:ios(config-isis)#net 49.0000.3333.3333.3333.00
RP/0/0/CPU0:ios(config-isis)#int g0/0/0/2
RP/0/0/CPU0:ios(config-isis-if-af)#ex
RP/0/0/CPU0:ios(config-isis-if)#commit
RP/0/0/CPU0:ios(config-isis-af)#commit
R2#sh ip route
Redistribute isis route into ospf (R1 will learn network 172.16.1.1)
RP/0/0/CPU0:ios(config)#router ospf 1
RP/0/0/CPU0:ios(config-ospf)#commit
R1#sh ip route
End lab 23
88
Lab 24 :Mpls Ldp
TASKS :
Solution
R1 R1(config)#int loo 0
R1(config-if)#ip add 1.1.1.1 255.255.255.0
R1(config)#int lo 1
R1(config-if)#ip add 192.168.1.1 255.255.255.0
R1(config-if)#ex
R1(config)#int e0/0
89
R1(config-if)#ip add 13.0.0.1 255.255.255.0
R1(config-if)#no sh
R2 R2(config)#int e0/3
R2(config-if)#ip add 23.0.0.2 255.255.255.0
R2(config-if)#no sh
R2(config-if)#ex
R2(config)#int lo0
R2(config-if)#ip add 2.2.2.2 255.255.255.0
XRV3 RP/0/0/CPU0:ios(config)#int g0/0/0/0
RP/0/0/CPU0:ios(config-if)#ipv4 add 13.0.0.3/24
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#ex
RP/0/0/CPU0:ios(config)#int g0/0/0/2
RP/0/0/CPU0:ios(config-if)#ipv4 add 23.0.0.3/24
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#commmit
R1 R1(config)#router ospf 1
R1(config-router)#net 192.168.1.0 0.0.0.255 a 0
R1(config-router)#net 1.1.1.0 0.0.0.255 a 0
R1(config-router)#net 13.0.0.0 0.0.0.255 a 0
R2 R2(config)#router os 1
R2(config-router)#net 2.2.2.0 0.0.0.255 a 0
R2(config-router)#net 23.0.0.0 0.0.0.255 a 0
XRV3 RP/0/0/CPU0:ios(config)#router ospf 1
RP/0/0/CPU0:ios(config-ospf)#router-id 3.3.3.3
RP/0/0/CPU0:ios(config-ospf)#area 0
RP/0/0/CPU0:ios(config-ospf-ar)#int lo0
RP/0/0/CPU0:ios(config-ospf-ar-if)#ex
RP/0/0/CPU0:ios(config-ospf-ar)#int g0/0/0/0
RP/0/0/CPU0:ios(config-ospf-ar-if)#ex
RP/0/0/CPU0:ios(config-ospf-ar)#int g0/0/0/2
RP/0/0/CPU0:ios(config-ospf-ar-if)#commit
90
O 3.3.3.3 [110/11] via 13.0.0.3, 00:04:21, Ethernet0/0
R2 R2#sh ip route osp
1.0.0.0/32 is subnetted, 1 subnets
O 1.1.1.1 [110/12] via 23.0.0.3, 00:00:48, Ethernet0/3
3.0.0.0/32 is subnetted, 1 subnets
O 3.3.3.3 [110/11] via 23.0.0.3, 00:00:48, Ethernet0/3
XRV3 RP/0/0/CPU0:ios#sh route ospf
O 1.1.1.1/32 [110/2] via 13.0.0.1, 00:00:38, GigabitEthernet0/0/0/0
O 2.2.2.2/32 [110/2] via 23.0.0.2, 00:00:29, GigabitEthernet0/0/0/2
R1 R1(config)#int e0/0
R1(config-if)#mpls ip
R1(config-if)#ex
*May 1 07:42:23.046: %LDP-5-NBRCHG: LDP Neighbor 3.3.3.3:0 (1) is UP
R2 R2(config)#mpls ip
R2(config)#ip cef
R2(config)#int e0/3
R2(config-if)#mpls ip
R2(config-if)#ex
R2(config)#
*May 1 07:42:50.202: %LDP-5-NBRCHG: LDP Neighbor 3.3.3.3:0 (1) is UP
Xrv3 RP/0/0/CPU0:ios(config)#mpls ldp
RP/0/0/CPU0:ios(config-ldp)#int g0/0/0/0
RP/0/0/CPU0:ios(config-ldp-if)#ex
RP/0/0/CPU0:ios(config-ldp)#int g0/0/0/2
RP/0/0/CPU0:ios(config-ldp-if)#commit
91
R2#sh mpls ldp neighbor
Up time: 00:01:03
1.1.1.0/24, rev 0
No local binding
Peer Label
----------------- ---------
192.168.1.1:0 ImpNull
1.1.1.1/32, rev 12
Peer Label
----------------- ---------
2.2.2.2:0 16
2.2.2.0/24, rev 0
No local binding
92
Remote bindings: (1 peers)
Peer Label
----------------- ---------
2.2.2.2:0 ImpNull
2.2.2.2/32, rev 14
Peer Label
----------------- ---------
192.168.1.1:0 16
3.3.3.0/24, rev 4
No remote bindings
3.3.3.3/32, rev 2
Peer Label
----------------- ---------
192.168.1.1:0 17
2.2.2.2:0 17
13.0.0.0/24, rev 6
Peer Label
----------------- ---------
192.168.1.1:0 ImpNull
2.2.2.2:0 18
23.0.0.0/24, rev 8
93
Remote bindings: (2 peers)
Peer Label
----------------- ---------
192.168.1.1:0 18
2.2.2.2:0 ImpNull
192.168.1.0/24, rev 0
No local binding
Peer Label
----------------- ---------
192.168.1.1:0 ImpNull
192.168.1.1/32, rev 13
Peer Label
----------------- ---------
2.2.2.2:0 19
Codes:
94
1.1.1.1/32 24000 Unlabelled Gi0/0/0/0 13.0.0.1
End lab 24
Tasks :
95
Set interfaces ip address for all routers as per diagram
Set route policy to pass all traffic for both direction in EBGP routers
Solution
R1 Router(config)#int lo0
Router(config-if)#ip add 1.1.1.1 255.255.255.255
Router(config-if)#ex
Router(config)#int e0/1
Router(config-if)#ip add 12.0.0.1 255.255.255.0
Router(config-if)#no sh
Router(config-if)#ex
R1(config)#int e0/2
R1(config-if)#ip add 10.1.1.1 255.255.255.0
R1(config-if)#no sh
R2 Router(config)#int lo0
Router(config-if)#ip add
Router(config-if)#ip add 2.2.2.2 255.255.255.255
Router(config-if)#ex
Router(config)#int e0/0
Router(config-if)#ip add 23.0.0.2 255.255.255.0
Router(config-if)#no sh
Router(config-if)#ex
Router(config)#int e0/1
Router(config-if)#ip add 12.0.0.2 255.255.255.0
Router(config-if)#no sh
Router(config-if)#ex
R2(config)#int e0/2
R2(config-if)#ip add 20.1.1.1 255.255.255.0
R2(config-if)#no sh
XRV3 RP/0/0/CPU0:ios(config)#int lo0
RP/0/0/CPU0:ios(config-if)#ipv4 add 3.3.3.3/32
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#ex
RP/0/0/CPU0:ios(config)#int g0/0/0/0
RP/0/0/CPU0:ios(config-if)#ipv4 add 23.0.0.3/24
96
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#ex
RP/0/0/CPU0:ios(config)#int g0/0/0/2
RP/0/0/CPU0:ios(config-if)#ipv4 add 30.1.1.1/24
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config)#commit
R1 Router(config)#router ei 1
Router(config-router)#net 1.1.1.1 0.0.0.0
Router(config-router)#net 12.0.0.0 0.0.0.255
Router(config-router)#no au
R2 Router(config)#router ei 1
Router(config-router)#net 2.2.2.2 0.0.0.0
Router(config-router)#net 12.0.0.0 0.0.0.255
Router(config-router)#no au
*May 4 07:35:59.075: %DUAL-5-NBRCHANGE: EIGRP-IPv4 1: Neighbor 12.0.0.1 (Ethernet0/1) is up: new
adjacency
97
!
neighbor 23.0.0.2
remote-as 6500
address-family ipv4 unicast
Set route policy to pass all traffic for both direction in EBGP routers
RP/0/0/CPU0:ios(config-bgp)#nei 23.0.0.2
RP/0/0/CPU0:ios(config-bgp-nbr-af)#route-policy spng2 in
RP/0/0/CPU0:ios(config-bgp-nbr-af)#commit
98
R2(config)#router bgp 6500
R1 :
R2 :
XRV3
99
B 20.1.1.0/24 [20/0] via 23.0.0.2, 00:04:44
XRV3
RP/0/0/CPU0:ios#sh bgp
R2
R2#sh ip bgp
R1:
R1#sh ip bgp
End lab 25
100
Lab 26: Configure IPv4 Filtering
Tasks:
Solution:
101
web WEB(config)#int e0/0
WEB(config-if)#ip add 192.168.1.200 255.255.255.0
WEB(config-if)#no sh
RP/0/0/CPU0:ios(config-ipv4-acl)#permit 172.16.1.0/24
RP/0/0/CPU0:ios(config-ipv4-acl)#deny any
RP/0/0/CPU0:ios(config)#int g0/0/0/1
RP/0/0/CPU0:ios(config-if)#commit
interface GigabitEthernet0/0/0/1
102
RP/0/0/CPU0:ios(config-ipv4-acl)#deny ipv4 any any
RP/0/0/CPU0:ios(config)#int g0/0/0/0
RP/0/0/CPU0:ios(config-if)#commit
interface GigabitEthernet0/0/0/1
End lab 26
103
Lab 27: Configure IPv6 Filtering
Tasks :
Solution :
pc VPCS> ip 2001:db8:172:16::2/64
PC1 : 2001:db8:172:16::2/64
VPCS> save
Saving startup configuration to startup.vpc
. done
Xrv1 RP/0/0/CPU0:ios(config)#int g0/0/0/0
RP/0/0/CPU0:ios(config-if)#ipv6 add 2001:db8:192:168::1/64
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#ex
RP/0/0/CPU0:ios(config)#int g0/0/0/1
RP/0/0/CPU0:ios(config-if)#ipv6 add 2001:db8:172:16:1::1/64
RP/0/0/CPU0:ios(config-if)#no sh
RP/0/0/CPU0:ios(config-if)#commit
web Web(config)#int e0/0
Web(config-if)#ipv6 add 2001:db8:192:168:1::100/64
Web(config-if)#no sh
104
Configure aces list to deny pc to connect to web server through http
RP/0/0/CPU0:ios(config-ipv6-acl)#commit
RP/0/0/CPU0:ios(config)#int g0/0/0/1
RP/0/0/CPU0:ios(config-if)#commit
End lab 27
105
Tasks :
Create tunnel 0 between R1/R2 for ipv6 traffic between customer1 and customer 2 network
Verify connectivity
Solution :
R1 R1(config)#int e0/1
R1(config-if)#ipv6 add 2001:db8:1::1/64
106
R1(config-if)#no sh
R1(config-if)#ex
R1(config)#int e0/0
R1(config-if)#ip add 192.168.1.1 255.255.255.0
R1(config-if)#no sh
R2 R2(config)#int e0/1
R2(config-if)#ipv6 add 2001:db8:2::2/64
R2(config-if)#no sh
R2(config)#int e0/0
R2(config-if)#ip add 192.168.1.2 255.255.255.0
R2(config-if)#no sh
Create tunnel 0 between R1/R2 for ipv6 traffic between customer1 and customer 2 network
R1(config)#int tunnel 0
R1(config-if)#ipv6 add 2001:db8:3::1/64
R1(config-if)#tunnel source e0/0
R1(config-if)#tunnel destination 192.168.1.2
R1(config-if)#tunnel mod ipv6ip
R1(config)#ipv6 route 2001:db8:2::/64 Tunnel0 2001:db8:3::2
R2(config)#int tunnel 0
R2(config-if)#ipv6 add 2001:db8:3::2/64
R2(config-if)#tunne source e0/0
R2(config-if)#tunnel destination 192.168.1.1
R2(config-if)#tunnel mode ipv6ip
R2(config)#ipv6 route 2001:db8:1::/64 Tunnel0 2001:db8:3::1
Verify connectivity
R1#ping 2001:DB8:2::2
!!!!!
R1#trace 2001:DB8:2::2
107
1 2001:DB8:3::2 7 msec 5 msec 5 msec
End lab 28
Task :
Solution:
RP/0/0/CPU0:ios(admin)#install commit
RP/0/0/CPU0:ios(admin)#install commit
108
Change the hostname
RP/0/0/CPU0:ios(config)#host SPNG2
RP/0/0/CPU0:ios(config)#commit
RP/0/0/CPU0:SPNG2(config)#
Committing.
Updating.
End lab 29
109