21.1.2 Lab Troubleshoot Ipv4 Acls
21.1.2 Lab Troubleshoot Ipv4 Acls
Topology
Addressing Table
Device Interface IP Address Subnet Mask
R1
S0/1/0 209.165.200.1 255.255.255.0
R1
S0/1/1 209.165.201.1 255.255.255.0
R1
Loopback0 209.165.226.1 255.255.255.0
R3 G0/0/1.16 10.0.16.1 255.255.255.0
R3
G0/0/1.27 10.0.27.1 255.255.255.0
R3
S0/1/0 209.165.200.2 255.255.255.0
R3
S0/1/1 209.165.201.2 255.255.255.0
R3
Loopback0 209.165.227.1 255.255.255.0
R3
Loopback1 209.165.228.1 255.255.255.0
D1 G1/0/11 192.0.0.2 255.255.255.0
D1
VLAN 11 209.165.224.1 255.255.255.0
D1
VLAN 12 209.165.225.1 255.255.255.0
PC1 NIC DHCP
Objectives
Troubleshoot network issues related to the conf iguration and operation of ACLs f or IPv4.
© 2020 - 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public Page 1 of 4 www.netacad.com
Lab - Troubleshoot IPv4 ACLs
Background / Scenario
In this topology, R1 and D1 are OSPF neighbors, while R1 and R3 are BGP neighbors. Switch D1 provides
inter-VLAN routing f or two subnets. R3 provides inter-VLAN routing f or two subnets, and switch D2 provides
connectivity f or the two VLANs supporting those subnets. The BGP relationship between R1 and R3 is
established using EBGP multihop between the router’s respective Loopback 0 interf aces. You will be loading
conf igurations with intentional errors onto the network. Your tasks are to FIND the error(s), document your
f indings and the command(s) or method(s) used to f ix them, FIX the issue(s) presented here and then test the
network to ensure both of the f ollowing conditions are met:
1) the complaint received in the ticket is resolved
2) f ull reachability is restored
Note: The routers used with CCNP hands-on labs are Cisco 4221 with Cisco IOS XE Release 16.9.4
(universalk9 image). The switches used in the labs are Cisco Catalyst 3650 with Cisco IOS XE Release
16.9.4 (universalk9 image). Other routers, switches, and Cisco IOS versions can be used. Depending on the
model and Cisco IOS version, the commands available and the output produced might vary f rom what is
shown in the labs. Ref er to the Router Interf ace Summary Table at the end of the lab f or the correct interf ace
identif iers.
Note: Make sure that the devices have been erased and have no startup conf igurations. If you are unsure,
contact your instructor.
Required Resources
• 2 Routers (Cisco 4221 with Cisco IOS XE Release 16.9.4 universal image or comparable)
• 2 Switches (Cisco 3560 with Cisco IOS XE Release 16.9.4 universal image or comparable)
• 4 PCs (Choice of operating system with terminal emulation program installed)
• Console cables to conf igure the Cisco IOS devices via the console ports
• Ethernet and serial cables as shown in the topology
Instructions
Device Command
© 2020 - 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public Page 2 of 4 www.netacad.com
Lab - Troubleshoot IPv4 ACLs
• When you have f ixed the ticket, change the MOTD on EACH DEVICE using the f ollowing command:
banner motd # This is $(hostname) FIXED from ticket <ticket number> #
• Then save the conf iguration by issuing the wri command (on each device).
• Inf orm your instructor that you are ready f or the next ticket.
• Af ter the instructor approves your solution f or this ticket, issue the reset.now privileged EXEC
command. This script will clear your conf igurations and reload the devices.
Device Command
Device Command
© 2020 - 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public Page 3 of 4 www.netacad.com
Lab - Troubleshoot IPv4 ACLs
Device Command
Router Model Ethernet Interface #1 Ethernet Interface #2 Serial Interface #1 Serial Interface #2
Note: To f ind out how the router is conf igured, look at the interf aces to identif y the type of router and how many
interf aces the router has. There is no way to ef f ectively list all the combinations of conf igurations f or each router
class. This table includes identif iers f or the possible combinations of Ethernet and Serial interf aces in the device.
The table does not include any other type of interf ace, even though a specif ic router may contain one. An
example of this might be an ISDN BRI interf ace. The string in parenthesis is the legal abbreviation that can be
used in Cisco IOS commands to represent the interf ace.
End of document
© 2020 - 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public Page 4 of 4 www.netacad.com