Upload
dinhdaidong
View
229
Download
0
Embed Size (px)
Citation preview
8/10/2019 Final Lab 2.pdf
1/4
Final Lab 2.
Saigon
SW-ENV
NhaTrang Hanoi Hue
SW-NT1 SW-HN1
SW-HN2
SW-H
Router ADSL
Fa0/1
Fa0/0
Fa0/24
Fa0/0
Fa0/22
Fa0/23
Fa0/1
Fa0/24
Fa0/23
Fa0/23
Fa0/22
Fa0/0
Fa0/24
Fa0/24
Fa0/0
S0/0/0S0/0/0
VTP Information:VTP Domain: NewStar VTP password: ciscoVTP prunning: EnableSw-HN1: VTP mode server Sw-HN2: VTP mode client
VTP Information:VLAN 1: 192.168.100.0/24VLAN 11: 192.168.11.0/24VLAN 22: 192.168.22.0/24VLAN 33: 192.168.33.0/24
Native VLAN: 33
192.168.40.0/24
RID: 2.2.2.2
192.168.100.0/29
.2 .3
.1RID: 1.1.1.1
RID: 3.3.3.3 RID: 4.4.4.4
OSPF
Area 0
PPP/CHAP
192.168.2.110/24
192.168.2.250/24
Address Pool: 192.168.2.177 192.168.2.180/24
Internet
Fa0/1
Fa0/24
192.168.200.0/24
A. STARTING Basic Cisco Devices Configuration
1. Cisco Catalyst Switches Configuration (05 points)
- Configure the switches with host name of Sw-NT1 , Sw-SG , Sw-HN1 , Sw-HN2 and Sw-H as the diagram.
- Set the management console password to newstar - Set the telnet acces (vty 0 15) password to cisco
- An enable secret password of ccna
- Start www service on all switches
- Disable domain name resolution service on all switches
- Configure all switches so that messages from the siwtches to the consolescreen will not be appended to the command line
- All clear text passwords in the running-config should be encrypted
8/10/2019 Final Lab 2.pdf
2/4
8/10/2019 Final Lab 2.pdf
3/4
o DNS server 1: 208.67.222.222
o DNS server 2: 208.67.220.220
2. Switching (20 points)
- Configure VTP and VLAN database in Hanoi sites switc hes with the VTPand VLAN information given in the above diagram.
- Configure uplinks between access layer Sw-HN2 and distribution layer Sw-HN1 switches. Each of these channels should be 802.1q compliant trunklinks that are capable of transporting all VLAN traffic. The VLAN 33 should be the native VLAN . Enable the prunning of unnecessary trafficfrom nonresident VLANs.
- On the Catalyst Switch Sw-HN1 , configure Port 02, 03, 04 into VLAN11 ,Port 12, 13, 14 into VLAN22 and Port 17, 18, 19 into VLAN33.
- On the Catalyst Switch Sw-HN2 , configure Port 01 09 into VLAN11 ,Port 13, 15, 17, and 19 into VLAN22 and Port 20, 21 into VLAN33.
- Enable spanning tree mode PVRST on all switches. Ensure the Sw-HN1 should be the Root Bridge of all VLAN.
3. Routing (30 points)
- OSPF
o Configure OSPF routing protocol on each router. Dont forget toconfigure appropriate RouterID on each router. Ensure that users canreach any site of network and the Internet.
o Enable OSPF clear text authentication feature on the Serialinterfaces of Hanoi and Hue routers with the key of newstar.
4. WAN (10 points)
- PPP
o Configure PPP enacapsulation on the WAN link between Hanoi and
Hue o Configure CHAP authentication with the password is newstar
5. Others (20 points)
- Standard Access List: Create a standard out going access list, and apply it on Nhatrangs FastEhternet 0/1 to fullfil the following requirement:
o Deny access to users on VLAN11 and VLAN22 to Nhatrang s LAN
- Extended Access list : Create 02 extended incoming access lists, and applyeach of them on appropriate interfaces on Hanoi router to fullfil thefollowing requirements:
8/10/2019 Final Lab 2.pdf
4/4
o Users in VLAN1 cannot ping Hue s LAN but can telnet to Sw-H
o Deny http (www) request from users from VLAN33
o Permit anything else
- NAT : configure NAT on Saigon to have the following:
o Every host resides in every VLAN and LAN can go through theInternet
C. ENDING
- Test the connnectivity between any interfaces of any devices in the diagram
- Every host resides in every VLAN and LAN can through the Internet