Escolar Documentos
Profissional Documentos
Cultura Documentos
Circle one:
Location: Anniston or Boaz
Circle one:
Version 1 2 3 4 5 6 7 8 9 10
This exam will occur in stages. Each element is a set of instructions that needs to be
accomplished.
The instructor will initial each task as it is completed. Proceed to the next task only after the
instructor
The scenario is that Gadsden (GAD) is regional headquarters of the company. Anniston and
Boaz are branch offices. Each network associate (student) will be responsible for a single
branch office. The internetwork team leader (instructor) is responsible for the regional router
(GAD). A network address and specific number of hosts per subnet has been assigned for the
local LAN. From the instructor provided information, the subnet address, the subnet mask, the
first and last usable addresses, and the broadcast address for each site’s LAN need to be
determined.
CCNA 2 Hands-on Version Assignment
Router Segment Final Version
The WAN interface of GAD is assigned the lowest usable address in the subnetwork.
Identify and use the second lowest usable WAN address for the S0, or S0/0, interface of the
assigned router 192.168.3.2 For security reasons, the IP addresses of the assigned subnet are
split in two groups. The production workstations will be assigned the lower half of the IP
addresses. The network devices and management stations will be assigned the upper half of the
IP addresses. The Ethernet router interface is to be assigned the highest usable address.
Identify the required IP address of the Ethernet interface on the assigned router.
14.38.10.33 (based on exam version number and subnet assignment)
The host configurations must also be planned. Using the chart below, complete the host
information.
Branch: Anniston or Boaz
IP address range 3th subnet : from ip 14.38.10.33 to ip 14.38.10.46 + 1 broadcastaddress
ip Bytes bits
So 14.38.10.33 14.38.10. 00010001
14.38.10.34 14.38.10. 00010010
14.38.10.35 14.38.10. 00010011
14.38.10.36 14.38.10. 00010100
14.38.10.37 14.38.10. 00010101
14.38.10.38 14.38.10. 00010110
14.38.10.39 14.38.10. 00010111
14.38.10.40 14.38.10. 00011000
14.38.10.41 14.38.10. 00011001
14.38.10.42 14.38.10. 00011010
14.38.10.43 14.38.10. 00011011
14.38.10.44 14.38.10. 00011100
14.38.10.45 14.38.10. 00011101
14.38.10.46 14.38.10. 00011110
14.38.10.47 14.38.10. 00011111 (this is broadcast and don’t count for ip-address)
ip Bytes bits
So 14.38.10.33 14.38.10. 00010001
14.38.10.34 14.38.10. 00010010
14.38.10.35 14.38.10. 00010011
14.38.10.36 14.38.10. 00010100
14.38.10.37 14.38.10. 00010101
14.38.10.38 14.38.10. 00010110
14.38.10.39 14.38.10. 00010111
Because some routers of sisco aren’t all the same they don’t all support IGRP that’s why you
have to use RIP or EIGRP. EIGRP you could use the same as IGRP!
I shose EIGRP
enable
router1#config t
(config-f)#router1 eigrp 25 (this number is for your autonomisch system if you have more
than 1 access-list you have more routers to configure you have to put each time the same
number!)
(config-router)# network 14.38.10.0
(config-router)# network 192.168.3.0
This you do also for your GAD router! But only these:
(config-f)#router1 eigrp 25
(config-router)# network 192.168.3.0 this is because you have only to make the left or the
right part of the network construction. You have or Anniston or Boaz so you don’t have to be
able to ping from a pc of the subnet of boaz to a pc of the subnet of Anniston.
1. The company has an Intranet Web server host that all systems can reach at IP address
172.16.0.1 with only HTTP access. No other protocols will be permitted to this site.
2. The company also has a server pool in the 209.0.0.0/24 network. The server pool addresses
are divided in half. The servers in the upper half of the address range are reachable only by
management hosts using all possible IP protocols. The servers in the upper half of the address
range are not reachable by production hosts using all IP protocols The servers in the lower half
of the address range are reachable by all LAN hosts using all possible IP protocols. The servers
should not be accessible by any other hosts.
3. The company has discovered an Internet Web server at 198.0.0.1 that is known to contain
viruses. All hosts are to be banned from reaching this site.
4. All other traffic should be permitted to any destination. These security requirements should be
accomplished with a single access list. Plan the access list required to accomplish these tasks,
to which interface this will be applied, and the direction the list will be applied.
Place the ACL plan information below:
Apply a basic configuration to the router. This configuration should include all the normal
configuration items. These items include but are not limited to router name, passwords, interface
descriptions, routing, host table, and a banner to be displayed before login.
The management workstation and the production workstation should also be configured with the
appropriate information. Routing and connectivity should be verified before notifying the
instructor. Before proceeding to the next step have the instructor approve this step.
Router Anniston
Enable
router1# config t
config-t# hostname Anniston
config-t# interface fastethernet 0/0
config-int# ipaddress 14.38.20.33 255.255.255.0
config-int#no shutdown
config-int# exit
config-t# interface serial 0/0
config-int# ipaddress 192.168.3.2
config-int# no shutdown
you don’t have to set the clockrate because the DTE is on the side of GAD and
GAD is configured by the teachers!
enable
anniston#config t
config-t# interface serial 0/0
config-int# ip-accessgroup 101 in
if you use IN then you will set the statements within your subnet!, everything that is going out
of your subnet that will be checked by your acl! If you use OUT you do the same with alle traffic
that enters you subnet!
the teacher will ask you to leave for a couple off minutes and will change something to your
configuration. You will have to correct the mistake so your network works proper again.
Show running-config
Show ip route
show interfaces
show acces-lists
show interface serial 0/0
copy runnin-config startup-config
erase running-config
enable password “sisco”
enable secret “class”
hostname “Anniston”