LAB

MY LAB
click the image to enlarge
Task 1
  • Basic config on all devices
  • Permit SSH for remote connection
  • Configure this on all switch

  • PC 1 member of VLAN 30, PC 2 member of VLAN 10, Wireless Router member of VLAN 20
  • Set PC1 and PC2 statically, and DNS 8.8.8.8
Task 2
  • Make SW1 as VTP Client, SW2 as VTP Server, and SW3 as VTP Transparent
  • Run VTP version 2 with password (domain name and password)
Task 3
  • Make SW2 as Root Bridge for VLAN 10 and 20
  • Make SW3 as Root Bridge for VLAN 30,40, and 99
  • Enable Rapid-PVST+
  • Enable Portfast, BPDU Guard, and Root Guard
Task 4
  • Enable Port Security
  • Set Maximum MAC address = 1
  • Set violation = shutdown
  • Set sticky when switch learn the mac address
Task 5
  • VLAN 10 and 20 traffics on SW2 to R1 path
  • VLAN 30,40, and 99 traffics on SW3 to R1 path
  • Inter VLAN routing on R1
Task 6
  • Set SSID Wireless router to CCNA
  • Using WPA2 as security (password)
  • Using channel 6
  • Set administrative password to 12345
  • Client Range IP 192.168.100.100 - 192.168.100.150
Task 7
  • Configure Frame relay using point-to-point sub-interface with criteria :

Task 8

  • R3 <-> R4 use 172.30.0.12 /30
  • R4 <-> R5 use 172.30.0.16 /30
  • R5 to ISP use 10.31.4.244 /24 and gateway 10.31.4.1
  • PC1, PC3, and PC4 get IP dynamically from R4
  • PC1 get IP from VLAN 30
  • PC3 get IP from 172.20.10.0 /24
  • PC4 get IP from 172.20.20.0 /24
  • Set DNS dynamically 8.8.8.8
  • Set lease time 3 hours
  • Don't lease first 10 IP on every subnet
Task 9 
  • Configure R1 <-> R2 <-> R3 with EIGRP 999 and use security
  • Disable Auto-Summary and use Wildcard mask
  • Configure R3 <-> R4 with OSPF area 0 (Network PC3 and PC4 join OSPF) and use security
  • Configure R4 <-> R5 with default route
  • Make R3 as DR and R4 as DROTHER
  • Redistribute
Task 10
  • R4 <-> R5 use PAP CHAP (username and password)
  • R5 <-> ISP use NAT Overload
Task 11
  • Only PC4 allowed to access remote connection to all device
  • HRD, IT, and CS can access to the internet on work hour, permit all except that profesion
  • First 31 usable IP on 172.16.10.0 /24 allowed to access 172.16.30.0 /24, allow the remaining
Task 12
  • Ensure the network have been convergence and can access the internet



Tidak ada komentar:

Posting Komentar