MY LAB
click the image to enlarge
- Basic config on all devices
- Permit SSH for remote connection
- Configure this on all switch
- PC 1 member of VLAN 30, PC 2 member of VLAN 10, Wireless Router member of VLAN 20
- Set PC1 and PC2 statically, and DNS 8.8.8.8
- Make SW1 as VTP Client, SW2 as VTP Server, and SW3 as VTP Transparent
- Run VTP version 2 with password (domain name and password)
Task 3
- Make SW2 as Root Bridge for VLAN 10 and 20
- Make SW3 as Root Bridge for VLAN 30,40, and 99
- Enable Rapid-PVST+
- Enable Portfast, BPDU Guard, and Root Guard
Task 4
- Enable Port Security
- Set Maximum MAC address = 1
- Set violation = shutdown
- Set sticky when switch learn the mac address
Task 5
- VLAN 10 and 20 traffics on SW2 to R1 path
- VLAN 30,40, and 99 traffics on SW3 to R1 path
- Inter VLAN routing on R1
Task 6
- Set SSID Wireless router to CCNA
- Using WPA2 as security (password)
- Using channel 6
- Set administrative password to 12345
- Client Range IP 192.168.100.100 - 192.168.100.150
Task 7
- Configure Frame relay using point-to-point sub-interface with criteria :
Task 8
- R3 <-> R4 use 172.30.0.12 /30
- R4 <-> R5 use 172.30.0.16 /30
- R5 to ISP use 10.31.4.244 /24 and gateway 10.31.4.1
- PC1, PC3, and PC4 get IP dynamically from R4
- PC1 get IP from VLAN 30
- PC3 get IP from 172.20.10.0 /24
- PC4 get IP from 172.20.20.0 /24
- Set DNS dynamically 8.8.8.8
- Set lease time 3 hours
- Don't lease first 10 IP on every subnet
Task 9
- Configure R1 <-> R2 <-> R3 with EIGRP 999 and use security
- Disable Auto-Summary and use Wildcard mask
- Configure R3 <-> R4 with OSPF area 0 (Network PC3 and PC4 join OSPF) and use security
- Configure R4 <-> R5 with default route
- Make R3 as DR and R4 as DROTHER
- Redistribute
Task 10
- R4 <-> R5 use PAP CHAP (username and password)
- R5 <-> ISP use NAT Overload
Task 11
- Only PC4 allowed to access remote connection to all device
- HRD, IT, and CS can access to the internet on work hour, permit all except that profesion
- First 31 usable IP on 172.16.10.0 /24 allowed to access 172.16.30.0 /24, allow the remaining
Task 12
- Ensure the network have been convergence and can access the internet
Tidak ada komentar:
Posting Komentar