ccna 3 skill testpt.docx

Upload: reem-alkadasi

Post on 04-Jun-2018

236 views

Category:

Documents


0 download

TRANSCRIPT

  • 8/13/2019 CCNA 3 Skill testpt.docx

    1/17

    ,

    ,

    CCNA 3 Skill test (SBA PT Practice) 2013

  • 8/13/2019 CCNA 3 Skill testpt.docx

    2/17

    ESwitching Basic Switching/Wireless PT Practice SBA

    A few things to keep in mind while completing this activity:

    Do not use the browser Back button or close or reload any exam windows during the exam.

    Do not close Packet Tracer when you are done. It will close automatically.

    Click the Submit Assessment button to submit your work.

    Introduction

    In this practice Packet Tracer Skills Exam, you will:

    configure VLANs using VTP

    http://www.blogger.com/nullhttp://www.blogger.com/nullhttp://c/Users/faiz2/Desktop/Amar%20Blog-By%20Shuvhashis%20%20CCNA%203%20Skill%20test%20(SBA%20PT%20Practice)%202013_files/sba-2.jpghttp://www.blogger.com/nullhttp://www.blogger.com/null
  • 8/13/2019 CCNA 3 Skill testpt.docx

    3/17

    configure inter-VLAN routing

    modify STP

    configure port security

    add a wireless LAN

    Addressing Table

    Device Interface Address Subnet Mask Default Gateway

    Router1

    Fa0/0.10 172.16.10.1 255.255.255.0 n/a

    Fa0/0.20 172.16.20.1 255.255.255.0 n/a

    Fa0/0.43 172.16.43.1 255.255.255.0 n/a

    Fa0/0.67 172.16.67.1 255.255.255.0 n/a

    WRS

    Internet 172.16.67.10 255.255.255.0 172.16.67.1

    Wireless 172.16.100.1 255.255.255.0 n/a

    SW_DS1 VLAN 43 172.16.43.11 255.255.255.0 172.16.43.1

    SW_AC2 VLAN 43 172.16.43.12 255.255.255.0 172.16.43.1

    SW_AC3 VLAN 43 172.16.43.13 255.255.255.0 172.16.43.1

    PC1 NIC 172.16.10.10 255.255.255.0 172.16.10.1

    PC2 NIC 172.16.20.10 255.255.255.0 172.16.20.1

    PC3 NIC 172.16.10.11 255.255.255.0 172.16.10.1

    PC4 NIC DHCP assigned 255.255.255.0 172.16.100.1

    Note: The password for user EXEC mode is cisco. The password for privileged EXEC mode is class.

    Step 1: Configure the Switches for Remote Access.

    Create, enable, and address VLAN43 as the management interface on all three switches. Use the values

    found in the addressing table.

    Step 2: Configure Trunking.

    Note: Packet Tracer now supports the use of the range argument for the interface command.

    http://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/null
  • 8/13/2019 CCNA 3 Skill testpt.docx

    4/17

    For interfaces FastEthernet 0/19 through FastEthernet 0/24 on all three switches:

    Configure static trunking.

    Assign VLAN 43 as the native VLAN.

    Step 3: Configure VTP and VLANs.

    a. Configure SW_DS1 as VTP server and the following VTP parameters:

    SW_DS1 is the VTP server.

    VTP domain name: CCNA

    VTP password: cisco

    b. Create and name the following VLANs on SW_DS1.

    VLAN 10: Student

    VLAN 20: Faculty

    VLAN 43: Management

    VLAN 67: Wireless

    c. Configure SW_AC2 and SW_AC3 as VTP clients to participate in the CCNA VTP domain.

    d. Verify that VTP is operational.

    Step 4: Configure Interfaces for VLAN Access

    VLAN port assignments on each switch are as follows:

    Device Ports Assignment

    SW_AC2, SW_AC3 Fa0/10/10 10

    SW_AC2, SW_AC3 Fa0/110/17 20

    SW_AC3 Fa0/18 67

    a. Configure access ports on access layer switches.

    Configure the appropriate interfaces on SW_AC2 and SW_AC3 for access mode.

    Assign VLANs according to the port assignments table.

    b. Verify trunking and VLAN assignments.

    http://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/null
  • 8/13/2019 CCNA 3 Skill testpt.docx

    5/17

    Step 5: Configure Spanning Tree.

    a. Modify STP root bridge elections.

    Using a priority of 4096, set SW_DS1 as the root bridge for all VLANs.

    Using a priority of 8192, set SW_AC2 so that it will become the root for all VLANs if SW_DS1 fails.

    b. Verify the spanning tree election.

    Step 6: Configure Inter-VLAN Routing.

    Use the information in the Addressing Table to configure Router1 for inter-VLAN routing. Be sure to

    designate the native VLAN.

    Verify inter-VLAN routing.

    Step 7: Configure Port Security.

    Note: Best practice requires port security on all access ports. However, for this practice exercise you will

    only configure one port with security.

    a. Configure SW_AC3 with port security on FastEthernet 0/2.

    Enable port security.

    No more than two MAC addresses are allowed on the FastEthernet 0/2 port for SW_AC3.

    Once learned, MAC addresses should be automatically added to the running configuration.

    If this policy is violated, the port should be automatically disabled.

    b. Verify that port security is implemented.

    Step 8: Configure the Wireless LAN.

    Refer to the Addressing Table to configure the wireless LAN.

    a. Configure WRS.

    Use static addressing on the Internet interface.

    Set the router IP and subnet mask.

    Use the DHCP Server Settings to configure the router to provide wireless hosts with an IP address.

    The starting IP address in the wireless LAN subnet is 172.16.100.10.

    The maximum number of users is 25.

    http://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/null
  • 8/13/2019 CCNA 3 Skill testpt.docx

    6/17

    b. Configure wireless security.

    Set the SSID to WRS_LAN.

    Enable WEP security and use 12345ABCDE as key1.

    c. Use cisco123 as the remote management password.

    d. Configure PC4 to access the wireless network that is provided by WRS. PC4 uses DHCP to obtain

    addressing information.

    Note: It will not be possible for devices to ping PC4 since PC4 is behind the WRS NAT firewall.

    Step 9: Verify Connectivity.

    Although these are not scored, the following connectivity tests should be successful.

    SW_DS1 can ping Router1.

    SW_AC2 can ping Router1.

    SW_AC3 can ping Router1.

    PC1 can ping PC2.

    PC2 can ping PC3.

    PC4 can ping PC1.

    Answer:

    Step 1: Configure the Switches for Remote Access.

    ***************************************************

    SW_DS1(config)#

    ---------------

    vlan 43

    Name Management

    exit

    interface vlan 43

    ip add 172.16.43.11 255.255.255.0

    no shutdown

    exit

    ip default-gateway 172.16.43.1

    http://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/null
  • 8/13/2019 CCNA 3 Skill testpt.docx

    7/17

    SW_AC2 (config)#

    ---------------

    vlan 43

    Name Management

    exit

    interface vlan 43

    ip add 172.16.43.12 255.255.255.0

    no shutdown

    exit

    ip default-gateway 172.16.43.1

    SW_AC3(config)#

    ---------------

    vlan 43

    Name Management

    exit

    interface vlan 43

    ip add 172.16.43.13 255.255.255.0

    no shutdown

    exit

    ip default-gateway 172.16.43.1

    Step 2: Configure Trunking.

    ******************************************************For switch SW_DS1 & SW_AC2 & SW_AC3

    --------------------

    int range fast 0/19 - fa0/24

    no shut

    switchport mode trunk

    switchport trunk native vlan 43

    exit

    Step 3: Configure VTP and VLANs.

    *******************************************************

    For switch SW_DS1

    -----------------------

    VTP mode server

    VTP domain CCNA

    VTP Password cisco

    http://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/null
  • 8/13/2019 CCNA 3 Skill testpt.docx

    8/17

    Vlan 10

    Name Student

    VLAN 20

    Name Faculty

    VLAN 43

    Name Management

    VLAN 67

    Name Wireless

    For switch SW_AC2 & SW_AC3

    ----------------------

    VTP mode client

    VTP domain CCNA

    VTP Password cisco

    do Show VTP Status

    do Show Vlan Brief

    ****************************************************

    Step 4: Configure Interfaces for VLAN Access

    --------------------------------------------

    FOR SW_AC2 & SW_AC3

    -------------

    SW_AC2(config)#--------------

    interface range fastEthernet 0/1 - fa0/17

    switchport mode trunk

    no shutdown

    exit

    interface range fastEthernet 0/1 - fa0/10

    switchport mode access

    switchport access vlan 10

    no shutdownexit

    interface range fastEthernet 0/11 - fa0/17

    switchport mode access

    switchport access vlan 20

    no shutdown

    http://www.blogger.com/nullhttp://www.blogger.com/null
  • 8/13/2019 CCNA 3 Skill testpt.docx

    9/17

    exit

    SW_AC3(config)#

    ------------------

    interface range fastEthernet 0/1 - fa0/17

    switchport mode trunk

    no shutdown

    exit

    interface range fastEthernet 0/1 - fa0/10

    switchport mode access

    switchport access vlan 10

    no shutdown

    exit

    interface range fastEthernet 0/11 - fa0/17

    switchport mode access

    switchport access vlan 20

    no shutdown

    exit

    interface fastEthernet 0/18

    switchport mode access

    switchport access vlan 67

    no shutdown

    exit

    *************************************************************

    Step 5: Configure Spanning Tree.

    -------------------------------

    FOR S1:

    ----------

    spanning-tree vlan 10,20,43,67 priority 4096

    FOR S2:----------

    spanning-tree vlan 10,20,43,67 priority 8192

    **************************************************************

    Step 6: Configure Inter-VLAN Routing.(Router)

    http://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/null
  • 8/13/2019 CCNA 3 Skill testpt.docx

    10/17

    --------------------------------------

    interface fastEthernet 0/0

    no shutdown

    exit

    interface fastEthernet 0/0.10

    encapsulation dot1Q 10

    ip address 172.16.10.1 255.255.255.0

    exit

    interface fastEthernet 0/0.20

    encapsulation dot1Q 20

    ip address 172.16.20.1 255.255.255.0

    exit

    interface fastEthernet 0/0.43

    encapsulation dot1Q 43 native

    ip address 172.16.43.1 255.255.255.0

    exit

    interface fastEthernet 0/0.67

    encapsulation dot1Q 67

    ip address 172.16.67.1 255.255.255.0

    exit

    ***********************************************************************

    Step 7: Configure Port Security.

    --------------------------------

    a.Configure SW_AC3 with port security on FastEthernet 0/2.

    SW_AC3(config)#

    ----------------

    int fastEthernet 0/2

    switchport mode accessswitchport port-security

    switchport port-security maximum 2

    switchport port-security mac-address sticky

    switchport port-security violation shutdown

    exit

    Step 8: Configure the Wireless LAN.

    http://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/nullhttp://www.blogger.com/null
  • 8/13/2019 CCNA 3 Skill testpt.docx

    11/17

    a. Configure WRS.

    http://c/Users/faiz2/Desktop/Amar%20Blog-By%20Shuvhashis%20%20CCNA%203%20Skill%20test%20(SBA%20PT%20Practice)%202013_files/01-06-2013_000603.jpg
  • 8/13/2019 CCNA 3 Skill testpt.docx

    12/17

    http://c/Users/faiz2/Desktop/Amar%20Blog-By%20Shuvhashis%20%20CCNA%203%20Skill%20test%20(SBA%20PT%20Practice)%202013_files/01-06-2013_000622.jpg
  • 8/13/2019 CCNA 3 Skill testpt.docx

    13/17

    http://c/Users/faiz2/Desktop/Amar%20Blog-By%20Shuvhashis%20%20CCNA%203%20Skill%20test%20(SBA%20PT%20Practice)%202013_files/01-06-2013_000706.jpg
  • 8/13/2019 CCNA 3 Skill testpt.docx

    14/17

    Hope this would be helpfull for You.

    Step 2: Configure the Device Basics.a.

    Configure the following on SW_AC2.

    y

    The switch name is

    http://c/Users/faiz2/Desktop/Amar%20Blog-By%20Shuvhashis%20%20CCNA%203%20Skill%20test%20(SBA%20PT%20Practice)%202013_files/01-06-2013_000722.jpg
  • 8/13/2019 CCNA 3 Skill testpt.docx

    15/17

    SW_

    AC2

    .Switch>enableSwitch#configure terminalEnter configuration commands, one per

    line. End with CNTL/Z.Switch(config)#hostname SW_AC2SW_AC2(config)#

    y

    The privileged EXEC mode uses the following encrypted password:class

    SW_AC2(config)#enable password class

    y

    Enable Telnet and console line login using the following password:

    cisco

    SW_AC2(config)#line vty 0SW_AC2(config-line)#passwordciscoSW_AC2(config-line)#exitSW_AC2(config)#line console 0SW_AC2(config-line)#login% Login disabled on line 0, until 'password' is set

  • 8/13/2019 CCNA 3 Skill testpt.docx

    16/17

    "">

    SW_AC2(config-line)#password ciscoSW_AC2(config-line)#exit

    y

    Configure the banner message-of-the-day asA

    uthorized access only!SW_AC2(config)#banner motd #Enter TEXT message. End with the character

    '#'. Authorized access only!#SW_AC2(config)#b.

    To configure the switches for remote management access, create and enableinterface VLAN 43 on all threeswitches.SW_DS1(config)#interface vlan

    43SW_DS1(config-if)#ip address 172.16.43.11 255.255.255.0SW_DS1(config-

    if)#no shutdownSW_DS1(config-if)#exitSW_DS1(config)#ip default-gateway172.16.43.1SW_AC2(config)#interface vlan 43SW_AC2(config-if)#ip address172.16.43.12 255.255.255.0SW_AC2(config-if)#no shutdownSW_AC2(config-

    if)#exitSW_AC2(config)#ip default-gateway

    172.16.43.1SW_AC3(config)#interface vlan 43SW_AC3(config-if)#ip address172.16.43.13 255.255.255.0SW_AC3(config-if)#no shutdownSW_AC3(config-

    if)#exitSW_AC3(config)#ip default-gateway 172.16.43.1SW_AC3(config)#

    Step 3: Configure Trunking.Note:

    Packet Tracer now supports the use of the

    rangeargument for the

    interfacecommand.For interfaces FastEthernet 0/19 through FastEthernet 0/24 on all three

    switches:

    y

    Configure static trunking.y

    Assign VLAN 43 as the native VLAN.SW_DS1(config)#interface range

    fastEthernet 0/19-24SW_DS1(config-if-range)#switchport modetrunkSW_DS1(config-if-range)#switchport trunk native vlan 43SW_DS1(config-

    if-range)#no shutdownSW_DS1(config-if-range)#endSW_AC2(config)#interface

    range fastEthernet 0/19-24SW_AC2(config-if-range)#switchport modetrunkSW_AC2(config-if-range)#switchport trunk native vlan 43SW_AC2(config-

    if-range)#no shutdown

  • 8/13/2019 CCNA 3 Skill testpt.docx

    17/17