Jump to content

balnazar33

Members
  • Content Count

    34
  • Joined

  • Last visited

Community Reputation

2 Neutral

About balnazar33

  • Rank
    Member
  1. Thanks for the info. Can you please give some feedback if TS1 and Diag 1 were same as in the WB? I am interested also to know if DIAG 1 had 2 or 3 main questions?
  2. SECTION 1: - etherchannel LACP ( SW3 and SW4 as active and other as passive ) port-channel are already created. Did you configure the "channel-protocol LACP" here? (or was it preconfigured). SECTION 2: Possible issue that you explained: Also for the R18 and R57 issue that you had. Did you configured AGG on R55/56 so that DC receives 172.18.0.0/16 from the CORE and the specific route from R18. This is very important for the lab. If you did that correctly DC1 will pick the backdoor as there is not other way. Also I am thinking that you did not use BGP Weight on R55/56 to overcome RC correct ? What configuration did you use for the RT export/import for SECTION 3: If you used the C4C solution you probably also failed there. Spoto one is more correct.
  3. Thanks for the info. It was very helpful! Did you get only 2 tickets for the DIAG H1+? Usually they are 3 there.
  4. C4C has 1.8.2 (1.1.2019) for H3 and it should be fine for the exam with little modifications. I will try to find 1.9 for H3 from SPOTO.
  5. Hi Team, Just a quick questions for anyone bought SPOTO dumps. Is there a later variations for H3 1.7 that SPOTO provides if you give them 1000+ US dollars ? What we have in the Forum is from June 2018 from SPOTO and a VM from C4C from 2019 (for H3)? Same questions for LAB1 and 2?
  6. In the exam it was clearly mentioned to depend on the default route. I haven't seen other feedback no to so I doubt that you will see scenario in the real lab to want to enabled ipv4 multicast.
  7. It look like you still have not appear on the exam. On the exam VTP was off (vtp mode off) everywhere (not transparent). Also Multicast questions is impossible to solve (at least I cannot think of a way this to be possible and I have plenty of experience with multicast) as the request is invalid: Cisco request: @ Q 2.10 When I issued "show ip ospf int bri", I found out SW100's lo1 was missed. SW100# show ip pim rp map Group: 239.250.0.0/16 RP: 10.250.250.250 (DC1-RP) MA: 10.250.250.250 (?) >>> I think it is a typo because it can be impossible. @ Q 2.11 R31# show ip pim rp map Group: 239.130.0.0/16 RP: 10.3.250.250 (HQ-RP) MA: 10.3.250.250 (HQ-RP) Group: 239.250.0.0/16 RP: 10.250.250.250 (DC1-RP) MA: 10.3.250.250 (HQ-RP) R13# show ip pim rp Group: 239.250.0.0/16 RP: 10.250.250.250 (DC1-RP) MA: 10.1.113.2 (?)
  8. This is what i did on the real exam: R14: ---- ip prefix-list AS65005 seq 5 permit 10.5.0.0/16 route-map AS65005 permit 10 match ip address prefix-list AS65005 set local-preference 90 route-map AS65005 permit 20 router bgp 65001 neighbor 10.1.13.13 route-map AS65005 out
  9. I got TS2BT2 / DIAG H2 / Config H3. Tshoot and DIAG was the same as the WB. H3 questions were also the same, but I failed the LAB and I have no idea why even I matched all outputs correctly. I had some strange issue with USER 4 randomly stopped pinging 8.8.8.8 for 1min and then working fine for 1hour... Also MCAST questions is wrong. Nothing new but I failed. Failed on L2 and L3 sections. My lab was exactly same as below feedback on 100%: < LAB3 > @ Q 1.1 - no spanning-tree mst simulate pvst global @ Q 1.2 - SW300 eth2/0-1 po1 ~~ SW310 eth2/0-1 po1 - SW301 eth2/0-1 po2 ~~ SW310 eth2/2-3 po2 - SW4xx, SW5xx were similar - SW310, SW410, SW510 eth2/0-3 : shutdown @ Q 2.5 - In DC#1 AS 65001, some routers were strange. - R10, R11, R14, R15 maybe. ex.) R10 R10(config-router)#do show run | sec router bgp router bgp 65001 bgp router-id 10.1.10.10 bgp log-neighbor-changes neighbor 10.1.13.13 remote-as 65001 neighbor 10.1.13.13 password cisco neighbor 10.1.13.13 update-source Loopback0 neighbor 10.1.13.13 next-hop-self R10(config-router)#neighbor 10.1.13.13 additional-paths receive >>> config R10(config-router)#! R10(config-router)#do show run | sec router bgp router bgp 65001 bgp router-id 10.1.10.10 bgp log-neighbor-changes neighbor 10.1.13.13 remote-as 65001 neighbor 10.1.13.13 password cisco neighbor 10.1.13.13 update-source Loopback0 neighbor 10.1.13.13 next-hop-self >>> I can't see "additional-paths receive" statement. R10(config-router)#address-family ipv4 R10(config-router)#! R10(config-router-af)#do show run | sec router bgp router bgp 65001 bgp router-id 10.1.10.10 bgp log-neighbor-changes neighbor 10.1.13.13 remote-as 65001 neighbor 10.1.13.13 password cisco neighbor 10.1.13.13 update-source Loopback0 ! address-family ipv4 neighbor 10.1.13.13 activate neighbor 10.1.13.13 next-hop-self neighbor 10.1.13.13 additional-paths receive >>> after issuing "address-family ipv4", I can see it. exit-address-family @ Q 2.6 Almost eBGP neighbor was already established. @ Q 2.7 - R15 was not included in DC Gateway devices. ... Configure the Datacenter's Gateways R10, R11, R14, R20 and R21 as per.... @ Q2.8 : Almost same, in traceroute result some ip address are uncertain, some ip address are obvios. User4# traceroute 8.8.8.8 1 10.4.100.252 2 10.4.13.1 3 101.41.0.1 4 101.11.0.2 >>> DC#1 5 10.1.1x2 6 10.1.2x.2 7 10.1.114.1 >>> R14 8 200.99.14.1 < R15 > int lo 0 ip ospf cost 10 @ Q 2.10 When I issued "show ip ospf int bri", I found out SW100's lo1 was missed. SW100# show ip pim rp map Group: 239.250.0.0/16 RP: 10.250.250.250 (DC1-RP) MA: 10.250.250.250 (?) >>> I think it is a typo because it can be impossible. @ Q 2.11 R31# show ip pim rp map Group: 239.130.0.0/16 RP: 10.3.250.250 (HQ-RP) MA: 10.3.250.250 (HQ-RP) Group: 239.250.0.0/16 RP: 10.250.250.250 (DC1-RP) MA: 10.3.250.250 (HQ-RP) R13# show ip pim rp Group: 239.250.0.0/16 RP: 10.250.250.250 (DC1-RP) MA: 10.1.113.2 (?) @ Q 3.2 Some DMVPN router has a authentication config. - ip nhrp authentication HKCorp - I added that configuration to other DMVPN routers. - In configuration with kerying, there was no pre-shared-key. - crypto keyring DMVPN vrf LOCALSP (pre-shared-key address 0.0.0.0 0.0.0.0 key CCIE) >>> I added it. < R14 > ip prefix-list Site seq 5 deny 10.0.0.0/16 ip prefix-list Site seq 10 permit 10.0.0.0/13 ge 16 le 16 ip prefix-list Site seq 15 permit 0.0.0.0/0 ip prefix-list DMVPN seq 5 permit 10.5.0.0/16 ip prefix-list DMVPN seq 10 permit 10.6.0.0/16 route-map DMVPN permit 10 match ip address prefix-list DMVPN set weight 40000 route-map DMVPN permit 20 set local-preference 90 router bgp 65001 bgp listen range 10.100.0.0/24 peer-group DMVPN neighbor DMVPN peer-group neighbor DMVPN remote-as 65100 neighbor DMVPN prefix-list Site out neighbor DMVPN route-map DMVPN in @ Q 3.4 LAN Host is 10.7.0.0/24, not 10.7.0.0/16. ... when any LAN host (10.7.0.0/24) attempts to communicate ... * R24 pre-config * // I cannot remember the exact ip address. interface Loopback123 ip address 123.45.67.33 255.255.255.240 route-map nat-acl permit 10 match ip address nat-acl ip access-list extended nat-acl deny ip 10.0.0.0 0.255.255.255 10.7.0.0 0.0.255.255 permit ip 10.0.0.0 0.255.255.255 any ip nat pool nat-pool 123.45.67.33 123.45.67.46 netmask 255.255.255.240 ip nat inside source route-map nat-acl pool nat-pool overload
  10. Hi Rein, Was the MCAST request as the below one? : Q 2.11 R31# show ip pim rp map Group: 239.130.0.0/16 RP: 10.3.250.250 (HQ-RP) MA: 10.3.250.250 (HQ-RP) Group: 239.250.0.0/16 RP: 10.250.250.250 (DC1-RP) MA: 10.3.250.250 (HQ-RP) R13# show ip pim rp Group: 239.250.0.0/16 RP: 10.250.250.250 (DC1-RP) MA: 10.1.113.2 (?) I would be very thankful if you can share the H3 solution in notepad or word as I appeared on the lab before some time and I failed the H3 even all the outputs were matched and I I followed the same materials you mentioned. Can you please share the H3 solution or at least the MCAST?
  11. My exam is booked for the next week and I am interested to understand if someone appeared recently as there is not much recent feedback's in the forum.. Thanks!
  12. You are supposed to redistribute from BGP to OSPF on 15/16 with higher metric than the one on r18 / or with E2 vs E1 in DC OSPF and all will be fine.
  13. balnazar33

    H3 s.5.1 snmp

    Both work. Read how EEM script is working an you will understand why.
  14. balnazar33

    H3 s.5.1 snmp

    Yep you will need EEM as after reboot the version is "1" again for the group "show snmp group" (this is also happening on the real exam as per feedback, but you can reboot the SW200 on the exam and if the version is not v1 you can leave the EEM aside: Full Config: access-list 1 permit 10.1.0.0 0.0.255.255 snmp-server view NMS iso included snmp-server view NMS dot1dBridge excluded snmp-server community ccie view NMS RO 1 no snmp-server group ccie v1 event manager applet SNMP event syslog pattern "%SYS-5-RESTART" action 1 cli command "en" action 2 cli command "conf t" action 3 cli command "no snmp-server group ccie v1" action 4 cli command "end" action 5 cli command "wr"
×
×
  • Create New...