Found 12 results

  1. Hi Mates, Does anyone recently pass CCIE Enterprise written exam? Please can you share experience. Thanks.
  3. hi friends, passed the lab on 7th. result was very fast. go result as soon as i reached hotel....! amazingly fast cisco...! tshoot- 1) vlan 12 was not allowed on the trunk link. so added the vlan 12 on sw2's trunk link to match the traceroute output. 2) ppp hostname issue. Rectified it to match with username on R12 3) passive interface default was configuerd in R21. you know it very well what to next to load balance the traffic for network. 4) R12 had a offset list configured. just denied the from the list and got the required output. 5) trace to was going to R4 and R6 both. the question demanded this traffic to go via R6. just manipulate the route-map on R6 or R4 and get the result. rest all the three trace was matching. 6) R25 was not advertising its IPv6 lan network. genera-prefix was configured on e0/0 of R25. found out the exact IPv6 add with "show ipv6 interface brief" and advertised it in bgp and got the trace. 7) added ESP traffic in the access-list on R19 and got eigrp UP over the tunnel. all the three spoke didn't had "ip nhrp shortcut". 8) R7/R8 was not origination default route and a bit of nat issue. R4/R6 had ospf up over lan network b/w R4/R6/R12. so added ospf cost on these links 9) R7 had crypto key pointing to address changed it to and it worked fine and ospf was up over the tunnel. NAT on R23 was perfectly fine. 10) NAS had the correct IP. checked everything and found R23 was missing "ip dns server". on most of the devices log was enabled. there were only few where it was disable. faced no trouble with this as i was able to find all the errors very smoothly. just practice practice practice and practice. this is the key diag- 1) port on SW3 connecting to host was in down/down state. immediately understood the thing. it's a port security issue. need to ask host for the correct mac address. 2) found midchain error on all the spokes. jumped to R15 config and found wrong redistribution. 3) it was an old question. just understood the packect flow of the scereo and got the result. ""packet drop due to ACL"" configured on R1's interface towards R2 in "in" direction. jumped to "show ip access-list" output and found a deny statement for the host1 which was not able to reach internet( had plenty of time left after diag. just watched the countdown clock to finised and relaxed myself. config- got the config with vrf. all the things remain the same. R20 was half configured with bgp. R2 and R3 had no bgp config preconfigured. had to do it from scratch. need to add weight on R20 neighbors to match the traceroute required in the question. above each section, they have written in bold letters to use the smartest way to configure the lab and shorten you typing. made full use of notepad...!!! had it with done in 2 hr...waoo....revised the lab twice...question by question and line by line...this is very important...i corrected few little stuffs in the second do...!!! All the best my friends for the lab...
  4. Any updates for the change in Lab 3 ? Please reply.. A lot of candidates are waiting in anticipation for the same..
  5. Got questions on how the lab works. I'm going for my first time soon. You will have access to regular windows apps or will it be cisco versions of all the apps (notepad, and calculator mainly). As you move from TS to Lab do you get to keep your clipboard contents or will your open documents close without saving? Is the terminal app Putty, Secure CRT, or windows terminal?
  6. Dear All, I have a question over here while practicing the CCIE Routing and Switching Lab. Which IOU provides the most comprehensive lab practice feature while preparing for the CCIE R&S lab. I am in process of preparation so in desperate need of that as GNS doesnt provide all the features of switching and some other topics also cannot be covered on that. Kindly share some link to download or the moderator can guide me to the relevant thread. Prompt replies would be appreciated. Thanks and Regards
  7. Guys this certification forum is very helpful in preparation of CCIE Security Lab; rahulkashyap, MrR0b0t, tonythetiger and others are doing fantastic job. And really there is no need to purchase expensive lab dumps. I missed my first Lab attempt this week and failed in config section mainly because I didn't practiced enough and rightly paced myself during lab. All the material in these forum posts are well enough to pass the exam. I wanted to share few takeaways from my last attempt with you guys, and will subsequently add further details in the post later. R1-SSH ------------ ( if you land on enable mode (>) then you will miss these 3 points, use following attributes on ISE authorization profile to land directly on Privilege mode (#). You should see # sign upon login, else will lose these marks) Cisco:cisco-av-pair=shell:priv-lvl=15 Radius:Service-Type=Administrative Radius:Idle-timeout = 172800 or Cisco:cisco-av-pair=priv-lvl=15 Radius:Service-Type=NAS-prompt-user Radius:Idle-timeout = 172800 Run 'show priv' without 'enable' .. if its privilege-level 15 then you are good ASA-virtual ---------------- (Virtual ASAs might have crypto keys, XML files and bookmarks already present, don't use them or else it will cost a lot of time troubleshooting, start afresh and issue following commands before configs) crypto key zeroize rsa noconfirm delete flash:/*.xml ASA-physical ------------------ (context CFG files might be present in disk0, this will load the config as soon as you issue config url disk0:/admin.cfg or c1.cfg; delete old config files beforehand using following commands) delete *.cfg SW2 - Physical Switch ------------------------------ (clear old CTS pac and environment datat) clear cts credentials clear cts pac all clear cts environment-data clear cts server NGIPS --------- Delete or ignore pre-configured access-control policy. make new access-control policy instead to make life easier Familiarize with the Lab environment ----------------------------------------------------- Practice on Mechanical Keyboard and with Dual Screens Learn short-cut keys to move window-tabs between screens Lab will be chilling cold - Take jackets to keep your self warm and some thing for hands too. Trust me my hands were freezing cold after 3 hours, and I couldn't type fast enough. Don't practice on SecureCRT tabs, during lab its Putty terminal with no tabs so better to get used to it. Practice on simple Notepad and Learn its shortcuts (specially Ctrl+H for quick replacements) Learn commands by heart and type them on notepad as mini config scripts and save the file; terminals response an be patchy, don't do larger chunks of config directly on CLI. Last tip ---------- Practice, Practice, and Practice.. try to master all CLI configs and do it in 90 minutes max in your practice sessions. Rest of the time you will gonna need for GUIs, PCs, troubleshooting. And never think 5 hours will be enough for Config part, save as much time as you can in Troubleshooting and Diagnostics and start making your notepad config scripts.
  8. Hi Guys, I have a few vouchers for CCIE LAB and written. Please let me know if you are interested. Thanks MOVED TOPIC Topic is moved to proper share section. Open topic in appropriate section with suitable prefix.
  9. Dear All, I found that more than one person from Egypt are preparing for the CCIE Voice Lab by the end of this year, which pushed me to post so we can make group to study, waiting for your reply...Thanks
  10. Hi all, I planning to start building CCIE R&S hypird lab. The only problem is, i don't know "specifically" the equipments that i should get for lab, and the softwares that i need. All what i know is that i need a server with minimal of 64GB of RAM and +300GB HDD, and 4 Cisco switches to practice Ethernet technologies(i don't really know the feature-set that i should acquire). I'm planning to get either Dell R610 or IBM x3650 M2. If there is better options that require extra cash, i'll pay. (I have 350$ budget for the server alone) Could please anyone points me to the right direction ??? Thanks.
  11. Ok so I wanted to share my practice lab, and how I set it up, for use with INE's Workbook. Here's the Videos I have about it on YouTube. - A video showing the Lab, and all the parts - Video showing how I set up GNS3 and my PC for communication to the physical switches. I hope this helps some people out, or maybe someone thinks my setup is cool.
  12. TS TICKET 1 Issue: Host (client) not receiving ip address. Host configured with manual MAC address, VLAN 12 not created in switch ( int vlan 12 down/down). Solution: Change the client identifier in DHCP server, create vlan 12 in Switch 2 TICKET 2 Issue: DHCP pool is not created R12, IPCP route default is not present in R17. Solution: create DHCP pool in R12 and IPCP route default in R17 serial interface configuration. TICKET 3 Issue: R5 is advertising with maximum metric, OSPF cost 1 is configured in R21 and some other cost is configured in R22. Solution: Remove max-metric router-lsa in R5, remove OSPF cost command in corresponding routers. TICKET 4 Issue: incorrect bandwidth configured on R12, incorrect delay is configured in interface of R13. Solution: Removed incorrect Bandwidth and delay. To achieve 1703 add metric weight 0 1 1 1 1 1 in all 4 eigrp routers TICKET 5 Issue: Traffic from R12 is not load shared between R4 & R6, maximum path command is missing in R12. Traffic destined to internet ( goes via R22 where it is supposed to go via R21. Solution: Add maximum path 2 command in R12. There is a preconfigured route-map in R21 & R22, use that to manipulate metric and local preference TICKET 6 Issue: Mobile site can’t able to ping destination. Here you are not allowed to make changes in R22, so should not alter IPV6 access-list in R22. In R25 next hop address is wrong Solution: In R25 Change next hop address as IPV6 address of serial interface of R25. TICKET 7 Issue: PC 111 can’t able to ping to Server (PC 102 ), spoke to spoke communication is not working, trace goes to R15 tunnel interface and drop there. Reason: R15 have configuration “Redistribute connected route-map DEFAULT” which only redistribute Default route into EIGRP. And due to split horizon hub is not advertising routes to its spokes. Solution: NHRP mapping is wrong in R17, correct it. Second issue can de shorted in two ways, either by changing route-map or by just disabling split horizon in tunnel interface ( go to second option, it is very easy and time saving) TICKET 8 Requirement: Traffic to internet must go through R7 and trace from remote site (PC 105 ) to remote site (106) should also go through R7. Issue: R7 and R8 does not originate default route in for neighbour R8 does not have route-map MED R3 not advertising network VRF import export is not properly configured. VRF forwarding is not present on R5’s E0/1 facing to R9. Solution: Give default originate in R7 & R8 for neighbour Create route map MED in R8 with higher metric and apply in R8 for neighbour “ neigh default-originate route-map MED” Advertise network in R3 R3 & R4 should import route targets exported by R5 & R6. Where R5 & R6 should import only route target exported by R3 R4 ( 65100:100) Configure VRF in R5’s interface. R5(conf)# int e0/1 R5(conf-if)# ip VRF forwarding BancoBank Make sure that you have pre configuration of R5’s E0/1 interface by providing # sh run int e0/1 TICKET 9 ISSUE: NAT statement is wrong (NAT outside). DMVPN mapping is wrong Solution: Correct NAT statement in R23.( ip nat inside source list 172 int se 4/0 overload ). Check for correct DMVPN mapping. If the DMVPN doesn’t come up. Just shutdown tunnel interface in both hub and spoke and give no shut at same tme. TICKET 10 Issue: ip domain lookup is disabled on R21. R23 e0/0 interface is configured with secondary ip address Solution: enable ip domain lookup in R21. Remove secondary ip address from R23 E0/0 in terface, so that NAS get proper IP address from DHCP server without any address conflicts. DIAGNO Switching – Wrong VTP password SW3, Check SW3 configuration output. Sw3 does not have any vlan,where VTP server SW1 have many Vlan. So select SW3, issue command # sh vtp status. Ask for VTP password. DMVPN – Midchain error. Check EIGRP configuration in R15, it contains redistribute connected route-map CONNECTED, which denies E0/0 of R15. So the issue exist with R16, go to R16 configuration and check interface configuration E0/0 of R16 have /29 subnet mask and in eigrp it redistribute connected routes. Sol : Click on R16. Increase the subnet length of R16 from /29 to /30 URPF This question is new and very confusing. uRPF loose mode is configured in R1, where uRPF strict mode is configured in R2. R1 can able to ping but not able to ping, Solution: Part 1, drag and drop 8 steps. I am not sure about this part. Part 2: traffic drop due to “uRPF strict mode- with load share per destination. LAB CONFIGURATIONSECTION Most of things are same as we practised. Read question carefully wordings will be different. In R16, R17, R 18, R19 instead of specifying VRF in question they stated all four routers must maintain separate BGP instance. Regarding IPV6 there is small change. In SW3 and SW4 loopbacks IPV6 general prefix is configured, we have to give specific prefix. I didn’t do this because loopbacks of SW3 and SW4 matters only in NTP session. In R12 and R14 there are two sub interfaces. E0/1.4 and E0/1.6 where IPV4 address is configured in E0/0.4 and IPV6 address is configured on E0/0.6. Rest everything is same. Save your congigurtion often and in beginning of exam give these following command for backup purpose
