Found 91 results

  1. Videos for TS3.. we dont have more feedback about breaks now but this breaks are best in my knowledge. as cisco is changing breaks you have to foucs on everthing. video is not well recorded as for me too it was a real troubleshooting section was doing it first time. stay tuned will come up with TS2/3+/3++ video and workbook by the end of week. [hide][Hidden Content]]
  2. Can I get clarification on what is actually the old section of the exam? I realize new is Config is A5/H2 and the Tshoot is B12. However I have seen notes on the forum that the old config is just the same lab with different faults. Has the old "A1-A4/H0-H1+" been aged out? What Workbooks correspond to the Old Versions? *** workbook? Is the topology with San Jose/NY/Sydney etc no longer in rotation? I have browsed the forums and searched everything I can find but cannot come up with a clear answer. Thanks ahead of time.
  3. Hi Anyone have SPOTO TS updated IOU and solution
  4. Hello gentlemen/women, I am having serious problems with my LAB and TS. I am suspecting this could be because i'm running labs imported from IOU in UNETLAB. In my lab I usually don't get the right ping/trace results even after following the materials on here. The most recent example is the NEW SPOTO TS, I don't see any IP addresses on all the DHCP interfaces. I'm unable move past first ticket as there is no dhcp assigned IP address on User and as such can't ping R40's loopback. Is there something i'm doing wrong ? Please hep!!!!!!!!!
  5. Hi guys, Still trying to find the topologies for TS, DIAG, CFG and found them but without initial configs. Could tell me please, is it possible to get initial configs? I saw some posts and links where says its with initial configs but after uploading to UNL there is nothing overthere. May be I do something wrong? Please, advice or share any useful link for that. Good luck for getting numbers to everyone!
  6. Hi All, Is there any document for the order of operation for DMVPN with IPSEC like this document? Inside-to-Outside Outside-to-Inside If IPSec then check input access list decryption – for CET (Cisco Encryption Technology) or IPSec check input access list check input rate limits input accounting policy routing routing redirect to web cache NAT inside to outside (local to global translation) crypto (check map and mark for encryption) check output access list inspect (Context-based Access Control (CBAC)) TCP intercept encryption Queueing If IPSec then check input access list decryption – for CET or IPSec check input access list check input rate limits input accounting NAT outside to inside (global to local translation) policy routing routing redirect to web cache crypto (check map and mark for encryption) check output access list inspect CBAC TCP intercept encryption Queueing
  7. Question: Ping from R3 R3# ping Elaborate your solution step by step. NETMAP ----------- 1:0/0 2:0/0 2:0/1 3:0/1 R1 ---- hostname R1 interface Loopback0 ip address interface Loopback1 ip address secondary ip address secondary ip address interface Ethernet0/0 ip address router ospf 1 network area 0 network area 0 router bgp 13 bgp log-neighbor-changes network network network neighbor remote-as 13 neighbor update-source Loopback0 R2 --- hostname R2 interface Ethernet0/0 ip address no shut interface Ethernet0/1 ip address no shut router ospf 1 network area 0 network area 0 R3 --- interface Loopback0 ip address interface Ethernet0/1 ip address no shut router ospf 1 network area 0 network area 0 router bgp 13 bgp log-neighbor-changes neighbor remote-as 13 neighbor update-source Loopback0
  8. Hi guys, B1-B5 still coming in lab or B6-B10 and Alinux1-6 are enough for preparation?
  9. 24 August 2016 in BeiJing, TS2 has New fault of 70% . 25 August 2016 in Chengdu, TS2 has New fault of 70% . New TS topology=TS2 topology,just has new fault ! 70% new fault !
  10. Hello, guys. Regarding New TS Ticket 10 (Telnet from NAS to Server2, NAT ticket). Previously I wrote in my feedback that in order to match the required ouput, R25 should translate outside source to its local loopback. After numerous requests, I prepared a lab to demonstrate the concept. You can find it attached to post. Here are the details on NAT translations: When NAS (192.168.1.xxx) is telnetting to Server2 (Real IP is, but the ticket requires to telnet to R25's WAN IP) it is going to 10.99.25.xxx (R25's WAN IP), so passing through R70 it is NATted (192.168.1.xxx -> 10.99.25.xxx). After arriving at R25 telnet packet is first NATted via "nat inside" translation (destination 10.99.25.xxx ->, then via "nat outside" translation (source 10.99.70.xxx -> 10.70.25.xxx). Issue, that Minh Khoi pointed out for me, is that in this case R25 will drop the returning traffic. Here are the details of traffic path and NAT translations. (telnet SYN Packet) NAS -> R70 IP.src =, IP.dst = R70 -> ISP2 -> R25 IP.src =, IP.dst = R25 -> SW210 -> Server2 IP.src =, IP.dst = (telnet SYN ACK Packet) Server2 -> SW210 -> R25 IP.src =, IP.dst = R25 -> drop The reason for this is that when going from inside –> outside, routing is always done FIRST, followed by NAT. And because R25 has directly connected loopback with IP, it decides that SYN ACK packet is destined for R25 itself and resets the connection. As I stated in my feedback, I managed to solve the ticket (match the required output) by adding "ip nat outside source" command. So there are two possibilities: If R25 does not have a loopback with IP, then the concept stated above is true. In the attached lab file, you can check this. Maybe, I was wrong and there were no loopbacks on R25 other than L0, and I misled you all because I thought that all this will work only in case R25 has such loopback configured. If R25 does have a loopback with IP, there were other config lines that make such concept possible, but unfortunately I could not find a way to make it work. If anyone would be able to find a solution in this case, please share here your opinion. [Hidden Content]
  11. Hello all, I share an IOU export for training the TS. This work has been done by one of our friends (like Guru said ) The only thing I can say is "that's a really good work for training TSv5". Topology + Workbook included [hide][Hidden Content]] The password is "Kn0wYoUr3n3mY". Have fun ! Thank you ! Gerard111
  12. Hi All Finally I pass CCIE RS v5 yesterday, I'd like to thank to CC forum . From this Forum I can get some resource and a lot of tips and trick to study CCIE here is what I can remember from my exam yesterday TS; 1. Vlan 12 is not allowed on the Trunk 2. Wrong ppp hostname 3. passive interface 4. offset list with wrong acl. and wrong metric eigrp 5. modify the route map with correct metric 6. advertise the wrong network of IPv6 7. wrong DMVPN config, correct some nhrp map, and correct acl on the R19, permit esp 8. a lot correction: ip nat missing in R8, default originate R7, R8, enable mpls on R4 and R6, Correct Ospf config on R7. don't forget to try the back up scenario 9. wrong crypto address and missing the mode of transform set 10. enable ip domain lookup, ip dns DIAG in here you have to manage the time very carefully, because it is only 30 minutes. You will not have enough time to read all the question, email, config, design, log. especially for Question no 3 which take more time. 1. VTP problem : vtp password 2. DMVPN miss config on R16, wrong subnet 3. uRPF: - R1 : loose config to both R2 and R3 - R2 & R3 : Strict uRPF to R1 Q1 : Drag and Drop : not really sure my answer is correct or not Q2 : reason of the problem : I choose strict uRPF Config - MST - DMVPN with VRF - NTP with authentication Good luck for everyone pursuing CCIE Thx BR
  13. Hello Guys, I was making the old TS yesterday and i have some doubts with the ACL. For what I know, in the lab you should avoid the permit any any in the ACL, you're supposed to solve like an "expert". If you have the ACL that is causing the problem in the path that it takes, deny ip, can i solve it just with a permit any any? Can I put just a permit up ? I mean, it is almost the same, but i have some doubts about it. I appreciate your help on this guys.
  14. jchuna

    No New feedback

    Guys I don't see any feedback on troubleshooting tickets for long time... What happened why passed or failed students are not posting their troubleshooting ticket experience like before???
  15. Hello Everyone, Soon going to appear in for R&S lab exam, need small help related to DHCP snooping in very first TS question. One of TS exercises I found this problem where SW1 connected to SERVER1 is configured with command "ip dhcp snooping vlan 200" due to which SERVER1 is not getting the IP I tried adding ip dhcp snooping trust command on the interface facing R7 and R8 on SW1 but no joy. Also tried number of options by studying about dhcp snooping. I am only able to solve this question by removing the command "ip dhcp snooping vlan 200" from SW1. I don't know if this is the right approach. Please help..
  16. Hi All, While browsing for new dumps, my friend go this new diag in one of the chine forums. It looks like the new diag, but not sure. just attaching it for our benefit to review in this gr8 forum. Updated TS along with this BV new diag-may be.pdf New TS with qus & ans.pdf
  17. glasgow

    Cisco IOU

    Cisco IOU is great. But, how to make use of it? I tried many guides like [Hidden Content] Some recommend -Asasel IOU- Still I cannot get Putty telnet to IOU via VMWare. When googled to seek for a solution to this problem, I found the same problems everyware, but no direct answers. Could you please discuss the baby steps to get IOU working? It will be helpful for us to simulate many devices with less resource utilization, and to practice the TS section. Workable solution please.... --Cisco IOU, VMWare, PuTTY, Telnet, GNS3, TS4, TS3++, Guide-- IOU.txt
  18. Gents.... I took my CCIE Lab yesterday... And I didn't pass :( I got K4 and cannot remember at the moment which TS. I studied really well after my BC a month ago and went over K2, 4, 6, and TS 3,3+,3++,4,4+ almost everyday. And still didn't make it. I am feeling pretty low right now. I have some questions to ask you guys, because I think I did better than indicated. My heart fell to my feet when I saw the score... I will post my concerns and CCIE experience wise, when I collect my thoughts...Please give me a day or 2 to write them down. DL
  19. Hello, I'm looking for any guidance from those who have passed or attempted the lab. How did you prepare for the troubleshooting section, what would you recommend, strategies, workbooks etc.? 1) Solve from easiest to hardest tickets <- MSSK 2) ... 3) ... Thanks,
  20. Just thought of sharing TS question wise checklist and commond ref. All question are from this forum which were discussed. Just consolidated in one file for two topologies. TP-MSDP-Topology-ChecklistQuestionWise - Copy.txtTS-MPLS-ChecklistQuestionWise - Copy.txt
  21. Dear Certcollection people, At first I would like to say BIG thanks for guys who helped me create this TS challenge proposal using WEB IOU. This update include all what I can collect here, even IP SLA, NAT, BGP updates in MLPS, and many more in MSDP. WEB IOU special thanks goes to Andrea - dainok, WEB-IOU software is created by him. I creating labs on this incredible tool. Very important thing, USE Google chrome for access to WEB interface. Some bugs reported for IE and not fixed. You can access devices using old method, CRT or putty telnet to your vm IP port 2001 for R1,, your ip port 2002 for R2.... If you still have not WEB-IOU, then go to Ready to GO vm machine [Hidden Content] PLEASE, READ THIS BEFORE TO AVOID UNECESSARY QUESTIONS!!! !!! After import of LAB verify what IOS is loaded for your routers and apply config pack !!! Guys THIS IS VERY IMPORTANT !!!! MPLS lab - Routers: R22 and R27 - L3 15.2.3, all other routers L3 15.0, all switches L2 15.1 MSDP lab - Router: R29 - L3 15.2.3, all other routers L3 15.0, all switches L2 15.1 MSDPv2 lab - Router: R29 - L3 15.2.3, all other routers L3 15.0, all switches L2 15.1 TS503 lab - Routers: R21 - R26 and R28 - L3 12.4.TPG, all other routers L3 15.0, all switches L2 15.1 TS504 lab - Routers: R21 - R26 and R28 - L3 12.4.TPG, all other routers L3 15.0, all switches L2 15.1 MPLS and MSDPv1 If you want import newest LAB, I recommend delete previous TS lab, preconfigs and all files linked MPLS and MSDP. Otherwise you will get TS duplicates with same names. [Hidden Content] This is targeted for people who want to be a CCIE, but not for dump passers. Therefore you will not find full answers for each ticket here. All are 100 times discussed in forum, and you should solve. I CONFIRM that all tickets are solvable and if something won’t work, that’s mean you aren’t fond everything faults. I added for you in description how many faults are in ticketsJ It can be up to 15 or more in one. Challenge, eh? I repeating that this is for guys who really wants to be a CCIE. If you can solve my any lab MPLS or MSDP in 2 hours. You are ready to go. In section „ Description” you will find all ticket questions”, also picture are added for particular tickets. Dont ask correct full TS answer list I will not provide. Discussions are welcome. Rikitee, Agila, lincc wil help you. Please give a feedback, how is feeling...here [Hidden Content] Regards, UldisD Do not post useless "thank you" post. If you want to see the content of the hidden links Please use the "Thanks" button as shown in the announcements [Hidden Content] Posting an answer will NOT reveal the hidden content. All following useless "thank you" will be removed.
  22. Any body can share MPLS New Ts GNS topology with initial config. kindly share if any body have.
  23. As promised this is MSDP IOU that cover mostly all known faults including some new faults reported by members like Napsterking420, elmrgh and some others. [Hidden Content] Note that this should serve as guide and the faults cannot be memorized to pass. Develop a stragegy to approach each question. More so do not time yourself at the first until your strategy work well to solve the questions. If you have difficulty solving any questions post it at discussion forum. And remember to securely send me your misal pav to my mail box if you like my post. Happy labbing.
  24. Today i did both msdp and msdpv2 IOU.. please let me know if my way of solving is acceptable? Thanks Q1 - R15 S1/0 change lmi type to cisco - R15 s1/0.345 frame relay map ip add R14 - R15 add ip ospf authentication on subinterface - R15 ospf need add the area 2 authentication - R14 IP address and the Mapping IP 3rdr octect need change to correct number - R13 "no s1/0.345 point to point" .. need to wr mem and reload.. then reconfigure interface as point to Multi Q2 - R29 redistribute connected into rip - R29 change interface to ppp chap password cisco. remove all things about "pap" - R25 interface change to ppp authentication chap.. username already created - R25 create router rip protocol. redistribute EIGRP into rip. RIP into eigrp already configured - R25 serial interface missing Eigrp authentication.. copy from R24 will do Q3 - R18 remo max-lsa 5 so can form neigbour with .18 and .19 - R18 missing virtual link setting to R16...R16 already has it. just copy from R16 OR re-type - R16 access list 100 on interface denying to, modify to permit any any - R16 e0/0, "no ip ospf network point to point" to match R17 broadcast - R17 and R18 no ip static route (causes R7 not forming neigbor with R26) - R17 access-li 111 permit any any - R17 ospf remove area 1 - R8 Bgp type "no synchro" even though not affecting the solution Q4 - R7 insert next hop self to R6 - R6 permit 666 in the community list (R2 mark as 666 community) - R8 route-map MED to set to 99 - R27 (maxas-limit) set to higher value - R27 next-hop-sef to R28 Q5 - R1 rp address change to - R11 rp address change to - R2 s1/1 add sparse-mode - R2 ip multicast-routing - R8 ip multicast-routing, - R8 e0/0 ip pim sparse mode - R3 msdp statement... connect source change to Loopback 0 - R2 incorrect BGP network statement to advertise MSDP loopback - R2 rp address change to - R6 rp address change to - R5 no ip mroute Q6 - R4 int lo0 ipv6 ospf change to area 1 - R4 router-id to change to match Lo0 - R1 and R3 interface put ipv6 ospf mtu-ignore - R3 Access-List CCIE permit any any Q7 - SW2 vtp mode client, vtp domain CCIE, VTP password cisco - SW2 e0/0 change to vlan 109 - sw2 e1/3, spanning mst 2 port-pri 0 Q8 - configure HSRP as per require - on R1, redistribute connected into eigrp so R22 Track 1 will be up Q9 - R5 configure ntp master 1 - R9 access list modify to permit udp traffic - R13 use ntp authenticate - R13 and R5 re-enter the ntp authentication key and trusted key command(ntp authentication-key 1 md5 cisco) Q10 - R29 Policy map inspect uses an incorrect name in the class type - R29 Class type need to "match-all" instead "match any", need to remove the match icmp protocol - R29 zone security IN and OUT map to incorrect interface, swap it - R29, ensure policy map map to zone-pair security. Also, the class-map set to inspect
  25. Hi all, below are what i did on the lab.. may i know is the way acceptable in the exam? do let me know if you spot any errors. thx in advance Q1 1) FR 2, wrong lmi-type 2) subnet mask wrong for R22 3) add broadcast keyword in R22 & R23 FR map. 4) R23 -- ospf network advertisement wrong area. 5) R23, need add the CGR class End to end keep alive Q2 1) sw2 interface to R14 is trunk.. change to access vlan 2) sw1 intterface to R10 is trunk.. change to access vlan 3) Vlans not in sync, sw 2 set transparent .. set vtp password .. client mode.. then back to server mode 4) sw2 interface e2/3 of the trunk set to 0 priority for mst 2, so that vlan 114 can flow via e2/3 else it's stuck @ blocked port e2/2 OR allow e2/3 to flow all vlans in Trunk Q3 - R24 has router id same as R26. need change - R24 need to remove PBR on e0/0 - R26 need modify the network command in ospf - R26 redistribute RIP include "subnets" - R26 RIP prefixlist need edit the network - R25 lo1 (Shutdown to prevent confusing route) - R25 frame relay map to R21 DLCI is incorrect -- Need to fix R25 to peer R21, else R21 not learning (No idea y) - R21 router ospf area 1 need "nssa" - R21 intter s1/0.145 access group is denying ospf packets. need modify - R21 ospf ditribute list is denying 192.168.20.x routes - R21 area 1 is denying from advertising out using range. - R21 remove track 1 in the static route Q4 - R1 route-reflector not configured for some neigbour - R1 access-list 11 change to permit any to allow bgp advertise out - R2 control plane policy blocking R3.. access list change permit to deny - R4 remove static Null route to R1 - R3 modify ipv4 bgp to advertise its Lo1 address (did not do no synchro on R4, but results are OK, any issues?) Q5 - R4 and R1 changes to LDP mpls protocol - R4 redistribute BGP into ospf vrf Site-A - R4 change the ldp router-id - R1 & 2 access-list 12 to add R4 to allow LDP advertisement - R1 & 2 access-list 100 on interface facing R4 to add 646 for neighbor discovery - R4 & R5 redistribute BGP into ospf vrf Site-A Q6 - R4 lo100 ipv6 ospf 1 area 0 - R4 ipv6 ospf id need to change to match itself - R8 eth port ipv6 autoconfig "default" to insert default route - R5 has to modify access-list CCIE on E0/2 to allow request of IPv6 route n IP Q7 - R9 POLICY to change to interface outgoing to R7 and R8. e03 is not needed - R9 SILVER class map "match any" and change match prec 3 to 4.. TOS 128 = 4 (128/32 =4) - R9 policy action change from drop to set-prec-transmit Q8 - syslog pattern do a a copy n paste after shutdown the interface - 1.0 cli just "enable" - 2.0 cli "configure terminal" - 3.0 0 not O Q9 - R19 dhcp config error on network portion and default router - R19 access-list 104 facing the 2 other routers change to permit ip any any - R19 Control plan policy dropping ACL 104... change to transmit - R19 e0/0 eigrp hold time configure 15 to be same as other interface (sh ip eigrp int deta) - R17 & R18 e0/1 to add in eigrp authenication same as R19 e0/1 Q10 - R22 e0/1 change to ip nat outside - R22 access list to match Telnet and www error.. the "any" needs to be destination - R22 ip nat "inside" source ..... missing "inside"
