You are on page 1of 10

CCNPv6 SWITCH

Skills-Based Assessment
Topology

Objectives
Part 1: Configure the switches in the topology according to the diagram and the specifications provided. Part 2: Test the network for appropriate connectivity and configured options.

Exam Overview
This skills-based assessment (SBA) is the final practical exam for Academy training for the course CCNPv6 SWITCH. In Part 1, you configure various features such as trunking, EtherChannel, VTP, VLANs, SVIs, routed links, EIGRP, HSRP, port security and QoS. In Part 2, you create a Tcl script to test IP connectivity and use show commands to verify configured options. This exam combines device configuration and troubleshooting. Note: This lab uses Cisco WS-C2960-24TT-L switches with the Cisco IOS image c2960-lanbasek9-mz.12246.SE.bin, and Catalyst 3560-24PS with the Cisco IOS image c3560-advipservicesk9-mz.122-46.SE.bin. You can use other switches (such as a 2950 or 3550) and Cisco IOS Software versions if they have comparable capabilities and features. Depending on the switch model and Cisco IOS Software version, the commands available and output produced might vary from what is shown in this lab.

Required Resources
• • 2 switches (Cisco 2960 with the Cisco IOS Release 12.2(46)SE C2960-LANBASEK9-M image or comparable) 2 switches (Cisco 3560 with the Cisco IOS Release 12.2(46)SE C3560-ADVIPSERVICESK9-mz image or comparable)
Page 1 of 4

All contents are Copyright © 1992–2011 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information.

13. specify the HSRP gateway address of VLAN 99 as the default gateway.X. Create an SVI in VLANs 10. Use multiple class C 192. Disable the links between ALS1 and ALS2. 10. On DLS1. All rights reserved.168. Enable QoS globally on all switches. and use EIGRP to advertise 192. Configure all other switches as VTP clients. Bind the links between DLS1 and ALS1 in an EtherChannel and configure the two switches to actively negotiate a PAgP link. On ALS1 and ALS2 create an SVI for MGMT VLAN 99 with an IP address from the VLAN 99 network assigned in Step 7. 15.CCNPv6 SWITCH • • 2 PCs (Windows OS) Ethernet and console cables Part 1: Configure the network according to specifications. 20. 1. Inc. Configure DLS1 as the active HSRP router for VLANs 10 and 20 and configure DLS2 as backup. Configure the Rapid PVST (PVRST+) protocol on all switches. Enable PortFast on all access layer switch ports. On ALS2 configure port Fa0/6 as an access port in SERVER VLAN 30. On DLS1 and DLS2 configure SVIs and HSRP to provide gateway redundancy for access layer clients in VLANs 10. On ALS1 configure Fa0/6 as an access port in CLIENT VLAN 10 and to trust Cisco IP phones CoS using AutoQoS. 19. 2. 8.168. Configure the Fa0/11 link between DLS1 and DLS2 as a Layer 3 link and assign a network to it. 18. Permit the links between DLS2 and ALS2 to carry traffic only for the VLANs created in Step 7. 6. 30 and 99. On ALS1. VLAN 30 named SERVER and VLAN 99 named MGMT. Choose a 192. Page 2 of 4 . 16. 20.X. Configure the Fa0/12 link between DLS1 and DLS2 as an ISL trunk. create VLAN 10 named CLIENT.0/24 network for each VLAN for use in subsequent steps. 14. Enable sticky learning.0. 5. Configure DLS2 as the active router for VLANs 30 and 99 and configure DLS1 as backup. 7. Allow up to two MAC addresses to be learned for IP phone support. VLAN 20 named VOICE. 30 and 99. Place all switches in the VTP domain CISCO with DLS1 as the VTP server using VTP version 2. 20.168. 4. 11. configure port Fa0/6 with port security. Ensure that DLS2 becomes the spanning tree root of VLANs 30 and 99 and DLS1 becomes the backup. This document is Cisco Public Information. 17.0/16 with automatic summarization disabled. All contents are Copyright © 1992–2011 Cisco Systems.0/24 networks as required for this SBA. Use VOICE VLAN 20 as the voice VLAN. For ALS1 and ALS2. 3. each with an IP address and mask from their respective networks chosen in Step 7. and statically set all other interswitch links as 802. Ensure that DLS1 becomes the spanning tree root of VLANs 10 and 20 and DLS2 becomes the backup. 12. Shut down the port if a violation occurs. Ensure that the VLAN 1 interface on all switches is not used for administrative management or user traffic. Configure IP routing on DLS1 and DLS2. 9.1q trunks.

c. Page 3 of 4 . Configure server PC-B with an IP address in VLAN 30 and specify the VLAN 30 HSRP virtual address as the default gateway. Exam Notes: __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ __________________________________________________________________________________ All contents are Copyright © 1992–2011 Cisco Systems. d. Part 2: Test network connectivity and configured options. Verify the spanning tree configuration and that the root bridge (DLS1 or DLS2) is correct for each VLAN. All rights reserved. Note: The IOS for the access layer switches used in this SBA does not support Tcl scripting. a. b. Verify that Auto-QoS VoIP support is configured for port Fa0/6 on ALS1. Verify that client PC-A can ping server PC-B. This document is Cisco Public Information. Inc. Verify that the correct SVIs exist and that the correct HRSP routers are primary and standby for each VLAN. Verify that the EtherChannel between DLS1 and ALS1 is configured correctly. g. f.CCNPv6 SWITCH 21. Create a Tcl script and test connectivity from each distribution layer switch to the addresses you assigned in the topology. e. Verify the traced route from client PC-A to server PC-B. Verify that the correct VLANs exist on all switches and contain the correct ports. h. Configure client PC-A with an IP address in the VLAN 10 network and specify the VLAN 10 HSRP virtual address as the default gateway.

1q trunks.11 [DLS1] Switch(config-if-range)# switchport trunk encapsulation dot1q [DLS1] Switch(config-if-range)# switchport mode trunk /**Opcional BestPractice**/ [DLS1] [DLS1] [DLS1] [DLS1] Switch(config-if)# Switch(config-if)# Switch(config-if)# Switch(config-if)# switchport nonegotiate optional switchport trunk allowed vlan 1-100 no shutdown end /**End BestPractice**/ [DLS2] Switch(config)# interface FastEthernet 0/12 [DLS2] Switch(config-if)# switchport trunk encapsulation isl1 [DLS2] Switch(config-if)# switchport mode trunk [DLS2] Switch(config)# interface range fastEthernet 0/7 . and stati cally set all other interswitch links as 802.255.168. Configure the Fa0/12 link between DLS1 and DLS2 as an ISL trunk.255.168.11 [DLS2] Switch(config-if-range)# switchport trunk encapsulation dot1q [DLS2] Switch(config-if-range)# switchport mode trunk /* Switches ASL1 y 2 aplicar la siguiente configuración */ ALS1(config)# interface range fastEthernet 0/7 ALS1(config-if)# switchport mode trunk ALS2(config)# interface range fastEthernet 0/7 ALS2(config-if)# switchport mode trunk 12 12 . Configure the Fa0/11 link between DLS1 and DLS2 as a Layer 3 link and assi gn a network to it. */ [DLS1] Switch(config)# interface FastEthernet 0/12 [DLS1] Switch(config-if)# switchport trunk encapsulation isl1 [DLS1] Switch(config-if)# switchport mode trunk [DLS1] Switch(config)# interface range fastEthernet 0/7 .255.0.0 Switch(config-if)# exit Switch(config)# interface Fa0/11 Switch(config-if)# no switchport Switch(config-if)# ip address 192.255.2 255.0.0 Switch(config-if)# exit /* 4.1 255.2 Switch(config-if-range)# shutdown /* 3.Switch(config)# Switch(config)# Switch(config)# Switch(config)# hostname hostname hostname hostname DLS1 DLS2 ALS1 ALS2 /*Disable the links between ALS1 and ALS2*/ Switch(config-if-range)# interface range GigabitEthernet 0/1 . */ [DLS1] [DLS1] [DLS1] [DLS1] [DLS2] [DLS2] [DLS2] [DLS2] Switch(config)# interface Fa0/11 Switch(config-if)# no switchport Switch(config-if)# ip address 192.

Choose a 192.8 DLS1(config-if-range)# channel-group 1 mode desirable /* Creating a port-channel interface Port-channel 1 DLS1(config)# interface port-channel 1 DLS1(config-if)# switchport mode trunk /*En ambos switches verificar configuración con el comando */ #show etherchannel summary /* 6. Place all switches in the VTP domain CISCO with DLS1 as the VTP server usi ng VTP version 2. VLAN 30 named S ERVER and VLAN 99 named MGMT. */ ALS1# show interfaces trunk ALS1(config-if-range)# interface range GigabitEthernet 0/7 . On DLS1. */ DLS1(config)# vlan 10 DLS1(config-vlan)# name CLIENT . mode client VTP CLIENT mode. VLAN 20 named VOICE./* Verificar trunk configuration */ ALS2# show interfaces fastEthernet 0/7 switchport DLS1# show interfaces trunk /* 5.X. mode client VTP CLIENT mode. DLS2(config)# vtp Setting device to ALS1(config)# vtp Setting device to ALS2(config)# vtp Setting device to mode client VTP CLIENT mode.8 ALS1(config-if-range)# channel-group 1 mode desirable ALS1(config)# interface port-channel 1 ALS1(config-if)# switchport mode trunk DLS1(config)# interface range fastEthernet 0/7 . */ DLS1# show vtp status DLS1(config)# vtp domain CISCO Changing VTP domain name from NULL to CISCO DLS1(config)# vtp version 2 DLS1(config)# vtp mode server Device mode already VTP SERVER. /* 7.8 ALS1(config-if-range)# shutdown ALS1(config)# interface range fastEthernet 0/7 . Bind the links between DLS1 and ALS1 in an EtherChannel and configure the two switches to actively negotiate a PAgP link.168. Configure all other switches as VTP clients.0/24 network for each VLAN for use in sub sequent steps. create VLAN 10 named CLIENT.

Ensure that the VLAN 1 interface on all switches is not used for administr ative management or user traffic. */ ALS1(config)# vlan 1 ALS1(config-vlan)# shutdown ALS1# show vlan brief ALS2(config)# vlan 1 ALS2(config-vlan)# shutdown ALS2# show vlan brief DLS1(config)# vlan 1 DLS1(config-vlan)# shutdown DLS1# show vlan brief DLS2(config)# vlan 1 DLS2(config-vlan)# shutdown DLS2# show vlan brief /* 9. */ DLS1(config)# interface vlan 10 DLS1(config-if)# ip address 192.20 30.99 30. */ ALS1(config)# ALS2(config)# DLS1(config)# DLS2(config)# spanning-tree spanning-tree spanning-tree spanning-tree mode mode mode mode rapid-pvst rapid-pvst rapid-pvst rapid-pvst /* Para comprovar configuración: DLS1# show spanning-tree */ DLS1(config)#spanning-tree DLS1(config)#spanning-tree DLS2(config)#spanning-tree DLS2(config)#spanning-tree vlan vlan vlan vlan 10.255. Ensure that DL S1 becomes the spanning tree root of VLANs 10 and 20 and DLS2 becomes the backup.DLS1(config-vlan)# DLS1(config)# vlan DLS1(config-vlan)# DLS1(config-vlan)# DLS1(config)# vlan DLS1(config-vlan)# DLS1(config-vlan)# DLS1(config)# vlan DLS1(config-vlan)# DLS1(config-vlan)# exit 20 name VOICE exit 30 name SERVER exit 99 name MGMT exit /* 8. ea ch with an IP address and mask from their respective networks chosen in Step 7. On DLS1 and DLS2 configure SVIs and HSRP to provide gateway redundancy fo r access layer clients in VLANs 10. Configure the Rapid PVST (PVRST+) protocol on all switches. Ensure that D LS2 becomes the spanning tree root of VLANs 30 and 99 and DLS1 becomes the backup.255.168.3 255.0 DLS1(config-if)# no shutdown DLS1(config)# interface vlan 20 DLS1(config-if)# ip address 192.255. 20. 20.10.20. 30 and 99.99 10. Create an SVI in VLANs 10. 30 and 99.20 root root root root primary secondary primary secondary /* 10.3 255.0 .168.255.

255.30.99.168.168.255.255.255.0 255.168.3 255.99.0 255.168.10.0 255.0 /* No se si es necesario activarlo también en el DLS2 */ DLS2(config)# ip routing /* 11.168.0 DLS1(config-if)# no shutdown DLS1(config)# interface vlan 99 DLS1(config-if)# ip address 192.255.99.168.4 DLS2(config-if)# no shutdown 255.4 DLS2(config-if)# no shutdown DLS2(config)# interface vlan 20 DLS2(config-if)# ip address 192.255.255. Configure DLS2 as the active router for VLANs 30 and 99 and configure DLS1 as ba ckup.10.168.1 DLS1(config-if)# standby 1 preempt DLS1(config-if)# standby 1 priority 150 DLS1(config-if)# exit DLS1(config)# interface vlan 30 DLS1(config-if)# standby 1 ip 192.4 DLS2(config-if)# no shutdown DLS2(config)# interface vlan 99 DLS2(config-if)# ip address 192.30.DLS1(config-if)# no shutdown DLS1(config)# interface vlan 30 DLS1(config-if)# ip address 192.3 255.255.20.1 DLS1(config-if)# standby 1 preempt DLS1(config-if)# standby 1 priority 150 DLS1(config-if)# exit DLS1(config)# interface vlan 20 DLS1(config-if)# standby 1 ip 192.1 DLS1(config-if)# standby 1 preempt DLS1(config-if)# standby 1 priority 100 DLS1(config-if)# exit **** HSRP Configuration for DLS2 **** DLS2(config)# ip routing .30.255.0 DLS1(config-if)# no shutdown /* Activar routing para permitir al switch actuar como layer 3 */ DLS1(config)# ip routing DLS1(config)# sh ip route /*Configuración interface DLS2*/ DLS2(config)# interface vlan 10 DLS2(config-if)# ip address 192.4 DLS2(config-if)# no shutdown DLS2(config)# interface vlan 30 DLS2(config-if)# ip address 192.168.255.1 DLS1(config-if)# standby 1 preempt DLS1(config-if)# standby 1 priority 100 DLS1(config-if)# exit DLS1(config)# interface vlan 20 DLS1(config-if)# standby 1 ip 192.168. */ **** HSRP Configuration for DLS1 **** DLS1(config)# ip routing DLS1(config)# interface vlan 10 DLS1(config-if)# standby 1 ip 192.168. Configure DLS1 as the active HSRP router for VLANs 10 and 20 and configur e DLS2 as backup.20.255.255.

1 DLS2(config-if)# standby 1 preempt DLS2(config-if)# standby 1 priority 150 DLS2(config-if)# exit DLS2(config)# interface vlan 99 DLS2(config-if)# standby 1 ip 192.168.168.20.168. Enable PortFast on all access layer switch ports.30.1 /* 14.255.168.99.255.168. specify the HSRP gateway address of VLAN 99 as the def ault gateway.1 DLS2(config-if)# standby 1 preempt DLS2(config-if)# standby 1 priority 150 DLS2(config-if)# exit DLS1# show standby DLS1# show standby brief DLS2# show standby brief /* Si quisiera verificar la configuración de HSRP */ DLS2(config)# interface range fastEthernet 0/7 .12 DLS2(config-if-range)# shutdown /* 12.6 255.0 ALS1(config-if)# no shutdown ALS2(config)# interface vlan 99 ALS2(config-if)# ip address 192.99.10. Permit the links between DLS2 and ALS2 to carry traffic only for the VLAN . */ ALS1(config)# interface fa0/6 ALS1(config-if)# spanning-tree portfast default ALS1(config-if)# no shutdown ALS2(config)# interface fa0/6 ALS2(config-if)# spanning-tree portfast default ALS2(config-if)# no shutdown /* 15.255. For ALS1 and ALS2.255.99.5 255.1 DLS2(config-if)# standby 1 preempt DLS2(config-if)# standby 1 priority 100 DLS2(config-if)# exit DLS2(config)# interface vlan 30 DLS2(config-if)# standby 1 ip 192.99.168.1 DLS2(config-if)# standby 1 preempt DLS2(config-if)# standby 1 priority 100 DLS2(config-if)# exit DLS2(config)# interface vlan 20 DLS2(config-if)# standby 1 ip 192.DLS2(config)# interface vlan 10 DLS2(config-if)# standby 1 ip 192.1 ALS2(config)# ip default-gateway 192. */ ALS1(config)# ip default-gateway 192. */ ALS1(config)# interface vlan 99 ALS1(config-if)# ip address 192.0 ALS2(config-if)# no shutdown /* 13.168. On ALS1 and ALS2 create an SVI for MGMT VLAN 99 with an IP address from t he VLAN 99 network assigned in Step 7.99.168.

*/ ALS2(config)# (config)#interface ALS2(config-if)#switchport trunk DLS2(config)# (config)#interface DLS2(config-if)#switchport trunk range fastEthernet 0/7 . On ALS2 configure port Fa0/6 as an access port in SERVER VLAN 30. Use VOICE VLAN 20 as the voice VLAN.30. */ ALS1(config-if)# ALS1(config-if)# ALS1(config-if)# ALS1(config-if)# ALS1(config-if)# switchport switchport switchport switchport exit port-security port-security maximum 2 port-security mac-address sticky port-security violation shutdown /* 19. */ ALS2(config)# interface fastEthernet 0/6 ALS2(config-if)# switchport mode access ALS2(config-if)# switchport access vlan 30 /* 20.8 allowed vlan 10.0 .30. */ DLS1(config)#router EIGRP 1 DLS1(config-router)#no auto-summary DLS1(config-router)#network 192.99 /* 16.s created in Step 7. On ALS1.20.0. */ ALS1(config)# interface fastEthernet 0/6 ALS1(config-if)# switchport mode access ALS1(config-if)# switchport access vlan 10 ALS1(config-if)# switchport voice vlan 20 ALS1(config-if)# mls qos trust device cisco-phone ALS1(config-if)# auto qos voip cisco-phone /* verify configuration */ ALS1# show mls qos interface fastEthernet 0/15 ALS1# show run interface fastEthernet 0/15 /* 18. configure port Fa0/6 with port security. Enable QoS globally on all switches.0/16 with automatic summarization disabled.168.20. Configure IP routing on DLS1 and DLS2.168 .99 range fastEthernet 0/7 ± 8 allowed vlan 10. and use EIGRP to advertise 192.0. Allow up to two MAC add resses to be learned for IP phone support. Enable sticky learning. Shut down the port if a violation occurs. */ DLS1#set DLS2#set ALS1#set ALS2#set qos qos qos qos enable enable enable enable qos qos qos qos ALS1(config)#mls ALS2(config)#mls DLS1(config)#mls DLS2(config)#mls /* 17. On ALS1 configure Fa0/6 as an access port in CLIENT VLAN 10 and to trust Cisco IP phones CoS using AutoQoS.

0.168.0 /* 21. */ Done! . Configure server PC-B with an IP address in VLAN 30 and specify the VLAN 30 HSRP virtual address as the default gateway.DLS2(config)#router EIGRP 1 DLS2(config-router)#no auto-summary DLS2(config-router)#network 192. Configure client PC-A with an IP address in the VLAN 10 network and speci fy the VLAN 10 HSRP virtual address as the default gateway.