Ccna Full Project Task
Ccna Full Project Task
Ccna Full Project Task
enterprise sites with modular design for each site (CORE –Distribution – Access)
4 private vlans for each site, Data Center contain DHCP, DNS, AAA, WEB, NTP
and syslog servers for a company connected to the other site through VPN, each
site have a wireless network (3 LWAP with wireless controller) and all the 2 sites
Access the internet through NAT on CORE 1
Project Tasks :
1 -Layer 2 Switch’s (Access Layer )
1. configure Basic initial configuration: Hostname, username & password,
2. username : admin password : admin123
3. Secure enable, console & vty modes
4. Enable SSH , ip default getaway & Service password encryption
5. Create VLANS (10,20,30,40) for site 1 ( 2 vlans per switch ,10 interfaces
per vlan ) and (100,100,300,400) for site 2
6. create management vlan for each switch with ip 50 from any vlan
7. identify Trunk links (G0/1-2) for each switch and determine the allowed
vlans through trunk links
8. shutdown unused ports
9. free loop topo (R-PVST) configure RPVST and change vlans priority to
61440
10. Configure BPDU guard for edge ports ( all end user ports )
11. Configure port security with violation shutdown for all end user ports
8. Create redundant Gateways (HSRP) for each vlan on active & standby
switch’s (change the router priority statically on active multi-layer switch to
be active router & select ip 100 on each network to be the active getaway
9. Configure Dynamic Routing OSPF 10 for site 1 & EIGRP 10 for site 2 , and
redistribute between them
10. create static floating backup route with admin distance 200 as a
backup for dynamic route
11. enable router interface on each multi-layer switch to connect them
with CORE 1&2
12. configure DHCP IOS server on each multi-layer switch to allow
end user to request dhcp ip and disable it to be a backup for the relay
agent DHCP server on data center
Services
servers with static IP address
DHCP server ip 10.10.10.10/2
Syslog server 10.10.10.10/24
DNS 10.10.10.20/24
AAA authentication for Wireless 10.10.10.20/24
NTP server 10.10.10.20/24