0% found this document useful (0 votes)
0 views

New Lab Solution Print

The document outlines network configurations for multiple switches and routers, detailing settings for VLANs, VTP domains, OSPF routing, and PPPoE connections. It includes specific commands for interface configurations, spanning tree settings, and tunnel setups across different network devices. Additionally, it describes the use of EIGRP and OSPF for routing protocols within the network architecture.

Uploaded by

mumohammad.c
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
0 views

New Lab Solution Print

The document outlines network configurations for multiple switches and routers, detailing settings for VLANs, VTP domains, OSPF routing, and PPPoE connections. It includes specific commands for interface configurations, spanning tree settings, and tunnel setups across different network devices. Additionally, it describes the use of EIGRP and OSPF for routing protocols within the network architecture.

Uploaded by

mumohammad.c
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
You are on page 1/ 17

Section 1.

1
SW3 sw mo trunk
vtp domain Jamesons sw trunk native vlan 1
vtp version 2 sw nonegotiate
vtp mode server
int range e0/2 - 3 , e1/2 - 3 , e2/2 - 3 , e3/0 - 3
vlan 1,999,911,34,100,153,156,164,173,184 sw mo acc
sw acc vlan 999
int e 0/0 shut
sw mo acc
sw acc vlan 156
spanning-tree portfast default
int e 0/1 spanning-tree portfast bpduguard default
sw mo acc snmp-server enable trap syslog
sw acc vlan 153

int range e1/0 - 1 , e2/0 - 1 SW5


sw trunk encap dot1q vtp domain Jamesons
sw mo trunk vtp version 2
sw trunk native vlan 1 vtp mode client
sw nonegotiate
int e0/0
spanning-tree portfast default sw mo acc
spanning-tree portfast bpduguard default sw acc vlan 173
snmp-server enable trap syslog
int range e0/1 - 3
int range e0/2 - 3 , e1/2 - 3 , e2/2 - 3 , e3/0 - 3 sw mo acc
sw mo acc sw acc vlan 100
sw acc vlan 999
shut int range e1/0 - 1
sw trunk encap dot1q
sw mo trunk
SW4

vtp domain Jamesons int range e1/2 - 3 , e2/0 - 3 , e3/0 - 3


vtp version 2 sw mo acc
vtp mode client sw acc vlan 999
shut
int e0/1
sw mo acc
sw acc vlan 164 spanning-tree portfast default
spanning-tree portfast bpduguard default
int e0/0 snmp-server enable trap syslog
sw mo acc
sw acc vlan 156 SW6
vtp domain Jamesons
int range e1/0 - 1 , e2/0 - 1 vtp version 2
sw trunk encap dot1q vtp mode client
int e0/0
sw mo acc sw mo trunk
sw acc vlan 184 sw trunk native vlan 1
sw nonegotiate
int range e0/1 - 3
sw mo acc spanning-tree mode rapid-pvst
sw acc vlan 100
SW6
int range e1/0 - 1 int range e1/0 - 1
sw trunk encap dot1q sw trunk encap dot1q
sw mo trunk sw mo trunk
sw trunk native vlan 1
sw nonegotiate
int range e1/2 - 3 , e2/0 - 3 , e3/0 - 3
sw mo acc spanning-tree mode rapid-pvst
sw acc vlan 999
shut
spanning-tree portfast default SW3
spanning-tree portfast bpduguard default int range e1/0 - 1
snmp-server enable trap syslog channel-group 35 mode active

SW3 int range e2/0 - 1


int range e1/0 - 1 , e2/0 - 1 channel-group 34 mode active
sw trunk encap dot1q
sw mo trunk int po 35
sw trunk native vlan 1 sw trunk encapsulation dot1q
sw nonegotiate sw mode trunk

int po 34
spanning-tree mode rapid-pvst sw trunk encapsulation dot1q
spanning-tree vlan 1-4094 priority 0 sw mode trunk

SW4 port-channel load-balance src-dst-ip


int range e1/0 - 1 , e2/0 - 1
sw trunk encap dot1q SW4
sw mo trunk int range e1/0 - 1
sw trunk native vlan 1 channel-group 46 mode active
sw nonegotiate
int range e2/0 - 1
spanning-tree mode rapid-pvst channel-group 34 mode active
spanning-tree vlan 1-4094 priority 4096
int po 46
SW5 sw trunk encapsulation dot1q
int range e1/0 - 1 sw mode trunk
sw trunk encap dot1q
port-channel load-balance src-dst-ip int po 34
sw trunk encapsulation dot1q
SW5 sw mode trunk
int range e1/0 - 1
channel-group 35 mode passive

int po 35
sw trunk encapsulation dot1q
sw mo trunk

port-channel load-balance src-mac

SW6
int range e1/0 - 1
channel-group 46 mode passive

int po 46
sw trunk encapsulation dot1q
sw mo trunk

port-channel load-balance src-mac

Section 1.4
R19 R21
int e0/0 int e0/0
pppoe enable
pppoe-client dial-pool-number 1 pppoe enable
pppoe-client dial-pool-number 1
int dialer 1
ip address negotiate int dialer 1
ip mtu 1492 ip address negotiate
encapsulation ppp ip mtu 1492
ppp chap hostname Jamesons-R19 encapsulation ppp
ppp chap password CCIE ppp chap hostname Jamesons-R21
dialer pool 1 ppp chap password CCIE
dialer pool 1
R20
int e0/0
pppoe enable ip route 192.0.2.0 255.255.255.0 dialer 1
pppoe-client dial-pool-number 1

int dialer 1
ip address negotiate
ip mtu 1492
encapsulation ppp
ppp chap hostname Jamesons-R20
ppp chap password CCIE
dialer pool 1
Section 2.1
Core
R1 R8
router ospf 1 router ospf 1
router-id 10.255.1.1 router-id 10.255.1.8

int range e0/0 - 3 , e1/0 , loopback 0 int range e0/3 , loopback 0


ip ospf 1 area 0 ip ospf 1 area 0
ip ospf priority 255
R9
R2 router ospf 1
router ospf 1 router-id 10.255.1.9
router-id 10.255.1.2
int range e0/0 , loopback 0
int range e0/0 - 3 , e1/0 , loopback 0 ip ospf 1 area 0
ip ospf 1 area 0
ip ospf priority 254
R10
R3 router ospf 1
router ospf 1 router-id 10.255.1.10
router-id 10.255.1.3
int range e0/0 , loopback 0
int range e0/0 , e0/2 , loopback 0 ip ospf 1 area 0
ip ospf 1 area 0
HQ
R4 SW1
router ospf 1 router ospf 1
router-id 10.255.1.4 router-id 10.255.1.101
int range e0/0 , e0/2 , loopback 0
ip ospf 1 area 0 int range vlan 101 , vlan 100 , loopback 0
ip ospf 1 area 0
R5
router ospf 1 int vlan 101
router-id 10.255.1.5 ip ospf priority 255
int range e0/0 - 1 , loopback 0
ip ospf 1 area 0 R11
router ospf 1
R6 router-id 10.255.1.11
router ospf 1
router-id 10.255.1.6 int range e0/1 , loopback 0
int range e0/0 - 1 , loopback 0 ip ospf 1 area 0
ip ospf 1 area 0
R7
router ospf 1
router-id 10.255.1.7
int range e0/3 , loopback 0
ip ospf 1 area 0
R12 SW4
router ospf 1 router ospf 1
router-id 10.255.1.12 router-id 10.255.1.104
int range e0/1 , loopback 0 network 10.255.1.104 0.0.0.0 area 0
ip ospf 1 area 0 network 10.2.0.14 0.0.0.0 area 0

Main Office network 10.2.1.254 0.0.0.0 area 0


SW2 network 10.2.0.10 0.0.0.0 area 0
router ospf 1 network 10.2.0.41 0.0.0.0 area 0
router-id 10.255.1.102 network 10.2.100.104 0.0.0.0 area 0
int range vlan 101 , vlan 100 , loopback 0 passive-interface vlan 911
ip ospf 1 area 0 passive-interface vlan 100
passive-interface vlan 101
int vlan 101
ip ospf priority 255 R15
router ospf 1
R13 router-id 10.255.1.15
router ospf 1 network 10.2.0.1 0.0.0.0 area 0
router-id 10.255.1.13 network 10.2.0.5 0.0.0.0 area 0
int range e0/1 , loopback 0 network 10.255.1.15 0.0.0.0 area 0
ip ospf 1 area 0
R16
R14 router ospf 1
router ospf 1 router-id 10.255.1.16
router-id 10.255.1.14 network 10.2.0.2 0.0.0.0 area 0
int range e0/1 , loopback 0 network 10.2.0.9 0.0.0.0 area 0
ip ospf 1 area 0 network 10.255.1.16 0.0.0.0 area 0

DC R17
SW3 router ospf 1
router ospf 1 router-id 10.255.1.17
router-id 10.255.1.103 network 10.2.0.38 0.0.0.0 area 0
network 10.255.1.103 0.0.0.0 area 0 network 10.255.1.17 0.0.0.0 area 0
network 10.2.0.13 0.0.0.0 area 0
network 10.2.1.253 0.0.0.0 area 0 R18
network 10.2.0.6 0.0.0.0 area 0 router ospf 1
network 10.2.0.37 0.0.0.0 area 0 router-id 10.255.1.18
network 10.2.100.103 0.0.0.0 area 0 network 10.2.0.42 0.0.0.0 area 0
passive-interface vlan 911 network 10.255.1.18 0.0.0.0 area 0
passive-interface vlan 100
passive-interface vlan 101

SW4
router ospf 1
router-id 10.255.1.104
network 10.255.1.104 0.0.0.0 area 0
network 10.2.0.14 0.0.0.0 area 0
Swction 2.2 and 3.1 Section 2.3
R17 Jacob Core
int tun 0 R50
tunnel source e0/0 route-tag notation dotted-decimal
tunnel mode gre multipoint
ip mtu 1400 router eigrp Jacob
ip tcp adjust-mss 1360 address-family ipv4 unicast as 1
ip nhrp authentication Jamesons network 172.30.100.1 0.0.0.0
ip nhrp map multicast dynamic network 172.30.1.50 0.0.0.0
ip nhrp holdtime 300 eigrp default-route-tag 172.172.172.172
ip nhrp network-id 51
ip nhrp redirect R51
ip ospf 1 area 51 route-tag notation dotted-decimal
ip ospf network point-to-multipoint
tunnel protection ipsec profile DMVPNPROFILE router eigrp Jacob
address-family ipv4 unicast as 1
router ospf 1 network 172.30.100.2 0.0.0.0
router-id 10.255.1.17 network 172.30.1.51 0.0.0.0
network 10.2.0.38 0.0.0.0 area 0 eigrp default-route-tag 172.172.172.172
network 10.255.1.17 0.0.0.0 area 0
area 51 stub no-summary R52
default-information originate route-tag notation dotted-decimal

router bgp 65002 router eigrp Jacob


address-family ipv4 unicast as 1
R19/R20/R21 network 172.30.100.3 0.0.0.0
int tun 0 network 172.30.1.52 0.0.0.0
tunnel source dialer 1 eigrp default-route-tag 172.172.172.172
tunnel mode gre multipoint topology base
ip mtu 1400 redistribute connect route-map LO52
ip tcp adjust-mss 1360
ip nhrp authentication Jamesons route-map LO52 permit 10
ip nhrp map multicast 192.0.2.2 match interface loopback 52
ip nhrp map 10.100.0.1 192.0.2.2 set tag 172.172.172.172
ip nhrp nhs 10.100.0.1
ip nhrp holdtime 300 R53
ip nhrp network-id 51 route-tag notation dotted-decimal
ip nhrp shortcut
ip ospf 1 area 51 router eigrp Jacob
ip ospf network point-to-multipoint address-family ipv4 unicast as 1
tunnel protection ipsec profile DMVPNPROFILE network 172.30.100.4 0.0.0.0
network 172.30.1.53 0.0.0.0
router ospf 1 network 10.254.0.62 0.0.0.0
router-id 10.255.1.21
network 10.16.3.1 0.0.0.0 area 51 R54
network 10.255.1.21 0.0.0.0 area 51 route-tag notation dotted-decimal
network 10.100.0.21 0.0.0.0 area 51 router eigrp Jacob
area 51 stub address-family ipv4 unicast as 1

network 172.30.100.5 0.0.0.0 router eigrp Jacob


network 10.254.0.66 0.0.0.0 address-family ipv4 unicast as 10
network 172.30.1.54 0.0.0.0 network 172.17.254.1 0.0.0.0
network 172.30.1.58 0.0.0.0
Jacob HQ

R55 SW11
router eigrp Jacob router eigrp Jacob
address-family ipv4 unicast as 10 address-family ipv4 unicast as 10
network 172.18.254.1 0.0.0.0 network 172.30.1.111 0.0.0.0
network 172.30.1.55 0.0.0.0 network 172.17.1.254 0.0.0.0
network 172.17.254.254 0.0.0.0
topology base
redistribute bgp 65005 metric 1000 100 255 1
1500
ip prefix-list EIGRP seq 10 permit 172.18.0.0/16 le
32
no ip prefix-list EIGRP seq 5 permit 172.0.0.0/8 le
32
R56
router eigrp Jacob
address-family ipv4 unicast as 10
network 172.18.254.2 0.0.0.0
network 172.30.1.56 0.0.0.0
topology base
redistribute bgp 65005 metric 1000 100 255 1
1500
ip prefix-list EIGRP seq 10 permit 172.18.0.0/16 le
32
no ip prefix-list EIGRP seq 5 permit 172.0.0.0/8 le
32

R57
router eigrp Jacob
address-family ipv4 unicast as 10
network 172.18.2.1 0.0.0.0
network 172.30.1.57 0.0.0.0
SW10
router eigrp Jacob
address-family ipv4 unicast as 10
network 172.18.2.254 0.0.0.0
network 172.30.1.110 0.0.0.0
network 172.18.1.254 0.0.0.0
network 172.18.254.254 0.0.0.0

Jacob Office
R58
Section 2.4
Jameson HQ ip prefix-list INET seq 15 permit 10.255.1.14/32
R11 ip prefix-list INET seq 20 permit 10.255.1.102/32
ip prefix-list INET seq 5 permit 10.1.0.0/16
ip prefix-list INET seq 10 permit 10.255.1.11/32 router bgp 65002
ip prefix-list INET seq 15 permit 10.255.1.12/32 aggregate-address 10.3.0.0 255.255.0.0 summary-
ip prefix-list INET seq 20 permit 10.255.1.101/32 only
neighbor 10.254.0.45 prefix-list INET out
router bgp 65002 redistribute ospf 1
aggregate-address 10.1.0.0 255.255.0.0 summary-
only router ospf 1
neighbor 10.254.0.53 prefix-list INET out default-information originate always
redistribute ospf 1
Jameson DC
router ospf 1 R15
default-information originate always router ospf 1
R12 redistribute bgp 65002 subnets
ip prefix-list INET seq 5 permit 10.1.0.0/16
ip prefix-list INET seq 10 permit 10.255.1.11/32 router bgp 65002
ip prefix-list INET seq 15 permit 10.255.1.12/32 redistribute ospf 1
ip prefix-list INET seq 20 permit 10.255.1.101/32 neighbor 10.254.0.73 default-originate

router bgp 65002 R16


aggregate-address 10.1.0.0 255.255.0.0 summary- router ospf 1
only redistribute bgp 65002 subnets
neighbor 10.254.0.57 prefix-list INET out
redistribute ospf 1 router bgp 65002
redistribute ospf 1
router ospf 1 neighbor 10.254.0.77 default-originate
default-information originate always Jameson Core
R1
Jameson Main Office router bgp 65001
R13 bgp router-id 10.255.1.1
ip prefix-list INET seq 5 permit 10.3.0.0/16 no bgp default ipv4-unicast
ip prefix-list INET seq 10 permit 10.255.1.13/32 neighbor iBGP peer-group
ip prefix-list INET seq 15 permit 10.255.1.14/32 neighbor iBGP remote-as 65001
ip prefix-list INET seq 20 permit 10.255.1.102/32 neighbor iBGP update-source loopback 0
neighbor 10.255.1.3 peer-group iBGP
router bgp 65002 neighbor 10.255.1.4 peer-group iBGP
aggregate-address 10.3.0.0 255.255.0.0 summary- neighbor 10.255.1.5 peer-group iBGP
only neighbor 10.255.1.6 peer-group iBGP
neighbor 10.254.0.41 prefix-list INET out neighbor 10.255.1.7 peer-group iBGP
redistribute ospf 1 neighbor 10.255.1.8 peer-group iBGP
router ospf 1 neighbor 172.30.1.50 peer-group iBGP
default-information originate always neighbor 172.30.1.51 peer-group iBGP
R14 neighbor 172.30.1.52 peer-group iBGP
ip prefix-list INET seq 5 permit 10.3.0.0/16
ip prefix-list INET seq 10 permit 10.255.1.13/32 address-family ipv4 unicast
neighbor iBGP route-reflector-client neighbor 10.255.1.1 activate
neighbor 10.255.1.3 activate
neighbor 10.255.1.4 activate address-family vpnv4 unicast
neighbor 10.255.1.5 activate neighbor 10.255.1.1 activate
neighbor 10.255.1.6 activate neighbor 10.255.1.1 send-community extended
neighbor 10.255.1.7 activate
neighbor 10.255.1.8 activate R5
neighbor 172.30.1.50 activate router bgp 65001
neighbor 172.30.1.51 activate bgp router-id 10.255.1.5
neighbor 172.30.1.52 activate no bgp default ipv4-unicast
neighbor 10.255.1.1 remote-as 65001
address-family vpnv4 unicast neighbor 10.255.1.1 update-source loopback 0
neighbor iBGP route-reflector-client
neighbor iBGP send-community extended address-family ipv4 unicast
neighbor 10.255.1.3 activate neighbor 10.255.1.1 activate
neighbor 10.255.1.4 activate
neighbor 10.255.1.5 activate address-family vpnv4 unicast
neighbor 10.255.1.6 activate neighbor 10.255.1.1 activate
neighbor 10.255.1.7 activate neighbor 10.255.1.1 send-community extended
neighbor 10.255.1.8 activate
neighbor 172.30.1.50 activate R6
neighbor 172.30.1.51 activate router bgp 65001
neighbor 172.30.1.51 weight 1000 bgp router-id 10.255.1.6
neighbor 172.30.1.52 activate no bgp default ipv4-unicast
neighbor 10.255.1.1 remote-as 65001
R3 neighbor 10.255.1.1 update-source loopback 0
router bgp 65001
bgp router-id 10.255.1.3 address-family ipv4 unicast
no bgp default ipv4-unicast neighbor 10.255.1.1 activate
neighbor 10.255.1.1 remote-as 65001
neighbor 10.255.1.1 update-source loopback 0 address-family vpnv4 unicast
neighbor 10.255.1.1 activate
address-family ipv4 unicast neighbor 10.255.1.1 send-community extended
neighbor 10.255.1.1 activate
R7
router bgp 65001
address-family vpnv4 unicast bgp router-id 10.255.1.7
neighbor 10.255.1.1 activate no bgp default ipv4-unicast
neighbor 10.255.1.1 send-community extended neighbor 10.255.1.1 remote-as 65001
neighbor 10.255.1.1 update-source loopback 0
R4
router bgp 65001 address-family ipv4 unicast
bgp router-id 10.255.1.4 neighbor 10.255.1.1 activate
no bgp default ipv4-unicast
neighbor 10.255.1.1 remote-as 65001 address-family vpnv4 unicast
neighbor 10.255.1.1 update-source loopback 0 neighbor 10.255.1.1 activate
neighbor 10.255.1.1 send-community extended
address-family ipv4 unicast
R8
router bgp 65001
bgp router-id 10.255.1.6
no bgp default ipv4-unicast
neighbor 10.255.1.1 remote-as 65001
neighbor 10.255.1.1 update-source loopback 0

address-family ipv4 unicast


neighbor 10.255.1.1 activate

address-family vpnv4 unicast


neighbor 10.255.1.1 activate
neighbor 10.255.1.1 send-community extended

SectIon 2.5
Jameson HQ !
R55 address-family ipv4 unicast autonomous-system
router eigrp Jacob 10
! !
address-family ipv4 unicast autonomous-system topology base
10 redistribute bgp 65007 metric 1000 100 255 1
! 1500
topology base exit
redistribute bgp 65005 metric 1000 100 255 1
1500 router bgp 65007
exit redistribute eigrp 10

router bgp 65005


redistribute eigrp 10

R56
router eigrp Jacob
!
address-family ipv4 unicast autonomous-system
10
!
topology base
redistribute bgp 65005 metric 1000 100 255 1
1500
exit

router bgp 65005


redistribute eigrp 10

Jameson Office
R58
router eigrp Jacob
Section 2.6 and 2.8 Section 2.7
Jameson DC Jameson Core
R18 R9
route-tag notation dotted-decimal
router bgp 65002 router eigrp Jacob
bgp router-id 10.255.1.18 address-family ipv4 unicast as 1
neighbor 10.2.0.46 remote-as 65005 network 10.254.0.61 0.0.0.0
network 10.2.1.0 mask 255.255.255.0 topology base
aggregate-address 10.0.0.0 255.0.0.0 redistribute ospf 1 metric 1000 100 255 1 1500

router ospf 1 router ospf 1


redistribute bgp 65002 metric-type 1 subnet redistribute eigrp 10 subnet
distribute-list route-map DEX in
Jacob HQ
R57 R10
route-tag notation dotted-decimal
router bgp 65005 router eigrp Jacob
bgp router-id 172.30.1.57 address-family ipv4 unicast as 1
neighbor 10.2.0.45 remote-as 65002 network 10.254.0.65 0.0.0.0
network 172.18.1.0 mask 255.255.255.0 topology base
aggregate-address 172.0.0.0 255.0.0.0 redistribute ospf 1 metric 1000 100 255 1 1500

router eigrp Jacob router ospf 1


! redistribute eigrp 10 subnet
address-family ipv4 unicast autonomous-system distribute-list route-map DEX in
10
! Loop Prevent R9/10
topology base route-map DEX deny 10
redistribute bgp 65005 metric 1000 100 255 1 match tag 172.172.172.172
1500 route-map DEX permit 20

Jacob Core
R53
router eigrp Jacob
!
address-family ipv4 unicast autonomous-system 1
network 10.254.0.62 0.0.0.0

R54
router eigrp Jacob
!
address-family ipv4 unicast autonomous-system 1
network 10.254.0.66 0.0.0.0
Section 2.9 and 2.10 Section 2.11
Jameson's DC IPv6 Routing Jameson Branch Network Multicast
R17
SW3 ip multicast-routing
ipv6 unicast-routing
router ospfv3 1 ip pim bsr-candidate loopback 0
router-id 10.255.1.103 ip pim rp-candidate loopback 0

int range vlan 34 , vlan 100 , vlan 153 , loopback 0 int range e0/1 , loopback 0 , tun 0
ospfv3 1 ipv6 area 0 ip pim sparse-mode

int vlan 100 R19,R20,R21


ipv6 nd router-preference high ip multicast-routing
ipv6 nd ra interval 20
int range e0/1 , loopback 0 , tun 0
SW4 ip pim sparse-mode
ipv6 unicast-routing
router ospfv3 1 int e0/1
router-id 10.255.1.104 ip igmp join-group 239.1.1.1

int range vlan 34 , vlan 100 , vlan 164 , loopback 0


ospfv3 1 ipv6 area 0

int vlan 100


ipv6 nd router-preference medium
ipv6 nd ra interval 20

R15
ipv6 unicast-routing
router ospfv3 1
router-id 10.255.1.15

int range e0/0, e0/2 , loopback 0


ospfv3 1 ipv6 area 0

R16
ipv6 unicast-routing
router ospfv3 1
router-id 10.255.1.16

int range e0/0, e0/2 , loopback 0


ospfv3 1 ipv6 area 0

SW3/SW4 HSRPv6
SW3
int vlan 100
standby version 2
standby 6 ipv6 FE80:100::1
Sectionb 3.2 and 3.3
Jameson Core mpls ip
R1/R2
ip cef R53/R54
mpls ip ip cef
mpls label protocol ldp mpls ip
mpls ldp router-id loopback 0 mpls label protocol ldp
mpls ldp router-id loopback 0
int range e0/0 - 3 , e1/0
mpls ip int range e0/0 -1
mpls ip

R3/R4 R50/R51/R2
ip cef ip cef
mpls ip mpls ip
mpls label protocol ldp mpls label protocol ldp
mpls ldp router-id loopback 0 mpls ldp router-id loopback 0

int range e0/0 , e0/2 int range e0/0


mpls ip mpls ip

R3
R5/R6 ip vrf GREEN
ip cef rd 65002:2
mpls ip
mpls label protocol ldp int e0/1
mpls ldp router-id loopback 0 ip vrf forwarding GREEN
ip address 10.254.0.73 255.255.255.252
int range e0/0 - 1
mpls ip R4
ip vrf GREEN
rd 65002:2
R7/R8
ip cef int e0/1
mpls ip ip vrf forwarding GREEN
mpls label protocol ldp ip address 10.254.0.77 255.255.255.252
mpls ldp router-id loopback 0
R5
int range e0/3 ip vrf GREEN
mpls ip rd 65002:3

R9/R10 int e0/2


ip cef ip vrf forwarding GREEN
mpls ip ip address 10.254.0.41 255.255.255.252
mpls label protocol ldp
mpls ldp router-id loopback 0 R6
ip vrf GREEN
int range e0/0 -1 rd 65002:3
int e0/2 address-family ipv4 unicast vrf GREEN
ip vrf forwarding GREEN neighbor 10.254.0.74 remote-as 65002
ip address 10.254.0.45 255.255.255.252 neighbor 10.254.0.74 activate
neighbor 10.254.0.74 as-override
R7 neighbor 10.254.0.74 soo 65002:2
ip vrf RED
rd 65002:1 R4
router bgp 65001
int e0/0 address-family ipv4 unicast vrf GREEN
ip vrf forwarding RED neighbor 10.254.0.78 remote-as 65002
ip address 10.254.0.53 255.255.255.252 neighbor 10.254.0.78 activate
neighbor 10.254.0.78 as-override
R8 neighbor 10.254.0.78 soo 65002:2
ip vrf RED
rd 65002:1 R5
router bgp 65001
int e0/0 address-family ipv4 unicast vrf GREEN
ip vrf forwarding RED neighbor 10.254.0.42 remote-as 65002
ip address 10.254.0.57 255.255.255.252 neighbor 10.254.0.42 activate
neighbor 10.254.0.42 as-override
R50 neighbor 10.254.0.42 soo 65002:3
ip vrf GREEN
rd 65005:18 R6
router bgp 65001
int e0/1 address-family ipv4 unicast vrf GREEN
ip vrf forwarding GREEN neighbor 10.254.0.46 remote-as 65002
ip address 172.18.253.1 255.255.255.252 neighbor 10.254.0.46 activate
neighbor 10.254.0.46 as-override
R51 neighbor 10.254.0.46 soo 65002:3
ip vrf GREEN
rd 65005:18 R7
router bgp 65001
int e0/1 address-family ipv4 unicast vrf RED
ip vrf forwarding GREEN neighbor 10.254.0.54 remote-as 65002
ip address 172.18.253.5 255.255.255.252 neighbor 10.254.0.54 activate
neighbor 10.254.0.54 as-override
R52 neighbor 10.254.0.54 soo 65002:1
ip vrf BLUE
rd 65007:17 R8
router bgp 65001
int e0/1 address-family ipv4 unicast vrf RED
ip vrf forwarding BLUE neighbor 10.254.0.58 remote-as 65002
ip address 172.17.253.22 255.255.255.252 neighbor 10.254.0.58 activate
neighbor 10.254.0.58 as-override
neighbor 10.254.0.58 soo 65002:1
R3
router bgp 65001 R50
no router bgp 65006
router bgp 65001 neighbor 10.255.1.1 update-source loopback 0
bgp router-id 172.30.1.50
no bgp default ipv4-unicast address-family ipv4 unicast
neighbor 10.255.1.1 remote-as 65001 neighbor 10.255.1.1 activate
neighbor 10.255.1.1 update-source loopback 0
address-family vpnv4 unicast
address-family ipv4 unicast neighbor 10.255.1.1 activate
neighbor 10.255.1.1 activate neighbor 10.255.1.1 send-community extended

address-family vpnv4 unicast address-family ipv4 unicast vrf BLUE


neighbor 10.255.1.1 activate neighbor 172.17.253.21 remote-as 65007
neighbor 10.255.1.1 send-community extended neighbor 172.17.253.21 local-as 65006
neighbor 172.17.253.21 activate
address-family ipv4 unicast vrf GREEN
neighbor 172.18.253.2 remote-as 65005
neighbor 172.18.253.2 local-as 65006
neighbor 172.18.253.2 activate
neighbor 172.18.253.2 soo 65005:18

R51
no router bgp 65006
router bgp 65001
bgp router-id 172.30.1.51
no bgp default ipv4-unicast
neighbor 10.255.1.1 remote-as 65001
neighbor 10.255.1.1 update-source loopback 0

address-family ipv4 unicast


neighbor 10.255.1.1 activate

address-family vpnv4 unicast


neighbor 10.255.1.1 activate
neighbor 10.255.1.1 send-community extended

address-family ipv4 unicast vrf GREEN


neighbor 172.18.253.6 remote-as 65005
neighbor 172.18.253.6 local-as 65006
neighbor 172.18.253.6 activate
neighbor 172.18.253.6 soo 65005:18

R52
no router bgp 65006
router bgp 65001
bgp router-id 172.30.1.52
no bgp default ipv4-unicast
neighbor 10.255.1.1 remote-as 65001
Section 3.4 Section 4.2
R3/R4
ip vrf GREEN SW5
rd 65002:2 ip dhcp snooping
route-target export 65002:2 ip dhcp snooping vlan100-101
route-target import 65002:1 ip dhcp snooping verify mac-address
route-target import 65002:3
route-target import 65005:18 int po 35
route-target import 65007:17 ip dhcp snooping trust

SW6
ip dhcp snooping
ip dhcp snooping vlan100-101
R5/R6 ip dhcp snooping verify mac-address
ip vrf GREEN
rd 65002:3 int po 46
route-target export 65002:3 ip dhcp snooping trust
route-target import 65002:2
route-target import 65007:17 SW3/SW4
int vlan 100
ip dhcp relay information trust

R7/R8
ip vrf RED
rd 65002:1
route-target export 65002:1
route-target import 65002:2
route-target import 65005:18
route-target import 65007:17

R50/R51
ip vrf GREEN
rd 65005:18
route-target export 65005:18
route-target import 65002:2
route-target import 65002:1
route-target import 65007:17

R52
ip vrf BLUE
rd 65007:17
route-target export 65007:17
route-target import 65002:2
route-target import 65002:1
route-target import 65002:3
route-target import 65005:18
Section 5.1 , 5.3 , 5.4 Section 5.2 and 4.1
R15 Internet Gateway
ip dhcp excluded-address 10.2.1.1 R17
ip dhcp excluded-address 10.2.1.253 access-list 99 permit 10.0.0.0 /8
ip dhcp excluded-address 10.2.1.254 access-list 99 permit 172.0.0.0 /8

ip dhcp pool PC101 int range e0/1 , tun 0


network 10.2.1.0 255.255.255.0 ip nat inside
default-router 10.2.1.1
int e0/0
ip nat outside
SW3/SW4
int vlan 100 ip nat inside source list 99 int e0/0 overload
ip helper-address 10.255.1.15
Control Plane Security (or) Device Security
SW3
int vlan 100 R17
standby version 2 ip access-list extended TTL
standby 4 ip 10.2.1.1 deny pim any any
standby 4 priority 150 deny esp any any
standby 4 timer 10 30 deny ospf any any
standby 4 preempt deny udp any any eq isakmp
deny udp any eq isakmp any
SW4 deny tcp any any eq 179
int vlan 100 deny tcp any eq 179 any
standby version 2 permit ip any any ttl lt 2
standby 4 ip 10.2.1.1
standby 4 timer 10 30 class-map match-all CM-TTL
standby 4 preempt match access-group name TTL

SW3/SW4 policy-map COPP


track 1 ip route 0.0.0.0 0.0.0.0 reachability class CM-TTL
drop
int vlan 100 class class-default
standby 4 track 1 decrement 10
control-plane
service-policy input COPP

You might also like

pFad - Phonifier reborn

Pfad - The Proxy pFad of © 2024 Garber Painting. All rights reserved.

Note: This service is not intended for secure transactions such as banking, social media, email, or purchasing. Use at your own risk. We assume no liability whatsoever for broken pages.


Alternative Proxies:

Alternative Proxy

pFad Proxy

pFad v3 Proxy

pFad v4 Proxy