Monday, 17 June 2019

June 17, 2019

Flash Card Knowledge Review
Completed 101 flash card reviews
Added 5 new flash cards

I may cut out the daily updates here toward the end.  I am basically just beating up INE's full scale labs and doing the ATC reviews as well as my configuration flash cards.

Configuration Flash Cards
Tricky ACL
Telnet
SSH
DHCP Server w/ specific host
LDP Autoconfig
DHCP Relay
Basic QoS Policer
BGP Summarization
IPv6 over IP GRE w/  OSPFv3
L3VPN Single Peering
EIGRP Named Mode w/ Options
DHCPv6 Server
Tricky ACL
NTP
L3VPN MULTI-Peering
OSPF for a DMVPN (Phase 3)
BGP Confederation
MPLS LDP Configuration
IPv6 Prefix-list
OSPF Sham-Link
L3VPN PE-PE BGP
Multicast sender/receiver


Lab cards completed
Traffic Filtering with Policy-Based Routing
Preventing Packet Spoofing with uRPF
Authenticating BGP Peerings
Using NBAR for Content-Based Matching
SNMPv3
NTP Access Control
IOS ACL Selective IP Option Drop
Controlling the ICMP Messages Rate
RIPng Summarization
Configuration Archive and Rollback
Traffic Filtering Using Standard Access-Lists

Thursday, 13 June 2019

June 13, 2019

Flash Card Knowledge Review
Completed 90 flash card reviews

I started to go through Advanced Foundation 3 and got frustrated. I think I will need to use INE rack rentals for these.  I spent wayyy too much time troubleshooting issues with versions and/or virtualization issues that weren't part of the lab...

Configuration Flash Cards
IPv6 Tunnel
QoS Single-Rate Two-Color Policer
L3VPN PE-CE OSPF
DHCPv6
MST
LDP Auto
BGP Confederation
Tricky Prefix Lists
NTP
PBR with NAT
L3VPN Extranet
GLBP

Lab cards completed
Filtering Fragmented Packets
CPU and Memory Thresholds
BGP Conditional Route Injection
IGMP Timers
SNMP Traps and Informs
DMVPN Phase 2 with OSPF
IPv6 EUI-64 Addressing

Wednesday, 12 June 2019

June 12, 2019

Flash Card Knowledge Review
Completed 92 flash card reviews

Completed INE Advanced Foundation Lab 2
I am exhausted so I will grade it tomorrow, but I believe the score would/will be "pass" based on the configs alone.  However, it took me almost 9 hours to complete... so... ouch

Configuration Flash Cards
MPLS LDP Auto
DMVPN Phase 3
VRRP
QoS Single Rate Two Color Policer
IPSec for DMVPN with transport VRF
HSRP
IPv6 Prefix-List
SSH
Multicast
uRPF

Lab cards completed
Local Preference
OSPF Filtering with Administrative Distance
Static NAT and IP Aliasing
BGP Generic TTL Security Mechanism
GRE over IPsec with Crypto Profiles
OSPF Stub Areas with Multiple Exit Points
TCP Load Distribution with NAT
Static Policy NAT

Tuesday, 11 June 2019

June 11, 2019

Looks like I missed yesterday but it was about a dozen labs and 100 flash cards...

Flash Card Knowledge Review
Completed 104 flash card reviews

Completed the first INE Advanced Foundations lab!  Got a passing score I would suppose, but it took over 3 hours and the topology only included 14 devices...

Configuration Flash Cards
I will start tracking these since they are taking up a good chunk of my time.  Basically I have a deck of "configuration drills" that I do for speed/accuracy.

Tricky Access-lists
SSH*
DHCP Relay
Tricky Prefix-lists
L3VPN PE-CE BGP
PPP w/ CHAP Authentication
Basic Netflow
Auto-RP
NTP
EIGRP/OSPF Redistribution
L3VPN PE-CE EIGRP*
L3VPN PE-PE OSPF
L3VPN Hub & Spoke Multi-Peering
L3VPN Hub & Spoke Single-Peering
iBGP VPNv4
* = messed something up, had to hit "again"

Lab cards completed
IP Event Dampening
Filtering Traffic with Time-Based Access Lists
DHCP Snooping
IOS Small Services and Finger
TCP Keepalives
IPv6 Link-Local Addressing
Reversible NAT
VLAN Filtering for IP Traffic
Syslog Logging
Static Extendable NAT
Logging to Flash Memory
Static PAT
OSPF Flooding Reduction
IOS DNS Spoofing
Static NAT

Saturday, 8 June 2019

June 8, 2019

Flash Card Knowledge Review
Completed 139 flash card reviews
Added 3 new cards

Lab cards completed
IP Source Guard
Tuning Packet Buffers
Packet Logging with Access-Lists
Terminal Line Settings
BGP Peer Groups
Reversible NAT
SNMPv3
SNMP Traps and Informs
AAA Local Command Authorization
AAA Authentication Lists
EIGRPv6 Prefix Filtering
CDP
Static Policy NAT
HSRP and Port Security
NAT Default Interface
NTP
NTP Authentication
DHCP Snooping and the Information Option
Discontiguous OSPF Areas with Virtual-Links
MQC Classification and Marking
CPU and Memory Thresholds

Friday, 7 June 2019

LAB - BGP Route Reflector Loop

R3#trace 150.1.10.10 source loopback0 ttl 1 10
Type escape sequence to abort.
Tracing the route to 150.1.10.10
VRF info: (vrf in name/id, vrf out name/id)
  1 155.1.34.4 2 msec 2 msec 2 msec
  2 155.1.34.3 1 msec 2 msec 2 msec
  3 155.1.34.4 3 msec 3 msec 3 msec
  4 155.1.34.3 3 msec 2 msec 4 msec
  5 155.1.34.4 6 msec 3 msec 5 msec
  6 155.1.34.3 4 msec 3 msec 3 msec
  7 155.1.34.4 4 msec 5 msec 4 msec
  8 155.1.34.3 5 msec 5 msec 6 msec
  9 155.1.34.4 7 msec 6 msec 4 msec
 10 155.1.34.3 3 msec 6 msec 7 msec

1) Explain why it is happening
2) Fix it.  No tunnels or static routes allowed
3) Explain your fix

This lab uses R1-R4 and R10 from the INE topology

Link: INE-CCIE-RSv5-Topologies.zip
Description: Contains 10-Router + 4-Switch and 20-Router + 4-Switch INE ATC topology for IOL, IOSv, and CSR1000v



June 7, 2019

Flash Card Knowledge Review
Completed 207 flash card reviews
Added 20 new cards

Lab cards completed
Configuration Change Notification and Logging
NTP Access Control
IOS Login Enhancements
FTP Client
MST Path Selection with Port Cost
Dynamic ARP Inspection
BGP Conditional Route Injection
TCP Optimization
Syslog Logging
Logging to Flash Memory
Controlling Terminal Line Access
SNMP Notifications of Syslog Messages
Static Extendable NAT
Control Plane Policing

Lab cards added
Static NAT
Static PAT
Static NAT and IP Aliasing
Static Policy NAT
TCP Load Distribution with NAT
NAT Default Interface
Reversible NAT

Thursday, 6 June 2019

June 6, 2019

Flash Card Knowledge Review
Completed 185 flash card reviews
Added 20 new cards

Pushing through services...

Lab cards completed
Auto-RP and RP/MA Placement
DHCP Snooping
DMVPN Phase 2 with OSPF
Catalyst Multicast VLAN Registration

Still pushing through services/management

Lab cards added
Static Extendable NAT
TCP Optimization
IOS Small Services and Finger
Directed Broadcasts and UDP Forwarding
NBAR Protocol Discovery
IOS DNS Spoofing
IP Event Dampening
Exec Aliases
System Message Logging
Syslog Logging
Logging Counting and Timestamps
Logging to Flash Memory
Configuration Change Notification and Logging
Configuration Archive and Rollback
Logging with Access-Lists
TCP Keepalives

Wednesday, 5 June 2019

June 5, 2019

Flash Card Knowledge Review
Completed 170 flash card reviews
Added 20 new cards

Pushing through services...

Lab cards completed
Controlling the ICMP Messages Rate
Port Security
MPLS LDP
BGP Aggregation - Unsuppress Map
VLAN Filtering for IP Traffic
IPv6 SSM

Lab cards added
Telnet Service Options
Tuning Packet Buffers
Terminal Line Settings
SNMPv2 Server
SNMPv2c Access Control
SNMP Traps and Informs
CPU and Memory Thresholds
SNMPv3
SNMP MAC Address Notifications

Tuesday, 4 June 2019

June 4, 2019

Flash Card Knowledge Review
Completed 158 flash card reviews
Added 20 new cards

Just pushing through the Systems management stuff...

Lab cards completed
EIGRP Stub Routing
Using Catalyst Ingress Access-Lists
DMVPN with IPsec
OSPF SHA Authentication
IOS ACL Selective IP Option Drop

Lab cards added
SNMP Notifications of Syslog Messages
CDP
HTTP Server and Client
FTP Client
TFTP Server and Client
Remote Shell
NTP
NTP Authentication
NTP Access Control

Monday, 3 June 2019

June 3, 2019

Flash Card Knowledge Review
Completed 184 flash card reviews
Added 20 new cards

Pushed forward on security stuff and took a sneak-peek at the FHRP stuff that I hope to cover tomorrow

Lab cards completed
VRF Aware DMVPN
Filtering Fragmented Packets
IPv6 Auto-Configuration
Anycast RP
Traffic Filtering with Policy-Based Routing
Traffic Filtering Using Standard Access-Lists
EIGRP Traffic Engineering with Metric
Using NBAR for Content-Based Matching
PE-CE Routing with RIP
AAA Exec Authorization
BGP Conditional Route Injection
Filtering Traffic with Time-Based Access Lists
BGP Generic TTL Security Mechanism
Preventing Packet Spoofing with uRPF
RIPv2 Filtering with Standard Access-Lists

Lab cards added
HSRP and Port Security
DHCP Snooping
DHCP Snooping and the Information Option
Dynamic ARP Inspection
IP Source Guard

Sunday, 2 June 2019

June 2, 2019

Flash Card Knowledge Review
Completed 306 flash card reviews
Added 20 new cards

Watched/Study - Finished up the security section of the INE videos, and did some additional reading on Networklessons.com and Cisco.com. I still have a few more security labs to do but just about ready to move on to services!


Lab cards completed
Control Plane Policing
VLAN Filtering for Non-IP Traffic
MQC Bandwidth Reservations and CBWFQ
IPsec Virtual Tunnel Interfaces (VTIs)
Controlling Terminal Line Access
Traffic Filtering Using Extended Access-Lists
BGP Bestpath Selection - Router-IDs
OSPF over DMVPN
EIGRPv6 Default Routing
BGP Conditional Advertisement
VLAN Filtering for IP Traffic
AAA Local Command Authorization
IOS Login Enhancements
DMVPN Phase 2 with EIGRP
Auto-RP Listener
IPv6 Tunneling
Controlling the ICMP Messages Rate
Packet Logging with Access-Lists
DMVPN Phase 2 with OSPF
GRE over IPsec with Crypto Maps
AAA Authentication Lists
OSPFv3

Popular Posts