Vous êtes sur la page 1sur 126

CCNPv7.

1 TSHOOT

Skills Assessment
Base Topology

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 1 of 126
CCNPv7.1 TSHOOT Skills Assessment

Overlay Topology

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 2 of 126
CCNPv7.1 TSHOOT Skills Assessment

Device Interfaces and Links Table

From Device Interface To Device Interface Layer 1 and 2 Features and Protocols Used

ALS1 F0/1 DLS1 F0/1 EtherChannel Po1, 802.1Q

ALS1 F0/2 DLS1 F0/2 EtherChannel Po1, 802.1Q

ALS1 F0/3 DLS2 F0/1 EtherChannel Po2, 802.1Q

ALS1 F0/4 DLS2 F0/2 EtherChannel Po2, 802.1Q

ALS1 F0/18 PC-B NIC 100Base-T

ALS1 F0/18 R2 G0/0 100Base-T

DLS1 F0/3 DLS2 F0/3 EtherChannel Po10, 802.1Q

DLS1 F0/4 DLS2 F0/4 EtherChannel Po10, 802.1Q

DLS1 F0/5 R1 G0/1 100 Mb/s, DLS1 F0/5 is a routed L3 port (logical)

DLS1 F0/6 SRV1 NIC 100Base-T

DLS2 F0/5 R3 G0/1 100 Mb/s, DLS2 F0/5 is a routed L3 port (logical)

R1 S0/0/0.1 R2 S0/0/0.1 WAN link, Frame Relay

R1 S0/0/0.2 R2 S0/0/0.2 WAN link, Frame Relay

R2 S0/0/1.1 R3 S0/0/1.1 WAN link, Frame Relay

R2 S0/0/1.2 R3 S0/0/1.2 WAN link, Frame Relay

R3 G0/0 PC-C NIC 100Base-T

VLAN Definition Table

VLAN # Name Description VLAN Members


99 MANAGEMENT Management VLAN ALS1, DLS1, DLS2
100 SERVERS Internal Servers ALS1, DLS1, DLS2, SRV1
110 GUEST Guest VLAN ALS1, DLS1, DLS2
120 OFFICE Office VLAN ALS1, DLS1, DLS2, PC-B, R2
200 VOICE Voice VLAN ALS1, DLS1, DLS2
300 O-PEER DLS1-DLS2 OSPF Peering ALS1, DLS1, DLS2
666 NATIVE IEEE 802.1Q Trunk VLAN ALS1, DLS1, DLS2
999 PARKING_LOT Unused Switch Ports ALS1, DLS1, DLS2

Subnet Table

Description IPv4 Subnet IPv6 Prefix Devices/Descriptions


VLANs
MANAGEMENT VLAN 99 10.1.99.0/24 2001:DB8:CAFE:99::/64 ALS1, DLS1, DLS2
SERVERS VLAN 100 10.1.100.0/24 2001:DB8:CAFE:100::/64 SRV1
GUEST VLAN 110 10.1.110.0/24 2001:DB8:CAFE:110::/64 N/A
OFFICE VLAN 120 10.1.120.0/24 2001:DB8:CAFE:120::/64 PC-B

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 3 of 126
CCNPv7.1 TSHOOT Skills Assessment

Description IPv4 Subnet IPv6 Prefix Devices/Descriptions


VOICE VLAN 200 10.1.200.0/24 2001:DB8:CAFE:200::/64 ALS1, DLS1, DLS2
O-PEER VLAN 300 10.1.30.0/24 2001:DB8:CAFE:300::/64 ALS1, DLS1, DLS2
NATIVE VLAN 666 N/A N/A ALS1, DLS1, DLS2
PARKING_LOT VLAN 999 N/A N/A ALS1, DLS1, DLS2

Uplinks and ISP Links


DLS1-R1 10.1.2.0/30 2001:DB8:CAFE:20::/64 DLS1 and R1 GE link
DLS2-R3 10.1.2.12/30 2001:DB8:CAFE:212::/64 DLS2 and R3 GE link
R2-R1 via S0/0/0.1 209.165.200.224/30 2001:DB8:FEED:10::/126 P2P back-to-back Frame Relay link
R2-R1 via S0/0/0.2 209.165.200.228/30 2001:DB8:CAFE:6::/126 P2P back-to-back Frame Relay link
R2-R3 via S0/0/1.1 209.165.200.220/30 2001:DB8:FEED:14::/126 P2P back-to-back Frame Relay link
R2-R3 via S0/0/1.2 10.1.90.2/31 2001:DB8:CAFE:90::/126 P2P back-to-back Frame Relay link
ALS1-R2 10.1.120.0/64 2001:DB8:CAFE:120::/64 Temporary ISP link

IP Address Table

Device Name Interface IPv4 Address/Prefix IPv6 Address/Prefix Additional Information


ALS1 VLAN 99 10.1.99.251/24 2001:DB8:CAFE:99::A1/64 SVI
ALS1 VLAN 110 10.1.110.251/24 2001:DB8:CAFE:110::A1/64 SVI
ALS1 VLAN 120 10.1.120.251/24 2001:DB8:CAFE:120::A1/64 SVI
ALS1 VLAN 200 10.1.200.251/24 2001:DB8:CAFE:200::A1/64 SVI
ALS1 VLAN 300 10.1.30.251/24 2001:DB8:CAFE:300::A1/64 SVI
DLS1 VLAN 99 10.1.99.252/24 2001:DB8:CAFE:99::D1/64 SVI
DLS1 VLAN 100 10.1.100.252/24 2001:DB8:CAFE:100::D1/64 SVI
DLS1 VLAN 110 10.1.110.252/24 2001:DB8:CAFE:110::D1/64 SVI
DLS1 VLAN 120 10.1.120.252/24 2001:DB8:CAFE:120::D1/64 SVI
DLS1 VLAN 200 10.1.200.252/24 2001:DB8:CAFE:200::D1/64 SVI
DLS1 VLAN 300 10.1.30.252/24 2001:DB8:CAFE:300::D1/64 SVI
DLS1 F0/5 10.1.2.1/30 2001:DB8:CAFE:20::D1/64 Routed Port to R1
DLS1 Loopback 0 10.1.211.1/32 2001:DB8:CAFE:2110::D1/128 Anchor
DLS1 Tunnel 0 N/A FC00::D1/7 GRE to R2: R1 RIPngFree
DLS2 VLAN 99 10.1.99.253/24 2001:DB8:CAFE:99::D2/64 SVI
DLS2 VLAN 100 10.1.100.253/24 2001:DB8:CAFE:100::D2/64 SVI
DLS2 VLAN 110 10.1.110.253/24 2001:DB8:CAFE:110::D2/64 SVI
DLS2 VLAN 120 10.1.120.253/24 2001:DB8:CAFE:120::D2/64 SVI
DLS2 VLAN 200 10.1.200.253/24 2001:DB8:CAFE:200::D2/64 SVI
DLS2 VLAN 300 10.1.30.253/24 2001:DB8:CAFE:300::D2/64 SVI
DLS2 F0/5 10.1.2.13/30 2001:DB8:CAFE:212::D2/64 Routed Port to R3
R1 G0/1 10.1.2.2/30 2001:DB8:CAFE:20::1/64
R1 S0/0/0.1 209.165.200.225/30 2001:DB8:FEED:10::1/126
R1 S0/0/0.2 209.165.200.229/30 2001:DB8:CAFE:6::1/126
R1 Loopback 0 192.168.1.1/32 2001:DB8:CAFE:201::1/128 iBGP Peer
R1 Tunnel 0 N/A ABCD::1/16 GRE to R3: LAN Failover via
OSPFv3
R2 G0/0 DHCPv4 in range SLAAC in
10.1.120.6-10.1.120.250 2001:DB8:CAFE:120::/64
R2 S0/0/0.1 209.165.200.226 2001:DB8:FEED:10::2/126
R2 S0/0/0.2 209.165.200.230/126 2001:DB8:CAFE:6::2/126

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 4 of 126
CCNPv7.1 TSHOOT Skills Assessment

R2 S0/0/1.1 209.165.200.222/30 2001:DB8:FEED:14::2/126


R2 S0/0/1.2 10.1.90.2/31 2001:DB8:CAFE:90::2/126
R2 Loopback 0 2.2.2.2/32 2001:DB8:FEED:222::2/128 VRF VPN_A
R2 Loopback 1 2.2.2.2/32 2001:DB8:FEED:222::2/128 VRF VPN_B
R2 Loopback 2 20.20.20.20/32 2001:DB8:CAFE:2020::2/128 EIGRP & RIP
R2 Loopback 3 22.22.22.22/8 2001:DB8:EFAC::2/48 Internet (Global)
R2 Loopback 4 22.22.22.22/8 2001:DB8:EFAC::2/48 Internet (VPN_A Path)
R2 Loopback 5 22.22.22.22/8 2001:DB8:EFAC::2/48 Internet (VPN_B Path)
R2 Tunnel 0 N/A FC00:2/7 GRE to DLS1: R1 RIPngFree
R3 G0/0 10.1.80.1/25 2001:DB8:CAFE:800::1/64 Collocated Office LAN
R3 G0/1 10.1.2.14/30 2001:DB8:CAFE:212::3/64
R3 S0/0/1.1 209.165.200.221/30 2001:DB8:FEED:14::3/126
R3 S0/0/1.2 10.1.90.3/31 2001:DB8:CAFE:90::3/126
R3 Loopback 0 192.168.3.1/32 2001:DB8:CAFE:203::1/128 iBGP Peer
R3 Loopback 1 10.1.80.129/25 from DHCP 2001:DB8:CAFE:801::1/64 Collocated Office Simulated
Pool Simulatedv4LAN LAN
R3 Tunnel 0 N/A ABCD::3/16 GRE to R1: LAN Failover via
OSPFv3
SRV1 NIC 10.1.100.1/24 2001:DB8:CAFE:100::1/64 Static addresses
PC-B NIC In range In Addresses via DHCPv4/6
10.1.120.6-10.1.120.250 2001:DB8:CAFE:120:ABCD::/80 server DLS1 or DLS2
PC-C NIC In range In Addresses via DHCP relay to
10.1.80.4-10.1.80.126 2001:DB8:CAFE:800:ABCD::/80 DHCPv4/6 server DLS2

Troubleshooting and Maintenance Tools Table

Configured Feature Devices Target Server Target Tool or Application

System message logging All SRV1 Syslog server

Configuration archive All SRV1 TFTP server

SNMPv2c traps All SRV1 SNMP Monitor

NTPv4 All R2 NTP server, stratum 3

NetFlow Top-Talkers R1 G0/1 ingress flow, Local Local on the router


R3 G0/1 ingress flow

Security Features Table

Security Feature Configured Implementation Method or Commands


Password security Enable secret cisco; password encryption
Login authentication AAA local database authentication; username/password is cisco/cisco
Secure remote management Telnet disabled on all devices; SSH IPv6 access list on ALS1 vty ports 0-4
Trunk port security on switches switchport mode trunk, switchport nonegotiate, unused NATIVE
VLAN 666, only prescribed VLANs allowed on trunk
Access port security on switches switchport mode access, PortFast (spanning-tree portfast
default globally), port security on ALS1 (max ten sticky MAC addresses),
BPDU Guard (spanning-tree bpduguard enable on access ports)
Proxy ARP Disabled on SVIs no ip proxy-arp
VLAN security Unused ports placed in PARKING_LOT VLAN 999; only VLANs 99, 100, 110,
120, 200, 300 allowed on the trunks

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 5 of 126
CCNPv7.1 TSHOOT Skills Assessment

Security Feature Configured Implementation Method or Commands


VTPv3 security vtp password cisco hidden on the switches
OSPFv2 MD5 authentication for DLS1 ip ospf authentication message-digest
and DLS2 adjacency on VLAN 300 ip ospf message-digest-key 1 md5 cisco
OSPFv3 SHA authentication for DLS1 ipv6 ospf authentication ipsec spi 500 sha1
and DLS2 adjacency on VLAN 300 1234567890123456789012345678901234567890

Objectives
Part 1: Build the physical network topology.
Part 2: Load the functioning base device config file from flash to the running config for each device and test
network connectivity.
Part 3: Copy the Skills Assessment error file from the TFTP server into flash for each device.
Part 4: Erase the startup config and copy the Skills Assessment error file from flash to the running config for
each device.
Part 5: Troubleshoot the errors introduced.

Exam Overview
This Skills Assessment is the final practical exam for the course CCNPv7 TSHOOT. The exam is divided into
five parts, which must be completed sequentially. In Part 1, you build the physical network. In Part 2, you load
functioning config files on all devices and verify access to the TFTP server. In Part 3, you copy the error files
from the TFTP server to flash for the respective devices and in Part 4 you erase the base configs and load the
error configs. You troubleshoot and resolve the errors in Part 5.
In addition to correcting configurations and restoring basic connectivity, network protocols such as SSH and
NTP must also be verified.
Note: Refer to the Base Topology and Overlay Topology diagrams and accompanying tables at the beginning
of this document when building the network or troubleshooting issues. All necessary data is provided to
methodically troubleshoot the network issues.

This lab uses Cisco ISR G2 routers running Cisco IOS 15.4(3) images with IP Base and Security packages
enabled, and Cisco Catalyst 3560 and 2960 switches running Cisco IOS 15.0(2) IP Services and LAN Base
images, respectively. The 3560 and 2960 switches are configured with the SDM templates dual-ipv4-and-
ipv6 routing and lanbase-routing, respectively. Depending on the router or switch model and Cisco IOS
Software version, the commands available and output produced might vary from what is shown in this
assessment.

Required Resources
 3 routers (Cisco IOS Release 15.4 or comparable)
 2 multilayer switches and 1 access layer switch (Cisco IOS Release 15.0(2) or comparable with Fast
Ethernet interfaces)
 SRV1 (PC with static IP address): Windows 7 with RADIUS, TFTP, and syslog servers, plus an SSH
client, SNMP monitor, and WireShark software
 PC-B (DHCP client): Windows 7 with SSH client and WireShark software
 PC-C (DHCP client): Windows 7 with SSH client and WireShark software
 Serial and Ethernet cables, as shown in the topology

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 6 of 126
CCNPv7.1 TSHOOT Skills Assessment

Part 1: Build the Physical Network (Optional)


Connect all devices as shown in the Base Topology and Overlay Topology. You must use the interfaces
specified in the Device Interfaces and Links table at the beginning of the Skills Assessment.

Part 2: Load the Skills Assessment Base Device Configuration Files from
Flash
Use the following procedure to copy the functional base Skills Assessment configuration (non-error) file from
flash to the running config for each device and test network connectivity.

Step 1: Verify the existence and location of the Skills Assessment base configuration files.
The base configuration files should be present in flash under the tshoot directory for a given device. Use the
show flash command to verify the presence of this directory. You can also verify the contents of the
directory using the cd and dir commands. If the directory and files are not present, contact your
administrator.
ALS1# show flash

Directory of flash:/

9 -rwx 916 Feb 28 1993 16:04:03 -08:00 vlan.dat


3 drwx 512 Sep 22 2014 10:40:59 -07:00 tshoot
5 -rwx 11792247 Feb 28 1993 16:24:48 -08:00 c2960-lanbasek9-mz.150-2.SE6.bin
6 -rwx 7192 Sep 26 2014 10:53:31 -07:00 multiple-fs
7 -rwx 106 Feb 28 1993 18:13:09 -08:00 info
8 -rwx 1906 Sep 26 2014 10:53:31 -07:00 private-config.text
10 -rwx 7199 Sep 26 2014 10:53:31 -07:00 config.text

27998208 bytes total (16070656 bytes free)


ALS1# cd tshoot
ALS1# dir
Directory of flash:/tshoot/

9 -rwx 7979 Sep 22 2014 11:26:14 -07:00 SA-ALS1-BASE-Cfg.txt


<output omitted>

Step 2: Erase the startup config from NVRAM.

Step 3: Delete the VLAN database from flash (switches only).

Step 4: Reload the device, but do not save the system configuration if prompted.

Step 5: When the device restarts, do not enter the initial configuration dialog, but terminate
autoinstall if prompted.

Step 6: Copy the Skills Assessment device configuration file from flash to the running config.
The format of these files is SA-xxx-BASE-Cfg.txt, where xxx is the name of the device. For example:
Switch# copy flash:/tshoot/SA-ALS1-BASE-Cfg.txt running-config
Destination filename [running-config]? Enter

Note: Although it is possible to copy the file to the startup config and reload the device, the RSA keys for SSH
cannot be generated from the startup config.

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 7 of 126
CCNPv7.1 TSHOOT Skills Assessment

Step 7: Copy the running config to the startup config.


Even if you see an Autosave message indicating that the running configuration has been saved to NVRAM,
copy the running config to the startup config manually.
Note: If the device is rebooted at this point, you can log in remotely with the username cisco and the
password cisco. To access privileged EXEC mode, use the enable password cisco.
Note: Although it is not considered a security best practice, the exec-timeout for the console line is set to 0
(no time out) to minimize distractions so the examinee can focus on trouble tickets.

Step 8: Repeat steps 2 through 7 for all other devices in the network.

Step 9: Set the time on the NTP server R2.


Set the correct time on the NTP server R2 using the clock set command.

Step 10: Configure the PCs.


a. Configure SRV1 with the static IPv4 address 10.1.100.1/24 and the default gateway 10.1.100.254.
b. Configure SRV1 with the static IPv6 address 2001:DB8:CAFE:100::1/64 and the default gateway
2001:DB8:CAFE:100::D1.
c. Start the syslog server and TFTP server on SRV1.
d. Configure PC-B and PC-C as DHCP clients.
e. Release and renew the DHCP leases on PC-B and PC-C.
f. Verify that PC-B and PC-C have obtained dynamic IPv4 and IPv6 addressing.
g. Verify that R2 has received DHCPv4 and SLAAC addresses.
h. Test connectivity from each PC. Troubleshoot if necessary.

Part 3: Copy the Skills Assessment Error Files from the TFTP Server
Step 1: Verify connectivity with the TFTP server SRV1.
You must be able to access the TFTP server on SRV1 from each network device to copy the error files. From
each device (ALS1, DLS1, DLS2, R1, R2, and R3) ping SRV1 at 10.1.100.1.
Note: If the pings are not successful, verify physical network cabling and connections and verify that the Skills
Assessment base config file is loaded as the running config in each device. You can exit from the user EXEC
mode prompt to see the MOTD login banner, which indicates the file currently loaded. For example:
*** Switch ALS1 Skills Assessment BASE Config ***
If you still cannot access SRV1 from a particular device, contact your administrator.

Step 2: Verify the TFTP server configuration.


Verify that the TFTP server on SRV1 is running and that the error files are present in the default TFTP
directory. The format of these files is SA-xxx-Error-Cfg.txt, where xxx is the name of the device.

Step 3: Copy the TFTP server Skills Assessment error file to flash.
Copy the appropriate Skills Assessment error file from the TFTP server into the flash:/tshoot directory for each
device.

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 8 of 126
CCNPv7.1 TSHOOT Skills Assessment

Part 4: Load the Skills Assessment Error Files from Flash to the Running
Config
For each device, follow the procedure similar to what is described in Part 2. An abbreviated version is
provided below.

Step 1: Erase the startup config.

Step 2: Delete the vlan.dat file on the switches.

Step 3: On the switches, configure the SDM template: dual-ipv4-and-ipv6 routing on 3560
switches and lanbase-routing on 2960 switches.

Step 4: Issue the reload command – do not save the system configuration if prompted.

Step 5: Copy the Skills Assessment error file from flash to the running config.

Step 6: Copy the running config to the startup config.

Part 5: Troubleshoot the Errors Introduced


The Skills Assessment error files introduce various problems, including issues related to MST, VTPv3, NTP,
SSH, VLANs, VLAN trunks, EtherChannel, DHCPv4, DHCPv6, SLAAC, HSRP with object tracking, RIPv2,
RIPng, Named EIGRP, OSPFv2, OSPFv3 for IPv6 with and without address families, MP-BGP, redistribution,
route authentication, route filtering, securing switched networks, and local AAA.
Hint: Two configuration errors are introduced in each device for a total of 12 errors.

Step 1: Perform connectivity tests.


Use connectivity testing tools such as ping, traceroute, tracert (PC), and CDP to determine the extent
of connectivity loss. Use the following table to record the results of the connectivity tests. Be sure to ping from
each PC to enough network device interfaces, and from the network devices to enough network device
interfaces, to determine an appropriate troubleshooting strategy.
Note: You can use the Ping Test table in Step 3 (ahead) as a starting point – or, you can use your own version
of the Tcl scripts here (adding addresses from the IP Address Table above and starting in Privileged EXEC
mode) to test reachability from a Cisco device to any destination:
tclsh
foreach address {
192.168.3.1
192.168.1.1
} { ping $address }

tclsh
foreach address {
2001:db8:feed:10::2
2001:db8:cafe:203::1
} { ping $address }

Network Connectivity Test Table


Command From To Device/Interface/IP Result
Device/Interface/IP
tclsh ALS1 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
10.1.99.251 ALS1 VLAN 120 show commands
10.1.110.251 ALS1 VLAN 200
10.1.120.251 ALS1 VLAN 300

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 9 of 126
CCNPv7.1 TSHOOT Skills Assessment

10.1.200.251 DLS1 VLAN 99


10.1.30.251 DLS1 VLAN 100
10.1.99.252 DLS1 VLAN 110
10.1.100.252 DLS1 VLAN 120
10.1.110.252 DLS1 VLAN 200
10.1.120.252 DLS1 VLAN 300
10.1.200.252 DLS1 F0/5
10.1.30.252 DLS1 Loopback 0
10.1.2.1 DLS1 Tunnel 0
10.1.211.1 DLS2 VLAN 99
10.1.99.253 DLS2 VLAN 100
10.1.100.253 DLS2 VLAN 110
10.1.110.253 DLS2 VLAN 120
10.1.120.253 DLS2 VLAN 200
10.1.200.253 DLS2 VLAN 300
10.1.30.253 DLS2 F0/5
10.1.2.13 R1 G0/1
10.1.2.2 R1 S0/0/0.1
209.165.200.225 R1 S0/0/0.2
209.165.200.229 R1 Loopback 0
192.168.1.1 R1 Tunnel 0
209.165.200.226 R2 G0/0
209.165.200.230 R2 S0/0/0.1
209.165.200.222 R2 S0/0/0.2
10.1.90.2 R2 S0/0/1.1
2.2.2.2 R2 S0/0/1.2
2.2.2.2 R2 Loopback 0
20.20.20.20 R2 Loopback 1
22.22.22.22 R2 Loopback 2
22.22.22.22 R2 Loopback 3
22.22.22.22 R2 Loopback 4
10.1.80.1 R2 Loopback 5
10.1.2.14 R2 Tunnel 0
209.165.200.221 R3 G0/0
10.1.90.3 R3 G0/1
192.168.3.1 R3 S0/0/1.1
10.1.80.129 R3 S0/0/1.2
10.1.100.1 R3 Loopback 0
10.1.120.6-10.1.120.250 R3 Loopback 1
10.1.80.4-10.1.80.126 R3 Tunnel 0
} { ping $address } SRV1 NIC
PC-B NIC
PC-C NIC
tclsh ALS1 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
2001:DB8:CAFE:99::A1 ALS1 VLAN 120 show commands
2001:DB8:CAFE:110::A1 ALS1 VLAN 200
2001:DB8:CAFE:120::A1 ALS1 VLAN 300
2001:DB8:CAFE:200::A1 DLS1 VLAN 99
2001:DB8:CAFE:300::A1 DLS1 VLAN 100
2001:DB8:CAFE:99::D1 DLS1 VLAN 110
2001:DB8:CAFE:100::D1 DLS1 VLAN 120
2001:DB8:CAFE:110::D1 DLS1 VLAN 200
2001:DB8:CAFE:120::D1 DLS1 VLAN 300
2001:DB8:CAFE:200::D1 DLS1 F0/5
2001:DB8:CAFE:300::D1 DLS1 Loopback 0
2001:DB8:CAFE:20::D1 DLS1 Tunnel 0

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 10 of 126
CCNPv7.1 TSHOOT Skills Assessment

2001:DB8:CAFE:2110::D1 DLS2 VLAN 99


FC00::D1 DLS2 VLAN 100
2001:DB8:CAFE:99::D2 DLS2 VLAN 110
2001:DB8:CAFE:100::D2 DLS2 VLAN 120
2001:DB8:CAFE:110::D2 DLS2 VLAN 200
2001:DB8:CAFE:120::D2 DLS2 VLAN 300
2001:DB8:CAFE:200::D2 DLS2 F0/5
2001:DB8:CAFE:300::D2 R1 G0/1
2001:DB8:CAFE:212::D2 R1 S0/0/0.1
2001:DB8:CAFE:20::1 R1 S0/0/0.2
2001:DB8:FEED:10::1 R1 Loopback 0
2001:DB8:CAFE:6::1 R1 Tunnel 0
2001:DB8:CAFE:201::1 R2 G0/0
ABCD::1 R2 S0/0/0.1
SLAAC in 2001:DB8:CAFE:120:: R2 S0/0/0.2
2001:DB8:FEED:10::2 R2 S0/0/1.1
2001:DB8:CAFE:6::2 R2 S0/0/1.2
2001:DB8:FEED:14::2 R2 Loopback 0
2001:DB8:CAFE:90::2 R2 Loopback 1
2001:DB8:FEED:222::2 R2 Loopback 2
2001:DB8:FEED:222::2 R2 Loopback 3
2001:DB8:CAFE:2020::2 R2 Loopback 4
2001:DB8:EFAC::2 R2 Loopback 5
2001:DB8:EFAC::2 R2 Tunnel 0
2001:DB8:EFAC::2 R3 G0/0
FC00:2 R3 G0/1
2001:DB8:CAFE:800::1 R3 S0/0/1.1
2001:DB8:CAFE:212:: R3 S0/0/1.2
2001:DB8:FEED:14::3 R3 Loopback 0
2001:DB8:CAFE:90::3 R3 Loopback 1
2001:DB8:CAFE:203::1 R3 Tunnel 0
2001:DB8:CAFE:801::1 SRV1 NIC
ABCD::3 PC-B NIC
2001:DB8:CAFE:100::1 PC-C NIC
In 2001:DB8:CAFE:120:ABCD::
In 2001:DB8:CAFE:800:ABCD::}
{ ping $address }
tclsh DLS1 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
10.1.99.251 ALS1 VLAN 120 show commands
10.1.110.251 ALS1 VLAN 200
10.1.120.251 ALS1 VLAN 300
10.1.200.251 DLS1 VLAN 99
10.1.30.251 DLS1 VLAN 100
10.1.99.252 DLS1 VLAN 110
10.1.100.252 DLS1 VLAN 120
10.1.110.252 DLS1 VLAN 200
10.1.120.252 DLS1 VLAN 300
10.1.200.252 DLS1 F0/5
10.1.30.252 DLS1 Loopback 0
10.1.2.1 DLS1 Tunnel 0
10.1.211.1 DLS2 VLAN 99
10.1.99.253 DLS2 VLAN 100
10.1.100.253 DLS2 VLAN 110
10.1.110.253 DLS2 VLAN 120
10.1.120.253 DLS2 VLAN 200
10.1.200.253 DLS2 VLAN 300

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 11 of 126
CCNPv7.1 TSHOOT Skills Assessment

10.1.30.253 DLS2 F0/5


10.1.2.13 R1 G0/1
10.1.2.2 R1 S0/0/0.1
209.165.200.225 R1 S0/0/0.2
209.165.200.229 R1 Loopback 0
192.168.1.1 R1 Tunnel 0
209.165.200.226 R2 G0/0
209.165.200.230 R2 S0/0/0.1
209.165.200.222 R2 S0/0/0.2
10.1.90.2 R2 S0/0/1.1
2.2.2.2 R2 S0/0/1.2
2.2.2.2 R2 Loopback 0
20.20.20.20 R2 Loopback 1
22.22.22.22 R2 Loopback 2
22.22.22.22 R2 Loopback 3
22.22.22.22 R2 Loopback 4
10.1.80.1 R2 Loopback 5
10.1.2.14 R2 Tunnel 0
209.165.200.221 R3 G0/0
10.1.90.3 R3 G0/1
192.168.3.1 R3 S0/0/1.1
10.1.80.129 R3 S0/0/1.2
10.1.100.1 R3 Loopback 0
10.1.120.6-10.1.120.250 R3 Loopback 1
10.1.80.4-10.1.80.126 R3 Tunnel 0
} { ping $address } SRV1 NIC
PC-B NIC
PC-C NIC
tclsh DLS1 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
2001:DB8:CAFE:99::A1 ALS1 VLAN 120 show commands
2001:DB8:CAFE:110::A1 ALS1 VLAN 200
2001:DB8:CAFE:120::A1 ALS1 VLAN 300
2001:DB8:CAFE:200::A1 DLS1 VLAN 99
2001:DB8:CAFE:300::A1 DLS1 VLAN 100
2001:DB8:CAFE:99::D1 DLS1 VLAN 110
2001:DB8:CAFE:100::D1 DLS1 VLAN 120
2001:DB8:CAFE:110::D1 DLS1 VLAN 200
2001:DB8:CAFE:120::D1 DLS1 VLAN 300
2001:DB8:CAFE:200::D1 DLS1 F0/5
2001:DB8:CAFE:300::D1 DLS1 Loopback 0
2001:DB8:CAFE:20::D1 DLS1 Tunnel 0
2001:DB8:CAFE:2110::D1 DLS2 VLAN 99
FC00::D1 DLS2 VLAN 100
2001:DB8:CAFE:99::D2 DLS2 VLAN 110
2001:DB8:CAFE:100::D2 DLS2 VLAN 120
2001:DB8:CAFE:110::D2 DLS2 VLAN 200
2001:DB8:CAFE:120::D2 DLS2 VLAN 300
2001:DB8:CAFE:200::D2 DLS2 F0/5
2001:DB8:CAFE:300::D2 R1 G0/1
2001:DB8:CAFE:212::D2 R1 S0/0/0.1
2001:DB8:CAFE:20::1 R1 S0/0/0.2
2001:DB8:FEED:10::1 R1 Loopback 0
2001:DB8:CAFE:6::1 R1 Tunnel 0
2001:DB8:CAFE:201::1 R2 G0/0
ABCD::1 R2 S0/0/0.1
SLAAC in 2001:DB8:CAFE:120:: R2 S0/0/0.2

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 12 of 126
CCNPv7.1 TSHOOT Skills Assessment

2001:DB8:FEED:10::2 R2 S0/0/1.1
2001:DB8:CAFE:6::2 R2 S0/0/1.2
2001:DB8:FEED:14::2 R2 Loopback 0
2001:DB8:CAFE:90::2 R2 Loopback 1
2001:DB8:FEED:222::2 R2 Loopback 2
2001:DB8:FEED:222::2 R2 Loopback 3
2001:DB8:CAFE:2020::2 R2 Loopback 4
2001:DB8:EFAC::2 R2 Loopback 5
2001:DB8:EFAC::2 R2 Tunnel 0
2001:DB8:EFAC::2 R3 G0/0
FC00:2 R3 G0/1
2001:DB8:CAFE:800::1 R3 S0/0/1.1
2001:DB8:CAFE:212:: R3 S0/0/1.2
2001:DB8:FEED:14::3 R3 Loopback 0
2001:DB8:CAFE:90::3 R3 Loopback 1
2001:DB8:CAFE:203::1 R3 Tunnel 0
2001:DB8:CAFE:801::1 SRV1 NIC
ABCD::3 PC-B NIC
2001:DB8:CAFE:100::1 PC-C NIC
In 2001:DB8:CAFE:120:ABCD::
In 2001:DB8:CAFE:800:ABCD::}
{ ping $address }
tclsh DLS2 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
10.1.99.251 ALS1 VLAN 120 show commands
10.1.110.251 ALS1 VLAN 200
10.1.120.251 ALS1 VLAN 300
10.1.200.251 DLS1 VLAN 99
10.1.30.251 DLS1 VLAN 100
10.1.99.252 DLS1 VLAN 110
10.1.100.252 DLS1 VLAN 120
10.1.110.252 DLS1 VLAN 200
10.1.120.252 DLS1 VLAN 300
10.1.200.252 DLS1 F0/5
10.1.30.252 DLS1 Loopback 0
10.1.2.1 DLS1 Tunnel 0
10.1.211.1 DLS2 VLAN 99
10.1.99.253 DLS2 VLAN 100
10.1.100.253 DLS2 VLAN 110
10.1.110.253 DLS2 VLAN 120
10.1.120.253 DLS2 VLAN 200
10.1.200.253 DLS2 VLAN 300
10.1.30.253 DLS2 F0/5
10.1.2.13 R1 G0/1
10.1.2.2 R1 S0/0/0.1
209.165.200.225 R1 S0/0/0.2
209.165.200.229 R1 Loopback 0
192.168.1.1 R1 Tunnel 0
209.165.200.226 R2 G0/0
209.165.200.230 R2 S0/0/0.1
209.165.200.222 R2 S0/0/0.2
10.1.90.2 R2 S0/0/1.1
2.2.2.2 R2 S0/0/1.2
2.2.2.2 R2 Loopback 0
20.20.20.20 R2 Loopback 1
22.22.22.22 R2 Loopback 2
22.22.22.22 R2 Loopback 3

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 13 of 126
CCNPv7.1 TSHOOT Skills Assessment

22.22.22.22 R2 Loopback 4
10.1.80.1 R2 Loopback 5
10.1.2.14 R2 Tunnel 0
209.165.200.221 R3 G0/0
10.1.90.3 R3 G0/1
192.168.3.1 R3 S0/0/1.1
10.1.80.129 R3 S0/0/1.2
10.1.100.1 R3 Loopback 0
10.1.120.6-10.1.120.250 R3 Loopback 1
10.1.80.4-10.1.80.126 R3 Tunnel 0
} { ping $address } SRV1 NIC
PC-B NIC
PC-C NIC
tclsh DLS2 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
2001:DB8:CAFE:99::A1 ALS1 VLAN 120 show commands
2001:DB8:CAFE:110::A1 ALS1 VLAN 200
2001:DB8:CAFE:120::A1 ALS1 VLAN 300
2001:DB8:CAFE:200::A1 DLS1 VLAN 99
2001:DB8:CAFE:300::A1 DLS1 VLAN 100
2001:DB8:CAFE:99::D1 DLS1 VLAN 110
2001:DB8:CAFE:100::D1 DLS1 VLAN 120
2001:DB8:CAFE:110::D1 DLS1 VLAN 200
2001:DB8:CAFE:120::D1 DLS1 VLAN 300
2001:DB8:CAFE:200::D1 DLS1 F0/5
2001:DB8:CAFE:300::D1 DLS1 Loopback 0
2001:DB8:CAFE:20::D1 DLS1 Tunnel 0
2001:DB8:CAFE:2110::D1 DLS2 VLAN 99
FC00::D1 DLS2 VLAN 100
2001:DB8:CAFE:99::D2 DLS2 VLAN 110
2001:DB8:CAFE:100::D2 DLS2 VLAN 120
2001:DB8:CAFE:110::D2 DLS2 VLAN 200
2001:DB8:CAFE:120::D2 DLS2 VLAN 300
2001:DB8:CAFE:200::D2 DLS2 F0/5
2001:DB8:CAFE:300::D2 R1 G0/1
2001:DB8:CAFE:212::D2 R1 S0/0/0.1
2001:DB8:CAFE:20::1 R1 S0/0/0.2
2001:DB8:FEED:10::1 R1 Loopback 0
2001:DB8:CAFE:6::1 R1 Tunnel 0
2001:DB8:CAFE:201::1 R2 G0/0
ABCD::1 R2 S0/0/0.1
SLAAC in 2001:DB8:CAFE:120:: R2 S0/0/0.2
2001:DB8:FEED:10::2 R2 S0/0/1.1
2001:DB8:CAFE:6::2 R2 S0/0/1.2
2001:DB8:FEED:14::2 R2 Loopback 0
2001:DB8:CAFE:90::2 R2 Loopback 1
2001:DB8:FEED:222::2 R2 Loopback 2
2001:DB8:FEED:222::2 R2 Loopback 3
2001:DB8:CAFE:2020::2 R2 Loopback 4
2001:DB8:EFAC::2 R2 Loopback 5
2001:DB8:EFAC::2 R2 Tunnel 0
2001:DB8:EFAC::2 R3 G0/0
FC00:2 R3 G0/1
2001:DB8:CAFE:800::1 R3 S0/0/1.1
2001:DB8:CAFE:212:: R3 S0/0/1.2
2001:DB8:FEED:14::3 R3 Loopback 0
2001:DB8:CAFE:90::3 R3 Loopback 1

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 14 of 126
CCNPv7.1 TSHOOT Skills Assessment

2001:DB8:CAFE:203::1 R3 Tunnel 0
2001:DB8:CAFE:801::1 SRV1 NIC
ABCD::3 PC-B NIC
2001:DB8:CAFE:100::1 PC-C NIC
In 2001:DB8:CAFE:120:ABCD::
In 2001:DB8:CAFE:800:ABCD::}
{ ping $address }
tclsh R1 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
10.1.99.251 ALS1 VLAN 120 show commands
10.1.110.251 ALS1 VLAN 200
10.1.120.251 ALS1 VLAN 300
10.1.200.251 DLS1 VLAN 99
10.1.30.251 DLS1 VLAN 100
10.1.99.252 DLS1 VLAN 110
10.1.100.252 DLS1 VLAN 120
10.1.110.252 DLS1 VLAN 200
10.1.120.252 DLS1 VLAN 300
10.1.200.252 DLS1 F0/5
10.1.30.252 DLS1 Loopback 0
10.1.2.1 DLS1 Tunnel 0
10.1.211.1 DLS2 VLAN 99
10.1.99.253 DLS2 VLAN 100
10.1.100.253 DLS2 VLAN 110
10.1.110.253 DLS2 VLAN 120
10.1.120.253 DLS2 VLAN 200
10.1.200.253 DLS2 VLAN 300
10.1.30.253 DLS2 F0/5
10.1.2.13 R1 G0/1
10.1.2.2 R1 S0/0/0.1
209.165.200.225 R1 S0/0/0.2
209.165.200.229 R1 Loopback 0
192.168.1.1 R1 Tunnel 0
209.165.200.226 R2 G0/0
209.165.200.230 R2 S0/0/0.1
209.165.200.222 R2 S0/0/0.2
10.1.90.2 R2 S0/0/1.1
2.2.2.2 R2 S0/0/1.2
2.2.2.2 R2 Loopback 0
20.20.20.20 R2 Loopback 1
22.22.22.22 R2 Loopback 2
22.22.22.22 R2 Loopback 3
22.22.22.22 R2 Loopback 4
10.1.80.1 R2 Loopback 5
10.1.2.14 R2 Tunnel 0
209.165.200.221 R3 G0/0
10.1.90.3 R3 G0/1
192.168.3.1 R3 S0/0/1.1
10.1.80.129 R3 S0/0/1.2
10.1.100.1 R3 Loopback 0
10.1.120.6-10.1.120.250 R3 Loopback 1
10.1.80.4-10.1.80.126 R3 Tunnel 0
} { ping $address } SRV1 NIC
PC-B NIC
PC-C NIC
tclsh R1 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 15 of 126
CCNPv7.1 TSHOOT Skills Assessment

2001:DB8:CAFE:99::A1 ALS1 VLAN 120 show commands


2001:DB8:CAFE:110::A1 ALS1 VLAN 200
2001:DB8:CAFE:120::A1 ALS1 VLAN 300
2001:DB8:CAFE:200::A1 DLS1 VLAN 99
2001:DB8:CAFE:300::A1 DLS1 VLAN 100
2001:DB8:CAFE:99::D1 DLS1 VLAN 110
2001:DB8:CAFE:100::D1 DLS1 VLAN 120
2001:DB8:CAFE:110::D1 DLS1 VLAN 200
2001:DB8:CAFE:120::D1 DLS1 VLAN 300
2001:DB8:CAFE:200::D1 DLS1 F0/5
2001:DB8:CAFE:300::D1 DLS1 Loopback 0
2001:DB8:CAFE:20::D1 DLS1 Tunnel 0
2001:DB8:CAFE:2110::D1 DLS2 VLAN 99
FC00::D1 DLS2 VLAN 100
2001:DB8:CAFE:99::D2 DLS2 VLAN 110
2001:DB8:CAFE:100::D2 DLS2 VLAN 120
2001:DB8:CAFE:110::D2 DLS2 VLAN 200
2001:DB8:CAFE:120::D2 DLS2 VLAN 300
2001:DB8:CAFE:200::D2 DLS2 F0/5
2001:DB8:CAFE:300::D2 R1 G0/1
2001:DB8:CAFE:212::D2 R1 S0/0/0.1
2001:DB8:CAFE:20::1 R1 S0/0/0.2
2001:DB8:FEED:10::1 R1 Loopback 0
2001:DB8:CAFE:6::1 R1 Tunnel 0
2001:DB8:CAFE:201::1 R2 G0/0
ABCD::1 R2 S0/0/0.1
SLAAC in 2001:DB8:CAFE:120:: R2 S0/0/0.2
2001:DB8:FEED:10::2 R2 S0/0/1.1
2001:DB8:CAFE:6::2 R2 S0/0/1.2
2001:DB8:FEED:14::2 R2 Loopback 0
2001:DB8:CAFE:90::2 R2 Loopback 1
2001:DB8:FEED:222::2 R2 Loopback 2
2001:DB8:FEED:222::2 R2 Loopback 3
2001:DB8:CAFE:2020::2 R2 Loopback 4
2001:DB8:EFAC::2 R2 Loopback 5
2001:DB8:EFAC::2 R2 Tunnel 0
2001:DB8:EFAC::2 R3 G0/0
FC00:2 R3 G0/1
2001:DB8:CAFE:800::1 R3 S0/0/1.1
2001:DB8:CAFE:212:: R3 S0/0/1.2
2001:DB8:FEED:14::3 R3 Loopback 0
2001:DB8:CAFE:90::3 R3 Loopback 1
2001:DB8:CAFE:203::1 R3 Tunnel 0
2001:DB8:CAFE:801::1 SRV1 NIC
ABCD::3 PC-B NIC
2001:DB8:CAFE:100::1 PC-C NIC
In 2001:DB8:CAFE:120:ABCD::
In 2001:DB8:CAFE:800:ABCD::}
{ ping $address }
tclsh R2 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
10.1.99.251 ALS1 VLAN 120 show commands
10.1.110.251 ALS1 VLAN 200
10.1.120.251 ALS1 VLAN 300
10.1.200.251 DLS1 VLAN 99
10.1.30.251 DLS1 VLAN 100
10.1.99.252 DLS1 VLAN 110

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 16 of 126
CCNPv7.1 TSHOOT Skills Assessment

10.1.100.252 DLS1 VLAN 120


10.1.110.252 DLS1 VLAN 200
10.1.120.252 DLS1 VLAN 300
10.1.200.252 DLS1 F0/5
10.1.30.252 DLS1 Loopback 0
10.1.2.1 DLS1 Tunnel 0
10.1.211.1 DLS2 VLAN 99
10.1.99.253 DLS2 VLAN 100
10.1.100.253 DLS2 VLAN 110
10.1.110.253 DLS2 VLAN 120
10.1.120.253 DLS2 VLAN 200
10.1.200.253 DLS2 VLAN 300
10.1.30.253 DLS2 F0/5
10.1.2.13 R1 G0/1
10.1.2.2 R1 S0/0/0.1
209.165.200.225 R1 S0/0/0.2
209.165.200.229 R1 Loopback 0
192.168.1.1 R1 Tunnel 0
209.165.200.226 R2 G0/0
209.165.200.230 R2 S0/0/0.1
209.165.200.222 R2 S0/0/0.2
10.1.90.2 R2 S0/0/1.1
2.2.2.2 R2 S0/0/1.2
2.2.2.2 R2 Loopback 0
20.20.20.20 R2 Loopback 1
22.22.22.22 R2 Loopback 2
22.22.22.22 R2 Loopback 3
22.22.22.22 R2 Loopback 4
10.1.80.1 R2 Loopback 5
10.1.2.14 R2 Tunnel 0
209.165.200.221 R3 G0/0
10.1.90.3 R3 G0/1
192.168.3.1 R3 S0/0/1.1
10.1.80.129 R3 S0/0/1.2
10.1.100.1 R3 Loopback 0
10.1.120.6-10.1.120.250 R3 Loopback 1
10.1.80.4-10.1.80.126 R3 Tunnel 0
} { ping $address } SRV1 NIC
PC-B NIC
PC-C NIC
tclsh R2 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
2001:DB8:CAFE:99::A1 ALS1 VLAN 120 show commands
2001:DB8:CAFE:110::A1 ALS1 VLAN 200
2001:DB8:CAFE:120::A1 ALS1 VLAN 300
2001:DB8:CAFE:200::A1 DLS1 VLAN 99
2001:DB8:CAFE:300::A1 DLS1 VLAN 100
2001:DB8:CAFE:99::D1 DLS1 VLAN 110
2001:DB8:CAFE:100::D1 DLS1 VLAN 120
2001:DB8:CAFE:110::D1 DLS1 VLAN 200
2001:DB8:CAFE:120::D1 DLS1 VLAN 300
2001:DB8:CAFE:200::D1 DLS1 F0/5
2001:DB8:CAFE:300::D1 DLS1 Loopback 0
2001:DB8:CAFE:20::D1 DLS1 Tunnel 0
2001:DB8:CAFE:2110::D1 DLS2 VLAN 99
FC00::D1 DLS2 VLAN 100
2001:DB8:CAFE:99::D2 DLS2 VLAN 110

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 17 of 126
CCNPv7.1 TSHOOT Skills Assessment

2001:DB8:CAFE:100::D2 DLS2 VLAN 120


2001:DB8:CAFE:110::D2 DLS2 VLAN 200
2001:DB8:CAFE:120::D2 DLS2 VLAN 300
2001:DB8:CAFE:200::D2 DLS2 F0/5
2001:DB8:CAFE:300::D2 R1 G0/1
2001:DB8:CAFE:212::D2 R1 S0/0/0.1
2001:DB8:CAFE:20::1 R1 S0/0/0.2
2001:DB8:FEED:10::1 R1 Loopback 0
2001:DB8:CAFE:6::1 R1 Tunnel 0
2001:DB8:CAFE:201::1 R2 G0/0
ABCD::1 R2 S0/0/0.1
SLAAC in 2001:DB8:CAFE:120:: R2 S0/0/0.2
2001:DB8:FEED:10::2 R2 S0/0/1.1
2001:DB8:CAFE:6::2 R2 S0/0/1.2
2001:DB8:FEED:14::2 R2 Loopback 0
2001:DB8:CAFE:90::2 R2 Loopback 1
2001:DB8:FEED:222::2 R2 Loopback 2
2001:DB8:FEED:222::2 R2 Loopback 3
2001:DB8:CAFE:2020::2 R2 Loopback 4
2001:DB8:EFAC::2 R2 Loopback 5
2001:DB8:EFAC::2 R2 Tunnel 0
2001:DB8:EFAC::2 R3 G0/0
FC00:2 R3 G0/1
2001:DB8:CAFE:800::1 R3 S0/0/1.1
2001:DB8:CAFE:212:: R3 S0/0/1.2
2001:DB8:FEED:14::3 R3 Loopback 0
2001:DB8:CAFE:90::3 R3 Loopback 1
2001:DB8:CAFE:203::1 R3 Tunnel 0
2001:DB8:CAFE:801::1 SRV1 NIC
ABCD::3 PC-B NIC
2001:DB8:CAFE:100::1 PC-C NIC
In 2001:DB8:CAFE:120:ABCD::
In 2001:DB8:CAFE:800:ABCD::}
{ ping $address }
tclsh R3 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
10.1.99.251 ALS1 VLAN 120 show commands
10.1.110.251 ALS1 VLAN 200
10.1.120.251 ALS1 VLAN 300
10.1.200.251 DLS1 VLAN 99
10.1.30.251 DLS1 VLAN 100
10.1.99.252 DLS1 VLAN 110
10.1.100.252 DLS1 VLAN 120
10.1.110.252 DLS1 VLAN 200
10.1.120.252 DLS1 VLAN 300
10.1.200.252 DLS1 F0/5
10.1.30.252 DLS1 Loopback 0
10.1.2.1 DLS1 Tunnel 0
10.1.211.1 DLS2 VLAN 99
10.1.99.253 DLS2 VLAN 100
10.1.100.253 DLS2 VLAN 110
10.1.110.253 DLS2 VLAN 120
10.1.120.253 DLS2 VLAN 200
10.1.200.253 DLS2 VLAN 300
10.1.30.253 DLS2 F0/5
10.1.2.13 R1 G0/1
10.1.2.2 R1 S0/0/0.1

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 18 of 126
CCNPv7.1 TSHOOT Skills Assessment

209.165.200.225 R1 S0/0/0.2
209.165.200.229 R1 Loopback 0
192.168.1.1 R1 Tunnel 0
209.165.200.226 R2 G0/0
209.165.200.230 R2 S0/0/0.1
209.165.200.222 R2 S0/0/0.2
10.1.90.2 R2 S0/0/1.1
2.2.2.2 R2 S0/0/1.2
2.2.2.2 R2 Loopback 0
20.20.20.20 R2 Loopback 1
22.22.22.22 R2 Loopback 2
22.22.22.22 R2 Loopback 3
22.22.22.22 R2 Loopback 4
10.1.80.1 R2 Loopback 5
10.1.2.14 R2 Tunnel 0
209.165.200.221 R3 G0/0
10.1.90.3 R3 G0/1
192.168.3.1 R3 S0/0/1.1
10.1.80.129 R3 S0/0/1.2
10.1.100.1 R3 Loopback 0
10.1.120.6-10.1.120.250 R3 Loopback 1
10.1.80.4-10.1.80.126 R3 Tunnel 0
} { ping $address } SRV1 NIC
PC-B NIC
PC-C NIC
tclsh R3 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
2001:DB8:CAFE:99::A1 ALS1 VLAN 120 show commands
2001:DB8:CAFE:110::A1 ALS1 VLAN 200
2001:DB8:CAFE:120::A1 ALS1 VLAN 300
2001:DB8:CAFE:200::A1 DLS1 VLAN 99
2001:DB8:CAFE:300::A1 DLS1 VLAN 100
2001:DB8:CAFE:99::D1 DLS1 VLAN 110
2001:DB8:CAFE:100::D1 DLS1 VLAN 120
2001:DB8:CAFE:110::D1 DLS1 VLAN 200
2001:DB8:CAFE:120::D1 DLS1 VLAN 300
2001:DB8:CAFE:200::D1 DLS1 F0/5
2001:DB8:CAFE:300::D1 DLS1 Loopback 0
2001:DB8:CAFE:20::D1 DLS1 Tunnel 0
2001:DB8:CAFE:2110::D1 DLS2 VLAN 99
FC00::D1 DLS2 VLAN 100
2001:DB8:CAFE:99::D2 DLS2 VLAN 110
2001:DB8:CAFE:100::D2 DLS2 VLAN 120
2001:DB8:CAFE:110::D2 DLS2 VLAN 200
2001:DB8:CAFE:120::D2 DLS2 VLAN 300
2001:DB8:CAFE:200::D2 DLS2 F0/5
2001:DB8:CAFE:300::D2 R1 G0/1
2001:DB8:CAFE:212::D2 R1 S0/0/0.1
2001:DB8:CAFE:20::1 R1 S0/0/0.2
2001:DB8:FEED:10::1 R1 Loopback 0
2001:DB8:CAFE:6::1 R1 Tunnel 0
2001:DB8:CAFE:201::1 R2 G0/0
ABCD::1 R2 S0/0/0.1
SLAAC in 2001:DB8:CAFE:120:: R2 S0/0/0.2
2001:DB8:FEED:10::2 R2 S0/0/1.1
2001:DB8:CAFE:6::2 R2 S0/0/1.2
2001:DB8:FEED:14::2 R2 Loopback 0

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 19 of 126
CCNPv7.1 TSHOOT Skills Assessment

2001:DB8:CAFE:90::2 R2 Loopback 1
2001:DB8:FEED:222::2 R2 Loopback 2
2001:DB8:FEED:222::2 R2 Loopback 3
2001:DB8:CAFE:2020::2 R2 Loopback 4
2001:DB8:EFAC::2 R2 Loopback 5
2001:DB8:EFAC::2 R2 Tunnel 0
2001:DB8:EFAC::2 R3 G0/0
FC00:2 R3 G0/1
2001:DB8:CAFE:800::1 R3 S0/0/1.1
2001:DB8:CAFE:212:: R3 S0/0/1.2
2001:DB8:FEED:14::3 R3 Loopback 0
2001:DB8:CAFE:90::3 R3 Loopback 1
2001:DB8:CAFE:203::1 R3 Tunnel 0
2001:DB8:CAFE:801::1 SRV1 NIC
ABCD::3 PC-B NIC
2001:DB8:CAFE:100::1 PC-C NIC
In 2001:DB8:CAFE:120:ABCD::
In 2001:DB8:CAFE:800:ABCD::}
{ ping $address }
tclsh SRV1 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
10.1.99.251 ALS1 VLAN 120 show commands
10.1.110.251 ALS1 VLAN 200
10.1.120.251 ALS1 VLAN 300
10.1.200.251 DLS1 VLAN 99
10.1.30.251 DLS1 VLAN 100
10.1.99.252 DLS1 VLAN 110
10.1.100.252 DLS1 VLAN 120
10.1.110.252 DLS1 VLAN 200
10.1.120.252 DLS1 VLAN 300
10.1.200.252 DLS1 F0/5
10.1.30.252 DLS1 Loopback 0
10.1.2.1 DLS1 Tunnel 0
10.1.211.1 DLS2 VLAN 99
10.1.99.253 DLS2 VLAN 100
10.1.100.253 DLS2 VLAN 110
10.1.110.253 DLS2 VLAN 120
10.1.120.253 DLS2 VLAN 200
10.1.200.253 DLS2 VLAN 300
10.1.30.253 DLS2 F0/5
10.1.2.13 R1 G0/1
10.1.2.2 R1 S0/0/0.1
209.165.200.225 R1 S0/0/0.2
209.165.200.229 R1 Loopback 0
192.168.1.1 R1 Tunnel 0
209.165.200.226 R2 G0/0
209.165.200.230 R2 S0/0/0.1
209.165.200.222 R2 S0/0/0.2
10.1.90.2 R2 S0/0/1.1
2.2.2.2 R2 S0/0/1.2
2.2.2.2 R2 Loopback 0
20.20.20.20 R2 Loopback 1
22.22.22.22 R2 Loopback 2
22.22.22.22 R2 Loopback 3
22.22.22.22 R2 Loopback 4
10.1.80.1 R2 Loopback 5
10.1.2.14 R2 Tunnel 0

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 20 of 126
CCNPv7.1 TSHOOT Skills Assessment

209.165.200.221 R3 G0/0
10.1.90.3 R3 G0/1
192.168.3.1 R3 S0/0/1.1
10.1.80.129 R3 S0/0/1.2
10.1.100.1 R3 Loopback 0
10.1.120.6-10.1.120.250 R3 Loopback 1
10.1.80.4-10.1.80.126 R3 Tunnel 0
} { ping $address } SRV1 NIC
PC-B NIC
PC-C NIC
tclsh SRV1 ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
2001:DB8:CAFE:99::A1 ALS1 VLAN 120 show commands
2001:DB8:CAFE:110::A1 ALS1 VLAN 200
2001:DB8:CAFE:120::A1 ALS1 VLAN 300
2001:DB8:CAFE:200::A1 DLS1 VLAN 99
2001:DB8:CAFE:300::A1 DLS1 VLAN 100
2001:DB8:CAFE:99::D1 DLS1 VLAN 110
2001:DB8:CAFE:100::D1 DLS1 VLAN 120
2001:DB8:CAFE:110::D1 DLS1 VLAN 200
2001:DB8:CAFE:120::D1 DLS1 VLAN 300
2001:DB8:CAFE:200::D1 DLS1 F0/5
2001:DB8:CAFE:300::D1 DLS1 Loopback 0
2001:DB8:CAFE:20::D1 DLS1 Tunnel 0
2001:DB8:CAFE:2110::D1 DLS2 VLAN 99
FC00::D1 DLS2 VLAN 100
2001:DB8:CAFE:99::D2 DLS2 VLAN 110
2001:DB8:CAFE:100::D2 DLS2 VLAN 120
2001:DB8:CAFE:110::D2 DLS2 VLAN 200
2001:DB8:CAFE:120::D2 DLS2 VLAN 300
2001:DB8:CAFE:200::D2 DLS2 F0/5
2001:DB8:CAFE:300::D2 R1 G0/1
2001:DB8:CAFE:212::D2 R1 S0/0/0.1
2001:DB8:CAFE:20::1 R1 S0/0/0.2
2001:DB8:FEED:10::1 R1 Loopback 0
2001:DB8:CAFE:6::1 R1 Tunnel 0
2001:DB8:CAFE:201::1 R2 G0/0
ABCD::1 R2 S0/0/0.1
SLAAC in 2001:DB8:CAFE:120:: R2 S0/0/0.2
2001:DB8:FEED:10::2 R2 S0/0/1.1
2001:DB8:CAFE:6::2 R2 S0/0/1.2
2001:DB8:FEED:14::2 R2 Loopback 0
2001:DB8:CAFE:90::2 R2 Loopback 1
2001:DB8:FEED:222::2 R2 Loopback 2
2001:DB8:FEED:222::2 R2 Loopback 3
2001:DB8:CAFE:2020::2 R2 Loopback 4
2001:DB8:EFAC::2 R2 Loopback 5
2001:DB8:EFAC::2 R2 Tunnel 0
2001:DB8:EFAC::2 R3 G0/0
FC00:2 R3 G0/1
2001:DB8:CAFE:800::1 R3 S0/0/1.1
2001:DB8:CAFE:212:: R3 S0/0/1.2
2001:DB8:FEED:14::3 R3 Loopback 0
2001:DB8:CAFE:90::3 R3 Loopback 1
2001:DB8:CAFE:203::1 R3 Tunnel 0
2001:DB8:CAFE:801::1 SRV1 NIC
ABCD::3 PC-B NIC

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 21 of 126
CCNPv7.1 TSHOOT Skills Assessment

2001:DB8:CAFE:100::1 PC-C NIC


In 2001:DB8:CAFE:120:ABCD::
In 2001:DB8:CAFE:800:ABCD::}
{ ping $address }
tclsh PC-B ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
10.1.99.251 ALS1 VLAN 120 show commands
10.1.110.251 ALS1 VLAN 200
10.1.120.251 ALS1 VLAN 300
10.1.200.251 DLS1 VLAN 99
10.1.30.251 DLS1 VLAN 100
10.1.99.252 DLS1 VLAN 110
10.1.100.252 DLS1 VLAN 120
10.1.110.252 DLS1 VLAN 200
10.1.120.252 DLS1 VLAN 300
10.1.200.252 DLS1 F0/5
10.1.30.252 DLS1 Loopback 0
10.1.2.1 DLS1 Tunnel 0
10.1.211.1 DLS2 VLAN 99
10.1.99.253 DLS2 VLAN 100
10.1.100.253 DLS2 VLAN 110
10.1.110.253 DLS2 VLAN 120
10.1.120.253 DLS2 VLAN 200
10.1.200.253 DLS2 VLAN 300
10.1.30.253 DLS2 F0/5
10.1.2.13 R1 G0/1
10.1.2.2 R1 S0/0/0.1
209.165.200.225 R1 S0/0/0.2
209.165.200.229 R1 Loopback 0
192.168.1.1 R1 Tunnel 0
209.165.200.226 R2 G0/0
209.165.200.230 R2 S0/0/0.1
209.165.200.222 R2 S0/0/0.2
10.1.90.2 R2 S0/0/1.1
2.2.2.2 R2 S0/0/1.2
2.2.2.2 R2 Loopback 0
20.20.20.20 R2 Loopback 1
22.22.22.22 R2 Loopback 2
22.22.22.22 R2 Loopback 3
22.22.22.22 R2 Loopback 4
10.1.80.1 R2 Loopback 5
10.1.2.14 R2 Tunnel 0
209.165.200.221 R3 G0/0
10.1.90.3 R3 G0/1
192.168.3.1 R3 S0/0/1.1
10.1.80.129 R3 S0/0/1.2
10.1.100.1 R3 Loopback 0
10.1.120.6-10.1.120.250 R3 Loopback 1
10.1.80.4-10.1.80.126 R3 Tunnel 0
} { ping $address } SRV1 NIC
PC-B NIC
PC-C NIC
tclsh PC-B ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
2001:DB8:CAFE:99::A1 ALS1 VLAN 120 show commands
2001:DB8:CAFE:110::A1 ALS1 VLAN 200
2001:DB8:CAFE:120::A1 ALS1 VLAN 300

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 22 of 126
CCNPv7.1 TSHOOT Skills Assessment

2001:DB8:CAFE:200::A1 DLS1 VLAN 99


2001:DB8:CAFE:300::A1 DLS1 VLAN 100
2001:DB8:CAFE:99::D1 DLS1 VLAN 110
2001:DB8:CAFE:100::D1 DLS1 VLAN 120
2001:DB8:CAFE:110::D1 DLS1 VLAN 200
2001:DB8:CAFE:120::D1 DLS1 VLAN 300
2001:DB8:CAFE:200::D1 DLS1 F0/5
2001:DB8:CAFE:300::D1 DLS1 Loopback 0
2001:DB8:CAFE:20::D1 DLS1 Tunnel 0
2001:DB8:CAFE:2110::D1 DLS2 VLAN 99
FC00::D1 DLS2 VLAN 100
2001:DB8:CAFE:99::D2 DLS2 VLAN 110
2001:DB8:CAFE:100::D2 DLS2 VLAN 120
2001:DB8:CAFE:110::D2 DLS2 VLAN 200
2001:DB8:CAFE:120::D2 DLS2 VLAN 300
2001:DB8:CAFE:200::D2 DLS2 F0/5
2001:DB8:CAFE:300::D2 R1 G0/1
2001:DB8:CAFE:212::D2 R1 S0/0/0.1
2001:DB8:CAFE:20::1 R1 S0/0/0.2
2001:DB8:FEED:10::1 R1 Loopback 0
2001:DB8:CAFE:6::1 R1 Tunnel 0
2001:DB8:CAFE:201::1 R2 G0/0
ABCD::1 R2 S0/0/0.1
SLAAC in 2001:DB8:CAFE:120:: R2 S0/0/0.2
2001:DB8:FEED:10::2 R2 S0/0/1.1
2001:DB8:CAFE:6::2 R2 S0/0/1.2
2001:DB8:FEED:14::2 R2 Loopback 0
2001:DB8:CAFE:90::2 R2 Loopback 1
2001:DB8:FEED:222::2 R2 Loopback 2
2001:DB8:FEED:222::2 R2 Loopback 3
2001:DB8:CAFE:2020::2 R2 Loopback 4
2001:DB8:EFAC::2 R2 Loopback 5
2001:DB8:EFAC::2 R2 Tunnel 0
2001:DB8:EFAC::2 R3 G0/0
FC00:2 R3 G0/1
2001:DB8:CAFE:800::1 R3 S0/0/1.1
2001:DB8:CAFE:212:: R3 S0/0/1.2
2001:DB8:FEED:14::3 R3 Loopback 0
2001:DB8:CAFE:90::3 R3 Loopback 1
2001:DB8:CAFE:203::1 R3 Tunnel 0
2001:DB8:CAFE:801::1 SRV1 NIC
ABCD::3 PC-B NIC
2001:DB8:CAFE:100::1 PC-C NIC
In 2001:DB8:CAFE:120:ABCD::
In 2001:DB8:CAFE:800:ABCD::}
{ ping $address }
tclsh PC-C ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
10.1.99.251 ALS1 VLAN 120 show commands
10.1.110.251 ALS1 VLAN 200
10.1.120.251 ALS1 VLAN 300
10.1.200.251 DLS1 VLAN 99
10.1.30.251 DLS1 VLAN 100
10.1.99.252 DLS1 VLAN 110
10.1.100.252 DLS1 VLAN 120
10.1.110.252 DLS1 VLAN 200
10.1.120.252 DLS1 VLAN 300

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 23 of 126
CCNPv7.1 TSHOOT Skills Assessment

10.1.200.252 DLS1 F0/5


10.1.30.252 DLS1 Loopback 0
10.1.2.1 DLS1 Tunnel 0
10.1.211.1 DLS2 VLAN 99
10.1.99.253 DLS2 VLAN 100
10.1.100.253 DLS2 VLAN 110
10.1.110.253 DLS2 VLAN 120
10.1.120.253 DLS2 VLAN 200
10.1.200.253 DLS2 VLAN 300
10.1.30.253 DLS2 F0/5
10.1.2.13 R1 G0/1
10.1.2.2 R1 S0/0/0.1
209.165.200.225 R1 S0/0/0.2
209.165.200.229 R1 Loopback 0
192.168.1.1 R1 Tunnel 0
209.165.200.226 R2 G0/0
209.165.200.230 R2 S0/0/0.1
209.165.200.222 R2 S0/0/0.2
10.1.90.2 R2 S0/0/1.1
2.2.2.2 R2 S0/0/1.2
2.2.2.2 R2 Loopback 0
20.20.20.20 R2 Loopback 1
22.22.22.22 R2 Loopback 2
22.22.22.22 R2 Loopback 3
22.22.22.22 R2 Loopback 4
10.1.80.1 R2 Loopback 5
10.1.2.14 R2 Tunnel 0
209.165.200.221 R3 G0/0
10.1.90.3 R3 G0/1
192.168.3.1 R3 S0/0/1.1
10.1.80.129 R3 S0/0/1.2
10.1.100.1 R3 Loopback 0
10.1.120.6-10.1.120.250 R3 Loopback 1
10.1.80.4-10.1.80.126 R3 Tunnel 0
} { ping $address } SRV1 NIC
PC-B NIC
PC-C NIC
tclsh PC-C ALS1 VLAN 99 Varies- used as a
foreach address { ALS1 VLAN 110 quick reference to
2001:DB8:CAFE:99::A1 ALS1 VLAN 120 show commands
2001:DB8:CAFE:110::A1 ALS1 VLAN 200
2001:DB8:CAFE:120::A1 ALS1 VLAN 300
2001:DB8:CAFE:200::A1 DLS1 VLAN 99
2001:DB8:CAFE:300::A1 DLS1 VLAN 100
2001:DB8:CAFE:99::D1 DLS1 VLAN 110
2001:DB8:CAFE:100::D1 DLS1 VLAN 120
2001:DB8:CAFE:110::D1 DLS1 VLAN 200
2001:DB8:CAFE:120::D1 DLS1 VLAN 300
2001:DB8:CAFE:200::D1 DLS1 F0/5
2001:DB8:CAFE:300::D1 DLS1 Loopback 0
2001:DB8:CAFE:20::D1 DLS1 Tunnel 0
2001:DB8:CAFE:2110::D1 DLS2 VLAN 99
FC00::D1 DLS2 VLAN 100
2001:DB8:CAFE:99::D2 DLS2 VLAN 110
2001:DB8:CAFE:100::D2 DLS2 VLAN 120
2001:DB8:CAFE:110::D2 DLS2 VLAN 200
2001:DB8:CAFE:120::D2 DLS2 VLAN 300

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 24 of 126
CCNPv7.1 TSHOOT Skills Assessment

2001:DB8:CAFE:200::D2 DLS2 F0/5


2001:DB8:CAFE:300::D2 R1 G0/1
2001:DB8:CAFE:212::D2 R1 S0/0/0.1
2001:DB8:CAFE:20::1 R1 S0/0/0.2
2001:DB8:FEED:10::1 R1 Loopback 0
2001:DB8:CAFE:6::1 R1 Tunnel 0
2001:DB8:CAFE:201::1 R2 G0/0
ABCD::1 R2 S0/0/0.1
SLAAC in 2001:DB8:CAFE:120:: R2 S0/0/0.2
2001:DB8:FEED:10::2 R2 S0/0/1.1
2001:DB8:CAFE:6::2 R2 S0/0/1.2
2001:DB8:FEED:14::2 R2 Loopback 0
2001:DB8:CAFE:90::2 R2 Loopback 1
2001:DB8:FEED:222::2 R2 Loopback 2
2001:DB8:FEED:222::2 R2 Loopback 3
2001:DB8:CAFE:2020::2 R2 Loopback 4
2001:DB8:EFAC::2 R2 Loopback 5
2001:DB8:EFAC::2 R2 Tunnel 0
2001:DB8:EFAC::2 R3 G0/0
FC00:2 R3 G0/1
2001:DB8:CAFE:800::1 R3 S0/0/1.1
2001:DB8:CAFE:212:: R3 S0/0/1.2
2001:DB8:FEED:14::3 R3 Loopback 0
2001:DB8:CAFE:90::3 R3 Loopback 1
2001:DB8:CAFE:203::1 R3 Tunnel 0
2001:DB8:CAFE:801::1 SRV1 NIC
ABCD::3 PC-B NIC
2001:DB8:CAFE:100::1 PC-C NIC
In 2001:DB8:CAFE:120:ABCD::
In 2001:DB8:CAFE:800:ABCD::}
{ ping $address }

Step 2: Document and resolve the issues discovered. Verify each resolution.
Using the tools available, such as show and debug commands, discover each problem, correct it, and
document the corrective action taken. Use the Problem Resolution and Verification table to document the
problem discovered, the affected devices, and the solution to the problem, including the commands used.
Note: For each device, after issuing corrective commands, copy the running config to the startup config.
Tip: If connecting from one device to another via SSH, issue the terminal monitor command so that
console and debug messages generated on the remote device are seen on the local console.

Problem Resolution and Verification Table


Verification Commands
Problem or Error Corrective Action (commands
(more than one command
Device Discovered used)
can be used)
ALS1 description To PC-B description To PC-B Show port-security int f0/18
switchport access vlan 120 switchport access vlan 120
switchport mode access switchport mode access
switchport voice vlan 200 switchport voice vlan 200
spanning-tree portfast spanning-tree portfast
switchport port-security switchport port-security maximum
10
switchport port-security mac-
address sticky switchport port-security

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 25 of 126
CCNPv7.1 TSHOOT Skills Assessment

spanning-tree bpdugard enable switchport port-security mac-address


sticky
no shutdown
spanning-tree bpdugard enable
no shutdown

ALS1 interface Vlan300 interface Vlan300 sh ipv6 static

ip address 10.1.30.251 ip address 10.1.30.251


255.255.255.0 255.255.255.0

no ip proxy-arp no ip proxy-arp

ipv6 address FE80::A1 link-local ipv6 address FE80::A1 link-


local
ipv6 address
2001:DB8:CAFE:300::A1/64 ipv6 address
2001:DB8:CAFE:300::A1/64
no ip proxy-arp
no ip proxy-arp
no shutdown
no shutdown
no ip http server
no ip http server
no ip http secure-server
no ip http secure-server
ip route 0.0.0.0 0.0.0.0
10.1.99.254 ip route 0.0.0.0 0.0.0.0
10.1.99.254
logging source-interface Vlan99
logging source-interface
logging host 10.1.100.1 Vlan99
logging host 10.1.100.1
ipv6 route ::/0
2001:DB8:CAFE:99::D1
ipv6 route ::/0
2001:DB8:CAFE:99::D2 5

DLS1 vlan 99 Int vlan 200 Sh vlan

name MANAGEMENT name VOICE Sh ip int br

! no shutdown

vlan 100
name SERVERS
!
vlan 110
name GUEST
!
vlan 120
name OFFICE
!
vlan 200
name VOICE
!
vlan 300
name O-PEER
!
vlan 666
name NATIVE

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 26 of 126
CCNPv7.1 TSHOOT Skills Assessment

!
vlan 999
name PARKING_LOT

DLS1 ip sla 2 ip sla 2 Sh standby

tcp-connect tcp-connect Sh ip sla application


2001:DB8:FEED:10::1 23 control 2001:DB8:FEED:10::1 22
control disable Sh ip sla statistics
disable
threshold 100 Sh ip sla configuration
threshold 100
timeout 200 timeout 200

frequency 6 frequency 6

ip sla schedule 2 life forever start-time ip sla schedule 2 life forever


now start-time now

DLS2 interface FastEthernet0/1 interface FastEthernet0/1 Sh ip int br

description Channel to ALS1 description Channel to ALS1 Sh int f0/1

switchport trunk encapsulation switchport trunk Sh int f0/2


isl encapsulation dot1q
Sh run |sec f0/1
switchport trunk native vlan 666 switchport trunk native vlan
666 Sh run | sec f0/2
switchport trunk allowed vlan
99,100,110,120,200,300 switchport trunk allowed
vlan 99,100,110,120,200,300
switchport mode trunk
switchport mode trunk
switchport nonegotiate
switchport nonegotiate
channel-group 2 mode on
channel-group 2 mode on
no shutdown
no shutdown

interface FastEthernet0/2
interface FastEthernet0/2
description Channel to ALS1
description Channel to ALS1
switchport trunk encapsulation
isl switchport trunk
encapsulation dot1q
switchport trunk native vlan 666
switchport trunk native vlan
switchport trunk allowed vlan 666
99,100,110,120,200,300
switchport trunk allowed
switchport mode trunk vlan 99,100,110,120,200,300
switchport nonegotiate switchport mode trunk

channel-group 2 mode on switchport nonegotiate

no shutdown channel-group 2 mode on


no shutdown

DLS2 interface FastEthernet0/5 interface FastEthernet0/5 Sh ip int br

description FE to R3 description FE to R3 Sh ipv6 int br

no switchport no switchport Sh int f0/5

ip address 10.1.2.13 ip address 10.1.2.13 Sh run |sec f0/5


255.255.255.252 255.255.255.252

ip access-group 101 in ip access-group 101 in

ipv6 address FE80::D2 link-local ipv6 address FE80::D2 link-


local
ipv6 address
2001:DB8:CAFE:212::D2/64 ipv6 address

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 27 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 rip V120 enable 2001:DB8:CAFE:212::D2/64

ipv6 ospf network non- ipv6 rip V120 enable


broadcast
no ipv6 ospf network non-
ipv6 ospf 1 area 0 broadcast

speed 100 ipv6 ospf 1 area 0

duplex full speed 100

spanning-tree bpduguard duplex full


enable
spanning-tree bpduguard
ipv6 dhcp server v6_BranchLAN enable

no shutdown ipv6 dhcp server


v6_BranchLAN
no shutdown

DSL2 interface Vlan200 interface Vlan200 Sh ip int br

ip address 10.1.253.200 ip address 10.1.200.253 Sh ip int vlan200


255.255.255.0 255.255.255.0
Sh run |sec vlan200
no ip proxy-arp no ip proxy-arp

standby 200 ip 10.1.200.254 standby 200 ip 10.1.200.254

standby 200 priority 110 standby 200 priority 110

standby 200 preempt standby 200 preempt

standby 200 track 23 decrement standby 200 track 23


20 decrement 20

ipv6 address FE80::D2 link-local ipv6 address FE80::D2 link-


local
ipv6 address
2001:DB8:CAFE:200::D2/64 ipv6 address
2001:DB8:CAFE:200::D2/64
ipv6 nd prefix
2001:DB8:CAFE:200::/64 no- ipv6 nd prefix
autoconfig 2001:DB8:CAFE:200::/64 no-
autoconfig
ipv6 nd managed-config-flag
ipv6 nd managed-config-flag
ipv6 dhcp server
DHCPv6VOICE ipv6 dhcp server DHCPv6VOICE

ipv6 rip V120 enable ipv6 rip V120 enable

ipv6 ospf 1 area 1 ipv6 ospf 1 area 1

no shutdown no shutdown

R1 interface Tunnel0 interface Tunnel0 Sh ip int br

no ip address no ip address Sh ip int tunnel0

ipv6 address FE80::1 link-local ipv6 address FE80::1 link- Sh run | sec Tunnel0
local
ipv6 address ABCD::1/16
ipv6 address ABCD::1/16
ospfv3 2 ipv6 area 1
ospfv3 2 ipv6 area 0
tunnel source Loopback0
tunnel source Loopback0
tunnel destination 192.168.3.1
tunnel destination 192.168.3.1

R1 address-family ipv4 address-family ipv4 Sh ip bgp

network 10.1.0.0 mask network 10.1.0.0 mask Sh bgp unicast summary


255.255.0.0 255.255.0.0
Sh route bgp
network 192.168.1.1 mask network 192.168.1.1 mask
255.255.255.255 Sh ip route ospf
255.255.255.255
network 209.165.200.224 mask network 209.165.200.224

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 28 of 126
CCNPv7.1 TSHOOT Skills Assessment

255.255.255.252 mask 255.255.255.252 Sh ip route ospfv3

no neighbor 192.168.3.1 neighbor 192.168.3.1 Sh ip route


activate activate

neighbor 209.165.200.226 neighbor 192.168.3.1 next-


activate hop-self

exit-address-family neighbor 209.165.200.226


activate
exit-address-family

R2 interface Tunnel0 interface Tunnel0 Sh ip int br

no ip address no ip address Sh ip int tunnel0

ipv6 address FE80::2 link-local ipv6 address FE80::2 link- Sh run | sec Tunnel0
local
ipv6 address FC00::2/7
ipv6 address FC00::2/7
ipv6 rip V120 enable
ipv6 rip V120 enable
tunnel source Serial0/0/0.2
tunnel source Serial0/0/0.2
tunnel destination 10.1.2.1

R2 router eigrp HQ router eigrp HQ Sh ip eigrp int

address-family ipv4 unicast address-family ipv4 unicast Sh ip eigrp neighbors


autonomous-system 1 autonomous-system 1

af-interface default af-interface default

shutdown shutdown

passive-interface passive-interface

exit-af-interface exit-af-interface

af-interface Serial0/0/1.2 af-interface Serial0/0/1.2

no shutdown no shutdown

no passive-interface no passive-interface

exit-af-interface exit-af-interface

af-interface Loopback2 af-interface Loopback2

no shutdown no shutdown

exit-af-interface exit-af-interface

topology base topology base

exit-af-topology exit-af-topology

network 10.1.90.2 0.0.0.1 network 10.1.90.2 0.0.0.1

network 20.20.20.20 0.0.0.0 network 20.20.20.20 0.0.0.0

eigrp stub receive-only eigrp stub connected

exit-address-family exit-address-family

address-family ipv6 unicast address-family ipv6 unicast


autonomous-system 1
autonomous-system 1
af-interface default
af-interface default
shutdown
shutdown
passive-interface
passive-interface
exit-af-interface
exit-af-interface
af-interface Serial0/0/1.2
af-interface Serial0/0/1.2
no shutdown
no shutdown
no passive-interface

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 29 of 126
CCNPv7.1 TSHOOT Skills Assessment

no passive-interface exit-af-interface

exit-af-interface af-interface Loopback2

af-interface Loopback2 no shutdown

no shutdown exit-af-interface

exit-af-interface topology base

topology base exit-af-topology

exit-af-topology eigrp stub connected

eigrp stub receive-only exit-address-family

exit-address-family

R3 interface GigabitEthernet0/0 interface GigabitEthernet0/0 Sh ipv6 int br

description Collocated Office description Collocated


LAN Office LAN

ip address 10.1.80.1 ip address 10.1.80.1


255.255.255.128 255.255.255.128

ip helper-address 10.1.2.13 ip helper-address 10.1.2.13

duplex full duplex full

speed 100 speed 100

ipv6 address FE80::3 link-local ipv6 address FE80::3 link-


local
ipv6 address
2001:DB8:CAFE:800::1/64 ipv6 address
2001:DB8:CAFE:800::1/64
ipv6 nd prefix
2001:DB8:CAFE:800::/64 no- ipv6 nd prefix
autoconfig 2001:DB8:CAFE:800::/64
2592000 604800 no-autoconfig
ipv6 nd managed-config-flag
ipv6 nd managed-config-flag
ipv6 traffic-filter ALLOW-TCP-
ICMP in ipv6 dhcp relay destination
2001:DB8:CAFE:212::D2
no shutdown
ipv6 traffic-filter ALLOW-
TCP-ICMP in
no shutdown

R3 ntp source Loopback0 ntp source Loopback0 Sh ntp status


ntp update-calendar ntp update-calendar Sh ntp associations
(detail)
ntp server 192.168.2.1 ntp server 2.2.2.2
Debug ntp all

Notes

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 30 of 126
CCNPv7.1 TSHOOT Skills Assessment

Step 3: Demonstrate basic network connectivity after correcting errors.


With all devices connected and all problems resolved, you should be able to ping from any device in the
network to any other device. Perform pings according to the Ping Test table below.
Note: All pings in the table must be successful. If not, there are issues that need to be resolved.

Ping Test Table


From Device/Interface/IP To Device/Interface/IP Successful (Y/N)
SRV1 PC-C Y
SRV1 HSRP default gateway Y
SRV1 ALS1 MANAGEMENT Y
SRV1 DLS1 MANAGEMENT Y
SRV1 DLS2 MANAGEMENT Y
SRV1 R1 F0/1 Y
SRV1 R2 Lo1 Y
SRV1 R2 Lo2 Y
SRV1 R2 Lo3 Y
SRV1 R3 G0/0 Y

PC-C R3 default gateway Y


PC-C SRV1 Y
PC-C ALS1 MANAGEMENT Y
PC-C DLS1 MANAGEMENT Y
PC-C DLS2 MANAGEMENT Y
PC-C R1 G0/1 Y
PC-C R2 Lo0 Y

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 31 of 126
CCNPv7.1 TSHOOT Skills Assessment

PC-C R3 G0/1 Y

ALS1 MANAGEMENT VLAN 99 DLS1 MANAGEMENT Y


ALS1 MANAGEMENT VLAN 99 DLS2 MANAGEMENT Y
ALS1 MANAGEMENT VLAN 99 R1 G0/1 Y
ALS1 MANAGEMENT VLAN 99 R2 Lo1 Y
ALS1 MANAGEMENT VLAN 99 R3 G0/1 Y

Notes
N/A

Step 4: Demonstrate SSH connectivity.


From PC-C, connect to each network device using SSH to verify remote connectivity. Use an SSH client such
as PuTTY.
Note: Connecting to each device via SSH must be successful. If not, there are issues that need to be
resolved.

Remote Access Test Table


From Device To Device/Interface/IP SSH (Y/N)
PC-C ALS1 MANAGEMENT Y
PC-C DLS1 MANAGEMENT Y
PC-C DLS2 MANAGEMENT Y
PC-C R1 G0/1 Y
PC-C R2 S0/0/0.1 Y
PC-C R3 G0/1 Y

Step 5: Demonstrate NTP functionality.


Check that each network device is synchronized with NTP server R2.

NTP Synchronization Table


Device NTP Status Synched (Y/N)
ALS1 Y
DLS1 Y
DLS2 Y
R1 Y
R2 Y
R3 Y

Step 6: Demonstrate network redundancy for SRV1 now that the trouble tickets are resolved.
a. Shut down DLS1 port F0/5.
b. Ping from SRV1 to all other network devices. Pings from SRV1 to each network device should be
successful. If not, there are issues that need to be resolved.
c. Renew and release the PC-B IP address. PC-B should be able to obtain an IP address on subnet
10.1.120.0/24. If not, there are issues that need to be resolved.

Redundancy Test Table


From Device/Interface/IP To Device/Interface/IP Result
SRV1 HSRP default gateway Y
SRV1 PC-C Y

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 32 of 126
CCNPv7.1 TSHOOT Skills Assessment

SRV1 SRV1 Y
SRV1 ALS1 MANAGEMENT Y
SRV1 DLS1 MANAGEMENT Y
SRV1 DLS2 MANAGEMENT Y
SRV1 R1 S0/0/1.1 Y
SRV1 R2 Lo1 Y
SRV1 R3 S0/0/1.1 Y

Notes
N/A

Configurations

ALS1
!Switch ALS1 Skills Assessment Error Config
!

service timestamps debug datetime msec

service timestamps log datetime msec

service password-encryption

hostname ALS1

logging buffered 16384

enable secret cisco

username cisco secret cisco

aaa new-model

aaa authentication login default local

aaa authentication login CONSOLE none

aaa authorization exec default local

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 33 of 126
CCNPv7.1 TSHOOT Skills Assessment

clock timezone PST -8

clock summer-time PDT recurring

do clock set 09:05:00 Oct 29 2014

system mtu routing 1500

vtp domain TSHOOT

vtp mode transparent

vtp version 3

ip routing

ipv6 unicast-routing

no ip domain-lookup

ip domain-name tshoot.net

errdisable recovery cause psecure-violation

errdisable recovery interval 120

spanning-tree mode mst

spanning-tree portfast default

spanning-tree portfast bpduguard default

vlan 99

name MANAGEMENT

vlan 100

name SERVERS

vlan 110

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 34 of 126
CCNPv7.1 TSHOOT Skills Assessment

name GUEST

vlan 120

name OFFICE

vlan 200

name VOICE

vlan 300

name O-PEER

vlan 666

name NATIVE

vlan 999

name PARKING_LOT

spanning-tree mst configuration

name TSHOOT

revision 25

instance 1 vlan 99, 110, 120

instance 2 vlan 100, 200, 300

vtp mode server

vtp mode server mst

vtp password cisco hidden

lldp run

ip ssh source-interface Vlan99

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 35 of 126
CCNPv7.1 TSHOOT Skills Assessment

ip ssh dh min size 2048

interface FastEthernet0/1

description Channel to DLS1

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

channel-group 1 mode on

no shutdown

interface FastEthernet0/2

description Channel to DLS1

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

channel-group 1 mode on

no shutdown

interface FastEthernet0/3

description Channel to DLS2

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 36 of 126
CCNPv7.1 TSHOOT Skills Assessment

channel-group 2 mode on

no shutdown

interface FastEthernet0/4

description Channel to DLS2

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

channel-group 2 mode on

no shutdown

interface Port-channel1

description Channel to DLS1

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

no shutdown

interface Port-channel2

description Channel to DLS2

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

no shutdown

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 37 of 126
CCNPv7.1 TSHOOT Skills Assessment

interface FastEthernet0/5

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/6

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/7

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/8

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/9

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 38 of 126
CCNPv7.1 TSHOOT Skills Assessment

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/10

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/11

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/12

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/13

description PARKING_LOT

switchport access vlan 999

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 39 of 126
CCNPv7.1 TSHOOT Skills Assessment

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/14

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/15

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/16

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/17

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 40 of 126
CCNPv7.1 TSHOOT Skills Assessment

shutdown

interface FastEthernet0/18

description To PC-B

switchport access vlan 120

switchport mode access

switchport voice vlan 200

spanning-tree portfast

switchport port-security maximum 10

switchport port-security

switchport port-security mac-address sticky

spanning-tree bpdugard enable

no shutdown

interface FastEthernet0/19

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/20

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/21

description PARKING_LOT

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 41 of 126
CCNPv7.1 TSHOOT Skills Assessment

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/22

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/23

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/24

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface GigabitEthernet0/1

description PARKING_LOT

switchport access vlan 999

switchport mode access

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 42 of 126
CCNPv7.1 TSHOOT Skills Assessment

switchport nonegotiate

shutdown

interface GigabitEthernet0/2

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface Vlan1

no ip address

shutdown

interface Vlan99

ip address 10.1.99.251 255.255.255.0

no ip proxy-arp

ipv6 address FE80::A1 link-local

ipv6 address 2001:DB8:CAFE:99::A1/64

no ip proxy-arp

no shutdown

interface Vlan100

ip address 10.1.100.251 255.255.255.0

no ip proxy-arp

ipv6 address FE80::A1 link-local

ipv6 address 2001:DB8:CAFE:100::A1/64

no ip proxy-arp

no shutdown

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 43 of 126
CCNPv7.1 TSHOOT Skills Assessment

interface Vlan110

ip address 10.1.110.251 255.255.255.0

no ip proxy-arp

ipv6 address FE80::A1 link-local

ipv6 address 2001:DB8:CAFE:110::A1/64

ipv6 nd prefix 2001:DB8:CAFE:110::/64 no-autoconfig

ipv6 nd managed-config-flag

no ip proxy-arp

no shutdown

interface Vlan120

ip address 10.1.120.251 255.255.255.0

no ip proxy-arp

ipv6 address FE80::A1 link-local

ipv6 address 2001:DB8:CAFE:120::A1/64

ipv6 nd prefix 2001:DB8:CAFE:120::/64

ipv6 nd other-config-flag

no ip proxy-arp

no shutdown

interface Vlan200

ip address 10.1.200.251 255.255.255.0

no ip proxy-arp

no ip proxy-arp

ipv6 address FE80::A1 link-local

ipv6 address 2001:DB8:CAFE:200::A1/64

ipv6 nd prefix 2001:DB8:CAFE:200::/64 no-autoconfig

ipv6 nd managed-config-flag

no shutdown

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 44 of 126
CCNPv7.1 TSHOOT Skills Assessment

interface Vlan300

ip address 10.1.30.251 255.255.255.0

no ip proxy-arp

ipv6 address FE80::A1 link-local

ipv6 address 2001:DB8:CAFE:300::A1/64

no ip proxy-arp

no shutdown

no ip http server

no ip http secure-server

ip route 0.0.0.0 0.0.0.0 10.1.99.254

logging source-interface Vlan99

logging host 10.1.100.1

ipv6 route ::/0 2001:DB8:CAFE:99::D1

ipv6 route ::/0 2001:DB8:CAFE:99::D2 5

snmp-server community cisco RO

snmp-server community san-fran RW

snmp-server trap-source Vlan99

snmp-server location TSHOOT Lab Facility

snmp-server contact support@tshoot.net

snmp-server enable traps vtp

snmp-server enable traps vlancreate

snmp-server enable traps vlandelete

snmp-server enable traps port-security

snmp-server enable traps vlan-membership

snmp-server host 10.1.100.1 version 2c cisco

banner motd ^*** Switch ALS1 Skills Assessment Error Config ***^

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 45 of 126
CCNPv7.1 TSHOOT Skills Assessment

alias exec srb show run | begin router bgp

alias exec sro show run | begin router ospf

alias exec srr show run | b router rip

alias exec sre show run | begin router eigrp

alias exec srr6 show run | b ipv6 router rip

alias exec sra show run | section event manager

alias exec srig show run inter g0/0

alias exec sira show ip route vrf VPN_A

alias exec sirb show ip route vrf VPN_B

alias exec sir show ip route

alias exec six show ipv6 route

alias exec sixa show ipv6 route vrf VPN_A

alias exec sixb show ipv6 route vrf VPN_B

ipv6 access-list REMOTEv6

deny ipv6 any any

line con 0

exec-timeout 0 0

logging synchronous

login authentication CONSOLE

line vty 0 4

exec-timeout 0 0

ipv6 access-class REMOTEv6 in

logging synchronous

length 0

transport input ssh

ntp source Vlan99

ntp server 2.2.2.2

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 46 of 126
CCNPv7.1 TSHOOT Skills Assessment

crypto key gen rsa general-keys modulus 1024

archive

log config

logging enable

logging size 50

notify syslog contenttype plaintext

hidekeys

path tftp://10.1.100.1/$h-archive-config

write-memory

file prompt quiet

end

DLS1

!Switch DLS1 Skills Assessment Error Config

service timestamps debug datetime msec

service timestamps log datetime msec

service password-encryption

hostname DLS1

logging buffered 16384

enable secret cisco

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 47 of 126
CCNPv7.1 TSHOOT Skills Assessment

username cisco secret cisco

aaa new-model

aaa authentication login default local

aaa authentication login CONSOLE none

aaa authorization exec default local

clock timezone PST -8

clock summer-time PDT recurring

do clock set 09:05:00 Oct 29 2014

vtp domain TSHOOT

vtp mode transparent

vtp version 3

ip routing

no ip domain-lookup

ip domain-name tshoot.net

ip dhcp excluded-address 10.1.110.1 10.1.110.5

ip dhcp excluded-address 10.1.120.1 10.1.120.5

ip dhcp excluded-address 10.1.200.1 10.1.200.5

ip dhcp excluded-address 10.1.120.129 10.1.120.254

ip dhcp excluded-address 10.1.110.129 10.1.110.254

ip dhcp excluded-address 10.1.200.129 10.1.200.254

ip dhcp pool GUEST

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 48 of 126
CCNPv7.1 TSHOOT Skills Assessment

network 10.1.110.0 255.255.255.0

default-router 10.1.110.254

ip dhcp pool OFFICE

network 10.1.120.0 255.255.255.0

default-router 10.1.120.254

domain-name tshoot.net

ip dhcp pool VOICE

network 10.1.200.0 255.255.255.0

default-router 10.1.200.254

ipv6 unicast-routing

ipv6 dhcp pool DHCPv6GUEST

address prefix 2001:DB8:CAFE:110:ABCD::/80

domain-name tshoot.net

ipv6 dhcp pool DHCPv6OFFICE

address prefix 2001:DB8:CAFE:120:ABCD::/80

domain-name tshoot.net

ipv6 dhcp pool DHCPv6VOICE

address prefix 2001:DB8:CAFE:200:ABCD::/80

domain-name tshoot.net

errdisable recovery cause bpduguard

vlan 99

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 49 of 126
CCNPv7.1 TSHOOT Skills Assessment

name MANAGEMENT

vlan 100

name SERVERS

vlan 110

name GUEST

vlan 120

name OFFICE

vlan 200

name VOICE

vlan 300

name O-PEER

vlan 666

name NATIVE

vlan 999

name PARKING_LOT

spanning-tree mode mst

spanning-tree portfast default

spanning-tree portfast bpduguard default

spanning-tree mst configuration

name TSHOOT

revision 25

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 50 of 126
CCNPv7.1 TSHOOT Skills Assessment

instance 1 vlan 99, 110, 120

instance 2 vlan 100, 200, 300

spanning-tree mst 1 priority 24576

spanning-tree mst 2 priority 28672

vtp mode server

vtp mode server mst

vtp password cisco hidden

track 7 ip sla 2

delay down 30 up 30

track 23 list boolean and

object 7

object 31

track 31 interface FastEthernet0/5 line-protocol

delay down 30 up 30

lldp run

ip ssh source-interface Vlan99

ip ssh dh min size 2048

interface Loopback0

description Anchor

ip address 10.1.211.1 255.255.255.255

ip ospf network point-to-point

ipv6 address FE80::D1 link-local

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 51 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 address 2001:DB8:CAFE:2110::D1/128

ipv6 rip V120 enable

ipv6 ospf network point-to-point

ipv6 ospf 1 area 0

interface Tunnel0

no ip address

ipv6 address FE80::D1 link-local

ipv6 address FC00::D1/7

ipv6 rip V120 enable

tunnel source FastEthernet0/5

tunnel destination 209.165.200.230

interface FastEthernet0/1

description Channel to ALS1

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

channel-group 1 mode on

no shutdown

interface FastEthernet0/2

description Channel to ALS1

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 52 of 126
CCNPv7.1 TSHOOT Skills Assessment

channel-group 1 mode on

no shutdown

interface FastEthernet0/3

description Channel to DLS2

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

channel-group 10 mode on

no shutdown

interface FastEthernet0/4

description Channel to DLS2

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

channel-group 10 mode on

no shutdown

interface Port-channel1

description Channel to ALS1

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 53 of 126
CCNPv7.1 TSHOOT Skills Assessment

no shutdown

interface Port-channel10

description Channel to DLS2

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

no shutdown

interface FastEthernet0/5

description FE to R1

no switchport

ip address 10.1.2.1 255.255.255.252

ip access-group 101 in

ipv6 address FE80::D1 link-local

ipv6 address 2001:DB8:CAFE:20::D1/64

ipv6 ospf 1 area 0

speed 100

duplex full

spanning-tree bpduguard enable

no shutdown

interface FastEthernet0/6

description FE to SRV1

switchport access vlan 100

switchport mode access

switchport nonegotiate

spanning-tree portfast

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 54 of 126
CCNPv7.1 TSHOOT Skills Assessment

spanning-tree bpduguard enable

no shutdown

interface FastEthernet0/7

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/8

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/9

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/10

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 55 of 126
CCNPv7.1 TSHOOT Skills Assessment

interface FastEthernet0/11

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/12

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/13

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/14

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/15

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 56 of 126
CCNPv7.1 TSHOOT Skills Assessment

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/16

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/17

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/18

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/19

description PARKING_LOT

switchport access vlan 999

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 57 of 126
CCNPv7.1 TSHOOT Skills Assessment

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/20

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/21

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/22

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/23

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 58 of 126
CCNPv7.1 TSHOOT Skills Assessment

shutdown

interface FastEthernet0/24

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface GigabitEthernet0/1

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface GigabitEthernet0/2

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface Vlan1

no ip address

shutdown

interface Vlan99

ip address 10.1.99.252 255.255.255.0

no ip proxy-arp

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 59 of 126
CCNPv7.1 TSHOOT Skills Assessment

standby 99 ip 10.1.99.254

standby 99 priority 110

standby 99 preempt

standby 99 track 23 decrement 20

ipv6 address FE80::D1 link-local

ipv6 address 2001:DB8:CAFE:99::D1/64

ipv6 rip V120 enable

ipv6 ospf 1 area 1

no shutdown

interface Vlan100

ip address 10.1.100.252 255.255.255.0

no ip proxy-arp

standby 100 ip 10.1.100.254

standby 100 preempt

ipv6 address FE80::D1 link-local

ipv6 address 2001:DB8:CAFE:100::D1/64

ipv6 rip V120 enable

ipv6 ospf 1 area 1

no shutdown

interface Vlan110

ip address 10.1.110.252 255.255.255.0

no ip proxy-arp

standby 110 ip 10.1.110.254

standby 110 priority 110

standby 110 preempt

standby 110 track 23 decrement 20

ipv6 address FE80::D1 link-local

ipv6 address 2001:DB8:CAFE:110::D1/64

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 60 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 ospf 1 area 1

ipv6 rip V120 enable

ipv6 nd prefix 2001:DB8:CAFE:110::/64 no-autoconfig

ipv6 nd managed-config-flag

ipv6 dhcp server DHCPv6GUEST

no shutdown

interface Vlan120

ip address 10.1.120.252 255.255.255.0

no ip proxy-arp

standby 120 ip 10.1.120.254

standby 120 priority 110

standby 120 preempt

standby 120 track 23 decrement 20

ipv6 address FE80::D1 link-local

ipv6 address 2001:DB8:CAFE:120::D1/64

ipv6 ospf 1 area 1

ipv6 rip V120 enable

ipv6 nd prefix 2001:DB8:CAFE:120::/64 no-autoconfig

ipv6 nd managed-config-flag

ipv6 dhcp server DHCPv6OFFICE

no shutdown

interface Vlan200

ip address 10.1.200.252 255.255.255.0

no ip proxy-arp

standby 200 ip 10.1.200.254

standby 200 preempt

ipv6 address FE80::D1 link-local

ipv6 address 2001:DB8:CAFE:200::D1/64

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 61 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 ospf 1 area 1

ipv6 nd prefix 2001:DB8:CAFE:200::/64 no-autoconfig

ipv6 nd managed-config-flag

ipv6 dhcp server DHCPv6VOICE

no shutdown

interface Vlan300

ip address 10.1.30.252 255.255.255.0

no ip proxy-arp

standby 30 ip 10.1.30.254

standby 30 preempt

ip ospf authentication message-digest

ip ospf message-digest-key 1 md5 sheaf

ipv6 address FE80::D1 link-local

ipv6 address 2001:DB8:CAFE:300::D1/64

ipv6 ospf 1 area 0

ipv6 ospf authentication ipsec spi 500 sha1 1234567890123456789012345678901234567890

router ospf 1

router-id 1.1.1.1

log-adjacency-changes

passive-interface default

no passive-interface Vlan300

no passive-interface FastEthernet0/5

network 10.1.99.0 0.0.0.255 area 1

network 10.1.100.0 0.0.0.255 area 1

network 10.1.110.0 0.0.0.255 area 1

network 10.1.120.0 0.0.0.255 area 1

network 10.1.200.0 0.0.0.255 area 1

network 10.1.30.0 0.0.0.255 area 0

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 62 of 126
CCNPv7.1 TSHOOT Skills Assessment

network 10.1.2.0 0.0.0.3 area 0

network 10.1.211.1 0.0.0.0 area 0

router rip

version 2

network 10.0.0.0

no auto-summary

no ip http server

no ip http secure-server

ip sla 2

tcp-connect 2001:DB8:FEED:10::1 22 control disable

threshold 100

timeout 200

frequency 6

ip sla schedule 2 life forever start-time now

logging source-interface Vlan99

logging host 10.1.100.1

access-list 101 permit tcp host 192.168.1.1 host 192.168.3.1 eq bgp

access-list 101 permit tcp host 192.168.1.1 eq bgp host 192.168.3.1

access-list 101 permit ospf any any

access-list 101 permit icmp any any

access-list 101 permit udp any any

access-list 101 permit ip host 10.1.2.2 any

access-list 101 permit ip host 192.168.1.1 any

access-list 101 permit gre any any

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 63 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 router ospf 1

router-id 11.11.11.11

passive-interface default

no passive-interface Vlan300

no passive-interface FastEthernet0/5

ipv6 router rip V120

distribute-list prefix-list RIP in

distribute-list prefix-list RIP out Tunnel0

ipv6 prefix-list RIP seq 10 deny 2001:DB8:CAFE:120:ABCD::/80 ge 81

ipv6 prefix-list RIP seq 20 permit ::/0 le 128

snmp-server community cisco RO

snmp-server community san-fran RW

snmp-server trap-source Vlan99

snmp-server location TSHOOT Lab Facility

snmp-server contact support@tshoot.net

snmp-server enable traps eigrp

snmp-server enable traps vtp

snmp-server enable traps vlancreate

snmp-server enable traps vlandelete

snmp-server enable traps port-security

snmp-server enable traps config

snmp-server enable traps hsrp

snmp-server enable traps vlan-membership

snmp-server enable traps errdisable

snmp-server host 10.1.100.1 version 2c cisco

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 64 of 126
CCNPv7.1 TSHOOT Skills Assessment

banner motd ^*** Switch DLS1 Skills Assessment Error Config ***^

alias exec srb show run | begin router bgp

alias exec sro show run | begin router ospf

alias exec srr show run | b router rip

alias exec sre show run | begin router eigrp

alias exec srr6 show run | b ipv6 router rip

alias exec sra show run | section event manager

alias exec srig show run inter g0/0

alias exec sira show ip route vrf VPN_A

alias exec sirb show ip route vrf VPN_B

alias exec sir show ip route

alias exec six show ipv6 route

alias exec sixa show ipv6 route vrf VPN_A

alias exec sixb show ipv6 route vrf VPN_B

line con 0

exec-timeout 0 0

logging synchronous

login authentication CONSOLE

line vty 0 4

exec-timeout 0 0

logging synchronous

transport input ssh

ntp source Vlan99

ntp server 2.2.2.2

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 65 of 126
CCNPv7.1 TSHOOT Skills Assessment

event manager applet DLS2-MST1-Root

event syslog pattern "23 list boolean and Up->Down"

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.2 cli command "spanning-tree mst 1 priority 32768"

action 1.3 syslog msg "DLS2 Root for MST1"

event manager applet DLS1-MST1-Root

event syslog pattern "23 list boolean and Down->Up"

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.2 cli command "spanning-tree mst 1 priority 24576"

action 1.3 syslog msg "DLS1 Root for MST1"

crypto key gen rsa general-keys modulus 1024

archive

log config

logging enable

logging size 50

notify syslog contenttype plaintext

hidekeys

path tftp://10.1.100.1/$h-archive-config

write-memory

file prompt quiet

end

DLS2
!Switch DLS2 Skills Assessment Error Config

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 66 of 126
CCNPv7.1 TSHOOT Skills Assessment

service timestamps debug datetime msec

service timestamps log datetime

service password-encryption

hostname DLS2

logging buffered 16384

enable secret cisco

username cisco secret cisco

aaa new-model

aaa authentication login default local

aaa authentication login CONSOLE none

aaa authorization exec default local

clock timezone PST -8

clock summer-time PDT recurring

do clock set 09:05:00 Oct 29 2014

vtp domain TSHOOT

vtp mode transparent

vtp version 3

ip routing

no ip domain-lookup

ip domain-name tshoot.net

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 67 of 126
CCNPv7.1 TSHOOT Skills Assessment

ip dhcp excluded-address 10.1.80.1 10.1.80.3

ip dhcp excluded-address 10.1.120.251 10.1.120.254

ip dhcp excluded-address 10.1.200.251 10.1.200.254

ip dhcp excluded-address 10.1.110.251 10.1.110.254

ip dhcp excluded-address 10.1.110.1 10.1.110.128

ip dhcp excluded-address 10.1.120.1 10.1.120.128

ip dhcp excluded-address 10.1.200.1 10.1.200.128

ip dhcp pool VOICE

network 10.1.200.0 255.255.255.0

default-router 10.1.200.254

ip dhcp pool GUEST

network 10.1.110.0 255.255.255.0

default-router 10.1.110.254

ip dhcp pool OFFICE

network 10.1.120.0 255.255.255.0

default-router 10.1.120.254

domain tshoot.net

ip dhcp pool v4_BranchLAN

network 10.1.80.0 255.255.255.128

default-router 10.1.80.1

ipv6 unicast-routing

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 68 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 dhcp pool v6_BranchLAN

address prefix 2001:DB8:CAFE:800:ABCD::/80

domain-name tshoot.net

ipv6 dhcp pool DHCPv6OFFICE

address prefix 2001:DB8:CAFE:120:ABCD::/80

domain-name tshoot.net

ipv6 dhcp pool DHCPv6VOICE

address prefix 2001:DB8:CAFE:200:ABCD::/80

domain-name tshoot.net

ipv6 dhcp pool DHCPv6GUEST

address prefix 2001:DB8:CAFE:110:ABCD::/80

domain-name tshoot.net

errdisable recovery cause bpduguard

vlan 99

name MANAGEMENT

vlan 100

name SERVERS

vlan 110

name GUEST

vlan 120

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 69 of 126
CCNPv7.1 TSHOOT Skills Assessment

name OFFICE

vlan 200

name VOICE

vlan 300

name O-PEER

vlan 666

name NATIVE

vlan 999

name PARKING_LOT

spanning-tree mode mst

spanning-tree portfast default

spanning-tree portfast bpduguard default

spanning-tree mst configuration

name TSHOOT

revision 25

instance 1 vlan 99, 110, 120

instance 2 vlan 100, 200, 300

spanning-tree mst 1 priority 28672

spanning-tree mst 2 priority 24576

vtp mode server

vtp mode server mst

vtp password cisco hidden

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 70 of 126
CCNPv7.1 TSHOOT Skills Assessment

track 7 ip sla 2

delay down 30 up 30

track 23 list boolean and

object 7

object 31

track 31 interface FastEthernet0/5 line-protocol

delay down 30 up 30

lldp run

ip ssh source-interface Vlan99

ip ssh dh min size 2048

interface Loopback0

description Anchor

ip address 10.1.212.1 255.255.255.255

ip ospf network point-to-point

ipv6 address FE80::D2 link-local

ipv6 address 2001:DB8:CAFE:2120::D2/128

ipv6 rip V120 enable

ipv6 ospf 1 area 0

ipv6 ospf network point-to-point

interface FastEthernet0/1

description Channel to ALS1

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 71 of 126
CCNPv7.1 TSHOOT Skills Assessment

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

channel-group 2 mode on

no shutdown

interface FastEthernet0/2

description Channel to ALS1

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

channel-group 2 mode on

no shutdown

interface FastEthernet0/3

description Channel to DLS1

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

channel-group 10 mode on

no shutdown

interface FastEthernet0/4

description Channel to DLS1

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 72 of 126
CCNPv7.1 TSHOOT Skills Assessment

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

channel-group 10 mode on

no shutdown

interface Port-channel2

description Channel to ALS1

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

no shutdown

interface Port-channel10

description Channel to DLS1

switchport trunk encapsulation dot1q

switchport trunk native vlan 666

switchport trunk allowed vlan 99,100,110,120,200,300

switchport mode trunk

switchport nonegotiate

no shutdown

interface FastEthernet0/5

description FE to R3

no switchport

ip address 10.1.2.13 255.255.255.252

ip access-group 101 in

ipv6 address FE80::D2 link-local

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 73 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 address 2001:DB8:CAFE:212::D2/64

ipv6 rip V120 enable

ipv6 ospf 1 area 0

speed 100

duplex full

spanning-tree bpduguard enable

ipv6 dhcp server v6_BranchLAN

no shutdown

interface FastEthernet0/6

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/7

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/8

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 74 of 126
CCNPv7.1 TSHOOT Skills Assessment

interface FastEthernet0/9

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/10

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/11

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/12

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/13

description PARKING_LOT

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 75 of 126
CCNPv7.1 TSHOOT Skills Assessment

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/14

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/15

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/16

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/17

description PARKING_LOT

switchport access vlan 999

switchport mode access

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 76 of 126
CCNPv7.1 TSHOOT Skills Assessment

switchport nonegotiate

shutdown

interface FastEthernet0/18

description FE to PC-C

switchport access vlan 110

switchport mode access

switchport nonegotiate

spanning-tree portfast

spanning-tree bpduguard enable

shutdown

interface FastEthernet0/19

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/20

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/21

description PARKING_LOT

switchport access vlan 999

switchport mode access

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 77 of 126
CCNPv7.1 TSHOOT Skills Assessment

switchport nonegotiate

shutdown

interface FastEthernet0/22

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/23

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface FastEthernet0/24

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface GigabitEthernet0/1

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 78 of 126
CCNPv7.1 TSHOOT Skills Assessment

interface GigabitEthernet0/2

description PARKING_LOT

switchport access vlan 999

switchport mode access

switchport nonegotiate

shutdown

interface Vlan1

no ip address

shutdown

interface Vlan99

ip address 10.1.99.253 255.255.255.0

no ip proxy-arp

standby 99 ip 10.1.99.254

standby 99 preempt

ipv6 address FE80::D2 link-local

ipv6 address 2001:DB8:CAFE:99::D2/64

ipv6 rip V120 enable

ipv6 ospf 1 area 1

no shutdown

interface Vlan100

ip address 10.1.100.253 255.255.255.0

no ip proxy-arp

standby 100 ip 10.1.100.254

standby 100 priority 110

standby 100 preempt

standby 100 track 23 decrement 20

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 79 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 address FE80::D2 link-local

ipv6 address 2001:DB8:CAFE:100::D2/64

ipv6 nd prefix 2001:DB8:CAFE:100::/64 no-autoconfig

ipv6 nd managed-config-flag

ipv6 rip V120 enable

ipv6 ospf 1 area 1

no shutdown

interface Vlan110

ip address 10.1.110.253 255.255.255.0

no ip proxy-arp

standby 110 ip 10.1.110.254

standby 110 preempt

ipv6 address FE80::D2 link-local

ipv6 address 2001:DB8:CAFE:110::D2/64

ipv6 nd prefix 2001:DB8:CAFE:110::/64 no-autoconfig

ipv6 nd managed-config-flag

ipv6 dhcp server DHCPv6GUEST

ipv6 rip V120 enable

ipv6 ospf 1 area 1

no shutdown

interface Vlan120

ip address 10.1.120.253 255.255.255.0

no ip proxy-arp

standby 120 ip 10.1.120.254

standby 120 preempt

ipv6 address FE80::D2 link-local

ipv6 address 2001:DB8:CAFE:120::D2/64

ipv6 nd prefix 2001:DB8:CAFE:120::/64 no-autoconfig

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 80 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 nd managed-config-flag

ipv6 dhcp server DHCPv6OFFICE

ipv6 rip V120 enable

ipv6 ospf 1 area 1

no shutdown

interface Vlan200

ip address 10.1.200.253 255.255.255.0

no ip proxy-arp

standby 200 ip 10.1.200.254

standby 200 priority 110

standby 200 preempt

standby 200 track 23 decrement 20

ipv6 address FE80::D2 link-local

ipv6 address 2001:DB8:CAFE:200::D2/64

ipv6 nd prefix 2001:DB8:CAFE:200::/64 no-autoconfig

ipv6 nd managed-config-flag

ipv6 dhcp server DHCPv6VOICE

ipv6 rip V120 enable

ipv6 ospf 1 area 1

no shutdown

interface Vlan300

ip address 10.1.30.253 255.255.255.0

no ip proxy-arp

standby 30 ip 10.1.30.254

standby 30 priority 110

standby 30 preempt

standby 30 track 23 decrement 20

ip ospf authentication message-digest

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 81 of 126
CCNPv7.1 TSHOOT Skills Assessment

ip ospf message-digest-key 1 md5 sheaf

ipv6 address FE80::D2 link-local

ipv6 address 2001:DB8:CAFE:300::D2/64

ipv6 ospf 1 area 0

ipv6 ospf authentication ipsec spi 500 sha1 1234567890123456789012345678901234567890

no shutdown

router ospf 1

router-id 2.2.2.2

log-adjacency-changes

passive-interface default

no passive-interface Vlan300

no passive-interface FastEthernet0/5

network 10.1.99.0 0.0.0.255 area 1

network 10.1.100.0 0.0.0.255 area 1

network 10.1.110.0 0.0.0.255 area 1

network 10.1.120.0 0.0.0.255 area 1

network 10.1.200.0 0.0.0.255 area 1

network 10.1.30.0 0.0.0.255 area 0

network 10.1.2.12 0.0.0.3 area 0

network 10.1.212.1 0.0.0.0 area 0

router rip

version 2

network 10.0.0.0

no auto-summary

no ip http server

no ip http secure-server

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 82 of 126
CCNPv7.1 TSHOOT Skills Assessment

ip sla 2

tcp-connect 2001:DB8:FEED:14::3 22 control disable

threshold 100

timeout 200

frequency 6

ip sla schedule 2 life forever start-time now

logging source-interface Vlan99

logging host 10.1.100.1

access-list 100 permit ip host 20.20.20.20 any

access-list 100 permit ip any host 20.20.20.20

access-list 100 permit icmp any any

access-list 101 permit tcp host 192.168.3.1 host 192.168.1.1 eq bgp

access-list 101 permit tcp host 192.168.3.1 eq bgp host 192.168.1.1

access-list 101 permit ip 10.1.80.0 0.0.0.255 any

access-list 101 permit ospf any any

access-list 101 permit icmp any any

access-list 101 permit udp any any

access-list 101 permit ip host 10.1.2.14 any

access-list 101 permit ip host 192.168.3.1 any

ipv6 router ospf 1

router-id 22.22.22.22

passive-interface default

no passive-interface Vlan300

no passive-interface FastEthernet0/5

ipv6 router rip V120

distribute-list prefix-list R2PrimeG0/0 in

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 83 of 126
CCNPv7.1 TSHOOT Skills Assessment

distance 109

ipv6 prefix-list R2PrimeG0/0 seq 10 deny 2001:DB8:CAFE:120:ABCD::/80 ge 81

ipv6 prefix-list R2PrimeG0/0 seq 20 permit ::/0 le 128

snmp-server community cisco RO

snmp-server community san-fran RW

snmp-server trap-source Vlan99

snmp-server location TSHOOT Lab Facility

snmp-server contact support@tshoot.net

snmp-server enable traps eigrp

snmp-server enable traps vtp

snmp-server enable traps vlancreate

snmp-server enable traps vlandelete

snmp-server enable traps port-security

snmp-server enable traps config

snmp-server enable traps hsrp

snmp-server enable traps vlan-membership

snmp-server enable traps errdisable

snmp-server host 10.1.100.1 version 2c cisco

banner motd ^*** Switch DLS2 Skills Assessment Error Config ***^

alias exec srb show run | begin router bgp

alias exec sro show run | begin router ospf

alias exec srr show run | b router rip

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 84 of 126
CCNPv7.1 TSHOOT Skills Assessment

alias exec sre show run | begin router eigrp

alias exec srr6 show run | b ipv6 router rip

alias exec sra show run | section event manager

alias exec srig show run inter g0/0

alias exec sira show ip route vrf VPN_A

alias exec sirb show ip route vrf VPN_B

alias exec sir show ip route

alias exec six show ipv6 route

alias exec sixa show ipv6 route vrf VPN_A

alias exec sixb show ipv6 route vrf VPN_B

line con 0

exec-timeout 0 0

logging synchronous

login authentication CONSOLE

line vty 0 4

exec-timeout 0 0

logging synchronous

transport input ssh

ntp source Vlan99

ntp server 2.2.2.2

event manager applet DLS1-MST2-Root

event syslog pattern "23 list boolean and Up->Down"

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.2 cli command "spanning-tree mst 2 priority 32768"

action 1.3 syslog msg "DLS1 Root for MST2"

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 85 of 126
CCNPv7.1 TSHOOT Skills Assessment

event manager applet DLS2-MST2-Root

event syslog pattern "23 list boolean and Down->Up"

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.2 cli command "spanning-tree mst 2 priority 24576"

action 1.3 syslog msg "DLS2 Root for MST2"

crypto key gen rsa general-keys modulus 1024

archive

log config

logging enable

logging size 50

notify syslog contenttype plaintext

hidekeys

path tftp://10.1.100.1/$h-archive-config

write-memory

file prompt quiet

end

R1
!Router R1 Skills Assessment Error Config

service timestamps debug datetime msec

service timestamps log datetime msec

service password-encryption

hostname R1

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 86 of 126
CCNPv7.1 TSHOOT Skills Assessment

logging buffered 16384

enable secret cisco

aaa new-model

aaa authentication login default local

aaa authentication login CONSOLE none

aaa authorization exec default local

clock timezone PST -8

clock summer-time PDT recurring

do clock set 09:05:00 Oct 29 2014

no ip domain lookup

ip domain name tshoot.net

ip cef

ipv6 unicast-routing

ipv6 cef

username cisco secret cisco

lldp run

track 2 interface Serial0/0/0 line-protocol

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 87 of 126
CCNPv7.1 TSHOOT Skills Assessment

delay down 30 up 30

track 4 list boolean and

object 2

object 17

object 19

track 17 ip sla 3

delay down 30 up 30

track 19 ip sla 5

delay down 30 up 30

track 23 list boolean and

object 19 not

delay down 30 up 30

track 37 list boolean or

object 17

object 23

delay down 30 up 30

ip ssh source-interface Loopback0

ip ssh dh min size 2048

interface Loopback0

description iBGP Peer

ip address 192.168.1.1 255.255.255.255

ip ospf network point-to-point

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 88 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 address FE80::1 link-local

ipv6 address 2001:DB8:CAFE:201::1/128

ospfv3 2 ipv6 area 0

ospfv3 2 ipv6 network point-to-point

interface Tunnel0

no ip address

ipv6 address FE80::1 link-local

ipv6 address ABCD::1/16

ospfv3 2 ipv6 area 0

tunnel source Loopback0

tunnel destination 192.168.3.1

interface Embedded-Service-Engine0/0

no ip address

shutdown

interface GigabitEthernet0/0

no ip address

shutdown

duplex auto

speed auto

interface GigabitEthernet0/1

description FE to DLS1

ip address 10.1.2.2 255.255.255.252

ip flow ingress

duplex full

speed 100

ipv6 address FE80::1 link-local

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 89 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 address 2001:DB8:CAFE:20::1/64

ospfv3 2 ipv6 area 0

no shutdown

interface Serial0/0/0

description WAN link to R2: 2 Mbps leased line

no ip address

encapsulation frame-relay

no keepalive

clock rate 2000000

no shutdown

interface Serial0/0/0.1 point-to-point

ip address 209.165.200.225 255.255.255.252

ipv6 address FE80::1 link-local

ipv6 address 2001:DB8:FEED:10::1/126

ipv6 rip V120 enable

frame-relay interface-dlci 201

interface Serial0/0/0.2 point-to-point

ip address 209.165.200.229 255.255.255.252

ipv6 address FE80::1 link-local

ipv6 address 2001:DB8:CAFE:6::1/126

ipv6 rip V120 enable

frame-relay interface-dlci 102

router ospfv3 2

address-family ipv6 unicast

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 90 of 126
CCNPv7.1 TSHOOT Skills Assessment

passive-interface default

no passive-interface GigabitEthernet0/1

no passive-interface Tunnel0

default-information originate metric 100 metric-type 1

redistribute connected metric 100 metric-type 1 route-map IPv6s0/0/0.1

redistribute bgp 65501 route-map IPv6METRIC

router-id 11.0.0.11

exit-address-family

router ospf 1

router-id 1.0.0.1

redistribute bgp 65501 metric 100 metric-type 1 subnets

passive-interface default

no passive-interface GigabitEthernet0/1

network 10.1.2.0 0.0.0.3 area 0

network 192.168.1.1 0.0.0.0 area 0

default-information originate metric 100 metric-type 1

router rip

version 2

passive-interface default

no passive-interface GigabitEthernet0/1

no passive-interface Serial0/0/0.2

network 10.0.0.0

network 192.168.1.0

network 209.165.200.0

distribute-list prefix RIP out

distance 109 209.165.200.230 0.0.0.0 20

distance 109 10.1.2.1 0.0.0.0 30

no auto-summary

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 91 of 126
CCNPv7.1 TSHOOT Skills Assessment

router bgp 65501

bgp router-id 1.0.0.1

bgp log-neighbor-changes

neighbor 192.168.3.1 remote-as 65501

neighbor 192.168.3.1 password cisco

neighbor 192.168.3.1 update-source Loopback0

neighbor 209.165.200.226 remote-as 65502

neighbor 209.165.200.226 password cisco

address-family ipv4

network 10.1.0.0 mask 255.255.0.0

network 192.168.1.1 mask 255.255.255.255

network 209.165.200.224 mask 255.255.255.252

neighbor 192.168.3.1 activate

neighbor 192.168.3.1 next-hop-self

neighbor 209.165.200.226 activate

exit-address-family

address-family ipv6

network 2001:DB8:CAFE::/48

network 2001:DB8:FEED:10::/126

network 2001:DB8:CAFE:201::1/128

network ABCD::/16

neighbor 192.168.3.1 activate

neighbor 192.168.3.1 next-hop-self

neighbor 192.168.3.1 route-map IPv4TransportIPv6RouteFromR3 in

neighbor 209.165.200.226 activate

neighbor 209.165.200.226 route-map IPv4TransportIPv6RouteFromR2 in

exit-address-family

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 92 of 126
CCNPv7.1 TSHOOT Skills Assessment

crypto key gen rsa general-keys modulus 1024

ip http server

ip http secure-server

ip flow-top-talkers

top 3

sort-by bytes

cache-timeout 600000

ip route 10.1.0.0 255.255.0.0 Null0

ip prefix-list RIP seq 5 permit 192.168.1.1/32

ip prefix-list RIP seq 10 permit 10.1.2.0/30

ip prefix-list RIP seq 20 permit 209.165.200.228/30

ip prefix-list RIP seq 30 permit 20.20.20.20/32

ip prefix-list RIP seq 40 permit 10.1.99.0/24

ip prefix-list RIP seq 50 permit 10.1.100.0/24

ip prefix-list RIP seq 60 permit 10.1.110.0/24

ip prefix-list RIP seq 70 permit 10.1.200.0/24

ip prefix-list RIP seq 80 permit 10.1.30.0/24

ip prefix-list RIP seq 90 permit 209.165.200.224/30

ip sla 3

icmp-echo 209.165.200.221

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 93 of 126
CCNPv7.1 TSHOOT Skills Assessment

frequency 10

ip sla schedule 3 life forever start-time now

ip sla 5

icmp-echo 10.1.2.14

frequency 10

ip sla schedule 5 life forever start-time now

logging source-interface Loopback0

logging host 10.1.100.1

ipv6 route 2001:DB8:CAFE::/48 Null0

route-map IPv6s0/0/0.1 permit 10

match interface Serial0/0/0.1

route-map IPv4TransportIPv6RouteFromR2 permit 10

set ipv6 next-hop 2001:DB8:FEED:10::2

route-map IPv4TransportIPv6RouteFromR3 permit 10

set ipv6 next-hop 2001:DB8:CAFE:203::1

route-map IPv6METRIC permit 10

set metric 100

set metric-type type-1

snmp-server community cisco RO

snmp-server community san-fran RW

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 94 of 126
CCNPv7.1 TSHOOT Skills Assessment

snmp-server trap-source Loopback0

snmp-server location TSHOOT Lab Facility

snmp-server contact support@tshoot.net

snmp-server enable traps eigrp

snmp-server enable traps flash insertion

snmp-server enable traps flash removal

snmp-server enable traps config

snmp-server enable traps cpu threshold

snmp-server host 10.1.100.1 version 2c cisco

access-list 20 permit 20.0.0.0 0.255.255.255

access-list 30 permit 10.1.99.0 0.0.0.255

access-list 30 permit 10.1.100.0 0.0.0.255

access-list 30 permit 10.1.110.0 0.0.0.255

access-list 30 permit 10.1.200.0 0.0.0.255

access-list 30 permit 10.1.30.0 0.0.0.255

banner motd ^*** Router R1 Skills Assessment Error Config ***^

alias exec srb show run | begin router bgp

alias exec sro show run | begin router ospf

alias exec srr show run | b router rip

alias exec sre show run | begin router eigrp

alias exec srr6 show run | b ipv6 router rip

alias exec sra show run | section event manager

alias exec srig show run inter g0/0

alias exec sira show ip route vrf VPN_A

alias exec sirb show ip route vrf VPN_B

alias exec sir show ip route

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 95 of 126
CCNPv7.1 TSHOOT Skills Assessment

alias exec six show ipv6 route

alias exec sixa show ipv6 route vrf VPN_A

alias exec sixb show ipv6 route vrf VPN_B

line con 0

exec-timeout 0 0

logging synchronous

login authentication CONSOLE

line vty 0 4

exec-timeout 0 0

logging synchronous

transport input ssh

ntp source Loopback0

ntp update-calendar

ntp server 2.2.2.2

event manager applet DoNotUseIPv6Null

event track 4 state down

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.2 cli command "no ipv6 route 2001:db8:cafe::/48 Null0"

action 1.4 syslog msg "Uninstall IPv6 Null!"

event manager applet InstallIPv6Null

event track 4 state up

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.2 cli command "ipv6 route 2001:db8:cafe::/48 Null0"

action 1.3 syslog msg "Install IPv6 Null!"

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 96 of 126
CCNPv7.1 TSHOOT Skills Assessment

event manager applet DEFAULT

event track 37 state down

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.2 cli command "ip route 0.0.0.0 0.0.0.0 209.165.200.230"

action 1.3 cli command "ipv6 route ::/0 2001:db8:cafe:6::2"

action 1.4 syslog msg "DEFAULT for Internet"

event manager applet NoDEFAULT

event track 37 state up

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.2 cli command "no ip route 0.0.0.0 0.0.0.0 209.165.200.230"

action 1.3 cli command "no ipv6 route ::/0 2001:db8:cafe:6::2"

action 1.4 syslog msg "No Default for Internet"

archive

log config

logging enable

logging size 50

notify syslog contenttype plaintext

hidekeys

path tftp://10.1.100.1/$h-archive-config

write-memory

file prompt quiet

end

R2
© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 97 of 126
CCNPv7.1 TSHOOT Skills Assessment

!Router R2 Skills Assessment Error Config

service timestamps debug datetime msec

service timestamps log datetime msec

service password-encryption

hostname R2

vrf definition VPN_A

rd 100:1

route-target export 100:1

route-target import 100:1

address-family ipv4

exit-address-family

address-family ipv6

exit-address-family

vrf definition VPN_B

rd 200:1

route-target export 200:1

route-target import 200:1

address-family ipv4

exit-address-family

address-family ipv6

exit-address-family

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 98 of 126
CCNPv7.1 TSHOOT Skills Assessment

enable secret cisco

aaa new-model

aaa authentication login default local

aaa authentication login CONSOLE none

aaa authorization exec default local

clock timezone PST -8

clock summer-time PDT recurring

do clock set 09:05:00 Oct 29 2015

no ip domain lookup

ip domain name tshoot.net

ip cef

ipv6 unicast-routing

ipv6 cef

username cisco secret cisco

lldp run

track 1 interface Serial0/0/0 line-protocol

delay down 30 up 30

track 2 interface Serial0/0/1 line-protocol

delay down 30 up 30

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 99 of 126
CCNPv7.1 TSHOOT Skills Assessment

track 3 list boolean or

object 1

object 2

track 5 interface GigabitEthernet0/0 line-protocol

delay down 30 up 30

ip ssh source-interface Loopback0

ip ssh dh min size 2048

interface Loopback0

description VPN_A

vrf forwarding VPN_A

ip address 2.2.2.2 255.255.255.255

ipv6 address FE80::2 link-local

ipv6 address 2001:DB8:FEED:222::2/128

interface Loopback1

description VPN_B

vrf forwarding VPN_B

ip address 2.2.2.2 255.255.255.255

ipv6 address FE80::2 link-local

ipv6 address 2001:DB8:FEED:222::2/128

interface Loopback2

description EIGRP & RIP

ip address 20.20.20.20 255.255.255.255

ipv6 address FE80::2 link-local

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 100 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 address 2001:DB8:CAFE:2020::2/128

ipv6 rip V120 enable

interface Loopback3

description Internet

ip address 22.22.22.22 255.0.0.0

ipv6 address FE80::2 link-local

ipv6 address 2001:DB8:EFAC::2/48

interface Loopback4

description Internet

vrf forwarding VPN_A

ip address 22.22.22.22 255.0.0.0

ipv6 address FE80::2 link-local

ipv6 address 2001:DB8:EFAC::2/48

interface Loopback5

description Internet

vrf forwarding VPN_B

ip address 22.22.22.22 255.0.0.0

ipv6 address FE80::2 link-local

ipv6 address 2001:DB8:EFAC::2/48

interface GigabitEthernet0/0

ip address dhcp

duplex auto

speed auto

ipv6 address FE80::2 link-local

ipv6 address autoconfig

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 101 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 enable

ipv6 nd autoconfig default-route

ipv6 rip V120 enable

ipv6 rip V120 metric-offset 5

ipv6 dhcp client pd hint ::/64

no shutdown

interface Serial0/0/0

description WAN link to R1: 2 Mbps leased line

no ip address

encapsulation frame-relay

no keepalive

no shutdown

interface Serial0/0/0.1 point-to-point

vrf forwarding VPN_A

ip address 209.165.200.226 255.255.255.252

ipv6 address FE80::2 link-local

ipv6 address 2001:DB8:FEED:10::2/126

frame-relay interface-dlci 201

interface Serial0/0/0.2 point-to-point

ip address 209.165.200.230 255.255.255.252

ipv6 address FE80::2 link-local

ipv6 address 2001:DB8:CAFE:6::2/126

frame-relay interface-dlci 102

interface Tunnel0

no ip address

ipv6 address FE80::2 link-local

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 102 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 address FC00::2/7

ipv6 rip V120 enable

tunnel source Serial0/0/0.2

tunnel destination 10.1.2.1

interface Serial0/0/1

description WAN link to R3: 2 Mbps leased line

no ip address

encapsulation frame-relay

no keepalive

clock rate 2000000

no shutdown

interface Serial0/0/1.1 point-to-point

vrf forwarding VPN_B

ip address 209.165.200.222 255.255.255.252

ipv6 address FE80::2 link-local

ipv6 address 2001:DB8:FEED:14::2/126

frame-relay interface-dlci 203

interface Serial0/0/1.2 point-to-point

ip address 10.1.90.2 255.255.255.254

ipv6 address FE80::2 link-local

ipv6 address 2001:DB8:CAFE:90::2/126

ipv6 rip V120 enable

ipv6 rip V120 metric-offset 5

frame-relay interface-dlci 302

router eigrp HQ

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 103 of 126
CCNPv7.1 TSHOOT Skills Assessment

address-family ipv4 unicast autonomous-system 1

af-interface default

shutdown

passive-interface

exit-af-interface

af-interface Serial0/0/1.2

no shutdown

no passive-interface

exit-af-interface

af-interface Loopback2

no shutdown

exit-af-interface

topology base

exit-af-topology

network 10.1.90.2 0.0.0.1

network 20.20.20.20 0.0.0.0

eigrp stub connected

exit-address-family

address-family ipv6 unicast autonomous-system 1

af-interface default

shutdown

passive-interface

exit-af-interface

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 104 of 126
CCNPv7.1 TSHOOT Skills Assessment

af-interface Serial0/0/1.2

no shutdown

no passive-interface

exit-af-interface

af-interface Loopback2

no shutdown

exit-af-interface

topology base

exit-af-topology

eigrp stub connected

exit-address-family

router rip

version 2

passive-interface default

no passive-interface GigabitEthernet0/0

no passive-interface Serial0/0/0.2

no passive-interface Serial0/0/1.2

offset-list 0 in 5 GigabitEthernet0/0

network 10.0.0.0

network 20.0.0.0

network 209.165.200.0

distribute-list prefix NoLAN in GigabitEthernet0/0

no auto-summary

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 105 of 126
CCNPv7.1 TSHOOT Skills Assessment

router bgp 65502

bgp router-id 2.0.0.2

bgp log-neighbor-changes

no bgp default ipv4-unicast

address-family ipv4 vrf VPN_A

bgp router-id 2.2.0.2

network 0.0.0.0

network 2.2.2.2 mask 255.255.255.255

neighbor 209.165.200.225 remote-as 65501

neighbor 209.165.200.225 password 7 14141B180F0B

neighbor 209.165.200.225 activate

exit-address-family

address-family ipv6 vrf VPN_A

bgp router-id 2.2.0.2

network ::/0

network 2001:DB8:FEED:222::2/128

neighbor 209.165.200.225 remote-as 65501

neighbor 209.165.200.225 password 7 14141B180F0B

neighbor 209.165.200.225 activate

neighbor 209.165.200.225 route-map IPv4TransportIPv6RouteA in

exit-address-family

address-family ipv4 vrf VPN_B

bgp router-id 2.0.2.2

network 0.0.0.0

network 2.2.2.2 mask 255.255.255.255

neighbor 209.165.200.221 remote-as 65501

neighbor 209.165.200.221 local-as 65503 no-prepend replace-as

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 106 of 126
CCNPv7.1 TSHOOT Skills Assessment

neighbor 209.165.200.221 password 7 0822455D0A16

neighbor 209.165.200.221 activate

neighbor 209.165.200.221 allowas-in

exit-address-family

address-family ipv6 vrf VPN_B

bgp router-id 2.0.2.2

network ::/0

network 2001:DB8:FEED:222::2/128

neighbor 209.165.200.221 remote-as 65501

neighbor 209.165.200.221 local-as 65503 no-prepend replace-as

neighbor 209.165.200.221 password 7 0822455D0A16

neighbor 209.165.200.221 activate

neighbor 209.165.200.221 allowas-in

neighbor 209.165.200.221 route-map IPv4TransportIPv6RouteB in

exit-address-family

crypto key gen rsa general-keys modulus 1024

ip http server

ip http secure-server

ip flow-top-talkers

top 3

sort-by bytes

cache-timeout 600000

ip route vrf VPN_A 0.0.0.0 0.0.0.0 Null0

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 107 of 126
CCNPv7.1 TSHOOT Skills Assessment

ip route vrf VPN_B 0.0.0.0 0.0.0.0 Null0

ip prefix-list NoLAN seq 10 deny 10.1.0.0/16 ge 17

ip prefix-list NoLAN seq 20 permit 0.0.0.0/0 le 32

ip sla 3

icmp-echo 10.1.2.2

frequency 10

ip sla schedule 3 life forever start-time now

ip sla 5

icmp-echo 10.1.2.14

frequency 10

ip sla schedule 5 life forever start-time now

logging host 10.1.100.1

logging source-interface Loopback0

ipv6 route 2001:DB8:CAFE:201::1/128 Serial0/0/0.2

ipv6 route vrf VPN_B ::/0 Null0

ipv6 route vrf VPN_A ::/0 Null0

ipv6 router rip V120

distribute-list prefix-list NoLAN in GigabitEthernet0/0

distribute-list prefix-list RIP in Tunnel0

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 108 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 prefix-list NoLAN seq 10 deny 2001:DB8:CAFE::/48 ge 49

ipv6 prefix-list NoLAN seq 20 permit ::/0 le 128

ipv6 prefix-list RIP seq 10 deny 2001:DB8:CAFE:120::/64

ipv6 prefix-list RIP seq 20 permit ::/0 le 128

route-map IPv4TransportIPv6RouteA permit 10

set ipv6 next-hop 2001:DB8:FEED:10::1

route-map IPv4TransportIPv6RouteB permit 10

set ipv6 next-hop 2001:DB8:FEED:14::3

snmp-server community cisco RO

snmp-server community san-fran RW

snmp-server trap-source Loopback0

snmp-server location TSHOOT Lab Facility

snmp-server contact support@tshoot.net

snmp-server enable traps eigrp

snmp-server enable traps flash insertion

snmp-server enable traps flash removal

snmp-server enable traps config

snmp-server enable traps cpu threshold

snmp-server host 10.1.100.1 version 2c cisco

alias exec srb show run | begin router bgp

alias exec sro show run | begin router ospf

alias exec srr show run | b router rip

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 109 of 126
CCNPv7.1 TSHOOT Skills Assessment

alias exec sre show run | begin router eigrp

alias exec srr6 show run | b ipv6 router rip

alias exec sra show run | section event manager

alias exec srig show run inter g0/0

alias exec sira show ip route vrf VPN_A

alias exec sirb show ip route vrf VPN_B

alias exec sir show ip route

alias exec six show ipv6 route

alias exec sixa show ipv6 route vrf VPN_A

alias exec sixb show ipv6 route vrf VPN_B

banner motd ^*** Router R2 Skills Assessment Error Config ***^

line con 0

exec-timeout 0 0

logging synchronous

login authentication CONSOLE

line vty 0 4

exec-timeout 0 0

logging synchronous

transport input ssh

ntp master 3

event manager applet G0/0way

event track 3 state down

action 1.0 cli command "enable"

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 110 of 126
CCNPv7.1 TSHOOT Skills Assessment

action 1.1 cli command "conf t"

action 1.13 cli command "ipv6 router rip V120"

action 1.14 cli command "no distribute-list prefix NoLAN in G0/0"

action 1.145 cli command "int g0/0"

action 1.15 cli command "ipv6 rip V120 default-information originate"

action 1.2 cli command "router rip"

action 1.3 cli command "no distribute-list prefix NoLAN in GigabitEthernet0/0"

action 1.35 cli command "default-information originate"

action 1.4 syslog msg "G0/0 Way!"

event manager applet NoG0/0way

event track 3 state up

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.13 cli command "ipv6 router rip V120"

action 1.14 cli command "distribute-list prefix NoLAN in G0/0"

action 1.145 cli command "int g0/0"

action 1.15 cli command "no ipv6 rip V120 default-information originate"

action 1.2 cli command "router rip"

action 1.3 cli command "distribute-list prefix NoLAN in GigabitEthernet0/0"

action 1.35 cli command "no default-information originate"

action 1.4 syslog msg "No G0/0 Way!"

event manager applet LANdown

event track 5 state down

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.2 cli command "ip route 0.0.0.0 0.0.0.0 209.165.200.229"

action 1.3 cli command "ip route 0.0.0.0 0.0.0.0 10.1.90.3"

action 1.4 cli command "ipv6 route ::/0 FC00::D1"

action 1.5 cli command "ipv6 route ::/0 2001:db8:cafe:90::3"

action 1.6 syslog msg "LAN Down!"

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 111 of 126
CCNPv7.1 TSHOOT Skills Assessment

event manager applet LANup

event track 5 state up

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.2 cli command "no ip route 0.0.0.0 0.0.0.0 209.165.200.229"

action 1.3 cli command "no ip route 0.0.0.0 0.0.0.0 10.1.90.3"

action 1.4 cli command "no ipv6 route ::/0 FC00::D1"

action 1.5 cli command "no ipv6 route ::/0 2001:db8:cafe:90::3"

action 1.6 syslog msg "LAN Up!"

archive

log config

logging enable

logging size 50

notify syslog contenttype plaintext

hidekeys

path tftp://10.1.100.1/$h-archive-config

write-memory

file prompt quiet

end

R3
!Router R3 Skills Assessment Error Config

service timestamps debug datetime msec

service timestamps log datetime msec

service password-encryption

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 112 of 126
CCNPv7.1 TSHOOT Skills Assessment

hostname R3

enable secret cisco

aaa new-model

aaa authentication login default local

aaa authentication login CONSOLE none

aaa authorization exec default local

clock timezone PST -8

clock summer-time PDT recurring

do clock set 09:05:00 Oct 29 2014

no ip domain lookup

ip domain name tshoot.net

ip cef

ip dhcp excluded-address 10.1.80.129 10.1.80.131

ip dhcp pool Simulatedv4LAN

network 10.1.80.128 255.255.255.128

default-router 10.1.80.129

ipv6 unicast-routing

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 113 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 cef

username cisco secret cisco

lldp run

track 4 interface Serial0/0/1 line-protocol

delay down 30 up 30

track 5 list boolean or

object 4

object 31

track 31 ip sla 3

delay down 30 up 30

ip ssh source-interface Loopback0

ip ssh dh min size 2048

interface Loopback0

description iBGP Peer

ip address 192.168.3.1 255.255.255.255

ip ospf network point-to-point

ipv6 address FE80::3 link-local

ipv6 address 2001:DB8:CAFE:203::1/128

ipv6 rip V120 enable

ospfv3 2 ipv6 area 0

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 114 of 126
CCNPv7.1 TSHOOT Skills Assessment

ospfv3 2 ipv6 network point-to-point

interface Loopback1

description Branch Office Simulated LAN

ip address pool Simulatedv4LAN

ipv6 address FE80::3 link-local

ipv6 address 2001:DB8:CAFE:801::1/64

interface Tunnel0

no ip address

ipv6 address FE80::3 link-local

ipv6 address ABCD::3/16

ospfv3 2 cost 30011

ospfv3 2 ipv6 area 0

tunnel source Loopback0

tunnel destination 192.168.1.1

interface GigabitEthernet0/0

description Collocated Office LAN

ip address 10.1.80.1 255.255.255.128

ip helper-address 10.1.2.13

duplex full

speed 100

ipv6 address FE80::3 link-local

ipv6 address 2001:DB8:CAFE:800::1/64

ipv6 nd prefix 2001:DB8:CAFE:800::/64 2592000 604800 no-autoconfig

ipv6 nd managed-config-flag

ipv6 dhcp relay destination 2001:DB8:CAFE:212::D2

ipv6 traffic-filter ALLOW-TCP-ICMP in

no shutdown

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 115 of 126
CCNPv7.1 TSHOOT Skills Assessment

interface GigabitEthernet0/1

description FE to DLS1

ip address 10.1.2.14 255.255.255.252

ip flow ingress

duplex full

speed 100

ipv6 address FE80::1 link-local

ipv6 address 2001:DB8:CAFE:212::3/64

ipv6 rip V120 enable

ospfv3 2 ipv6 area 0

no shutdown

interface Serial0/0/1

description WAN link to R2: 2 Mbps leased line

no ip address

encapsulation frame-relay

no keepalive

no shutdown

interface Serial0/0/1.1 point-to-point

ip address 209.165.200.221 255.255.255.252

ipv6 address FE80::3 link-local

ipv6 address 2001:DB8:FEED:14::3/126

ipv6 rip V120 enable

frame-relay interface-dlci 203

interface Serial0/0/1.2 point-to-point

ip address 10.1.90.3 255.255.255.254

ipv6 address FE80::3 link-local

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 116 of 126
CCNPv7.1 TSHOOT Skills Assessment

ipv6 address 2001:DB8:CAFE:90::3/126

ipv6 rip V120 enable

frame-relay interface-dlci 302

router eigrp HQ

address-family ipv4 unicast autonomous-system 1

af-interface default

shutdown

passive-interface

exit-af-interface

af-interface Loopback1

no shutdown

exit-af-interface

af-interface GigabitEthernet0/0

no shutdown

exit-af-interface

af-interface Serial0/0/1.2

no shutdown

no passive-interface

exit-af-interface

topology base

exit-af-topology

network 10.1.80.0 0.0.0.255

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 117 of 126
CCNPv7.1 TSHOOT Skills Assessment

network 10.1.90.2 0.0.0.1

exit-address-family

address-family ipv6 unicast autonomous-system 1

af-interface default

shutdown

passive-interface

exit-af-interface

af-interface Loopback1

no shutdown

exit-af-interface

af-interface GigabitEthernet0/0

no shutdown

exit-af-interface

af-interface Serial0/0/1.2

no shutdown

no passive-interface

exit-af-interface

af-interface Serial0/0/1.1

no shutdown

exit-af-interface

af-interface Tunnel0

no shutdown

exit-af-interface

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 118 of 126
CCNPv7.1 TSHOOT Skills Assessment

topology base

exit-af-topology

exit-address-family

router ospfv3 2

address-family ipv6 unicast

passive-interface default

no passive-interface GigabitEthernet0/1

no passive-interface Tunnel0

default-information originate metric 100 metric-type 1

redistribute connected route-map IPv6EIGRP&s0/0/1.1

redistribute eigrp 1 metric 100 metric-type 1

redistribute bgp 65501 route-map IPv6METRIC

router-id 33.0.0.33

exit-address-family

router ospf 1

router-id 3.0.0.3

redistribute eigrp 1 metric 100 metric-type 1 subnets route-map EIGRP

redistribute bgp 65501 metric 100 metric-type 1 subnets

passive-interface default

no passive-interface GigabitEthernet0/1

network 10.1.2.12 0.0.0.3 area 0

network 192.168.3.1 0.0.0.0 area 0

default-information originate metric 100 metric-type 1

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 119 of 126
CCNPv7.1 TSHOOT Skills Assessment

router rip

version 2

passive-interface default

no passive-interface Serial0/0/1.2

network 10.0.0.0

network 192.168.3.0

network 209.165.200.0

distribute-list prefix RIP out

no auto-summary

router bgp 65501

bgp router-id 3.0.0.3

bgp log-neighbor-changes

neighbor 192.168.1.1 remote-as 65501

neighbor 192.168.1.1 password 7 045802150C2E

neighbor 192.168.1.1 update-source Loopback0

neighbor 209.165.200.222 remote-as 65503

neighbor 209.165.200.222 password 7 110A1016141D

address-family ipv4

network 10.1.0.0 mask 255.255.0.0

network 192.168.3.1 mask 255.255.255.255

network 209.165.200.220 mask 255.255.255.252

neighbor 192.168.1.1 activate

neighbor 192.168.1.1 next-hop-self

neighbor 209.165.200.222 activate

exit-address-family

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 120 of 126
CCNPv7.1 TSHOOT Skills Assessment

address-family ipv6

network 2001:DB8:CAFE::/48

network 2001:DB8:FEED:14::/126

network 2001:DB8:CAFE:203::1/128

network ABCD::/16

neighbor 192.168.1.1 activate

neighbor 192.168.1.1 next-hop-self

neighbor 192.168.1.1 route-map IPv4TransportIPv6RouteFromR1 in

neighbor 209.165.200.222 activate

neighbor 209.165.200.222 route-map IPv4TransportIPv6RouteFromR2 in

exit-address-family

crypto key gen rsa general-keys modulus 1024

ip http server

ip http secure-server

ip flow-top-talkers

top 3

sort-by bytes

cache-timeout 600000

ip route 10.1.0.0 255.255.0.0 Null0

ip prefix-list 20 seq 10 permit 10.1.90.2/31

ip prefix-list 20 seq 20 permit 10.1.80.0/25

ip prefix-list 20 seq 30 permit 10.1.80.128/25

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 121 of 126
CCNPv7.1 TSHOOT Skills Assessment

ip prefix-list 20 seq 40 permit 20.20.20.20/32

ip prefix-list RIP seq 10 permit 10.1.90.2/31

ip prefix-list RIP seq 20 permit 192.168.3.1/32

ip prefix-list RIP seq 30 permit 10.1.2.12/30

ip prefix-list RIP seq 40 permit 10.1.30.0/24

ip prefix-list RIP seq 50 permit 209.165.200.220/30

ip sla 3

icmp-echo 209.165.200.225

frequency 10

ip sla schedule 3 life forever start-time now

logging source-interface Loopback0

logging host 10.1.100.1

ipv6 route 2001:DB8:CAFE::/48 Null0

ipv6 router rip V120

ipv6 prefix-list EIGRP seq 10 permit 2001:DB8:CAFE:90::/126

ipv6 prefix-list EIGRP seq 20 permit 2001:DB8:CAFE:801::/64

ipv6 prefix-list EIGRP seq 30 permit 2001:DB8:CAFE:800::/64

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 122 of 126
CCNPv7.1 TSHOOT Skills Assessment

route-map IPv6s0/0/1.1 permit 10

match interface Serial0/0/1.1

route-map EIGRP permit 10

match ip address prefix-list 20

route-map IPv4TransportIPv6RouteFromR1 permit 10

set ipv6 next-hop 2001:DB8:CAFE:201::1

route-map IPv4TransportIPv6RouteFromR2 permit 10

set ipv6 next-hop 2001:DB8:FEED:14::2

route-map IPv6METRIC permit 10

set metric 100

set metric-type type-1

route-map IPv6EIGRP&s0/0/1.1 permit 10

match ipv6 address prefix-list EIGRP

set metric 100

set metric-type type-1

route-map IPv6EIGRP&s0/0/1.1 permit 20

match interface Serial0/0/1.1

set metric 100

set metric-type type-1

snmp-server community cisco RO

snmp-server community san-fran RW

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 123 of 126
CCNPv7.1 TSHOOT Skills Assessment

snmp-server trap-source Loopback0

snmp-server location TSHOOT Lab Facility

snmp-server contact support@tshoot.net

snmp-server enable traps eigrp

snmp-server enable traps flash insertion

snmp-server enable traps flash removal

snmp-server enable traps config

snmp-server enable traps cpu threshold

snmp-server host 10.1.100.1 version 2c cisco

alias exec srb show run | begin router bgp

alias exec sro show run | begin router ospf

alias exec srr show run | b router rip

alias exec sre show run | begin router eigrp

alias exec srr6 show run | b ipv6 router rip

alias exec sra show run | section event manager

alias exec srig show run inter g0/0

alias exec sira show ip route vrf VPN_A

alias exec sirb show ip route vrf VPN_B

alias exec sir show ip route

alias exec six show ipv6 route

alias exec sixa show ipv6 route vrf VPN_A

alias exec sixb show ipv6 route vrf VPN_B

banner motd ^*** Router R3 Skills Assessment Error Config ***^

line con 0

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 124 of 126
CCNPv7.1 TSHOOT Skills Assessment

exec-timeout 0 0

logging synchronous

login authentication CONSOLE

line vty 0 4

exec-timeout 0 0

logging synchronous

transport input ssh

ntp source Loopback0

ntp update-calendar

ntp server 2.2.2.2

event manager applet DoNotUseIPv6Null

event track 5 state down

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.2 cli command "no ipv6 route 2001:db8:cafe::/48 Null0"

action 1.3 syslog msg "Unnstall IPv6 Null!"

event manager applet InstallIPv6Null

event track 5 state up

action 1.0 cli command "enable"

action 1.1 cli command "conf t"

action 1.2 cli command "ipv6 route 2001:db8:cafe::/48 Null0"

action 1.3 syslog msg "Install IPv6 Null!"

archive

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 125 of 126
CCNPv7.1 TSHOOT Skills Assessment

log config

logging enable

logging size 50

notify syslog contenttype plaintext

hidekeys

path tftp://10.1.100.1/$h-archive-config

write-memory

file prompt quiet

end

© 2015 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 126 of 126